Best-practices for securing Kerio Connect, SSL certificate queries
Overview During a security audit of a Kerio Connect server, you may encounter a warning for “Secure Client Renegotiation.” This warning indicates that your server may permit TLS renegotiation, which c...
Overview Users may encounter an SSL certificate error where the certificate is incorrectly reported as expired. This issue can occur if outdated SSL certificates are present or if a firewall is inject...
Overview Having enabled two-factor authentication (2FA) in Kerio Connect, you would like to see which users have 2FA configured. Solution Starting with Kerio Connect Version 10.0.1, you can check whic...
Overview This article provides clarification on forced TLS encryption for outbound emails. Also, it provides a list of different DLP (Data Loss Prevention) software that can be used to protect the Ker...
Overview While renewing the SSL certificate, the new certificate is being marked as Untrusted with Unable to get certificate CRL warning. The Kerio Connect Configuration -> SSL certificates UI is show...
Overview The customer sees both IMAP and IMAP Secure protocols using Secure connection. The following is displayed under the Kerio Connect Administration > Status > Active Connections: You may receiv...
Overview You want to enable Two-Factor Authentication within your Kerio Connect Servers to improve security. You require guidance on how to gain access to and enable this feature. Solution Starting ...
Prerequisites In order to install an SSL certificate on iPhone/iPad, you need: iOS 12 or higher version Safari browser Configured IMAP/CalDAV/CardDAV or Exchange ActiveSync account Process Open your W...
Prerequisites Admin (root) access to Kerio Connect server Root Cause Kerio Connect was picking the self-signed certificate instead of the valid SSL. Process Stop Kerio Connect. Navigate to...
Overview This article describes the default behavior of the X-Envelope-To header for locally delivered messages in regards to BCC functionality. The BCC function is intended for the BCC recipients not...