How can I report on inbound TLS connections?


This article applies to:

  • Trustwave MailMarshal (SEG)

Question:

  • How can I report on inbound TLS connections?

Response:

MailMarshal SMTP can send and receive email over TLS (Transport Layer Security, or SSL tunnel). For information about setting up TLS, see Trustwave Knowledgebase article Q11636.

  • Outbound messages delivered using TLS are classified as "Delivered successfully over TLS" and you can report on this classification using MailMarshal Reports or Marshal Reporting Console.
  • For inbound messages, you can use the Content Analysis rule conditions "Where message was/was not received via TLS" and "Where the negotiated TLS parameters match criteria" to log classifications for reporting.
  • TLS cipher strength is only recorded in the Receiver text log file. This information is not available for reports. You can require strong ciphers; see Trustwave Knowledgebase article Q14317

Note:

Earlier versions of this article provided a workaround applicable to MailMarshal 6.X. This workaround is no longer required.

Last Modified 3/1/2020.
https://support.trustwave.com/kb/KnowledgebaseArticle13829.aspx