73-9
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter 73 E-Mail Proxy
Authentication
Fields
POP3S/IMAP4S/SMTPS Authentication—Let you configure authentication methods for each of the
e-mail proxy types. You can select multiple methods of authentication.
• AAA—Select to require AAA authentication. This option requires a configured AAA server. The
user presents a username, server and password. Users must present both the VPN username and the
e-mail username, separated by the VPN Name Delimiter, only if the usernames are different from
each other.
• Certificate—Certificate authentication does not work for e-mail proxies in the current ASA software
release.
• Piggyback HTTPS—Select to require piggyback authentication.
This authentication scheme requires a user to have already established a Clientless SSL VPN
session. The user presents an e-mail username only. No password is required. Users must present
both the VPN username and the e-mail username, separated by the VPN Name Delimiter, only if the
usernames are different from each other.
SMTPS e-mail most often uses piggyback authentication because most SMTP servers do not allow
users to log in.