commit 9ca6fb5427ed380df551484fad2c2f32e127850e
Author: Nicolas Chauvet <kwizart(a)gmail.com>
Date: Fri Sep 15 12:47:58 2017 +0200
Improve postfix hv01 tls part 2
.../main.cf/main.cf.hv01.online.rpmfusion.net | 2 ++
1 files changed, 2 insertions(+), 0 deletions(-)
---
diff --git
a/roles/base/files/postfix/main.cf/main.cf.hv01.online.rpmfusion.net
b/roles/base/files/postfix/main.cf/main.cf.hv01.online.rpmfusion.net
index 13f81de..27fe57c 100644
---
a/roles/base/files/postfix/main.cf/main.cf.hv01.online.rpmfusion.net
+++
b/roles/base/files/postfix/main.cf/main.cf.hv01.online.rpmfusion.net
@@ -759,6 +759,8 @@ smtpd_tls_session_cache_database =
btree:/var/lib/postfix/smtpd_scache
smtpd_tls_received_header = yes
smtpd_tls_ask_ccert = yes
smtpd_tls_received_header = yes
+smtpd_tls_dh1024_param_file = ${config_directory}/dh2048.pem
+smtpd_tls_dh512_param_file = ${config_directory}/dh512.pem
tls_random_source = dev:/dev/urandom
smtpd_tls_eecdh_grade = ultra
tls_eecdh_strong_curve = prime256v1