## ## SSL settings ## # SSL/TLS support: yes, no, required. # disable plain pop3 and imap, allowed are only pop3+TLS, pop3s, imap+TLS and imaps # plain imap and pop3 are still allowed for local connections ssl = required # PEM encoded X.509 SSL/TLS certificate and private key. They're opened before # dropping root privileges, so keep the key file unreadable by anyone but # root. Included doc/mkcert.sh can be used to easily generate self-signed # certificate, just make sure to update the domains in dovecot-openssl.cnf #GNUNUX ssl_cert = GNUNUX ssl_cert = <{{ general.tls_cert_directory }}/dovecot.crt ssl_key = <{{ general.tls_key_directory }}/dovecot.key {% for mail in general.mail.domain.mail_domains %} local_name {{ mail.imap_domainname }} { ssl_cert = <{{ general.tls_cert_directory }}/{{ mail.imap_domainname }}.crt ssl_key = <{{ general.tls_key_directory }}/{{ mail.imap_domainname }}.key } {% endfor %} local_name {{ general.network.last_server_name }} { ssl_cert = <{{ general.tls_cert_directory }}/dovecot.crt ssl_key = <{{ general.tls_key_directory }}/dovecot.key } #