简介
本文档介绍如何使用TLSVERIFY排除TLS传递问题。
有关思科邮件安全设备(ESA)上的邮件处理,您可能看到TLS未传送或返回错误或警报。
从设备上的CLI中,使用tlsverify测试从设备到外部域的TLS通信。
mail3.example.com> tlsverify
Enter the TLS domain to verify against:
[]> example.com
Enter the destination host to connect to. Append the port
(example.com:26) if you are not connecting on port 25:
[example.com]> mxe.example.com:25
Connecting to 1.1.1.1 on port 25.
Connected to 1.1.1.1 from interface 10.10.10.10.
Checking TLS connection.
TLS connection established: protocol TLSv1, cipher RC4-SHA.
Verifying peer certificate.
Verifying certificate common name mxe.example.com.
TLS certificate match mxe.example.com
TLS certificate verified.
TLS connection to 1.1.1.1 succeeded.
TLS successfully connected to mxe.example.com.
TLS verification completed.
tlsverify命令的上述输出展示从此设备到IP地址为1.1.1.1的目标设备的TLS验证。
相关信息