EFW Support

Support => EFW SMTP, HTTP, SIP, FTP Proxy Support => Topic started by: ENatter on Friday 13 August 2010, 09:22:08 pm



Title: Endian POP-Proxy and POP3S
Post by: ENatter on Friday 13 August 2010, 09:22:08 pm
After several attempts to fetch my POP-Accounts thru SSL (Port 995) I've encountred that aborting this is an Issue of the transparent POP3-Proxy (with SA and AV enabled). I've found an 3 year old knowledgebase entry 25, but this seems not to work in 2.4. Anyone success in using POP3S AND POP-Proxy  ???


Title: Re: Endian POP-Proxy and POP3S
Post by: craigray on Friday 10 September 2010, 04:37:21 pm
Yes I got it to work, but the downside is in my question that nobody wishes to answer...

Have been having some fun setting up our new firewall.  Have run into an issue with the POP3s proxy.  We use a secure POP3 system, and I understand that the clients need to be set-up so that they point to port 995, but do not send encrypted data, as the firewall then scans the content and then encrypts in handshaking with the POP3 server.  All of this works fine.


My question is for roaming laptop users:  Do I have to create two (2) accounts so that when they are not behind the firewall they can use secure email, or am I missing a solution here?  We currently do not have separate zones, only GREEN - RED, so putting the laptops on a zone is not a solution for me.  Thanks for any insight.

Craig Rayner


Title: Re: Endian POP-Proxy and POP3S
Post by: phqr58 on Wednesday 01 December 2010, 03:47:44 pm
The solution may be to:
1) enable a VPN (warrior), mobile users are externally validated.
    the VPN client depends on whether you enable IPSEC or OPEN VPN.
2) redirect the ports (RED to GREEN) to the e-mail server, this works very well.

ENDIAN is olution in the software UTM (not free)