diff options
| -rw-r--r-- | ymir.nix | 2 |
1 files changed, 1 insertions, 1 deletions
| @@ -444,6 +444,7 @@ in rec { | |||
| 444 | ''}'']; | 444 | ''}'']; |
| 445 | sslCert = "/var/lib/acme/yggdrasil.li/fullchain.pem"; | 445 | sslCert = "/var/lib/acme/yggdrasil.li/fullchain.pem"; |
| 446 | sslKey = "/var/lib/acme/yggdrasil.li/key.pem"; | 446 | sslKey = "/var/lib/acme/yggdrasil.li/key.pem"; |
| 447 | useDANE = true; | ||
| 447 | config = { | 448 | config = { |
| 448 | #the dh params | 449 | #the dh params |
| 449 | smtpd_tls_dh1024_param_file = config.security.dhparams.params."postfix-1024".path; | 450 | smtpd_tls_dh1024_param_file = config.security.dhparams.params."postfix-1024".path; |
| @@ -469,7 +470,6 @@ in rec { | |||
| 469 | smtp_tls_loglevel = "1"; | 470 | smtp_tls_loglevel = "1"; |
| 470 | 471 | ||
| 471 | smtp_dns_support_level = "dnssec"; | 472 | smtp_dns_support_level = "dnssec"; |
| 472 | smtp_tls_security_level = "dane"; | ||
| 473 | 473 | ||
| 474 | transport_maps = ''regexp:${pkgs.writeText "transport" '' | 474 | transport_maps = ''regexp:${pkgs.writeText "transport" '' |
| 475 | /@(rpgs?|lists?|l)\.(.*\.)?(yggdrasil\.li|praseodym\.org|141\.li|xmpp\.li|kleen\.li|dirty-haskell\.org|nights\.email|yggdrasil|localdomain|localhost|ymir)$/ mlmmj: | 475 | /@(rpgs?|lists?|l)\.(.*\.)?(yggdrasil\.li|praseodym\.org|141\.li|xmpp\.li|kleen\.li|dirty-haskell\.org|nights\.email|yggdrasil|localdomain|localhost|ymir)$/ mlmmj: |
