|
Messaging Server - delivery and mailclients
| Messaging Server - screenshots
|
Messaging Server - components |
| |
|
|
|
Entrust Entelligence Messaging Server is delivered on an appliance platform, offering simplified email security with broader support for email encryption standards including OpenPGP, S/MIME and SSL encryption for web-based email. The Messaging Server's web administration interface has been improved for easier management, administration, configuration and reporting of email encryption capabilities, including many self-service capabilities to reduce administration costs. Notification Messages can be configured as Text/plain notification messages. this ability of how notification messages are sent is to minimize message blocking in anti-spam filters.
The appliance is based on a Red Hat Enterprise Linux version 4, with ablitiy of OS refresh for maintainability. There is an improved update management, update is possible from ISO images, in addition to CD-ROMs. The hardware platform is IBM xSeries 3500 or newer.
|
 |
 |
 |
Messaging Server Appliance source: Entrust Inc. |
|
This email encryption appliance delivers |
 |
Embedded, standards-based Certification Authority that transparently retrieves existing S/MIME and OpenPGP external user certificates; generates new S/MIME proxy certificates, for BOTH internal and external users, when necessary |
 |
Flexible encryption options including automatic, security policy driven encryption based on message header or message content, end -to-end encryption for Microsoft Outlook, and user-initiated boundary encryption through email plug-ins for Microsoft Outlook and Lotus Notes |
 |
Flexible inbound and outbound email delivery - allows external recipients to communicate securely using the encryption standard of their choice, including S/MIME, Open PGP, WebMail Pull and WebMail Push |
 |
Ease-of-use, simplified email encryption for end users |
 |
Web administration interface, system dashboard and simplified deployment |
 |
Clustering capabilities to enable load-sharing and fail-over |
 |
Offline encryption for external recipients and senders |
 |
Server-side Distribution List (DL) expansion |
 |
Management of external certificates and keys |
 |
Support for Microsoft Certification Authority and Entrust Authority Security Manager |
 |
Robust system monitoring, auditing and reporting |
 |
Policy-based security at your organizational boundary |
 |
Support for secure web-based email |
 |
Support for mobile email clients such as Blackberry and browser-enabled cell phones |
 |
Highly customizable deployment through integration with optional solution components such as portal authentication systems, content control, email archiving, storage area networks, anti-spam / anti-virus, SNMP monitoring and multi-factor authentication |
|
Clustering capabilities to enable load-sharing and |
The Messaging Server makes it possible to cluster multiple Messaging Server appliances to support load-sharing, fail-over and disaster recovery planning requirements for your email security solution. A Messaging Server system can scale to fit the needs of the network. To accomplish this, new Messaging Server appliances are added to a Messaging Server cluster to expand its capacity
You can add a proxy Web server to better manage requests from: • WebMail Pull users logging into Messaging Server’s user application • WebMail Push Users authenticating to Messaging Server • external users uploading a credential or obtaining a credential • user administrators accessing the administration application interface working with user e-mail accounts
When the proxy Web server is in operation, browser-based clients connect to the proxy, not directly to Messaging Server or a Messaging Server Web Only node (WON). The Messaging Server appliance is separated from the client connections by another layer of network architecture.
|
|
|
Web only nodes |
All Messaging Server nodes have the capability of handling WebMail. In some instances, however, you may not want to place a full Messaging Server node in less secure areas of your network. Therefore an EMS appliance can be configured as a Web-only node (WON) when it is initially configured. A Web-only node is a specialized configuration of Messaging Server designed specifically to work with Web-Mail in a multi-layer firewall environment. Many companies have policies designed to restrict the type of data that can be stored in the outer layers of their network firewall system. Web-only nodes are designed to be placed in these more exposed areas of the network. They do not have access to Messaging Server Digital IDs and cannot influence cluster configuration.
|
Certification Authority (On-Board, MS, Entrust) |
The Messaging Server includes an on-board Certification Authority that can seamlessly issue certificates on behalf of internal users and is automatically configured during system startup.
Support for Offboard Microsoft Certification Authority and Entrust Authority Security Manager: The Messaging Server supports email encryption for email security customers who have deployed certificates from the Microsoft CA or Entrust Authority Security Manager to their internal users. The Messaging Server also supports retrieval of external S/MIME certificates and OpenPGP encryption keys from external users.
|
Web admin interface and simplified deployment |
The Messaging Server email encryption appliance is a comprehensive, secure platform that includes a fully configured operating system and supporting applications. It enables backup and restore capabilities in addition to online updates. The improve web administration interface provides simplified management, administration and configuration capabilities including the ability to assign multiple roles for segregation of system configuration and administration duties.
|
Monitoring and Reporting |
In system reporting there are pre-defined reports for system health, status and usage. The report generation can happen scheduled or on demand. Of course there is export in .csv format possible. There is an enhanced dashboard (by cluster) with drill down capabilities for system monitoring and application level SNMP support
Messages can be tracked based upon information from the sender.Of course there is queuing of messages which cannot be delivered due to system or network issues (master node failure, LDAP unavailable, etc.). And in case of web-mail, there is a tool Mailbox Managemen, e.g. for deletion of old and unread messages.
|
 |
|
APIs for integration |
Administration Web Services Interface Beginning with version 8.1-1, Entrust Entelligence Messaging Server provides a Web Services interface for performing some administrative operations programmatically
You may use the provided Web Services Definition Language (WSDL) file to integrate with Entrust Entelligence Messaging Server. Alternatively, you may use the provided JavaAPI to integrate with Entrust Entelligence Messaging Server - Messaging Administration Web Service
There are additional files and scripts like the Web Services Definition Language File for WebMail Push, or the WebMail Mail Store Sample Backup Script (mailbackup.bsh) and WebMail Mail Store Sample Management Script.
|
|
|
|
|
|
|