Presentation is loading. Please wait.

Presentation is loading. Please wait.

AdvisorEvents.com Secure GroupWise with SSL Author: Tay Kratzer & Gregg A. Hinchman Company: Novell, Inc. & Hinchman Consulting Session Number.

Similar presentations


Presentation on theme: "AdvisorEvents.com Secure GroupWise with SSL Author: Tay Kratzer & Gregg A. Hinchman Company: Novell, Inc. & Hinchman Consulting Session Number."— Presentation transcript:

1 AdvisorEvents.com Secure GroupWise with SSL Author: Tay Kratzer & Gregg A. Hinchman Company: Novell, Inc. & Hinchman Consulting Session Number

2 AdvisorEvents.com Who Am I?  Tay Kratzer GroupWise Enthusiast for 10+ years GroupWise Enthusiast for 10+ years Novell Employee – Primary Support Engineer Novell Employee – Primary Support Engineer Author/Co-Author: 5 GroupWise related books at www.caledonia.net Author/Co-Author: 5 GroupWise related books at www.caledonia.net Frequent writer for: GroupWise Advisor Magazine, and Novell Periodicals Frequent writer for: GroupWise Advisor Magazine, and Novell Periodicals  Gregg A. Hinchman GroupWise Advocate and Consultant for 9+ years Self-Employed Consultant Former Novell Consultant Co-Author of “Success with GroupWise Document Management” at www.caledonia.net

3 AdvisorEvents.com Session Overview  Introduction What is SSL? What is SSL? Assumptions and Prerequisites Assumptions and Prerequisites  Securing GroupWise Secure the MTA Secure the MTA Secure the POA Secure the POA Secure the GWIA Gateway Secure the GWIA Gateway Secure the WebAccess Gateway Secure the WebAccess Gateway  Summary Review Review Tips, Tricks and Questions Tips, Tricks and Questions

4 AdvisorEvents.com What is SSL?  Encryption Symmetric Key Encryption Symmetric Key Encryption  One Key Public Key Encryption (PKI) Public Key Encryption (PKI)  Two Keys  Certificate Authorities A Private Key A Private Key The Certificate Signing Request The Certificate Signing Request A Certificate A Certificate KMO KMO  SSL CertificateDNS  SSL CertificateDNS  SSL CertificateIP  SSL CertificateIP

5 AdvisorEvents.com Assumptions and Prerequisites  eDirectory 8.6 or above  GroupWise 6.5 or above  NICI (Novell International Cryptography Infrastructure)  PKI Snap-ins for ConsoleOne  Create a Certificate with GWCSRGEN

6 AdvisorEvents.com Secure the MTA  Add the Certificate to the MTA

7 AdvisorEvents.com Secure the MTA  Enable SSL on the MTA  Do not forget to enable SSL for the HTTP Monitoring

8 AdvisorEvents.com Secure the MTA  Test the Communication

9 AdvisorEvents.com Secure the POA Add the Certificate Add the Certificate Enable SSL and HTTP Monitoring Enable SSL and HTTP Monitoring What is “SSL Required”? What is “SSL Required”? Test Communication Test Communication

10 AdvisorEvents.com Demonstration Time

11 AdvisorEvents.com Secure the GWIA Gateway  eSMTP and Transport Layer Security (TLS) Supported by GroupWise 6.5 Supported by GroupWise 6.5  Add the Certificate  Enable SSL and HTTP Monitoring  Test Communication Telnet and EHLO Telnet and EHLO

12 AdvisorEvents.com Secure the WebAccess Gateway -The Agent  Add the Certificate  Enable SSL and HTTP Monitoring  Test Communication

13 AdvisorEvents.com Secure the WebAccess Gateway -The Application for Apache  Add SSL to Apache  Edit the *.CONF file Adminserv.conf, GWApache.conf, HTTPD.conf Adminserv.conf, GWApache.conf, HTTPD.conf Sys:\Apache\conf Sys:\Apache\conf LoadModule tls_module modules/mod_tls.nlm SecureListen 192.68.1.10:443 "SSL CertificateDNS" SecureListen 192.68.1.10:443 "SSL CertificateDNS"</IfModule>  Test –TCPCON and 443

14 AdvisorEvents.com Secure the WebAccess Gateway -The Application for Novonyx  Add SSL to Novonyx  Edit MAGNUS.CONF SYS:NOVONYX\SUITESPOT\HTTPS- \CONFIG SYS:NOVONYX\SUITESPOT\HTTPS- \CONFIG  Test

15 AdvisorEvents.com Secure the WebAccess Gateway -3 rd Party Cert and Wireless  Create a new custom KMO in eDirectory  Generate a CSR from the KMO object  Submit the CSR to an external CA, such as Verisign  Import the Certificate from Verisign into eDirectory  Reference the custom KMO in the *.CONF file of the web server, Example: Apache syntax is: LoadModule tls_module modules/mod_tls.nlm SecureListen 192.68.1.10:443 "VERISIGN-SSL" SecureListen 192.68.1.10:443 "VERISIGN-SSL"</IfModule>

16 AdvisorEvents.com Secure the Messenger  Add the Certificate  Enable SSL and HTTP Monitoring  Test Communication

17 AdvisorEvents.com Demonstration Time

18 AdvisorEvents.com Summary  Review  Tips, Tricks and Questions

19 AdvisorEvents.com A DVISOR S UMMIT Web Update Page AdvisorEvents.com/CNG0310p.nsf/w/cng0310ud This session WILL / WILL NOT have updates.

20 AdvisorEvents.com Thank You! Please remember to fill out your evaluation.


Download ppt "AdvisorEvents.com Secure GroupWise with SSL Author: Tay Kratzer & Gregg A. Hinchman Company: Novell, Inc. & Hinchman Consulting Session Number."

Similar presentations


Ads by Google