2006-01-16 16:32:59 -05:00
|
|
|
$OpenBSD: patch-dovecot-example_conf,v 1.12 2006/01/16 21:32:59 brad Exp $
|
|
|
|
--- dovecot-example.conf.orig Sun Jan 15 22:00:08 2006
|
|
|
|
+++ dovecot-example.conf Mon Jan 16 15:29:53 2006
|
2005-09-04 14:22:30 -04:00
|
|
|
@@ -5,13 +5,12 @@
|
|
|
|
# value inside quotes, eg.: key = "# char and trailing whitespace "
|
2003-07-14 19:44:28 -04:00
|
|
|
|
|
|
|
# Default values are shown after each value, it's not required to uncomment
|
|
|
|
-# any of the lines. Exception to this are paths, they're just examples
|
|
|
|
-# with real defaults being based on configure options. The paths listed here
|
|
|
|
-# are for configure --prefix=/usr --sysconfdir=/etc --localstatedir=/var
|
|
|
|
-# --with-ssldir=/etc/ssl
|
|
|
|
+# any of the lines.
|
|
|
|
|
2004-06-25 13:41:59 -04:00
|
|
|
+# *** NOTE *** Some values HAVE been changed for OpenBSD use.
|
|
|
|
+
|
2003-07-14 19:44:28 -04:00
|
|
|
# Base directory where to store runtime data.
|
|
|
|
-#base_dir = /var/run/dovecot/
|
|
|
|
+base_dir = /var/dovecot/
|
|
|
|
|
|
|
|
# Protocols we want to be serving:
|
|
|
|
# imap imaps pop3 pop3s
|
2005-09-04 14:22:30 -04:00
|
|
|
@@ -37,7 +36,7 @@
|
2003-07-14 19:44:28 -04:00
|
|
|
# dropping root privileges, so keep the key file unreadable by anyone but
|
|
|
|
# root. Included doc/mkcert.sh can be used to easily generate self-signed
|
|
|
|
# certificate, just make sure to update the domains in dovecot-openssl.cnf
|
|
|
|
-#ssl_cert_file = /etc/ssl/certs/dovecot.pem
|
|
|
|
+ssl_cert_file = /etc/ssl/dovecotcert.pem
|
|
|
|
#ssl_key_file = /etc/ssl/private/dovecot.pem
|
|
|
|
|
2006-01-16 16:32:59 -05:00
|
|
|
# If key file is password protected, give the password here. Alternatively
|
2005-09-04 14:22:30 -04:00
|
|
|
@@ -62,7 +61,7 @@
|
|
|
|
# SSL/TLS is used (LOGINDISABLED capability). Note that 127.*.*.* and
|
|
|
|
# IPv6 ::1 addresses are considered secure, this setting has no effect if
|
|
|
|
# you connect from those addresses.
|
|
|
|
-#disable_plaintext_auth = yes
|
|
|
|
+disable_plaintext_auth = yes
|
|
|
|
|
|
|
|
# Use this logfile instead of syslog(). /dev/stderr can be used if you want to
|
|
|
|
# use stderr for logging (ONLY /dev/stderr - otherwise it is closed).
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -88,7 +87,7 @@
|
2003-07-14 19:44:28 -04:00
|
|
|
# which login needs to be able to connect to. The sockets are created when
|
2004-06-22 17:05:20 -04:00
|
|
|
# running as root, so you don't have to worry about permissions. Note that
|
|
|
|
# everything in this directory is deleted when Dovecot is started.
|
2003-07-14 19:44:28 -04:00
|
|
|
-#login_dir = /var/run/dovecot/login
|
|
|
|
+login_dir = /var/dovecot/login
|
|
|
|
|
|
|
|
# chroot login process to the login_dir. Only reason not to do this is if you
|
|
|
|
# wish to run the whole Dovecot without roots.
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -100,7 +99,7 @@
|
2003-07-14 19:44:28 -04:00
|
|
|
# only it has access, it's used to control access for authentication process.
|
2005-02-12 07:17:07 -05:00
|
|
|
# Note that this user is NOT used to access mails.
|
|
|
|
# http://wiki.dovecot.org/UserIds
|
2003-07-14 19:44:28 -04:00
|
|
|
-#login_user = dovecot
|
|
|
|
+login_user = _dovecot
|
|
|
|
|
|
|
|
# Set max. process size in megabytes. If you don't use
|
|
|
|
# login_process_per_connection you might need to grow this.
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -311,7 +310,7 @@
|
2005-09-04 14:22:30 -04:00
|
|
|
|
|
|
|
# Don't write() to mmaped files. This is required for some operating systems
|
|
|
|
# which use separate caches for them, such as OpenBSD.
|
|
|
|
-#mmap_no_write = no
|
|
|
|
+mmap_no_write = yes
|
|
|
|
|
|
|
|
# Locking method for index files. Alternatives are fcntl, flock and dotlock.
|
|
|
|
# Dotlocking uses some tricks which may create more disk I/O than other locking
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -411,19 +410,19 @@
|
2005-09-04 14:22:30 -04:00
|
|
|
|
|
|
|
protocol imap {
|
|
|
|
# Login executable location.
|
|
|
|
- #login_executable = /usr/libexec/dovecot/imap-login
|
|
|
|
+ #login_executable = /usr/local/libexec/dovecot/imap-login
|
|
|
|
|
2006-01-16 16:32:59 -05:00
|
|
|
# IMAP executable location. Changing this allows you to execute other
|
|
|
|
# binaries before the imap process is executed.
|
|
|
|
#
|
|
|
|
# This would write rawlogs into ~/dovecot.rawlog/ directory:
|
|
|
|
- # mail_executable = /usr/libexec/dovecot/rawlog /usr/libexec/dovecot/imap
|
|
|
|
+ # mail_executable = /usr/local/libexec/dovecot/rawlog /usr/local/libexec/dovecot/imap
|
|
|
|
#
|
|
|
|
# This would attach gdb into the imap process and write backtraces into
|
|
|
|
# /tmp/gdbhelper.* files:
|
|
|
|
- # mail_executable = /usr/libexec/dovecot/gdbhelper /usr/libexec/dovecot/imap
|
|
|
|
+ # mail_executable = /usr/local/libexec/dovecot/gdbhelper /usr/local/libexec/dovecot/imap
|
|
|
|
#
|
2005-09-04 14:22:30 -04:00
|
|
|
- #mail_executable = /usr/libexec/dovecot/imap
|
|
|
|
+ #mail_executable = /usr/local/libexec/dovecot/imap
|
|
|
|
|
|
|
|
# Maximum IMAP command line length in bytes. Some clients generate very long
|
|
|
|
# command lines with huge mailboxes, so you may need to raise this if you get
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -472,10 +471,10 @@ protocol imap {
|
2005-09-04 14:22:30 -04:00
|
|
|
|
|
|
|
protocol pop3 {
|
|
|
|
# Login executable location.
|
|
|
|
- #login_executable = /usr/libexec/dovecot/pop3-login
|
|
|
|
+ #login_executable = /usr/local/libexec/dovecot/pop3-login
|
|
|
|
|
|
|
|
# POP3 executable location
|
|
|
|
- #mail_executable = /usr/libexec/dovecot/pop3
|
|
|
|
+ #mail_executable = /usr/local/libexec/dovecot/pop3
|
|
|
|
|
|
|
|
# Don't try to set mails non-recent or seen with POP3 sessions. This is
|
|
|
|
# mostly intended to reduce disk I/O. With maildir it doesn't move files
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -544,7 +543,7 @@ protocol pop3 {
|
2003-07-14 19:44:28 -04:00
|
|
|
##
|
|
|
|
|
|
|
|
# Executable location
|
2005-09-04 14:22:30 -04:00
|
|
|
-#auth_executable = /usr/libexec/dovecot/dovecot-auth
|
|
|
|
+#auth_executable = /usr/local/libexec/dovecot/dovecot-auth
|
|
|
|
|
|
|
|
# Set max. process size in megabytes.
|
|
|
|
#auth_process_size = 256
|
2006-01-16 16:32:59 -05:00
|
|
|
@@ -629,7 +628,7 @@ auth default {
|
2005-09-04 14:22:30 -04:00
|
|
|
# Note that PAM can only be used to verify if user's password is correct,
|
|
|
|
# so it can't be used as userdb. If you don't want to use a separate user
|
|
|
|
# database (passwd usually), you can use static userdb.
|
|
|
|
- passdb pam {
|
|
|
|
+ #passdb pam {
|
2006-01-16 16:32:59 -05:00
|
|
|
# [session=yes] [cache_key=<key>] [<service name>]
|
2005-09-04 14:22:30 -04:00
|
|
|
#
|
2006-01-16 16:32:59 -05:00
|
|
|
# session=yes makes Dovecot open and immediately close PAM session. Some
|
|
|
|
@@ -653,13 +652,13 @@ auth default {
|
|
|
|
# args = session=yes *
|
|
|
|
# args = cache_key=%u dovecot
|
2005-09-04 14:22:30 -04:00
|
|
|
#args = dovecot
|
|
|
|
- }
|
|
|
|
+ #}
|
|
|
|
|
|
|
|
# /etc/passwd or similar, using getpwnam()
|
|
|
|
# In many systems nowadays this uses Name Service Switch, which is
|
|
|
|
# configured in /etc/nsswitch.conf.
|
|
|
|
- #passdb passwd {
|
|
|
|
- #}
|
|
|
|
+ passdb passwd {
|
|
|
|
+ }
|
|
|
|
|
|
|
|
# /etc/shadow or similiar, using getspnam(). Deprecated by PAM nowadays.
|
|
|
|
#passdb shadow {
|