Bob Mottram 10 лет назад
Родитель
Сommit
2493cf9b3e
2 измененных файлов: 3 добавлений и 2 удалений
  1. 2
    2
      src/freedombone
  2. 1
    0
      src/freedombone-sec

+ 2
- 2
src/freedombone Просмотреть файл

@@ -5391,8 +5391,8 @@ function configure_imap {
5391 5391
   sed -i 's|ssl_key =.*|ssl_key = </etc/ssl/private/dovecot.key|g' /etc/dovecot/conf.d/10-ssl.conf
5392 5392
   sed -i 's|#ssl_dh_parameters_length.*|ssl_dh_parameters_length = 1024|g' /etc/dovecot/conf.d/10-ssl.conf
5393 5393
   sed -i 's/#ssl_prefer_server_ciphers.*/ssl_prefer_server_ciphers = yes/g' /etc/dovecot/conf.d/10-ssl.conf
5394
-  sed -i 's|#ssl_protocols =.*|ssl_protocols = !SSLv2|g' /etc/dovecot/conf.d/10-ssl.conf
5395
-  sed -i 's|ssl_protocols =.*|ssl_protocols = !SSLv2|g' /etc/dovecot/conf.d/10-ssl.conf
5394
+  sed -i "s|#ssl_protocols =.*|ssl_protocols = $SSL_PROTOCOLS|g" /etc/dovecot/conf.d/10-ssl.conf
5395
+  sed -i "s|ssl_protocols =.*|ssl_protocols = $SSL_PROTOCOLS|g" /etc/dovecot/conf.d/10-ssl.conf
5396 5396
   echo "ssl_cipher_list = '$SSL_CIPHERS'" >> /etc/dovecot/conf.d/10-ssl.conf
5397 5397
 
5398 5398
   sed -i 's/#process_limit =.*/process_limit = 5/g' /etc/dovecot/conf.d/10-master.conf

+ 1
- 0
src/freedombone-sec Просмотреть файл

@@ -161,6 +161,7 @@ function change_imap_settings {
161 161
       return
162 162
   fi
163 163
   sed -i "s|ssl_cipher_list.*|ssl_cipher_list = '$SSL_CIPHERS'|g" $DOVECOT_CIPHERS
164
+  sed -i "s|ssl_protocols.*|ssl_protocols = $SSL_PROTOCOLS|g" $DOVECOT_CIPHERS
164 165
   service dovecot restart
165 166
   echo 'imap security settings changed'
166 167
 }