diff --git a/dovecot/tasks/main.yml b/dovecot/tasks/main.yml index aa817086..7558afd5 100644 --- a/dovecot/tasks/main.yml +++ b/dovecot/tasks/main.yml @@ -10,6 +10,10 @@ tags: - dovecot +- name: Generate Diffie-Hellman parameters with the default size (4096 bits) + openssl_dhparam: + path: /etc/ssl/dhparams.pem + - name: disable pam auth replace: dest: /etc/dovecot/conf.d/10-auth.conf diff --git a/dovecot/templates/z-evolinux-defaults.conf.j2 b/dovecot/templates/z-evolinux-defaults.conf.j2 index 2c067b99..ab74ec0d 100644 --- a/dovecot/templates/z-evolinux-defaults.conf.j2 +++ b/dovecot/templates/z-evolinux-defaults.conf.j2 @@ -38,9 +38,9 @@ mail_max_userip_connections = 42 # SSL/TLS ssl = yes ssl_prefer_server_ciphers = yes -ssl_dh_parameters_length = 2048 +ssl_dh=