ansible-collection-mailserver/roles/dovecot/defaults/main/tls.yml
2023-07-13 00:34:11 +02:00

10 lines
742 B
YAML

---
dovecot_tls_cert_filename: /etc/ssl/certs/ssl-cert-snakeoil.pem
dovecot_tls_key_filename: /etc/ssl/private/ssl-cert-snakeoil.key
dovecot_tls_dh_filename: /usr/share/dovecot/dh.pem
# generated 2023-07-12, Mozilla Guideline v5.7, Dovecot 2.3.19, OpenSSL 3.0.9, intermediate configuration
# https://ssl-config.mozilla.org/#server=dovecot&version=2.3.19&config=intermediate&openssl=3.0.9&guideline=5.7
dovecot_tls_min_version: TLSv1.2
dovecot_tls_cipher_list: "ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305:DHE-RSA-AES128-GCM-SHA256:DHE-RSA-AES256-GCM-SHA384:DHE-RSA-CHACHA20-POLY1305" # noqa yaml[line-length]