diff options
author | Wojtek Kosior <koszko@koszko.org> | 2023-09-08 17:04:38 +0200 |
---|---|---|
committer | Wojtek Kosior <koszko@koszko.org> | 2023-09-09 15:54:48 +0200 |
commit | 7276d8e6ae494bb7ab85c1cdfa2917e3b889468d (patch) | |
tree | 6fea20b60ce604555335f977713d9ac0b3bd6299 /exim.conf | |
parent | 18da556c5cb0234a4c1ad3df0b263a452db2ebf1 (diff) | |
download | koszko-org-server-7276d8e6ae494bb7ab85c1cdfa2917e3b889468d.tar.gz koszko-org-server-7276d8e6ae494bb7ab85c1cdfa2917e3b889468d.zip |
Make TLS functional
Enable letsencrypt certificates in httpd while making all daemons fall back to
self-issued certs when /etc/letsencrypt/live is unpopulated.
Diffstat (limited to 'exim.conf')
-rw-r--r-- | exim.conf | 4 |
1 files changed, 2 insertions, 2 deletions
@@ -23,8 +23,8 @@ acl_smtp_data_prdr = acl_check_prdr .endif acl_smtp_data = acl_check_data -tls_certificate = /etc/letsencrypt/live/guixbot_koszko.org/fullchain.pem -tls_privatekey = /etc/letsencrypt/live/guixbot_koszko.org/privkey.pem +tls_certificate = /etc/cert-links/guixbot_koszko.org/fullchain.pem +tls_privatekey = /etc/cert-links/guixbot_koszko.org/privkey.pem tls_verify_certificates = ${if exists{/etc/ssl/certs/ca-certificates.crt}\ {/etc/ssl/certs/ca-certificates.crt}\ |