Update
This commit is contained in:
parent
9bb7b54ef8
commit
6ae3ea43e1
6 changed files with 5 additions and 6 deletions
|
@ -3,7 +3,7 @@ server {
|
||||||
listen 443 ssl http2;
|
listen 443 ssl http2;
|
||||||
listen [::]:443 ssl http2;
|
listen [::]:443 ssl http2;
|
||||||
location = /.well-known/mta-sts.txt {
|
location = /.well-known/mta-sts.txt {
|
||||||
return 200 "version: STSv1\nmode: enforce\nmx: mail.strypsteen.me\nmax_age: 604800";
|
return 200 "version: STSv1\nmode: enforce\nmx: vps.strypsteen.com\nmax_age: 1209600";
|
||||||
}
|
}
|
||||||
location / {
|
location / {
|
||||||
return 404;
|
return 404;
|
||||||
|
|
|
@ -15,7 +15,6 @@ tls_ssl_options = NO_RENEGOTIATION
|
||||||
tls_preempt_cipherlist = yes
|
tls_preempt_cipherlist = yes
|
||||||
virtual_transport = lmtp:inet:localhost:24
|
virtual_transport = lmtp:inet:localhost:24
|
||||||
message_size_limit = 50000000
|
message_size_limit = 50000000
|
||||||
smtp_address_preference = ipv4
|
|
||||||
|
|
||||||
smtpd_tls_security_level = may
|
smtpd_tls_security_level = may
|
||||||
smtpd_tls_auth_only = yes
|
smtpd_tls_auth_only = yes
|
||||||
|
|
|
@ -1,6 +1,5 @@
|
||||||
FROM git.strypsteen.me/mathieu/alpine
|
FROM git.strypsteen.me/mathieu/alpine
|
||||||
RUN apk add rspamd
|
RUN apk add rspamd
|
||||||
COPY local.d /etc/rspamd/local.d
|
COPY local.d /etc/rspamd/local.d
|
||||||
COPY override.d /etc/rspamd/override.d
|
|
||||||
USER rspamd
|
USER rspamd
|
||||||
CMD rspamd --no-fork
|
CMD rspamd --no-fork
|
||||||
|
|
|
@ -1 +0,0 @@
|
||||||
rbls {}
|
|
|
@ -1,9 +1,11 @@
|
||||||
[Container]
|
[Container]
|
||||||
Image=quay.io/mathieustrypsteen/nginx-home
|
Image=quay.io/mathieustrypsteen/nginx-home
|
||||||
Network=host
|
Network=pasta:-T,8000,-T,8001,-T,8002
|
||||||
Volume=/etc/certificates:/etc/certificates:O
|
Volume=/etc/certificates:/etc/certificates:O
|
||||||
Tmpfs=/var/lib/nginx/tmp
|
Tmpfs=/var/lib/nginx/tmp
|
||||||
Tmpfs=/var/lib/nginx/logs
|
Tmpfs=/var/lib/nginx/logs
|
||||||
|
PublishPort=80:80
|
||||||
|
PublishPort=443:443
|
||||||
AutoUpdate=registry
|
AutoUpdate=registry
|
||||||
[Install]
|
[Install]
|
||||||
WantedBy=default.target
|
WantedBy=default.target
|
||||||
|
|
|
@ -3,7 +3,7 @@ Wants=network-online.target
|
||||||
After=network-online.target
|
After=network-online.target
|
||||||
StartLimitIntervalSec=0
|
StartLimitIntervalSec=0
|
||||||
[Service]
|
[Service]
|
||||||
ExecStart=/usr/local/bin/ssh -NTR 80:localhost:80 -R 443:localhost:443 -R 18089:localhost:18089 tunnel@home-gw
|
ExecStart=/bin/sh -c "/usr/bin/ssh -NTR 80:localhost:80 -R 443:localhost:443 -R 18089:localhost:18089 tunnel@home-gw"
|
||||||
Restart=always
|
Restart=always
|
||||||
RestartSec=10
|
RestartSec=10
|
||||||
[Install]
|
[Install]
|
||||||
|
|
Loading…
Add table
Reference in a new issue