We're having issues getting TLS 1.2 for SMTP to work.
System Software: 062.121.001.04300
System Software: 061.121.225.14700
(I'm aware this one needs an update, also the downloads page for the products is out of date showing the most recent firmware as 2016)
According to the following document, both should support TLS 1.2, yet neither show it under Properties\Security\Encryption
The best I get is "TLSv1.0 Enablement" on the 7545 under Properties\Security\Encryption, where you can just turn it on and off.
Is there additional setup that's needed to configure TLSv1.2? Right now SMTP is broken for O365 on these.
At www.xerox.com/security is a Software Look up Table that can also take you to SW. There is a link for SW 062.121.001.04300 (03/21).
Also, take a look at this Xerox Support Forum Post as it might provide additonal information for you.
I hope this helps.
I have been through there and those firmwares have not addressed the SMTP issues we're having at multiple clients suddenly as of mid-October. We also have a Xerox vendor that we work with that has updated to the newest possible firmwares, yet still no fix for the issue.
Unfortunately this means we have multiple businesses that can no longer Scan-to-Email. No changes have been made to firewalls/switches or to servers that should have an impact on network packets either; and those settings have all been double and triple-checked.
Also, from the thread linked, it looks as though the user is on v073 of the firmware for that device and still has broken TLS in regards to O365.
Is it possible that these devices will not get updated to support TLS 1.2?
I also tried the Gmail workaround with the following settings:
- Port: 587
- Authenticated User: Yes
- STARTTLS (if available)
I also set the From e-mail address to the same in the SMTP settings, and I enabled "Allow Less Secure Apps" as per: https://www.support.xerox.com/en-us/article/en/GjTY6lF9iL5A9jUvnnWaiA
The test under SMTP settings is successful 100% of the time now, but when sending to an e-mail address it fails. The e-mail addresses are valid, I've tried sending to both O365 and Google addresses, but each time I get a error printout that just says "Job Status: FAILED".
The two main clients of ours that this affects are on a domain and a workgroup. Both have SMB scanning setup, but SMBv1 is required. So that's holding them steady for now.
I'm also aware of the SMTP Relay method where you setup a SMTP Relay on-site on a server, but that's not applicable in a Workgroup for one, and for another it's less secure than using the outdated TLS 1.0 and 1.1 for SMTP.
I learned today from 2nd-level tech support that there is now a SPAR version of firmware for the 7556 that supports TLS 1.2, 62.121.001.24900.
Its new. The Spar wasn't released yet since they made a new spar for WorkCentre 78XX series.
Will check it out :
IMPORTANT: You need to read the documentations info the firmware download zip file. Respect version of software to upgrade.
Xerox has removed the SPAR firmware from the download, or file is not longer available for the firmware SPAR 061.121.001.04300
You don't have permission to access /pub/drivers/WC7525_WC7530_WC7535_WC7545_WC7556/firmware/win10/ar/WorkCentre_7500-system-sw06212100104300.zip on this server.
I try to test the SPAR firmware but the file is not available.
That's nice. Assuming there was a problem with the firmware which is why it was pulled? Would be nice to hear something from Xerox about this issue.
The link to download the Firmware 062.121.001.04300 (3/21) mentioned in the prior post works.
However, there is a newer SPAR Firmware 062.121.002.14700 (6/22) available.
Please work with your Customer Support organization to obtain the latest Firmware.
I hope this helps.
Will this firmware be publicly available at all, or do we have to go through our vendors to get it? We have two clients with these Xerox machines that need the firmware update, we've had to set them up with SMB scanning as a workaround.