summaryrefslogtreecommitdiff
path: root/sys/mail/default.nix
diff options
context:
space:
mode:
authorAlejandro Soto <alejandro@34project.org>2024-07-20 16:02:20 -0600
committerAlejandro Soto <alejandro@34project.org>2024-07-20 18:01:46 -0600
commit0ed17847d32885b3400dd7f33920898445a7a505 (patch)
tree27ccaf5bf859000356b835b611c97de46998ed08 /sys/mail/default.nix
parentbc24082c6f3a8e0b314d338d42b2bf76073fd5f7 (diff)
sys/pki: initial commit, declares mail-fullchain-crl
Diffstat (limited to '')
-rw-r--r--sys/mail/default.nix9
1 files changed, 1 insertions, 8 deletions
diff --git a/sys/mail/default.nix b/sys/mail/default.nix
index 5b7e4b5..71678e3 100644
--- a/sys/mail/default.nix
+++ b/sys/mail/default.nix
@@ -106,14 +106,7 @@ in
#TODO: automatizar implantación de archivo de CA
- # Orden de concatenación de mail-fullchain-crl.crt:
- # - Issuing CA cert
- # - Issuing CA CRL
- # - Intermediate CA cert
- # - Intermediate CA CRL
- # - Root CA cert
- # - Root CA CRL
- ssl_ca = </var/trust/ca/mail-fullchain-crl.crt
+ ssl_ca = <${config.local.ca.chains.mail-fullchain-crl}
ssl_require_crl = yes
ssl_verify_client_cert = yes