summaryrefslogtreecommitdiff
path: root/hosts
diff options
context:
space:
mode:
Diffstat (limited to 'hosts')
-rw-r--r--hosts/surtr/email/ca/index.txt2
-rw-r--r--hosts/surtr/email/ca/serial2
-rw-r--r--hosts/surtr/email/default.nix1
3 files changed, 3 insertions, 2 deletions
diff --git a/hosts/surtr/email/ca/index.txt b/hosts/surtr/email/ca/index.txt
index 5010b5fe..711193b2 100644
--- a/hosts/surtr/email/ca/index.txt
+++ b/hosts/surtr/email/ca/index.txt
@@ -1 +1 @@
V 320502135347Z 01 unknown /CN=gkleen V 320502142416Z 02 unknown /CN=gkleen
diff --git a/hosts/surtr/email/ca/serial b/hosts/surtr/email/ca/serial
index 9e22bcb8..75016ea3 100644
--- a/hosts/surtr/email/ca/serial
+++ b/hosts/surtr/email/ca/serial
@@ -1 +1 @@
02 03
diff --git a/hosts/surtr/email/default.nix b/hosts/surtr/email/default.nix
index 95885637..aebe03db 100644
--- a/hosts/surtr/email/default.nix
+++ b/hosts/surtr/email/default.nix
@@ -121,6 +121,7 @@ with lib;
121 command = "smtpd"; 121 command = "smtpd";
122 args = [ 122 args = [
123 "-o" "smtpd_tls_wrappermode=yes" 123 "-o" "smtpd_tls_wrappermode=yes"
124 "-o" "smtpd_tls_ask_ccert=yes"
124 "-o" "smtpd_tls_req_ccert=yes" 125 "-o" "smtpd_tls_req_ccert=yes"
125 "-o" "smtpd_client_restrictions=permit_tls_all_clientcerts,reject" 126 "-o" "smtpd_client_restrictions=permit_tls_all_clientcerts,reject"
126 "-o" "smtpd_recipient_restrictions=reject_unauth_pipelining,reject_non_fqdn_recipient,reject_unknown_recipient_domain,permit_tls_all_clientcerts,reject" 127 "-o" "smtpd_recipient_restrictions=reject_unauth_pipelining,reject_non_fqdn_recipient,reject_unknown_recipient_domain,permit_tls_all_clientcerts,reject"