be39b05c56
An extra systemd service file will call sscg to setup a secure initial certificate if it does not exist. The new default imapd.conf file will reference that cert.
25 lines
828 B
Plaintext
25 lines
828 B
Plaintext
configdirectory: /var/lib/imap
|
|
partition-default: /var/spool/imap
|
|
admins: cyrus
|
|
sievedir: /var/lib/imap/sieve
|
|
sendmail: /usr/sbin/sendmail
|
|
hashimapspool: true
|
|
sasl_pwcheck_method: saslauthd
|
|
sasl_mech_list: PLAIN LOGIN
|
|
allowplaintext: no
|
|
defaultdomain: mail
|
|
|
|
# These three files will automatically be generated by sustemd
|
|
tls_cert_file: /etc/pki/cyrus-imapd/cyrus-imapd.pem
|
|
tls_key_file: /etc/pki/cyrus-imapd/cyrus-imapd-key.pem
|
|
tls_ca_file: /etc/pki/cyrus-imapd/cyrus-imapd-ca.pem
|
|
|
|
# Support system-wide crypto policy
|
|
# https://fedoraproject.org/wiki/Packaging:CryptoPolicies
|
|
# https://bugzilla.redhat.com/show_bug.cgi?id=1179212
|
|
# Comment out the below line to revert to the compiled-in default of "DEFAULT".
|
|
tls_ciphers: PROFILE=SYSTEM
|
|
|
|
# uncomment this if you're operating in a DSCP environment (RFC-4594)
|
|
# qosmarking: af13
|