Open with table of contents
Set up key encryption
|
If your Gateway is operating in FIPS Mode, PGP encryption will be unavailable as it is not compliant with the standards defined by FIPS 140-2. |
To set up key encryption and signing, complete the following two procedures:
-
Configure the Encryption options in the System Center.
Show me
- Import PGP and S/MIME certificates into the Partners area of the certificate store.
-
Configure the default global encryption settings that you want to use.
You can use your mail encryption endpoints to specify the encryption methods and keys that you need for your policy routes and content rules.
-
Enable logging to monitor encryption activity.
Show me
-
Point to the System tab.
- Under Encryption, click Encryption/Decryption Defaults.
- In the Encryption/Decryption Logging area, click .
-
In the list, select a logging level.
- Click Save.
- Define mail encryption endpoints to specify the encryption and/or signing methods that you need for your policy routes and content rules.
- Apply the configuration.
-
Configure the Policy Definition options in the Policy Center
Show me
- Create a new policy route or edit an existing policy route.
-
Enable encryption on the policy route.
- Optionally, override the policy route setting with a content rule.
- Optionally, modify the Encryption or decryption fails content rule to define the disposal action for the Email Gateway to take if an email message cannot be encrypted.
- Apply the configuration.
Tell me about...
How do I...