projects
/
ansible.git
/ blobdiff
commit
grep
author
committer
pickaxe
?
search:
re
summary
|
shortlog
|
log
|
commit
|
commitdiff
|
tree
raw
|
inline
| side by side
update etherpad
[ansible.git]
/
roles
/
email
/
templates
/
dovecot
/
conf.d
/
10-ssl.conf
diff --git
a/roles/email/templates/dovecot/conf.d/10-ssl.conf
b/roles/email/templates/dovecot/conf.d/10-ssl.conf
index 066f3722071b64ae073cd446cb7a9802e63fe8fc..70df7c5132e7e6ac79a894d71ed41ae14ea4c59c 100644
(file)
--- a/
roles/email/templates/dovecot/conf.d/10-ssl.conf
+++ b/
roles/email/templates/dovecot/conf.d/10-ssl.conf
@@
-42,11
+42,8
@@
ssl_key = </etc/ssl/private/letsencrypt/live.key
# auth_ssl_username_from_cert=yes.
#ssl_cert_username_field = commonName
# auth_ssl_username_from_cert=yes.
#ssl_cert_username_field = commonName
-# DH parameters length to use.
-ssl_dh_parameters_length = 2048
-
-# SSL protocols to use
-ssl_protocols = !SSLv3
+# DH parameters to use
+ssl_dh=</etc/ssl/dh2048.pem
# SSL ciphers to use
ssl_cipher_list = ALL:!EXPORT:!LOW:!MEDIUM:!kRSA:!kDH:!kECDH:!3DES
# SSL ciphers to use
ssl_cipher_list = ALL:!EXPORT:!LOW:!MEDIUM:!kRSA:!kDH:!kECDH:!3DES