sqmail: tweak default scripts

Limit RAM to 50MB to mitigate CVE-2005-1513.

Disable SPF as recommended by upstream.
This commit is contained in:
Leah Neukirchen 2020-05-19 20:13:14 +02:00
parent 967399bd01
commit c90755c823
5 changed files with 8 additions and 3 deletions

View File

@ -4,4 +4,6 @@ if [ -f /var/qmail/control/defaultdelivery ]; then
else
defaultdelivery=./Maildir/
fi
exec env - PATH="/var/qmail/bin:$PATH" qmail-start $defaultdelivery
exec env - PATH="/var/qmail/bin:$PATH" \
chpst -m 50000000 \
qmail-start $defaultdelivery

View File

@ -2,18 +2,19 @@
QMAILU=$(id -u _qmaild)
QMAILG=$(id -g _qmaild)
HOSTNAME=$(hostname)
export SPF="1"
export UTF8="1"
if [ -f /var/qmail/ssl/ssl.env ]; then
export UCSPITLS=""
. /var/qmail/ssl/ssl.env
exec env PATH="/var/qmail/bin:$PATH" \
chpst -m 50000000 \
sslserver -seVn -Rp -l $HOSTNAME \
-Xx /var/qmail/control/rules.smtpd.cdb \
-u $QMAILU -g $QMAILG :0 25 \
qmail-smtpd 2>&1
else
exec env PATH="/var/qmail/bin:$PATH" \
chpst -m 50000000 \
tcpserver -p -v \
-Xx /var/qmail/control/rules.smtpd.cdb \
-u $QMAILU -g $QMAILG :0 25 \

View File

@ -6,6 +6,7 @@ export SMTPAUTH="!"
export UTF8="1"
. /var/qmail/ssl/ssl.env
exec env PATH="/var/qmail/bin:/usr/local/bin:$PATH" \
chpst -m 50000000 \
sslserver -seV -Rp -l $HOSTNAME \
-Xx /var/qmail/control/rules.smtpd.cdb \
-u $QMAILU -g $QMAILG :0 465 \

View File

@ -7,6 +7,7 @@ export UCSPITLS="!"
export UTF8="1"
. /var/qmail/ssl/ssl.env
exec env PATH="/var/qmail/bin:/usr/local/bin:$PATH" \
chpst -m 50000000 \
sslserver -seVn -Rp -l $HOSTNAME \
-u $QMAILU -g $QMAILG :0 587 \
qmail-smtpd qmail-authuser true 2>&1

View File

@ -1,7 +1,7 @@
# Template file for 'sqmail'
pkgname=sqmail
version=4.0.06
revision=2
revision=3
create_wrksrc=yes
build_wrksrc="mail/${pkgname}/${pkgname}-${version}/src"
makedepends="fehQlibs libidn2-devel ucspi-ssl-devel"