Specifies the Transport Layer Security (TLS) policy setting for the domain name
Syntax
email-analysis domain <domain_name> tls-policy {none | opportunistic | mandatory | verify}
Parameters
<domain_name>
Specifies a domain name to add.
tls-policy {none | opportunistic | mandatory | verify}
Specifies the TLS policy setting:
None provides no support for incoming TLS connections.
Opportunistic receiving mode option accepts emails over connections that may be either TLS encrypted or not encrypted, depending on the upstream configuration (both TLS and non-TLS connections are supported).
Mandatory receiving mode option requires TLS encryption for the connection. If the upstream device does not support TLS, the emails are not received by the Email MPS and remain on the upstream device until the connection is modified to allow for non-encrypted delivery.
Verify verifies the TLS policy.
Example
The following example specifies a TLS policy setting of Opportunistic for domain at1.com.
hostname (config) # email-analysis domain at1.com tls-policy opportunistic
User role
Admin or Operator
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Email Security — Server: Release 9.0.3