Browse Source

add SSL configuration for dovecot for secure imap/pop and STARTLS useage

master
LecygneNoir 7 years ago
parent
commit
32a78bd537
2 changed files with 16 additions and 0 deletions
  1. +13
    -0
      roles/mail/files/etc-dovecot-conf.d-10-ssl.conf
  2. +3
    -0
      roles/mail/tasks/main.yml

+ 13
- 0
roles/mail/files/etc-dovecot-conf.d-10-ssl.conf View File

@ -0,0 +1,13 @@
##
## SSL settings
##
# SSL/TLS support: yes, no, required. <doc/wiki/SSL.txt>
ssl = required
# PEM encoded X.509 SSL/TLS certificate and private key. They're opened before
# dropping root privileges, so keep the key file unreadable by anyone but
# root. Included doc/mkcert.sh can be used to easily generate self-signed
# certificate, just make sure to update the domains in dovecot-openssl.cnf
ssl_cert = </etc/ssl/mail.crt
ssl_key = </etc/ssl/mail.key

+ 3
- 0
roles/mail/tasks/main.yml View File

@ -56,6 +56,9 @@
- name: Copy dovecot config files - dovecot-mysql.conf
template: src=dovecot-mysql.conf dest=/etc/dovecot/ owner=root mode=655
- name: Copy dovecot config file - 10-ssl.conf
copy: src=etc-dovecot-conf.d-10-ssl.conf dest=/etc/dovecot/conf.d/10-ssl.conf owner=root mode=644
- name: Copy postfixadmin config files - dbconfig.inc.php pfxadmin
template: src=dbconfig.inc.php dest=/etc/postfixadmin/ owner=root mode=655

Loading…
Cancel
Save