From fb8f02b349d66239c9975936d6c761a68480b320 Mon Sep 17 00:00:00 2001 From: Christophe Lyon Date: Wed, 8 Jul 2020 14:30:26 +0000 Subject: *tcwg-base: Update postfix configuration We now use the new relay setup as described in LSS-1368. Change-Id: I53df59b331807fe6a66e399775a8091d46e33cea --- tcwg-base/postfix-main.cf.in | 54 ++++---------------------------------------- 1 file changed, 5 insertions(+), 49 deletions(-) diff --git a/tcwg-base/postfix-main.cf.in b/tcwg-base/postfix-main.cf.in index 78a9b695..b957877a 100644 --- a/tcwg-base/postfix-main.cf.in +++ b/tcwg-base/postfix-main.cf.in @@ -1,50 +1,6 @@ -# See /usr/share/postfix/main.cf.dist for a commented, more complete version +# See http://www.postfix.org/COMPATIBILITY_README.html -- default to 2 on +# fresh installs. +compatibility_level = 2 - -# Debian specific: Specifying a file name will cause the first -# line of that file to be used as the name. The Debian default -# is /etc/mailname. -#myorigin = /etc/mailname - -smtpd_banner = $myhostname ESMTP $mail_name (Ubuntu) -biff = no - -# appending .domain is the MUA's job. -append_dot_mydomain = no - -# Uncomment the next line to generate "delayed mail" warnings -#delay_warning_time = 4h - -readme_directory = no - -# TLS parameters -smtpd_tls_cert_file=/etc/ssl/certs/ssl-cert-snakeoil.pem -smtpd_tls_key_file=/etc/ssl/private/ssl-cert-snakeoil.key -smtpd_use_tls=yes -smtpd_tls_session_cache_database = btree:${data_directory}/smtpd_scache -smtp_tls_session_cache_database = btree:${data_directory}/smtp_scache - -# See /usr/share/doc/postfix/TLS_README.gz in the postfix-doc package for -# information on enabling SSL in the smtp client. - -smtpd_relay_restrictions = permit_mynetworks permit_sasl_authenticated defer_unauth_destination -myhostname = @@MYHOSTNAME@@ -alias_maps = hash:/etc/aliases -alias_database = hash:/etc/aliases -myorigin = /etc/mailname -mydestination = @@MYHOSTNAME@@, localhost.localdomain, localhost -relayhost = [@@MAILHOST@@]:@@MAILPORT@@ -mynetworks = 127.0.0.0/8 [::ffff:127.0.0.0]/104 [::1]/128 -mailbox_size_limit = 0 -recipient_delimiter = + -inet_interfaces = loopback-only -inet_protocols = all - -smtp_sasl_auth_enable = yes -smtp_sasl_security_options = noanonymous -smtp_sasl_password_maps = hash:/etc/postfix/sasl_password -smtp_use_tls = yes -smtp_tls_security_level = encrypt -smtp_tls_note_starttls_offer = yes - -smtp_tls_CAfile = /etc/ssl/certs/ca-certificates.crt +myhostname = dev-01.tcwglab +relayhost = [172.31.128.20]:25 -- cgit v1.2.3