add rspamd

This commit is contained in:
Kopatz
2025-12-09 16:34:00 +01:00
parent 792555bd7d
commit 53dafb8b1f
4 changed files with 11 additions and 3 deletions

View File

@@ -41,6 +41,7 @@ in
"^/var/lib/postfix/queue/" "^/var/lib/postfix/queue/"
"^/var/lib/docker/overlay2" "^/var/lib/docker/overlay2"
"^/var/lib/docker/volumes/backingFsBlockDev" "^/var/lib/docker/volumes/backingFsBlockDev"
"^/var/lib/rspamd/rspamd.sock"
"^/tmp/tmux-.*" "^/tmp/tmux-.*"
"^/tmp/.*dotnet-diagnostic-.*" "^/tmp/.*dotnet-diagnostic-.*"
"^/tmp/.*clr-debug-pipe-.*" "^/tmp/.*clr-debug-pipe-.*"

View File

@@ -40,7 +40,6 @@ in
services.nginx = { services.nginx = {
enable = true; enable = true;
package = pkgs.nginxQuic;
additionalModules = [ pkgs.nginxModules.moreheaders ]; additionalModules = [ pkgs.nginxModules.moreheaders ];
# Use recommended settings # Use recommended settings

View File

@@ -127,8 +127,8 @@ in
smtpd_recipient_restrictions = "reject_non_fqdn_recipient,reject_unknown_recipient_domain,permit_sasl_authenticated,reject_unauth_destination"; smtpd_recipient_restrictions = "reject_non_fqdn_recipient,reject_unknown_recipient_domain,permit_sasl_authenticated,reject_unauth_destination";
smtpd_relay_restrictions = "permit_mynetworks,permit_sasl_authenticated,reject_unauth_destination"; smtpd_relay_restrictions = "permit_mynetworks,permit_sasl_authenticated,reject_unauth_destination";
# For DKIM (milter = mail filter) # For DKIM (milter = mail filter)
smtpd_milters = "unix:/run/opendkim/opendkim.sock"; smtpd_milters = [ "unix:/run/opendkim/opendkim.sock" ];
non_smtpd_milters = "$smtpd_milters"; non_smtpd_milters = [ "unix:/run/opendkim/opendkim.sock" ];
milter_default_action = "accept"; milter_default_action = "accept";
}; };
}; };
@@ -166,6 +166,10 @@ in
selector = "mail"; selector = "mail";
socket = "local:/run/opendkim/opendkim.sock"; socket = "local:/run/opendkim/opendkim.sock";
}; };
services.rspamd = {
enable = true;
postfix.enable = true;
};
services.dovecot2 = { services.dovecot2 = {
enable = true; enable = true;
enableImap = true; enableImap = true;

View File

@@ -117,6 +117,10 @@
}; };
}; };
programs.zoxide = {
enable = true;
enableZshIntegration = true;
};
nix.gc.automatic = lib.mkForce false; nix.gc.automatic = lib.mkForce false;
services.searx = { services.searx = {
enable = false; enable = false;