54 lines
1.7 KiB
CFEngine3
54 lines
1.7 KiB
CFEngine3
|
# /etc/postfix/main.cf
|
||
|
smtpd_banner = $myhostname ESMTP moeny.ai
|
||
|
biff = no
|
||
|
append_dot_mydomain = no
|
||
|
readme_directory = no
|
||
|
|
||
|
# TLS parameters
|
||
|
smtp_use_tls = yes
|
||
|
smtp_tls_security_level = encrypt
|
||
|
smtp_tls_session_cache_database = btree:${data_directory}/smtp_scache
|
||
|
|
||
|
smtpd_tls_auth_only = yes
|
||
|
smtpd_tls_received_header = no
|
||
|
smtpd_tls_session_cache_timeout = 3600s
|
||
|
smtpd_use_tls = yes
|
||
|
smtpd_tls_security_level = encrypt
|
||
|
smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache
|
||
|
smtpd_tls_cert_file = /etc/letsencrypt/live/mail01.moeny.ai/fullchain.pem
|
||
|
smtpd_tls_key_file = /etc/letsencrypt/live/mail01.moeny.ai/privkey.pem
|
||
|
smtpd_relay_restrictions = permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination
|
||
|
|
||
|
# Enable SMTP Authentication
|
||
|
smtpd_sasl_auth_enable = yes
|
||
|
smtpd_sasl_type = dovecot
|
||
|
smtpd_sasl_path = private/auth
|
||
|
|
||
|
virtual_transport = lmtp:unix:private/dovecot-lmtp
|
||
|
virtual_mailbox_domains = /etc/postfix/virtual_mailbox_domains
|
||
|
|
||
|
myhostname = mail01.moeny.ai
|
||
|
myorigin = /etc/mailname
|
||
|
message_size_limit = 50000000
|
||
|
mydestination = localhost.$mydomain, localhost
|
||
|
relayhost =
|
||
|
mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128
|
||
|
mailbox_size_limit = 0
|
||
|
recipient_delimiter = +
|
||
|
inet_interfaces = all
|
||
|
inet_protocols = all
|
||
|
alias_maps = hash:/etc/aliases
|
||
|
alias_database = hash:/etc/aliases
|
||
|
virtual_alias_maps = hash:/etc/postfix/virtual_alias
|
||
|
|
||
|
milter_default_action = accept
|
||
|
milter_protocol = 6
|
||
|
smtpd_milters = inet:127.0.0.1:8892
|
||
|
non_smtpd_milters = $smtpd_milters
|
||
|
|
||
|
policyd-spf_time_limit = 3600
|
||
|
smtpd_recipient_restrictions =
|
||
|
permit_mynetworks,
|
||
|
permit_sasl_authenticated,
|
||
|
reject_unauth_destination,
|
||
|
check_policy_service unix:private/policyd-spf
|