diff options
author | Gregor Kleen <gkleen@yggdrasil.li> | 2022-05-05 14:26:32 +0200 |
---|---|---|
committer | Gregor Kleen <gkleen@yggdrasil.li> | 2022-05-05 14:26:32 +0200 |
commit | 056552a1dad6bec2c2255c05166cccf25fe56273 (patch) | |
tree | 66e8eda39c2355ffad4cea018c19bd92eeb9f9d6 | |
parent | 2c54894883689cb59cd371d226a4a19ee414d6df (diff) | |
download | nixos-056552a1dad6bec2c2255c05166cccf25fe56273.tar nixos-056552a1dad6bec2c2255c05166cccf25fe56273.tar.gz nixos-056552a1dad6bec2c2255c05166cccf25fe56273.tar.bz2 nixos-056552a1dad6bec2c2255c05166cccf25fe56273.tar.xz nixos-056552a1dad6bec2c2255c05166cccf25fe56273.zip |
...
-rw-r--r-- | hosts/surtr/email/default.nix | 6 |
1 files changed, 5 insertions, 1 deletions
diff --git a/hosts/surtr/email/default.nix b/hosts/surtr/email/default.nix index 9c56fb93..52955cd2 100644 --- a/hosts/surtr/email/default.nix +++ b/hosts/surtr/email/default.nix | |||
@@ -167,7 +167,11 @@ with lib; | |||
167 | 167 | ||
168 | systemd.services.postfix = { | 168 | systemd.services.postfix = { |
169 | preStart = concatMapStringsSep "\n" (domain: '' | 169 | preStart = concatMapStringsSep "\n" (domain: '' |
170 | cat /var/lib/acme/${domain}/key.pem /var/lib/acme/${domain}/full.pem > /var/lib/acme/${domain}/sni.pem | 170 | ( |
171 | umask 0037 | ||
172 | cat /var/lib/acme/${domain}/key.pem /var/lib/acme/${domain}/full.pem > /var/lib/acme/${domain}/sni.pem | ||
173 | chown acme:acme /var/lib/acme/${domain}/sni.pem | ||
174 | ) | ||
171 | '') ["bouncy.email" "mailin.bouncy.email" "mailsub.bouncy.email" "surtr.yggdrasil.li"]; | 175 | '') ["bouncy.email" "mailin.bouncy.email" "mailsub.bouncy.email" "surtr.yggdrasil.li"]; |
172 | 176 | ||
173 | serviceConfig.LoadCredential = [ | 177 | serviceConfig.LoadCredential = [ |