Advertisement
Guest User

master.cf

a guest
Nov 19th, 2022
108
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.83 KB | None | 0 0
  1. #default_process_limit = 100
  2. #default_client_limit = 1000
  3.  
  4. # Default VSZ (virtual memory size) limit for service processes. This is mainly
  5. # intended to catch and kill processes that leak memory before they eat up
  6. # everything.
  7. #default_vsz_limit = 256M
  8.  
  9. # Login user is internally used by login processes. This is the most untrusted
  10. # user in Dovecot system. It shouldn't have access to anything at all.
  11. #default_login_user = dovenull
  12.  
  13. # Internal user is used by unprivileged processes. It should be separate from
  14. # login user, so that login processes can't disturb other processes.
  15. #default_internal_user = dovecot
  16.  
  17. service imap-login {
  18. inet_listener imap {
  19. #port = 143
  20. }
  21. inet_listener imaps {
  22. #port = 993
  23. #ssl = yes
  24. }
  25.  
  26. # Number of connections to handle before starting a new process. Typically
  27. # the only useful values are 0 (unlimited) or 1. 1 is more secure, but 0
  28. # is faster. <doc/wiki/LoginProcess.txt>
  29. #service_count = 1
  30.  
  31. # Number of processes to always keep waiting for more connections.
  32. #process_min_avail = 0
  33.  
  34. # If you set service_count=0, you probably need to grow this.
  35. #vsz_limit = $default_vsz_limit
  36. }
  37.  
  38. service pop3-login {
  39. inet_listener pop3 {
  40. #port = 110
  41. }
  42. inet_listener pop3s {
  43. #port = 995
  44. #ssl = yes
  45. }
  46. }
  47.  
  48. service submission-login {
  49. inet_listener submission {
  50. #port = 587
  51. }
  52. }
  53.  
  54. service lmtp {
  55. unix_listener lmtp {
  56. #mode = 0666
  57. }
  58.  
  59. # Create inet listener only if you can't use the above UNIX socket
  60. #inet_listener lmtp {
  61. # Avoid making LMTP visible for the entire internet
  62. #address =
  63. #port =
  64. #}
  65. }
  66.  
  67. service imap {
  68. # Most of the memory goes to mmap()ing files. You may need to increase this
  69. # limit if you have huge mailboxes.
  70. #vsz_limit = $default_vsz_limit
  71.  
  72. # Max. number of IMAP processes (connections)
  73. #process_limit = 1024
  74. }
  75.  
  76. service pop3 {
  77. # Max. number of POP3 processes (connections)
  78. #process_limit = 1024
  79. }
  80.  
  81. service submission {
  82. # Max. number of SMTP Submission processes (connections)
  83. #process_limit = 1024
  84. }
  85.  
  86. service auth {
  87. # auth_socket_path points to this userdb socket by default. It's typically
  88. # used by dovecot-lda, doveadm, possibly imap process, etc. Users that have
  89. # full permissions to this socket are able to get a list of all usernames and
  90. # get the results of everyone's userdb lookups.
  91. #
  92. # The default 0666 mode allows anyone to connect to the socket, but the
  93. # userdb lookups will succeed only if the userdb returns an "uid" field that
  94. # matches the caller process's UID. Also if caller's uid or gid matches the
  95. # socket's uid or gid the lookup succeeds. Anything else causes a failure.
  96. #
  97. # To give the caller full permissions to lookup all users, set the mode to
  98. # something else than 0666 and Dovecot lets the kernel enforce the
  99. # permissions (e.g. 0777 allows everyone full permissions).
  100. unix_listener auth-userdb {
  101. #mode = 0666
  102. #user =
  103. #group =
  104. mode = 0666
  105. # Assuming the default Postfix user and group
  106. user = postfix
  107. group = postfix
  108. }
  109.  
  110. # Postfix smtp-auth
  111. unix_listener /var/spool/postfix/private/auth {
  112. mode = 0666
  113. }
  114.  
  115. # Auth process is run as this user.
  116. #user = $default_internal_user
  117. }
  118. # Outlook and Windows Mail works only with LOGIN mechanism, not the standard PLAIN:
  119. auth_mechanisms = plain login
  120.  
  121. service auth-worker {
  122. # Auth worker process is run as root by default, so that it can access
  123. # /etc/shadow. If this isn't necessary, the user should be changed to
  124. # $default_internal_user.
  125. #user = root
  126. }
  127.  
  128. service dict {
  129. # If dict proxy is used, mail processes should have access to its socket.
  130. # For example: mode=0660, group=vmail and global mail_access_groups=vmail
  131. unix_listener dict {
  132. #mode = 0600
  133. #user =
  134. #group =
  135. }
  136. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement