Browse Source

dovecot dh parameters length

Bob Mottram 9 years ago
parent
commit
3ddeb7fa94
1 changed files with 5 additions and 1 deletions
  1. 5
    1
      src/freedombone

+ 5
- 1
src/freedombone View File

@@ -6735,7 +6735,7 @@ function configure_imap {
6735 6735
   sed -i 's|ssl_cert =.*|ssl_cert = </etc/ssl/certs/dovecot.crt|g' /etc/dovecot/conf.d/10-ssl.conf
6736 6736
   sed -i 's|#ssl_key =.*|ssl_key = </etc/ssl/private/dovecot.key|g' /etc/dovecot/conf.d/10-ssl.conf
6737 6737
   sed -i 's|ssl_key =.*|ssl_key = </etc/ssl/private/dovecot.key|g' /etc/dovecot/conf.d/10-ssl.conf
6738
-  sed -i 's|#ssl_dh_parameters_length.*|ssl_dh_parameters_length = 1024|g' /etc/dovecot/conf.d/10-ssl.conf
6738
+  sed -i 's|#ssl_dh_parameters_length.*|ssl_dh_parameters_length = 2048|g' /etc/dovecot/conf.d/10-ssl.conf
6739 6739
   sed -i 's/#ssl_prefer_server_ciphers.*/ssl_prefer_server_ciphers = yes/g' /etc/dovecot/conf.d/10-ssl.conf
6740 6740
   sed -i "s|#ssl_protocols =.*|ssl_protocols = '$SSL_PROTOCOLS'|g" /etc/dovecot/conf.d/10-ssl.conf
6741 6741
   sed -i "s|ssl_protocols =.*|ssl_protocols = '$SSL_PROTOCOLS'|g" /etc/dovecot/conf.d/10-ssl.conf
@@ -6778,6 +6778,10 @@ function configure_imap {
6778 6778
   # battery powered mobile devices
6779 6779
   sed -i 's|#imap_idle_notify_interval =.*|imap_idle_notify_interval = 29|g' /etc/dovecot/conf.d/20-imap.conf
6780 6780
 
6781
+  if [ -f /var/lib/dovecot/ssl-parameters.dat ]; then
6782
+      rm /var/lib/dovecot/ssl-parameters.dat
6783
+  fi
6784
+  
6781 6785
   service dovecot restart
6782 6786
   echo 'configure_imap' >> $COMPLETION_FILE
6783 6787
 }