summaryrefslogtreecommitdiffstats
path: root/roles/common/templates/etc/postfix
Commit message (Expand)AuthorAgeFiles
* Postfix: pin key material to our MX:es for fripost.org and its subdomains.Guilhem Moulin2021-01-261
* MSA: Update role to Debian Buster.Guilhem Moulin2020-05-191
* AEAD ciphers: Add EECDH+CHACHA20 macro.Guilhem Moulin2020-05-181
* Upgrade baseline to Debian 10.Guilhem Moulin2020-05-161
* Postfix: disable DNS lookups on the internal SMTPds.Guilhem Moulin2020-01-231
* MSA: Open 465/TCP for Email Submission over TLS.Guilhem Moulin2019-03-191
* submission: Prospective SPF checking.Guilhem Moulin2018-12-122
* MSA verification probes: enable opportunistic encryption.Guilhem Moulin2018-12-091
* MX: chroot postscreen(8), smtpd(8) and cleanup(8) daemons.Guilhem Moulin2018-12-091
* postfix: remove explicit default 'mail_owner = postfix'.Guilhem Moulin2018-12-061
* postfix ≥3.0: don't advertise SMTPUTF8 support.Guilhem Moulin2018-12-061
* Postfix: replace cdb & btree tables with lmdb ones.Guilhem Moulin2018-12-031
* Upgrade baseline to Debian Stretch.Guilhem Moulin2018-12-032
* Postfix: replace 'fifo' types with 'unix', as it's the new default.Guilhem Moulin2018-04-041
* postfix: enable XFORWARD command from our internal relays.Guilhem Moulin2017-06-021
* postfix: don't rate-limit our IPsec subnet.Guilhem Moulin2017-06-021
* Don't let authenticated client use arbitrary sender addresses.Guilhem Moulin2017-06-011
* Fix Ansible 2.2.0 compatibility of a Jinja2 template.Guilhem Moulin2017-01-141
* postfix: Remove obsolete templates tls_policy/relay_clientcerts.Guilhem Moulin2016-07-121
* Route all internal SMTP traffic through IPsec.Guilhem Moulin2016-07-102
* Postfix: don't share the master.cf between the instances.Guilhem Moulin2016-07-101
* postfix: Update to recommended TLS settings.Guilhem Moulin2016-05-181
* postfix: disable weak ciphers for the 'encrypt' TLS security level.Guilhem Moulin2016-05-181
* Postfix TLS policy: Store the fingerprint of the cert's pubkey, not of the ce...Guilhem Moulin2015-12-031
* Internal Postfix config: Disable TLS protocols <1.2 rather than enable 1.2 only.Guilhem Moulin2015-10-271
* Configure the list manager (Sympa).Guilhem Moulin2015-06-071
* Ensure have a TLS policy for each of our host we want to relay to.Guilhem Moulin2015-06-071
* Tell vim the underlying filetype of templates for syntax highlighting.Guilhem Moulin2015-06-071
* Replace IPSec tunnels by app-level ephemeral TLS sessions.Guilhem Moulin2015-06-072
* Outgoing SMTP proxy.Guilhem Moulin2015-06-071
* Don't use generic maps.Guilhem Moulin2015-06-071
* Assume a DNS entry for each role.Guilhem Moulin2015-06-071
* Don't use IPSec to relay messages to localhost.Guilhem Moulin2015-06-071
* Excplicitely make local services run on localhost.Guilhem Moulin2015-06-071
* typoGuilhem Moulin2015-06-071
* wibbleGuilhem Moulin2015-06-071
* Configure the MX:es.Guilhem Moulin2015-06-071
* Share master.cf accross all Postfix instances.Guilhem Moulin2015-06-071
* Use a dedicated SMTP port for samhain.Guilhem Moulin2015-06-071
* Postfix master (nullmailer) configurationGuilhem Moulin2015-06-071