summaryrefslogtreecommitdiff
path: root/manifests/base.pp
blob: 972fa100ddced5eca1d005eba1837019434a9753 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
class mail::base {
  # Postfix configuration
  postfix::config {
    "mydomain":                            value => "$domain";
    "myhostname":                          value => "$fqdn";
    "mydestination":                       value => "$postfix_mydestination";
    "mynetworks":                          value => "$postfix_mynetworks";
    "relay_domains":                       value => '$mydestination';
    "transport_maps":                      value => "hash:/etc/postfix/transport";
    "mailbox_command":                     value => '/usr/bin/maildrop -d ${USER}';
    "virtual_mailbox_base":                value => '/var/mail/virtual';
    "virtual_uid_maps":                    value => 'static:5000';
    "virtual_gid_maps":                    value => 'static:5000';
    "virtual_transport":                   value => 'dovecot';
    "dovecot_destination_recipient_limit": value => '1';
    "recipient_delimiter":                 value => '+';
  }

  postfix::hash { "/etc/postfix/virtual":
    ensure => present,
  }

  postfix::hash { "/etc/postfix/transport":
    ensure => present,
  }

  # Recipient restrictions
  postfix::config { "smtpd_recipient_restrictions":
    value => 'permit_mynetworks, permit_sasl_authenticated, reject_unauth_destination, reject_rbl_client psbl.surriel.com, check_policy_service inet:127.0.0.1:60000' }

  # Virtual mailboxes
  file { '/var/mail/virtual':
    ensure  => directory,
    owner   => vmail,
    group   => vmail,
    mode    => 0750,
    require => User['vmail'],
  }

  group { "vmail":
    ensure => present,
    gid    => 5000,
  }

  user { "vmail":
    ensure   => present,
    uid      => 5000,
    gid      => "vmail",
    password => "*",
    home     => '/var/mail/virtual',
    require  => Group['vmail'],
  }
}