When creating either a self signed certificate or a certificate request, Kerio MailServer uses 1024 bit encryption. You may however prefer stronger encryption, especially if you are using a signing authority such as GoDaddy, which requires 2048 bit encryption. In this case, you may use the free OpenSSL utility that is available with most Unix or Linux based systems. There is also a version of the tool available for the Windows Operating system.
Self signed certificates generated by Kerio MailServer carry a default expiration of 1 year. The OpenSSL utility will also allow you to define your own expiration, for example 3 years. For specific instructions and usage of the OpenSSL utility, read the Knowledgebase article.
Create an SSL certificate with strong, 2048 bit encryption
Posted by Peter Zendzian in Wednesday, October 7th 2009 under: Email, Kerio Mail Server, Linux, Security
Categories
-
- Announcements (7)
- CentOs (1)
- Change Management (1)
- Debian (4)
- Email (4)
- HIPPA (3)
- InterWorx (3)
- Kerio Mail Server (8)
- Linux (9)
- PCI (19)
- PHP (2)
- Security (15)
- Sysadmin (12)
- Ubuntu (2)
- VPS Servers (2)
- Xen (1)
Recent Posts
Search
Archives
Tags
- activesync amazon ec2 apache assesment caller-id CentOs change cli command line Control Panel credit card credit card payment credit cards stolen data breach Debian dsbl dss Email HIPPA Hosting hosting control panel InterWorx Interworx-CP kerio lamp Linux log files mail server openssl PCI permissions qsa search Security sender policy shared hosting Small Business spam spf spoofing Sysadmin Ubuntu vps VPS Servers Xen
Blogroll
Links
- ZZ Servers Managing Partner to speak at #Shmoocon #Firetalks
- Server cabinet door alarm
- Managing Partner speaking to College of Charleston Computer Science / ACM
- OSSEC Daily Reports
- Vyatta border gateway passthrough filtering
- ZZ Servers Expands to Equinix Ashburn
- Kerio connect 7.1 offers native support for BlackBerry
- The surprising truth about what motivates us
- PCI Data Security Standards Rock Video
- Kerio Connect links Apple iPad to Business Communications
- sj7trunks in Zabbix & OSSEC: Open-Source complia…
- Shawn Oswald in PCI Data Security Standards Rock Vi…
- PCI Free in PCI Data Security Standards Rock Vi…
- Secure USB Flas… in Zabbix & OSSEC: Open-Source complia…
- Has anyone trie… in Zabbix & OSSEC: Open-Source complia…
- monicauk in Anti Virus and PCI Compliance
- joanfronske in Kerio MailServer and Mac OS X Snow …
- Andy in Amazon confirms EC2/S3 does not mee…
- Twitted by Juli… in Amazon confirms EC2/S3 does not mee…
- Zen Dzign - Ama… in Level 2 Merchants Required to Have …
- Batteries.com Credit Card Data Stolen (3)
- Zabbix & OSSEC: Open-Source compliance and security monitoring (3)
- Amazon confirms EC2/S3 does not meet PCI guidelines (2)
- PCI Data Security Standards Rock Video (2)
- Level 2 Merchants Required to Have On-Site Assessment by QSA (1)
- Kerio MailServer and Mac OS X Snow Leopard (1)
- Anti Virus and PCI Compliance (1)
Be First To Comment
Related Post
Leave Your Comments Below