Commit Graph
2535 Commits
Author SHA1 Message Date
downtownallday 8d033a4bdd again 2020-06-02 17:11:58 -04:00
downtownallday c0a2e048b3 again 2020-06-02 16:58:05 -04:00
downtownallday 504de9874f More systemctl reset attempts for travis 2020-06-02 15:37:42 -04:00
downtownallday c91012a338 Add option to skip tests requiring remote smtp 2020-06-02 15:18:56 -04:00
downtownallday e56084d682 Try resetting nsd restart count to avoid errors in mgmt tests 2020-06-02 14:48:26 -04:00
downtownallday 80fc86f6c1 again 2020-06-02 13:56:40 -04:00
downtownallday 107cab2a60 again 2020-06-02 13:54:05 -04:00
downtownallday 24f4c048cc Add the primary hostname to /etc/hosts 2020-06-02 13:45:22 -04:00
downtownallday c9a4aec7ed again 2020-06-02 13:12:13 -04:00
downtownallday f4ae538c16 again 2020-06-02 13:09:57 -04:00
downtownallday f2e970fe38 Dump the output from failed tests 2020-06-02 13:04:16 -04:00
downtownallday c4194ecfbc again 2020-06-02 11:44:27 -04:00
downtownallday 9beb98bbba Again 2020-06-02 11:39:23 -04:00
downtownallday 9a1639b5c2 Again 2020-06-02 11:37:04 -04:00
downtownallday 6aeb449d65 Again 2020-06-02 11:35:58 -04:00
downtownallday 342b499063 Mount the apparmor filesystem 2020-06-02 11:32:24 -04:00
downtownallday 1d789dbe53 Don't apply apparmor configuration when apparmor is disabled (eg. travis-ci) 2020-06-02 11:21:59 -04:00
downtownallday c945d8fbb3 Skip network checks 2020-06-02 11:02:22 -04:00
downtownallday 105c531a2a Comment 2020-06-02 10:51:56 -04:00
downtownallday f0835acf9d Run setup and tests under sudo 2020-06-02 10:44:05 -04:00
downtownallday c77f4ec37d Initial travis config 2020-06-02 10:40:27 -04:00
downtownallday 8d847ae9a9 Avoid loop device naming conflicts with snaps by optaining an available name from the system instead of using a static device name ("/dev/loop0"). 2020-06-02 09:22:24 -04:00
downtownallday 66c9401254 Merge branch 'master' into EHDD 2020-05-30 09:52:14 -04:00
downtownallday e41370948b Merge branch 'master' into ldap 2020-05-30 09:49:12 -04:00
Joshua Tauberer bc1be9d70a readme fixes 2020-05-30 08:15:31 -04:00
Joshua Tauberer 3a4b8da8fd More for MTA-STS for incoming mail
* Create the mta_sts A/AAAA records even if there is no valid TLS certificate because we can't get a TLS certificate if we don't set up the domains.
* Make the policy id in the TXT record stable by using a hash of the policy file so that the DNS record doesn't change every day, which means no nightly notification and also it allows for longer caching by sending MTAs.
2020-05-30 08:04:09 -04:00
downtownallday 64e603611a Additional fix required for #1761 2020-05-29 19:39:10 -04:00
downtownallday b727c87fd8 Merge branch 'master' into EHDD 2020-05-29 19:33:52 -04:00
downtownallday 640048db04 Merge branch 'master' into ldap 2020-05-29 17:11:39 -04:00
Joshua Tauberer 37dad9d4bb Provision certificates from Let's Encrypt grouped by DNS zone
Folks didn't want certificates exposing all of the domains hosted by the server (although this can already be found on the internet).

Additionally, if one domain fails (usually because of a misconfiguration), it would be nice if not everything fails. So grouping them helps with that.

Fixes #690.
2020-05-29 15:38:18 -04:00
Joshua Tauberer b805f8695e Move status checks for www, autoconfig, autodiscover, and mta-sts to within the section for the parent domain
Since we're checking the MTA-STS policy, there's no need to check that the domain resolves etc. directly.
2020-05-29 15:38:13 -04:00
Joshua Tauberer 10bedad3a3 MTA-STS tweaks, add status check using postfix-mta-sts-resolver, change to enforce 2020-05-29 15:36:52 -04:00
A. SchippersandDaniel Mabbett afc9f9686a Publish MTA-STS policy for incoming mail (#1731)
Co-authored-by: Daniel Mabbett <triumph_2500@hotmail.com>
2020-05-29 15:30:07 -04:00
downtownallday 4cf82ae36e Merge branch 'master' into EHDD 2020-05-17 10:18:03 -04:00
downtownallday 9d89c40ad7 Merge branch 'master' into ldap 2020-05-17 10:17:25 -04:00
Joshua Tauberer 7de8fc9bc0 v0.45 v0.45 2020-05-16 06:45:23 -04:00
downtownallday f37664439b Merge branch 'master' into EHDD 2020-05-11 13:45:50 -04:00
downtownallday a30b721014 Merge branch 'master' into ldap 2020-05-11 13:45:12 -04:00
yeuna92 c87b62b8c2 Fix path to Roundcube error log in fail2ban jails.conf (#1761) 2020-05-11 08:59:42 -04:00
clonejo 8fe33da85d Run nightly tasks on a random minute after 03:00 to avoid overload (#1754)
- The MIAB version check regularly fails at 03:00, presumably because a
  large portion of installations is checking mailinabox.email at the same
  time.
- At installation time, the time of the nightly clock is configured to
  run at a random minute after 03:00, but before 04:00.
- Users might expect the nightly tasks to be over at a certain time and
  run their own custom tasks afterwards. This could thus interfere with
  custom backup routines.
- This breaks reproducibility of the installation process.
- Users might also be surprised by the nightly task time changing after
  updating MIAB.
2020-05-10 19:54:45 -04:00
Joshua Tauberer c202a5cbc6 Changlog entries 2020-05-10 19:46:25 -04:00
Joshua Tauberer 1353949e42 Upgrade Roundcube to 1.4.4, Nextcloud to 17.0.6, Z-Push to 2.5.2 2020-05-10 19:44:12 -04:00
Joshua Tauberer c19f8c9ee6 Change Mozilla autoconfig useGlobalPreferredServer property to false
Fixes #1736.
2020-05-10 19:29:01 -04:00
downtownallday 3c61a655e4 Merge branch 'master' into EHDD 2020-04-21 07:05:12 -04:00
downtownallday e7c27d9035 Merge branch 'master' into ldap 2020-04-21 07:04:23 -04:00
Michael Becker 40b21c466d Fypo fix in users.html (#1748) 2020-04-13 22:10:52 -04:00
downtownallday b70eb65e45 Merge branch 'master' into EHDD 2020-04-11 18:12:58 -04:00
downtownallday 53ba80daaf Merge branch 'master' into ldap 2020-04-11 18:12:32 -04:00
Stefan f52749b403 Better return codes after errors in the setup scripts (#1741) 2020-04-11 14:18:44 -04:00
Sumit d67e09f334 Allowing adding nginx aliases in www/custom.yaml (#1742)
with this nginx will keep on proxying requests and serve static content
instead of passing this responsibility to proxied server

Without this the one needs to run an additional server to server static
content on the proxied url
2020-04-11 14:17:46 -04:00