Configure TLS inbound for specific domain

Hi All,
would like to configure TLS inbound for specific domain . am using exchange 2010 and instead of edge we are using Trend Micro IMSS Gateway. now please explain me how to configure TLS for inbound but for specific domain 
have gone through their documents but when i checked there is a tab for Trusted CA certificated. i have imported out ORG publicly trusted certificate and have selected mutual TLS. but no luck it now allowing the TLS inbound.
Please help me on this
Thanks, Venkatesh. "Hardwork Never Fails"

Hi imvenkat,
I recommend you ask this in
Trend Micro forum also, since you are using Trend Micro gateway instead of exchange edge server.
Best Regards,
Niko Cheng
TechNet Community Support

Similar Messages

  • Hold email for specific domain

    Is there a way to hold outbound-email only for a specific domain/user, without interrupting other users?

    Hi Alex,
    The new primary mail server is not available due to an issue with the ISP, so all mail is being delivered to the backup mx server (which is on both the new & old DNS MX records).
    The problem is that the backup MX server's DNS servers are using the old records (as the previous DNS NS records had an expire time of 7 days) and therefore relaying the email to an old ISP's relay servers (which then try to relay to an old IP address, so the email consequently gets lost).
    Ideally I would just flush the cache on the DNS servers, but I have no control over these, and the guys that manage them will not be in their office until tomorrow morning and I don't know if they will do this anyway.
    I know it is a far from perfect configuration, but hopefully you maybe able to suggest a solution

  • Dns server for specific domain

    Is there a way to define a dns server for a specific domain?
    I'm setting up a develop machine with an amp stack and i want to redirect all urls with a specific domain (i.e. project.dev) to 127.0.0.1.
    I've done this on OSX with dnsmasq configured in this way:
    # dnsmasq.conf
    address=/.dev/127.0.0.1
    listen-address=127.0.0.1
    port=35353
    and adding a dev file in /etc/resolver with this content
    # /etc/resolver/dev
    nameserver 127.0.0.1
    port 35353
    but this in arclinux with dhcpd doesn't work.
    I've tested dnsmasq with
    dig [email protected] -p 35353
    and it works (the address returned is 127.0.0.1) so the problem is the resolver.
    I've also tried either put into /etc/resov.conf.head this:
    # /etc/resolv.conf.head
    nameserver 127.0.0.1
    port 35353
    and configure dnsmasq with the default 53 port without luck.
    This is my /etc/resolv.conf
    # /etc/resolv.conf
    nameserver 127.0.0.1
    nameserver 192.168.0.1

    On linux you should simply run all dns request through one nameserver that forwards everything it doesn't understand. [Edit: You can do that with dnsmasq.] Another simple way to create a local developer zone would be to use wildcard_dns_proxy instead.
    Last edited by progandy (2015-03-03 17:20:29)

  • Disabling junk mail filtering for specific domains

    I have a situation where I am getting dozens of messages from individuals all in a specific domain, and all are good messages which I want in my inbox; Mail however thinks they are all junk and moves them to the junk folder. They are NOT brown so I cannot select them and say they are not junk mail, they look like regular email. These are from people I do NOT want in my address book yet they are messages I need to respond to.
    How can I tell the junk mail filter that massages from a given domain should not be filtered? In short, I want just the right-hand-side of the address, the domain component, to be given the OKAY!
    Thanks - Lawrence

    Thanks - I tried the advance tab but could not see how to specify a domain but now I look again I see that there is a way - I think. But Kappy, what you say tells me something I did not know: I thought that filters, rules, et al, were applied when a message is in the inbox - but I have this wrong I think. If I read your reply rightly - the message is examined for junk filters, rules, et al, BEFORE it gets assigned to ANY mailbox! Am I right? This is how your suggestion would work. So I can have an initial rule that simple uses a list of approved domains - and sticks anything from such a domain into the inbox where no more filtering or rule analysis will take place. And the more I think about this, the more it makes sense.
    Thanks - Lawrence

  • Zoom level for specific domains

    There are any way to make Safari 4 remember the last zoom level used for each domain, as Firefox does? it is very annoying to set the zoom level every time you go to a page.

    Thank you. Firefox remember the zoom level without any plugin since 3.0. On the other hand, I would like to know if there is any way for sending suggestions to Safari developers in this sense...

  • Configuring pass-through for specific e-mails

    Hi all,
    (messaging version 7u3, on Solaris sparc)
    I have MTA which would works as "mail router" for several other systems. One MTA should do rewriting rules in headers, some sieve filtering and also catching e-mails which comply basic criteria and assign them to the channel. That criteria are just e-mail headers To: and From:.
    Example:
    From: <any>@acme.com
    To: <any>@siroe.com
    So.. when e-mails are comming from acme.com domain and to siroe.com I'd need to somehow catch these e-mails and assigned them to channel tcp_from_acme-daemon.
    Any clue what should I search for in wiki / docs or other source?
    Many thanks,
    Tom

    There are some ways to do this sort of thing. But first we should clarify what you are trying to do and why.
    In general, it does not make sense to assign a destination channel based on a source address. The destination channel is all about how mail gets where it is going, not where it came from. Do you really want to cause all mail that comes from a given source to be enqueued to a specific destination channel? What is that channel supposed to do with them?
    You can use the $M or $N meta-characters to cause a rewrite rule to only succeed ($M) or fail ($N) if the message is coming from a specific source channel. See:
    https://wikis.oracle.com/display/CommSuite/Configuring+Rewrite+Rules#ConfiguringRewriteRules-SourceChannelSpecificRewriteRules%28%24M%2C%24N%29
    Also see the following knowledge articles in MOS:
    Redirecting incoming mail based on source IP address to another remote MTA. (Doc ID 1012112.1)
    Messaging Server - Simple Way To Route Mail At MTA Level Based On User Attribute (Doc ID 1225494.1)
    How to route outbound messages to a specific channel and routing host. (Doc ID 1469177.1)

  • Configuring Separate Wikis for Different Domains

    Hello:
    I've been trying to configure Lion Server to host several different domains on the same IP.  Configuring the virtual hosts settings using the Server App seem to handle this just fine.  What I'm confounded by, however, is how to have each site/domain have its own separate Wiki content.  No matter which domain I browse to, I can still see all of the wiki content on the server.  For my purposes, it's imperative that the Wikis from each of my sites not be visible to the others.  Has anyone figured out how to do this?  Perhaps there's an easy way to get this done, but it's anything but obvious to me.
    Insights are most appreciated.  Thanks.

    kigrant:
    To be able to publish each site to its own folder you'll have to split your current domain file into 3 files. I use iWebSites to manage multiple sites.. It lets me create multiple sites and multiple domain files.
    If you have multiple sites in one domain file here's the workflow I used to split them into individual site files with iWebSites. Be sure to make a backup copy of your original Domain.sites files before starting the splitting process.
    This lets me edit several sites and only republish the one I want.
    OT

  • Access blob storage files by specific domain. (Prevent hotlinking in Azure Blob Storage)

    Hi,
    My application deployed on azure, and I managed all my file to blob storage.
    When i created container with public permission then it accessible for all anonymous users. When i hit URL of file (blob) from different browser, then i will get that file.
    In Our application we have some important file and images that we don't want to expose. When we render HTML page then in <img> tag we define src="{blob file url}" when i mention this then public file are accessible, but same URL i copied
    and hit to anther browser then still it is visible. My requirement is my application domain only able to access that public file in blob storage.
    Amazon S3 which provide bucket policy where we define that for specific domain only file will accessible. see http://docs.aws.amazon.com/AmazonS3/latest/dev/example-bucket-policies.html
    Restricting Access to a Specific HTTP Referrer

    hi Prasad,
    Thanks for your post back.
    All of SAS and CORS could work, but not comprehensive.
    For your requirement, " My requirement is my application domain only able to access that public file in blob storage.", If you want to stop the other domain site access your blob, you may need set the CORS for your blob. When
    the origin domain of the request is checked against the domains listed for the
    AllowedOrigins element. If the origin domain is included in the list, or all domains are allowed with the wildcard character '*', then rules evaluation proceeds. If the origin domain is not included, then the request fails. So other domain didn't access
    your resource. You also try the Gaurav's blog:
    http://gauravmantri.com/2013/12/01/windows-azure-storage-and-cors-lets-have-some-fun/
    If you access CROS resource, you also need use SAS authenticated.
    However SAS means that you can grant a client limited permissions to your blobs, queues, or tables for a specified period of time and with a specified set of permissions, without having to share your account access keys. The SAS is a URI that encompasses
    in its query parameters all of the information necessary for authenticated access to a storage resource (http://azure.microsoft.com/en-us/documentation/articles/storage-dotnet-shared-access-signature-part-1/
    ).  So if your SAS URI is available and not expired ,this URI could be used to other domain site. I think you can try to test it.
    If I misunderstood, please let me know.
    Regards,
    Will
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • How can I disable automatic spell checking for specific websites?

    I'd like to disable automatic spell-checking for specific domains, such as programming-oriented forums. Is there a way to do this in about:config?

    See:
    *https://developer.mozilla.org/en/Controlling_spell_checking_in_HTML_forms
    You could create a Greasemonkey script to add a spellcheck="false" attribute or create a bookmarklet to add the attribute.

  • Configure SMTP to forward mail to a specific domain

    We have migrated all of our e-mail from on premise exchange to Office 365. To support internal applications that send e-mail such as our scanners, we have setup a SMTP relay server using IIS on Windows 2012.
    This is working very well however we have some users that when they do a scan they simply enter their e-mail alias (the part before the @ symbol) since that worked when the scanner was sending to Exchange. However Office 365 does not know how to route these
    e-mails so they result in a NDR. Since the NDR is not sent to the person creating the scan they do not even know the issue other than they did not receive their scan. 
    Is there a way to configure the SMTP service on Windows 2012 to send all e-mail that does not have a domain listed in the e-mail address to a specific domain? For example, if someone were to send their scan to myalias it would be delivered to myalias at mycompany
    dot com (sorry about spelling it out but it is not letting me post this with a e-m ail address in it even if the address is not valid)

    Hi,
    You can try to create a SMTP domain in IIS manager(Default SMTP Virtual Server>Domains>New>domain) and then enable "Allow incoming mail to be relayed to this domain" and "Forward all mail to smart host".
    In addition, for questions related to IIS, you can also ask in IIS forum for professional assistance:
    http://forums.iis.net/
    Best regards,
    Susie
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Subscriber Support, contact [email protected]

  • Specific domain blocked for both mail programs

    Hi all. Need some help... One specific domain name's email addresses has been blocked by my mac for outgoing email from both 'mail' and entourage programs. I don't get any error messages but the emails never get delivered. However emails from the domain name get delivered to me just fine.
    It is isolated to my mac as I can send/receive using a different computer on the same internet connection to the domain name addresses.
    I think it results from a moment last week when I accidentally clicked on 'junk' instead of delete for an email from the domain name thats causing the trouble. I immediately clicked 'this is not junk', and thought nothing more of it. it appears that somehow the computer will now not deliver email to the domain name address in question. Its like a very specific block, but effects both mail programs. Apple Support suggested posting to this disscussion board or an 'archive and install'. Hope someone can help. thanks.
    iMac   Mac OS X (10.4.8)  

    Open one of these messages in the Sent mailbox, and then click on View in the Menubar of the Mail window, place the cursor on Message, and choose Long Headers from the resulting menu. In the Long Headers, is there on named Message ID#? If so, then the message was sent from this Mac, as the ID# must be reported back from the SMTP.
    Are you using Rich Text Format, when composing and sending on this Mac? Do these messages have any attachments, or images such as might be in a Signature? If this is the situation, then the RTF may be getting converted to HTML, and a SPAM filter in front of the recipient may be blocking the receipt of messages from this Mac.
    Try resending one of these message, after first changing to Plain Text, as a test. Open the message in the Sent mailbox, click on Message in the Menubar, and choose Send Again. Next click on Format in the Menubar, and choose Make Plain Text, and send.
    Keep us posted.
    Ernie

  • Configuring group policy for user profiles in Windows Server 2012 R2 Domain

    Requesting some experts advise on configuring group policy for user profiles.
    We will be building new Windows Server 2012 R2 Domain Controllers (Domain of 400 users).
    The settings which I am concerned:
    1. Folder Redirection: Desktop, Documents, Favorites.
    2. Quota for Folder Redirection - 1 GB per user.
    3. Map a networked drive - 1 GB per user.
    4. Roaming profile - (Will ignore if it does not suit our requirement). 
    The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
    FYI, E-mails hosted on MS Office365 and OST file size of few users more than 25GB. So, in case the user moves from one computer to other, the entire mailbox will be downloaded via internet. This consumes high bandwidth if more than 3-4 users shift per day.
    Thanks a lot for your valuable time and efforts.

    Hi,
    >>The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
    This depends on where our outlook data files are stored. If these data files are stored under
    drive:\Users\<username>\AppData\Local, then these files can’t be redirected, for folder redirection can’t redirect appdata local or locallow.
    However, regarding your question, we can refer to the following thread to find the solution.
    Roam outlook profiles without roaming profiles
    http://social.technet.microsoft.com/Forums/office/en-US/3908b8e0-8f44-4a34-8eb5-5a024df3463e/roam-outlook-profiles-without-roaming-profiles
    In addition, regarding how to configure folder redirection, the following article can be referred to for more information.
    Configuring Folder Redirection
    http://technet.microsoft.com/library/cc786749.aspx
    Hope it helps.
    Best regards,
    Frank Shen

  • #554 5.4.4 SMTPSEND.DNS.MxLoopback; DNS records for this domain are configured in a loop ##

    Hi,
    This is my first post here. 
    My exchange server of late is facing a peculiar problem. I get the error message that I have posted below when sending mails to any outside domain. However when I restart the server the mails can be resend to the address without any issue. After a certain
    time again the issue pops up upon which I am forced to restart the server again. I am running 2007 Exchange on Windows 2003.
    Generating server: name.mydomain.com
    [email protected]
    #554 5.4.4 SMTPSEND.DNS.MxLoopback; DNS records for this domain are configured in a loop ##
    [email protected]
    #554 5.4.4 SMTPSEND.DNS.MxLoopback; DNS records for this domain are configured in a loop ##
    Original message headers:
    Received: from name.mydomain.com ([1xx.xxx.xxx.xx5]) by MHDMAILS.mouwasat.com
     ([1xx.xxx.xxx.xx5]) with mapi; Wed, 19 Oct 2011 08:56:29 +0300
    From:  <[email protected]>
    To: <[email protected]>
    CC: "Al Alami,Tareq" <[email protected]>
    Date: Wed, 19 Oct 2011 08:56:27 +0300
    Subject: RE:   
    Thread-Topic:   
    Thread-Index: AcyAQ5tu8z9CvBfdT5+1pcGQkk6x0AIuwczAAAGZjeABQyW5sAADeeJQAAETNDA=
    Message-ID: <[email protected]>
    References: <[email protected]com>
     <[email protected]com>
    Accept-Language: en-US
    Content-Language: en-US
    X-MS-Has-Attach: yes
    X-MS-TNEF-Correlator:
    acceptlanguage: en-US
    Content-Type: multipart/related;
                boundary="_004_EEC8FA6B3B286A4E90D709FECDF51AA06C0588CA11namedomain_";
                type="multipart/alternative"
    MIME-Version: 1.0

    On Sun, 23 Oct 2011 15:05:15 +0000, Jobin Jacob wrote:
    >
    >
    >Even af
    >
    >ter removing my domain from the send connector I continue to receive the error. I would like to say I do have a firewall, Cyberoam. However, it was the same configuration till now in the firewall. I did try Mx lookup and found the following.
    >
    >Could there be any other solution to this issue ?
    Sure, but it's necessary to ask a lot of questions since none of us
    know how your organization is set up.
    I see you also have "Use the External DNS Lookup settings on the
    transport server" box checked. How have you configured the "External
    DNS Lookups" on the HT server's property page? Is there any good
    reason why you aren't just using your internal DNS servers? If the
    internal DNS servers are configured to resolve (or forward) queries
    for "external" domains then there's no reason to use that checkbox. In
    most cases checking that box is a mistake.
    http://technet.microsoft.com/en-us/library/aa997166(EXCHG.80).aspx
    The behavior you describe (it works for a while and then fails;
    restarting the server returns it to a working state) sure sounds like
    some sort of DNS problem.
    Rich Matheisen
    MCSE+I, Exchange MVP
    --- Rich Matheisen MCSE+I, Exchange MVP

  • ORA-00001: unique constraint during "Configure Database Security Store for OIM Domain"

    Hi Guru's,
    I am following the below steps for OIM 11.1.2.1 with SOA 11.1.1.7 Installation and facing below error during step "Configure Database Security Store for OIM Domain".
    Installed Database 11.2.0.3
    Installed RCU (Here I used two versions.
         RCU 11.1.2   - Used IDAM prefix for (Metadata Services, OPSS, OIM)
         RCU 11.1.1.7 - Used SOA prefix for(Metadata Services,SOA Infrastructure, User Messaging service)
    Installed JDK 7 (Java 1.7)
    Installed WL 10.3.6 (MW_HOME-/u01/Middleware/fmw, WL_HOME=/u01/Middleware/fmw/wlserver_10.3)
    Installed FMW 11.1.2.1 for OIM. (ORACLE_HOME=Oracle_IDM1)
    Installed FMW 11.1.1.7 for SOA (ORACLE_HOME=Oracle_SOA1)
    WL Domain creation.  (Domain Name – idam_domain1)
    Configure Database Security Store for OIM Domain.
    Internal Exception: java.sql.SQLIntegrityConstraintViolationException: ORA-00001: unique constraint (IDAM_OPSS.IDX_JPS_RDN_PDN) violated
    Also followed the below bug solution, but issue still occurs.
    Bug 16690836 : CONFIGURE DATABASE SECURITY STORE (CONFIGURESECURITYSTORE.PY) SCRIPT IS FAILING
    @ 1. Delete the Schemas using RCU.
    @ 2. Recreate the OAM schemas.
    @ 3. Reinstall the WLS and OAM software.
    @ 4. Run config.sh to create a new domain.
    @ 5. Run setDomainEnv.sh from user_projects/domains/<Domain_name>/bin
    @ 6. Run the configureSecurityStore.py from same window.
    Not sure if anyone tried with different steps that fixed the issue? Could you please help.
    Thanks
    VG

    Hi Gurus, I got the solution from Oracle. SOA 11.1.1.7.0 shouldn't be used with Identity Management 11.1.2.1.0(11GR1-PS1) version. Identity Management 11.1.2.1.0(11GR1-PS1) is bundled with SOA 11.1.1.6.0. When used this SOA version, Installation went smooth. Thanks VG

  • Unable to configure database for a domain

    When I try to configure the database for example for the WLI domain starting Weblogic
    Integration database configuration wizard (Start -> Programs -> BEA Weblogic E-Business
    Platform -> Weblogic Integration 2.1 -> Configure), I'll get the following message:
    No product directory containing domain c:\bea\wlintegration2.1\config\wlidomain
    in any of your BEA Home registries.
    Thanking in advance
    Jani

    I see. It seems there was a change in assumptions when Novell moved from
    Zenworks 4 to 6.5. Previously it seems there was the assumption that since
    desktop computers weren't that powerful it might overwhelm them to scan for
    both hardware and software. Therefore, these options were put next to each
    other so you could choose. In Zenworks 6.5 the assumption is that, since
    client computers have become more powerful, if you're scanning the client
    hardware you're going to want to scan the software as well. Therefore they
    took away the use of the software tab and made it less obvious on how to
    disable scanning.
    Everything seems to be working for me now on Zenworks Inventory. It's been
    inventorying for about 48 hours now and has updated most of my stale
    records. I want to thank Shaun for all the posts he replies to on the
    Zenworks newsgroups. I've seen his replies all over the place as I was
    searching through Google Groups trying to fix this and they helped me fix my
    problems.
    Matthew

Maybe you are looking for

  • Error while adding A/P Credit Memo!

    Error while adding A/P Credit Memo.......... 'G/L Accounts' (OACT) (ODBC-2028) Message - 131-183 Please advice me ..... Thanks...

  • Process extension scenario patch problem

    Hi, in my solution I had extension fields and one extension scenario. After I successfully deployed solution new requirement came - this extension field should also be available via "this" web service. So I created a patch and when I wanted to thick

  • FB4 Beta 2: Variables accessed across swf-files are null.

    I've been working on an ActionScript project and just recently switched from FB4 Beta1 to Beta2. The project is made up of multiple swf-files that are loaded into shell.swf. When compiled with FB4 Beta1 variables are accessible across the loaded swfs

  • Java Source Encoder

    Hello, I'm a MSVC++ developer and I'm learning Java by writing a tool to parse windows .rc files and generate a swing JDialog (to help port an MSVC++ project with 140+ dialogs). I've gotten to the stage where I have a JDialog in memory and can use ja

  • Eclipse Pulsar question

    Hi, I'm trying to find out what the differences are between using the physical phone connection with eclipse pulsar and just using the emulator. If anyone could be of any assistance or could point me in the direction of somewhere where I could read m