EasyManua.ls Logo

Cisco FirePOWER ASA 5500 series

Cisco FirePOWER ASA 5500 series
989 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
37-26
Cisco Security Appliance Command Line Configuration Guide
OL-10088-01
Chapter 37 Configuring WebVPN
Using E-Mail over WebVPN
E-mail Proxy Certificate Authentication
Certificate authentication for e-mail proxy connections works with Netscape 7x e-mail clients. Other
e-mail clients such as MS Outlook, MS Outlook Express, and Eudora lack the ability to access the
certificate store.
Configuring MAPI
MAPI, also called MS Outlook Exchange proxy, has the following requirements:
MS Outlook Exchange must be installed on the remote computer.
You must enable MS Outlook Exchange Proxy on a security appliance interface. You do this by
entering the functions command, which is a group-policy webvpn command. For example:
hostname(config)# group-policy group_policy_name attributes
hostname(config-group-policy)# webvpn
hostname(config-group-webvpn)# functions mapi
Provide the Exchange server NetBIOS name. The Exchange server must be on the same domain as
the security appliance DNS server. For example:
hostname(config)# domain domain_name
hostname(config)#
Note An open MS Outlook client connected via MS Outlook Exchange Mail Proxy checks continually for mail
on the Exchange Server, which keeps the connection open. As long as Outlook is open, the connection
never times out, regardless of the settings.
Configuring Web E-mail: MS Outlook Web Access
Web e-mail is MS Outlook Web Access for Exchange 2000, Exchange 5.5, and Exchange 2003. It
requires an MS Outlook Exchange Server at the central site. It also requires that users perform the
following tasks:
Enter the URL of the mail server in a browser in your WebVPN session.
When prompted, enter the e-mail server username in the format domain\username.
Enter the e-mail password.
Specifies the default e-mail server. server None.
Defines the separator between the e-mail and
server names.
server-separator “@”
1. With the Eudora e-mail client, SMTPS works only on port 465, even though the default port for SMTPS connections is 988.
Table 37-3 WebVPN Attributes for E-mail Proxy Users
Function Command Default Value

Table of Contents

Related product manuals