Re: exim4 as a smarthost with TLS
Reco <recoverym4n@enotuniq.net> wrote:
> On Sat, Jul 31, 2021 at 02:45:34PM +0200, Sven Hartge wrote:
>> Reco <recoverym4n@enotuniq.net> wrote:
>>
>> > Seems straightforward enough.
>> > Edit /etc/exim4/exim4.conf.template, you'll need to comment out a block
>> > similar to this:
>>
>> > .ifndef REMOTE_SMTP_SMARTHOST_TLS_VERIFY_HOSTS
>> > REMOTE_SMTP_SMARTHOST_TLS_VERIFY_HOSTS = *
>> > .endif
>>
>> > Do not touch second block (starting with .ifdef
>> > REMOTE_SMTP_SMARTHOST_TLS_VERIFY_HOSTS).
>>
>> > Execute /usr/sbin/update-exim4.conf.
>> > Bounce exim4.
>>
>> > Smarthost certificate verification should be disabled after this.
>>
>> Wouldn't it be easier to just create /etc/exim4/exim4.conf.localmacros
>> and put
>>
>> REMOTE_SMTP_SMARTHOST_TLS_VERIFY_HOSTS = !*
>>
>> in it?
> Could be. Will exim4.conf.localmacros apply to non-split exim config?
It will *only* apply to a non-split config.
For the split config you need to create a file like
/etc/exim4/conf.d/main/000_localconfig instead.
Documentation says:
,----[ /usr/share/doc/exim4-base/README.Debian.gz
| For split configuration, you can drop the local configuration file
| anywhere in /etc/exim4/conf.d/main. Just make sure it gets read
| before the macro is first used. 000_localmacros is a possible name,
| guaranteeing first order. For a non-split configuration,
| /etc/exim4/exim4.conf.localmacros gets read before
| /etc/exim4/exim4.conf.template.
`----
S°
--
Sigmentation fault. Core dumped.
Reply to: