Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Creating an Exchange General rule

I was hoping people could provide some advice on setting up my first XG firewall, and specifically an Exchange General rule.  My first question is, for the SSL part, do I need to import the cert from my Exchange server?  In PFX format?



This thread was automatically locked due to age.
Parents
  • Nick,

    if you enable HTTPS you can use the XG onboard certificate or upload a certificate (purchased from a CA) inside the XG using the Certificate Menu.

    If you use the purchased one, users connecting to Exchange services from external will not receive a certificate error message. The following certificates format are available:

    • PEM
    • DER
    • CER
    • PKCS7
    • PKCS12

    Please make sure to ask one question per thread. Thanks

  • Ok, I'll stick to just the Cert question in this case.  I'm not sure my question is fully answered.  Would a purchased cert be separate from my Exchange cert?  So I wouldn't import my Exchange cert?

  • This is a question that goes beyond this forum. Anyway if you purchase a certificate from a public CA, you can upload and use the same certificate even on Exchange. Of course you should use the same dns name for both internal and external users, otherwise users will get the certificate error (this depends on the configuration you are using on your Exchange Infrastructure).

    [;)]

  • I understand how certificates and Exchange work, that wasn't what I was asking.  My apologies if I wasn't clear.  I already have a public certificate purchased from a CA.  Is that the cert I need to import into the XG?

  • No worries Nick (maybe was my fault).

    Yes you need to import the certificate and use it once you enable the HTTPS inside the Exchange Template Policy Rule.

    Thanks

Reply Children