Advertisement
Guest User

doveconf

a guest
Dec 5th, 2016
113
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 25.54 KB | None | 0 0
  1. (root@a ~) doveconf
  2. # 2.2.devel (f7f4b65): /etc/dovecot/dovecot.conf
  3. # Pigeonhole version 0.4.devel (53a3582)
  4. # OS: Linux 3.16.0-4-amd64 x86_64 Debian 8.6
  5. # NOTE: Send doveconf -n output instead when asking for help.
  6. auth_anonymous_username = anonymous
  7. auth_cache_negative_ttl = 1 hours
  8. auth_cache_size = 0
  9. auth_cache_ttl = 1 hours
  10. auth_debug = no
  11. auth_debug_passwords = no
  12. auth_default_realm =
  13. auth_failure_delay = 2 secs
  14. auth_gssapi_hostname =
  15. auth_krb5_keytab =
  16. auth_master_user_separator =
  17. auth_mechanisms = plain login
  18. auth_policy_hash_mech = sha256
  19. auth_policy_hash_nonce =
  20. auth_policy_hash_truncate = 12
  21. auth_policy_reject_on_fail = no
  22. auth_policy_request_attributes = login=%{orig_username} pwhash=%{hashed_password} remote=%{real_rip}
  23. auth_policy_server_api_header =
  24. auth_policy_server_timeout_msecs = 2000
  25. auth_policy_server_url =
  26. auth_proxy_self =
  27. auth_realms =
  28. auth_socket_path = auth-userdb
  29. auth_ssl_require_client_cert = no
  30. auth_ssl_username_from_cert = no
  31. auth_stats = no
  32. auth_use_winbind = no
  33. auth_username_chars = abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ01234567890.-_@
  34. auth_username_format = %Lu
  35. auth_username_translation =
  36. auth_verbose = no
  37. auth_verbose_passwords = no
  38. auth_winbind_helper_path = /usr/bin/ntlm_auth
  39. auth_worker_max_count = 30
  40. base_dir = /var/run/dovecot
  41. config_cache_size = 1 M
  42. debug_log_path =
  43. default_client_limit = 1000
  44. default_idle_kill = 1 mins
  45. default_internal_user = dovecot
  46. default_login_user = dovenull
  47. default_process_limit = 100
  48. default_vsz_limit = 256 M
  49. deliver_log_format = msgid=%m: %$
  50. dict {
  51. sqlquota = mysql:/etc/dovecot/dovecot-dict-sql.conf
  52. }
  53. dict_db_config =
  54. director_consistent_hashing = no
  55. director_doveadm_port = 0
  56. director_flush_socket =
  57. director_mail_servers =
  58. director_servers =
  59. director_user_expire = 15 mins
  60. director_user_kick_delay = 2 secs
  61. director_username_hash = %u
  62. disable_plaintext_auth = yes
  63. dotlock_use_excl = yes
  64. doveadm_allowed_commands =
  65. doveadm_api_key =
  66. doveadm_password =
  67. doveadm_port = 0
  68. doveadm_socket_path = doveadm-server
  69. doveadm_username = doveadm
  70. doveadm_worker_count = 0
  71. dsync_alt_char = _
  72. dsync_features =
  73. dsync_remote_cmd = ssh -l%{login} %{host} doveadm dsync-server -u%u -U
  74. first_valid_gid = 1
  75. first_valid_uid = 500
  76. haproxy_timeout = 3 secs
  77. haproxy_trusted_networks =
  78. hostname =
  79. imap_capability =
  80. imap_client_workarounds =
  81. imap_hibernate_timeout = 0
  82. imap_id_log =
  83. imap_id_send = name *
  84. imap_idle_notify_interval = 2 mins
  85. imap_logout_format = in=%i out=%o
  86. imap_max_line_length = 64 k
  87. imap_metadata = no
  88. imap_urlauth_host =
  89. imap_urlauth_logout_format = in=%i out=%o
  90. imap_urlauth_port = 143
  91. imapc_cmd_timeout = 5 mins
  92. imapc_features =
  93. imapc_host =
  94. imapc_list_prefix =
  95. imapc_master_user =
  96. imapc_max_idle_time = 29 mins
  97. imapc_max_line_length = 0
  98. imapc_password =
  99. imapc_port = 143
  100. imapc_rawlog_dir =
  101. imapc_sasl_mechanisms =
  102. imapc_ssl = no
  103. imapc_ssl_verify = yes
  104. imapc_user =
  105. import_environment = TZ CORE_OUTOFMEM CORE_ERROR LISTEN_PID LISTEN_FDS
  106. info_log_path =
  107. instance_name = dovecot
  108. last_valid_gid = 0
  109. last_valid_uid = 0
  110. lda_mailbox_autocreate = no
  111. lda_mailbox_autosubscribe = no
  112. lda_original_recipient_header =
  113. libexec_dir = /usr/lib/dovecot
  114. listen = *,[::]
  115. lmtp_address_translate =
  116. lmtp_hdr_delivery_address = final
  117. lmtp_proxy = no
  118. lmtp_rcpt_check_quota = no
  119. lmtp_save_to_detail_mailbox = no
  120. lmtp_user_concurrency_limit = 0
  121. lock_method = fcntl
  122. log_path = syslog
  123. log_timestamp = "%Y-%m-%d %H:%M:%S "
  124. login_access_sockets =
  125. login_greeting = Dovecot ready.
  126. login_log_format = %$: %s
  127. login_log_format_elements = user=<%u> method=%m rip=%r lip=%l mpid=%e %c %k
  128. login_plugin_dir = /usr/lib/dovecot/modules/login
  129. login_plugins =
  130. login_proxy_max_disconnect_delay = 0
  131. login_source_ips =
  132. login_trusted_networks =
  133. mail_access_groups =
  134. mail_always_cache_fields =
  135. mail_attachment_dir =
  136. mail_attachment_fs = sis posix
  137. mail_attachment_hash = %{sha1}
  138. mail_attachment_min_size = 128 k
  139. mail_attribute_dict =
  140. mail_cache_fields = flags
  141. mail_cache_min_mail_count = 0
  142. mail_chroot =
  143. mail_debug = yes
  144. mail_fsync = optimized
  145. mail_full_filesystem_access = no
  146. mail_gid =
  147. mail_home = /var/vmail/%d/%n
  148. mail_location = maildir:~/
  149. mail_log_prefix = "%s(%u): "
  150. mail_max_keyword_length = 50
  151. mail_max_lock_timeout = 0
  152. mail_max_userip_connections = 500
  153. mail_never_cache_fields = imap.envelope
  154. mail_nfs_index = no
  155. mail_nfs_storage = no
  156. mail_plugin_dir = /usr/lib/dovecot/modules
  157. mail_plugins = quota acl fts fts_solr
  158. mail_prefetch_count = 0
  159. mail_privileged_group =
  160. mail_save_crlf = no
  161. mail_server_admin =
  162. mail_server_comment =
  163. mail_shared_explicit_inbox = no
  164. mail_temp_dir = /tmp
  165. mail_temp_scan_interval = 1 weeks
  166. mail_uid =
  167. mailbox_idle_check_interval = 30 secs
  168. mailbox_list_index = no
  169. mailbox_list_index_very_dirty_syncs = no
  170. maildir_broken_filename_sizes = no
  171. maildir_copy_with_hardlinks = yes
  172. maildir_empty_new = no
  173. maildir_stat_dirs = no
  174. maildir_very_dirty_syncs = no
  175. managesieve_client_workarounds =
  176. managesieve_implementation_string = Dovecot Pigeonhole
  177. managesieve_logout_format = bytes=%i/%o
  178. managesieve_max_compile_errors = 5
  179. managesieve_max_line_length = 65536
  180. managesieve_notify_capability = mailto
  181. managesieve_sieve_capability = fileinto reject envelope encoded-character vacation subaddress comparator-i;ascii-numeric relational regex imap4flags copy include variables body enotify environment mailbox date index ihave duplicate mime foreverypart extracttext
  182. master_user_separator =
  183. mbox_dirty_syncs = yes
  184. mbox_dotlock_change_timeout = 2 mins
  185. mbox_lazy_writes = yes
  186. mbox_lock_timeout = 5 mins
  187. mbox_md5 = apop3d
  188. mbox_min_index_size = 0
  189. mbox_read_locks = fcntl
  190. mbox_very_dirty_syncs = no
  191. mbox_write_locks = dotlock fcntl
  192. mdbox_preallocate_space = no
  193. mdbox_purge_preserve_alt = no
  194. mdbox_rotate_interval = 0
  195. mdbox_rotate_size = 2 M
  196. mmap_disable = no
  197. namespace {
  198. disabled = no
  199. hidden = no
  200. ignore_on_failure = no
  201. inbox = no
  202. list = yes
  203. location = maildir:%%h/:INDEXPVT=~/Shared/%%u
  204. order = 0
  205. prefix = Shared/%%u/
  206. separator = /
  207. subscriptions = no
  208. type = shared
  209. }
  210. namespace inbox {
  211. disabled = no
  212. hidden = no
  213. ignore_on_failure = no
  214. inbox = yes
  215. list = yes
  216. location =
  217. mailbox Archiv {
  218. auto = no
  219. autoexpunge = 0
  220. autoexpunge_max_mails = 0
  221. comment =
  222. driver =
  223. special_use = \Archive
  224. }
  225. mailbox Archive {
  226. auto = subscribe
  227. autoexpunge = 0
  228. autoexpunge_max_mails = 0
  229. comment =
  230. driver =
  231. special_use = \Archive
  232. }
  233. mailbox Archives {
  234. auto = no
  235. autoexpunge = 0
  236. autoexpunge_max_mails = 0
  237. comment =
  238. driver =
  239. special_use = \Archive
  240. }
  241. mailbox "Deleted Messages" {
  242. auto = no
  243. autoexpunge = 0
  244. autoexpunge_max_mails = 0
  245. comment =
  246. driver =
  247. special_use = \Trash
  248. }
  249. mailbox Drafts {
  250. auto = subscribe
  251. autoexpunge = 0
  252. autoexpunge_max_mails = 0
  253. comment =
  254. driver =
  255. special_use = \Drafts
  256. }
  257. mailbox Entwürfe {
  258. auto = no
  259. autoexpunge = 0
  260. autoexpunge_max_mails = 0
  261. comment =
  262. driver =
  263. special_use = \Drafts
  264. }
  265. mailbox "Gelöschte Objekte" {
  266. auto = no
  267. autoexpunge = 0
  268. autoexpunge_max_mails = 0
  269. comment =
  270. driver =
  271. special_use = \Trash
  272. }
  273. mailbox Gesendet {
  274. auto = no
  275. autoexpunge = 0
  276. autoexpunge_max_mails = 0
  277. comment =
  278. driver =
  279. special_use = \Sent
  280. }
  281. mailbox "Gesendete Objekte" {
  282. auto = no
  283. autoexpunge = 0
  284. autoexpunge_max_mails = 0
  285. comment =
  286. driver =
  287. special_use = \Sent
  288. }
  289. mailbox Junk {
  290. auto = subscribe
  291. autoexpunge = 0
  292. autoexpunge_max_mails = 0
  293. comment =
  294. driver =
  295. special_use = \Junk
  296. }
  297. mailbox Papierkorb {
  298. auto = no
  299. autoexpunge = 0
  300. autoexpunge_max_mails = 0
  301. comment =
  302. driver =
  303. special_use = \Trash
  304. }
  305. mailbox Sent {
  306. auto = subscribe
  307. autoexpunge = 0
  308. autoexpunge_max_mails = 0
  309. comment =
  310. driver =
  311. special_use = \Sent
  312. }
  313. mailbox "Sent Messages" {
  314. auto = no
  315. autoexpunge = 0
  316. autoexpunge_max_mails = 0
  317. comment =
  318. driver =
  319. special_use = \Sent
  320. }
  321. mailbox Trash {
  322. auto = subscribe
  323. autoexpunge = 0
  324. autoexpunge_max_mails = 0
  325. comment =
  326. driver =
  327. special_use = \Trash
  328. }
  329. order = 0
  330. prefix =
  331. separator = /
  332. subscriptions = yes
  333. type = private
  334. }
  335. passdb {
  336. args = /etc/dovecot/dovecot-mysql.conf
  337. auth_verbose = default
  338. default_fields =
  339. deny = no
  340. driver = sql
  341. master = no
  342. name =
  343. override_fields =
  344. pass = no
  345. result_failure = continue
  346. result_internalfail = continue
  347. result_success = return-ok
  348. skip = never
  349. }
  350. plugin {
  351. acl = vfile
  352. acl_anyone = allow
  353. acl_shared_dict = file:/var/vmail/shared-mailboxes.db
  354. fts = solr
  355. fts_autoindex = yes
  356. fts_solr = url=http://127.0.0.1:8983/solr/
  357. quota = dict:Userquota::proxy::sqlquota
  358. quota_rule2 = Trash:storage=+100%%
  359. sieve = /var/vmail/sieve/%u.sieve
  360. sieve_after = /var/vmail/sieve/global.sieve
  361. sieve_max_script_size = 1M
  362. sieve_quota_max_scripts = 0
  363. sieve_quota_max_storage = 0
  364. }
  365. pop3_client_workarounds =
  366. pop3_delete_type = default
  367. pop3_deleted_flag =
  368. pop3_enable_last = no
  369. pop3_fast_size_lookups = no
  370. pop3_lock_session = no
  371. pop3_logout_format = top=%t/%p, retr=%r/%b, del=%d/%m, size=%s
  372. pop3_no_flag_updates = no
  373. pop3_reuse_xuidl = no
  374. pop3_save_uidl = no
  375. pop3_uidl_duplicates = allow
  376. pop3_uidl_format = %08Xu%08Xv
  377. pop3c_host =
  378. pop3c_master_user =
  379. pop3c_password =
  380. pop3c_port = 110
  381. pop3c_quick_received_date = no
  382. pop3c_rawlog_dir =
  383. pop3c_ssl = no
  384. pop3c_ssl_verify = yes
  385. pop3c_user = %u
  386. postmaster_address = postmaster@%d
  387. protocols = imap sieve lmtp pop3
  388. quota_full_tempfail = no
  389. rawlog_dir =
  390. recipient_delimiter = +
  391. rejection_reason = Your message to <%t> was automatically rejected:%n%r
  392. rejection_subject = Rejected: %s
  393. replication_dsync_parameters = -d -N -l 30 -U
  394. replication_full_sync_interval = 1 days
  395. replication_max_conns = 10
  396. replicator_host = replicator
  397. replicator_port = 0
  398. sendmail_path = /usr/sbin/sendmail
  399. service aggregator {
  400. chroot = .
  401. client_limit = 0
  402. drop_priv_before_exec = no
  403. executable = aggregator
  404. extra_groups =
  405. fifo_listener replication-notify-fifo {
  406. group =
  407. mode = 0600
  408. user =
  409. }
  410. group =
  411. idle_kill = 0
  412. privileged_group =
  413. process_limit = 0
  414. process_min_avail = 0
  415. protocol =
  416. service_count = 0
  417. type =
  418. unix_listener replication-notify {
  419. group =
  420. mode = 0600
  421. user =
  422. }
  423. user = $default_internal_user
  424. vsz_limit = 18446744073709551615 B
  425. }
  426. service anvil {
  427. chroot = empty
  428. client_limit = 0
  429. drop_priv_before_exec = no
  430. executable = anvil
  431. extra_groups =
  432. group =
  433. idle_kill = 4294967295 secs
  434. privileged_group =
  435. process_limit = 1
  436. process_min_avail = 1
  437. protocol =
  438. service_count = 0
  439. type = anvil
  440. unix_listener anvil-auth-penalty {
  441. group =
  442. mode = 0600
  443. user =
  444. }
  445. unix_listener anvil {
  446. group =
  447. mode = 0600
  448. user =
  449. }
  450. user = $default_internal_user
  451. vsz_limit = 18446744073709551615 B
  452. }
  453. service auth-worker {
  454. chroot =
  455. client_limit = 1
  456. drop_priv_before_exec = no
  457. executable = auth -w
  458. extra_groups =
  459. group =
  460. idle_kill = 0
  461. privileged_group =
  462. process_limit = 0
  463. process_min_avail = 0
  464. protocol =
  465. service_count = 1
  466. type =
  467. unix_listener auth-worker {
  468. group =
  469. mode = 0600
  470. user = $default_internal_user
  471. }
  472. user =
  473. vsz_limit = 18446744073709551615 B
  474. }
  475. service auth {
  476. chroot =
  477. client_limit = 0
  478. drop_priv_before_exec = no
  479. executable = auth
  480. extra_groups =
  481. group =
  482. idle_kill = 0
  483. privileged_group =
  484. process_limit = 1
  485. process_min_avail = 0
  486. protocol =
  487. service_count = 0
  488. type =
  489. unix_listener /var/spool/postfix/private/auth_dovecot {
  490. group = postfix
  491. mode = 0660
  492. user = postfix
  493. }
  494. unix_listener auth-client {
  495. group =
  496. mode = 0600
  497. user = $default_internal_user
  498. }
  499. unix_listener auth-login {
  500. group =
  501. mode = 0600
  502. user = $default_internal_user
  503. }
  504. unix_listener auth-master {
  505. group =
  506. mode = 0600
  507. user = vmail
  508. }
  509. unix_listener auth-userdb {
  510. group =
  511. mode = 0600
  512. user = vmail
  513. }
  514. unix_listener login/login {
  515. group =
  516. mode = 0666
  517. user =
  518. }
  519. unix_listener token-login/tokenlogin {
  520. group =
  521. mode = 0666
  522. user =
  523. }
  524. user = root
  525. vsz_limit = 18446744073709551615 B
  526. }
  527. service config {
  528. chroot =
  529. client_limit = 0
  530. drop_priv_before_exec = no
  531. executable = config
  532. extra_groups =
  533. group =
  534. idle_kill = 0
  535. privileged_group =
  536. process_limit = 0
  537. process_min_avail = 0
  538. protocol =
  539. service_count = 0
  540. type = config
  541. unix_listener config {
  542. group =
  543. mode = 0600
  544. user =
  545. }
  546. user =
  547. vsz_limit = 18446744073709551615 B
  548. }
  549. service dict-async {
  550. chroot =
  551. client_limit = 0
  552. drop_priv_before_exec = no
  553. executable = dict
  554. extra_groups =
  555. group =
  556. idle_kill = 0
  557. privileged_group =
  558. process_limit = 0
  559. process_min_avail = 0
  560. protocol =
  561. service_count = 0
  562. type =
  563. unix_listener dict-async {
  564. group =
  565. mode = 0600
  566. user =
  567. }
  568. user = $default_internal_user
  569. vsz_limit = 18446744073709551615 B
  570. }
  571. service dict {
  572. chroot =
  573. client_limit = 1
  574. drop_priv_before_exec = no
  575. executable = dict
  576. extra_groups =
  577. group =
  578. idle_kill = 0
  579. privileged_group =
  580. process_limit = 0
  581. process_min_avail = 0
  582. protocol =
  583. service_count = 0
  584. type =
  585. unix_listener dict {
  586. group = vmail
  587. mode = 0660
  588. user = vmail
  589. }
  590. user = $default_internal_user
  591. vsz_limit = 18446744073709551615 B
  592. }
  593. service director {
  594. chroot = .
  595. client_limit = 0
  596. drop_priv_before_exec = no
  597. executable = director
  598. extra_groups =
  599. fifo_listener login/proxy-notify {
  600. group =
  601. mode = 00
  602. user =
  603. }
  604. group =
  605. idle_kill = 4294967295 secs
  606. privileged_group =
  607. process_limit = 1
  608. process_min_avail = 0
  609. protocol =
  610. service_count = 0
  611. type =
  612. unix_listener director-admin {
  613. group =
  614. mode = 0600
  615. user =
  616. }
  617. unix_listener login/director {
  618. group =
  619. mode = 00
  620. user =
  621. }
  622. user = $default_internal_user
  623. vsz_limit = 18446744073709551615 B
  624. }
  625. service dns_client {
  626. chroot =
  627. client_limit = 1
  628. drop_priv_before_exec = no
  629. executable = dns-client
  630. extra_groups =
  631. group =
  632. idle_kill = 0
  633. privileged_group =
  634. process_limit = 0
  635. process_min_avail = 0
  636. protocol =
  637. service_count = 0
  638. type =
  639. unix_listener dns-client {
  640. group =
  641. mode = 0666
  642. user =
  643. }
  644. user = $default_internal_user
  645. vsz_limit = 18446744073709551615 B
  646. }
  647. service doveadm {
  648. chroot =
  649. client_limit = 1
  650. drop_priv_before_exec = no
  651. executable = doveadm-server
  652. extra_groups =
  653. group =
  654. idle_kill = 0
  655. privileged_group =
  656. process_limit = 0
  657. process_min_avail = 0
  658. protocol =
  659. service_count = 1
  660. type =
  661. unix_listener doveadm-server {
  662. group =
  663. mode = 0600
  664. user =
  665. }
  666. user =
  667. vsz_limit = 18446744073709551615 B
  668. }
  669. service imap-hibernate {
  670. chroot =
  671. client_limit = 0
  672. drop_priv_before_exec = no
  673. executable = imap-hibernate
  674. extra_groups =
  675. group =
  676. idle_kill = 0
  677. privileged_group =
  678. process_limit = 0
  679. process_min_avail = 0
  680. protocol = imap
  681. service_count = 0
  682. type =
  683. unix_listener imap-hibernate {
  684. group =
  685. mode = 0600
  686. user =
  687. }
  688. user = $default_internal_user
  689. vsz_limit = 18446744073709551615 B
  690. }
  691. service imap-login {
  692. chroot = login
  693. client_limit = 0
  694. drop_priv_before_exec = no
  695. executable = imap-login
  696. extra_groups =
  697. group =
  698. idle_kill = 0
  699. inet_listener imap {
  700. address =
  701. haproxy = no
  702. port = 143
  703. reuse_port = no
  704. ssl = no
  705. }
  706. inet_listener imaps {
  707. address =
  708. haproxy = no
  709. port = 993
  710. reuse_port = no
  711. ssl = yes
  712. }
  713. privileged_group =
  714. process_limit = 0
  715. process_min_avail = 0
  716. protocol = imap
  717. service_count = 1
  718. type = login
  719. user = $default_login_user
  720. vsz_limit = 18446744073709551615 B
  721. }
  722. service imap-urlauth-login {
  723. chroot = token-login
  724. client_limit = 0
  725. drop_priv_before_exec = no
  726. executable = imap-urlauth-login
  727. extra_groups =
  728. group =
  729. idle_kill = 0
  730. privileged_group =
  731. process_limit = 0
  732. process_min_avail = 0
  733. protocol = imap
  734. service_count = 1
  735. type = login
  736. unix_listener imap-urlauth {
  737. group =
  738. mode = 0666
  739. user =
  740. }
  741. user = $default_login_user
  742. vsz_limit = 18446744073709551615 B
  743. }
  744. service imap-urlauth-worker {
  745. chroot =
  746. client_limit = 1
  747. drop_priv_before_exec = no
  748. executable = imap-urlauth-worker
  749. extra_groups =
  750. group =
  751. idle_kill = 0
  752. privileged_group =
  753. process_limit = 1024
  754. process_min_avail = 0
  755. protocol = imap
  756. service_count = 1
  757. type =
  758. unix_listener imap-urlauth-worker {
  759. group =
  760. mode = 0600
  761. user = $default_internal_user
  762. }
  763. user =
  764. vsz_limit = 18446744073709551615 B
  765. }
  766. service imap-urlauth {
  767. chroot =
  768. client_limit = 1
  769. drop_priv_before_exec = no
  770. executable = imap-urlauth
  771. extra_groups =
  772. group =
  773. idle_kill = 0
  774. privileged_group =
  775. process_limit = 1024
  776. process_min_avail = 0
  777. protocol = imap
  778. service_count = 1
  779. type =
  780. unix_listener token-login/imap-urlauth {
  781. group =
  782. mode = 0666
  783. user =
  784. }
  785. user = $default_internal_user
  786. vsz_limit = 18446744073709551615 B
  787. }
  788. service imap {
  789. chroot =
  790. client_limit = 1
  791. drop_priv_before_exec = no
  792. executable = imap
  793. extra_groups =
  794. group =
  795. idle_kill = 0
  796. privileged_group =
  797. process_limit = 1024
  798. process_min_avail = 0
  799. protocol = imap
  800. service_count = 1
  801. type =
  802. unix_listener imap-master {
  803. group =
  804. mode = 0600
  805. user =
  806. }
  807. unix_listener login/imap {
  808. group =
  809. mode = 0666
  810. user =
  811. }
  812. user =
  813. vsz_limit = 18446744073709551615 B
  814. }
  815. service indexer-worker {
  816. chroot =
  817. client_limit = 1
  818. drop_priv_before_exec = no
  819. executable = indexer-worker
  820. extra_groups =
  821. group =
  822. idle_kill = 0
  823. privileged_group =
  824. process_limit = 10
  825. process_min_avail = 0
  826. protocol =
  827. service_count = 0
  828. type =
  829. unix_listener indexer-worker {
  830. group =
  831. mode = 0600
  832. user = $default_internal_user
  833. }
  834. user =
  835. vsz_limit = 18446744073709551615 B
  836. }
  837. service indexer {
  838. chroot =
  839. client_limit = 0
  840. drop_priv_before_exec = no
  841. executable = indexer
  842. extra_groups =
  843. group =
  844. idle_kill = 0
  845. privileged_group =
  846. process_limit = 1
  847. process_min_avail = 0
  848. protocol =
  849. service_count = 0
  850. type =
  851. unix_listener indexer {
  852. group =
  853. mode = 0666
  854. user =
  855. }
  856. user = $default_internal_user
  857. vsz_limit = 18446744073709551615 B
  858. }
  859. service ipc {
  860. chroot = empty
  861. client_limit = 0
  862. drop_priv_before_exec = no
  863. executable = ipc
  864. extra_groups =
  865. group =
  866. idle_kill = 0
  867. privileged_group =
  868. process_limit = 1
  869. process_min_avail = 0
  870. protocol =
  871. service_count = 0
  872. type =
  873. unix_listener ipc {
  874. group =
  875. mode = 0600
  876. user =
  877. }
  878. unix_listener login/ipc-proxy {
  879. group =
  880. mode = 0600
  881. user = $default_login_user
  882. }
  883. user = $default_internal_user
  884. vsz_limit = 18446744073709551615 B
  885. }
  886. service lmtp {
  887. chroot =
  888. client_limit = 1
  889. drop_priv_before_exec = no
  890. executable = lmtp
  891. extra_groups =
  892. group =
  893. idle_kill = 0
  894. privileged_group =
  895. process_limit = 0
  896. process_min_avail = 0
  897. protocol = lmtp
  898. service_count = 0
  899. type =
  900. unix_listener /var/spool/postfix/private/dovecot-lmtp {
  901. group = postfix
  902. mode = 0600
  903. user = postfix
  904. }
  905. unix_listener lmtp {
  906. group =
  907. mode = 0666
  908. user =
  909. }
  910. user = vmail
  911. vsz_limit = 18446744073709551615 B
  912. }
  913. service log {
  914. chroot =
  915. client_limit = 0
  916. drop_priv_before_exec = no
  917. executable = log
  918. extra_groups =
  919. group =
  920. idle_kill = 4294967295 secs
  921. privileged_group =
  922. process_limit = 1
  923. process_min_avail = 0
  924. protocol =
  925. service_count = 0
  926. type = log
  927. unix_listener log-errors {
  928. group =
  929. mode = 0600
  930. user =
  931. }
  932. user =
  933. vsz_limit = 18446744073709551615 B
  934. }
  935. service managesieve-login {
  936. chroot = login
  937. client_limit = 0
  938. drop_priv_before_exec = no
  939. executable = managesieve-login
  940. extra_groups =
  941. group =
  942. idle_kill = 0
  943. inet_listener sieve {
  944. address =
  945. haproxy = no
  946. port = 4190
  947. reuse_port = no
  948. ssl = no
  949. }
  950. privileged_group =
  951. process_limit = 0
  952. process_min_avail = 2
  953. protocol = sieve
  954. service_count = 1
  955. type = login
  956. user = $default_login_user
  957. vsz_limit = 128 M
  958. }
  959. service managesieve {
  960. chroot =
  961. client_limit = 1
  962. drop_priv_before_exec = no
  963. executable = managesieve
  964. extra_groups =
  965. group =
  966. idle_kill = 0
  967. privileged_group =
  968. process_limit = 256
  969. process_min_avail = 0
  970. protocol = sieve
  971. service_count = 1
  972. type =
  973. unix_listener login/sieve {
  974. group =
  975. mode = 0666
  976. user =
  977. }
  978. user =
  979. vsz_limit = 18446744073709551615 B
  980. }
  981. service pop3-login {
  982. chroot = login
  983. client_limit = 0
  984. drop_priv_before_exec = no
  985. executable = pop3-login
  986. extra_groups =
  987. group =
  988. idle_kill = 0
  989. inet_listener pop3 {
  990. address =
  991. haproxy = no
  992. port = 110
  993. reuse_port = no
  994. ssl = no
  995. }
  996. inet_listener pop3s {
  997. address =
  998. haproxy = no
  999. port = 995
  1000. reuse_port = no
  1001. ssl = yes
  1002. }
  1003. privileged_group =
  1004. process_limit = 0
  1005. process_min_avail = 0
  1006. protocol = pop3
  1007. service_count = 1
  1008. type = login
  1009. user = $default_login_user
  1010. vsz_limit = 18446744073709551615 B
  1011. }
  1012. service pop3 {
  1013. chroot =
  1014. client_limit = 1
  1015. drop_priv_before_exec = no
  1016. executable = pop3
  1017. extra_groups =
  1018. group =
  1019. idle_kill = 0
  1020. privileged_group =
  1021. process_limit = 1024
  1022. process_min_avail = 0
  1023. protocol = pop3
  1024. service_count = 1
  1025. type =
  1026. unix_listener login/pop3 {
  1027. group =
  1028. mode = 0666
  1029. user =
  1030. }
  1031. user =
  1032. vsz_limit = 18446744073709551615 B
  1033. }
  1034. service replicator {
  1035. chroot =
  1036. client_limit = 0
  1037. drop_priv_before_exec = no
  1038. executable = replicator
  1039. extra_groups =
  1040. group =
  1041. idle_kill = 4294967295 secs
  1042. privileged_group =
  1043. process_limit = 1
  1044. process_min_avail = 0
  1045. protocol =
  1046. service_count = 0
  1047. type =
  1048. unix_listener replicator-doveadm {
  1049. group =
  1050. mode = 00
  1051. user = $default_internal_user
  1052. }
  1053. unix_listener replicator {
  1054. group =
  1055. mode = 0600
  1056. user = $default_internal_user
  1057. }
  1058. user =
  1059. vsz_limit = 18446744073709551615 B
  1060. }
  1061. service ssl-params {
  1062. chroot =
  1063. client_limit = 0
  1064. drop_priv_before_exec = no
  1065. executable = ssl-params
  1066. extra_groups =
  1067. group =
  1068. idle_kill = 0
  1069. privileged_group =
  1070. process_limit = 0
  1071. process_min_avail = 0
  1072. protocol =
  1073. service_count = 0
  1074. type = startup
  1075. unix_listener login/ssl-params {
  1076. group =
  1077. mode = 0666
  1078. user =
  1079. }
  1080. unix_listener ssl-params {
  1081. group =
  1082. mode = 0666
  1083. user =
  1084. }
  1085. user =
  1086. vsz_limit = 18446744073709551615 B
  1087. }
  1088. service stats {
  1089. chroot = empty
  1090. client_limit = 0
  1091. drop_priv_before_exec = no
  1092. executable = stats
  1093. extra_groups =
  1094. fifo_listener stats-mail {
  1095. group =
  1096. mode = 0600
  1097. user =
  1098. }
  1099. fifo_listener stats-user {
  1100. group =
  1101. mode = 0600
  1102. user =
  1103. }
  1104. group =
  1105. idle_kill = 4294967295 secs
  1106. privileged_group =
  1107. process_limit = 1
  1108. process_min_avail = 0
  1109. protocol =
  1110. service_count = 0
  1111. type =
  1112. unix_listener stats {
  1113. group =
  1114. mode = 0600
  1115. user =
  1116. }
  1117. user = $default_internal_user
  1118. vsz_limit = 18446744073709551615 B
  1119. }
  1120. service tcpwrap {
  1121. chroot =
  1122. client_limit = 1
  1123. drop_priv_before_exec = no
  1124. executable = tcpwrap
  1125. extra_groups =
  1126. group =
  1127. idle_kill = 0
  1128. privileged_group =
  1129. process_limit = 0
  1130. process_min_avail = 0
  1131. protocol =
  1132. service_count = 0
  1133. type =
  1134. user = $default_internal_user
  1135. vsz_limit = 18446744073709551615 B
  1136. }
  1137. shutdown_clients = yes
  1138. ssl = yes
  1139. ssl_ca =
  1140. ssl_cert = </etc/ssl/mail/mail.crt
  1141. ssl_cert_username_field = commonName
  1142. ssl_cipher_list = ALL:!LOW:!SSLv2:!EXP:!aNULL
  1143. ssl_client_ca_dir =
  1144. ssl_client_ca_file =
  1145. ssl_client_cert =
  1146. ssl_client_key =
  1147. ssl_crypto_device =
  1148. ssl_dh_parameters_length = 2048
  1149. ssl_key = # hidden, use -P to show it
  1150. ssl_key_password =
  1151. ssl_options =
  1152. ssl_parameters_regenerate = 0
  1153. ssl_prefer_server_ciphers = no
  1154. ssl_protocols = !SSLv3 !SSLv2
  1155. ssl_require_crl = yes
  1156. ssl_verify_client_cert = no
  1157. state_dir = /var/lib/dovecot
  1158. stats_carbon_interval = 30 secs
  1159. stats_carbon_name =
  1160. stats_carbon_server =
  1161. stats_command_min_time = 1 mins
  1162. stats_domain_min_time = 12 hours
  1163. stats_ip_min_time = 12 hours
  1164. stats_memory_limit = 16 M
  1165. stats_session_min_time = 15 mins
  1166. stats_user_min_time = 1 hours
  1167. submission_host =
  1168. syslog_facility = mail
  1169. userdb {
  1170. args = /etc/dovecot/dovecot-mysql.conf
  1171. auth_verbose = default
  1172. default_fields =
  1173. driver = sql
  1174. name =
  1175. override_fields =
  1176. result_failure = continue
  1177. result_internalfail = continue
  1178. result_success = return-ok
  1179. skip = never
  1180. }
  1181. valid_chroot_dirs =
  1182. verbose_proctitle = no
  1183. verbose_ssl = no
  1184. version_ignore = no
  1185. protocol imap {
  1186. mail_plugins = quota imap_quota imap_acl acl fts fts_solr
  1187. }
  1188. protocol lmtp {
  1189. auth_socket_path = /var/run/dovecot/auth-master
  1190. mail_plugins = quota sieve acl fts fts_solr
  1191. postmaster_address = postmaster@domain.tld
  1192. }
  1193. protocol sieve {
  1194. managesieve_logout_format = bytes=%i/%o
  1195. }
  1196. remote 127.0.0.1 {
  1197. disable_plaintext_auth = no
  1198. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement