aboutsummaryrefslogtreecommitdiff
path: root/exim.conf
diff options
context:
space:
mode:
authorWojtek Kosior <koszko@koszko.org>2023-09-08 17:04:38 +0200
committerWojtek Kosior <koszko@koszko.org>2023-09-09 15:54:48 +0200
commit7276d8e6ae494bb7ab85c1cdfa2917e3b889468d (patch)
tree6fea20b60ce604555335f977713d9ac0b3bd6299 /exim.conf
parent18da556c5cb0234a4c1ad3df0b263a452db2ebf1 (diff)
downloadkoszko-org-server-7276d8e6ae494bb7ab85c1cdfa2917e3b889468d.tar.gz
koszko-org-server-7276d8e6ae494bb7ab85c1cdfa2917e3b889468d.zip
Make TLS functional
Enable letsencrypt certificates in httpd while making all daemons fall back to self-issued certs when /etc/letsencrypt/live is unpopulated.
Diffstat (limited to 'exim.conf')
-rw-r--r--exim.conf4
1 files changed, 2 insertions, 2 deletions
diff --git a/exim.conf b/exim.conf
index a5b2ec2..f237306 100644
--- a/exim.conf
+++ b/exim.conf
@@ -23,8 +23,8 @@ acl_smtp_data_prdr = acl_check_prdr
.endif
acl_smtp_data = acl_check_data
-tls_certificate = /etc/letsencrypt/live/guixbot_koszko.org/fullchain.pem
-tls_privatekey = /etc/letsencrypt/live/guixbot_koszko.org/privkey.pem
+tls_certificate = /etc/cert-links/guixbot_koszko.org/fullchain.pem
+tls_privatekey = /etc/cert-links/guixbot_koszko.org/privkey.pem
tls_verify_certificates = ${if exists{/etc/ssl/certs/ca-certificates.crt}\
{/etc/ssl/certs/ca-certificates.crt}\