SSL Authentication MITM

Discuss the Scalix Outlook MAPI Interface

Moderators: ScalixSupport, admin

Valerion
Scalix Star
Scalix Star
Posts: 2730
Joined: Thu Feb 26, 2004 7:40 am
Location: Johannesburg, South Africa
Contact:

Re: SSL Authentication MITM

Postby Valerion » Wed Aug 18, 2010 5:14 am

Scalix Connect for Outlook does indeed check the certificate's validity and signing CA, and have since the first release with SSL support. If I delete the root CA for my server's certificate, I get an error when Outlook connects to the mailbox, with a "Accept Once", "Accept permanently" and "Do not connect" dialog box. The client also properly parses intermediate certificate chains, as well as SubjectAltNames correctly. It uses the CA certificates stored in Windows in the latest release, a few of the earlier ones had its own way of storing CA certificates.

Are you sure you are connecting via SSL? By default if the client can access both ports it defaults to the unencrypted one.

Return to “Scalix Connect for MS Outlook”



Who is online

Users browsing this forum: No registered users and 5 guests