postfix.sh 7.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258
  1. #!/bin/bash
  2. trap "postfix stop" EXIT
  3. [[ ! -d /opt/postfix/conf/sql/ ]] && mkdir -p /opt/postfix/conf/sql/
  4. cat /dev/null > /etc/aliases;
  5. echo 'null: /dev/null' >> /etc/aliases;
  6. echo '"ham: "|/usr/bin/curl -s --data-binary @- --unix-socket /rspamd-sock/rspamd.sock http://rspamd/learnham"' >> /etc/aliases;
  7. echo 'spam: "|/usr/bin/curl -s --data-binary @- --unix-socket /rspamd-sock/rspamd.sock http://rspamd/learnspam"' >> /etc/aliases;
  8. newaliases;
  9. cat <<EOF > /opt/postfix/conf/sql/mysql_relay_recipient_maps.cf
  10. user = ${DBUSER}
  11. password = ${DBPASS}
  12. hosts = mysql
  13. dbname = ${DBNAME}
  14. query = SELECT DISTINCT
  15. CASE WHEN '%d' IN (
  16. SELECT domain FROM domain
  17. WHERE relay_all_recipients=1
  18. AND domain='%d'
  19. AND backupmx=1
  20. )
  21. THEN '%s' ELSE (
  22. SELECT goto FROM alias WHERE address='%s' AND active='1'
  23. )
  24. END AS result;
  25. EOF
  26. cat <<EOF > /opt/postfix/conf/sql/mysql_tls_enforce_in_policy.cf
  27. user = ${DBUSER}
  28. password = ${DBPASS}
  29. hosts = mysql
  30. dbname = ${DBNAME}
  31. query = SELECT IF(EXISTS(
  32. SELECT 'TLS_ACTIVE' FROM alias
  33. LEFT OUTER JOIN mailbox ON mailbox.username = alias.goto
  34. WHERE (address='%s'
  35. OR address IN (
  36. SELECT CONCAT('%u', '@', target_domain) FROM alias_domain
  37. WHERE alias_domain='%d'
  38. )
  39. ) AND json_extract(attributes, '$.tls_enforce_in') LIKE '%%1%%' AND mailbox.active = '1'
  40. ), 'reject_plaintext_session', NULL) AS 'tls_enforce_in';
  41. EOF
  42. cat <<EOF > /opt/postfix/conf/sql/mysql_sender_dependent_default_transport_maps.cf
  43. user = ${DBUSER}
  44. password = ${DBPASS}
  45. hosts = mysql
  46. dbname = ${DBNAME}
  47. query = SELECT GROUP_CONCAT(transport SEPARATOR '') AS transport_maps
  48. FROM (
  49. SELECT IF(EXISTS(SELECT 'smtp_type' FROM alias
  50. LEFT OUTER JOIN mailbox ON mailbox.username = alias.goto
  51. WHERE (address = '%s'
  52. OR address IN (
  53. SELECT CONCAT('%u', '@', target_domain) FROM alias_domain
  54. WHERE alias_domain = '%d'
  55. )
  56. )
  57. AND json_extract(attributes, '$.tls_enforce_out') LIKE '%%1%%'
  58. AND mailbox.active = '1'
  59. ), 'smtp_enforced_tls:', 'smtp:') AS 'transport'
  60. UNION ALL
  61. SELECT hostname AS transport FROM relayhosts
  62. LEFT OUTER JOIN domain ON domain.relayhost = relayhosts.id
  63. WHERE relayhosts.active = '1'
  64. AND domain = '%d'
  65. OR domain IN (
  66. SELECT target_domain FROM alias_domain
  67. WHERE alias_domain = '%d'
  68. )
  69. )
  70. AS transport_view;
  71. EOF
  72. cat <<EOF > /opt/postfix/conf/sql/mysql_sasl_passwd_maps.cf
  73. user = ${DBUSER}
  74. password = ${DBPASS}
  75. hosts = mysql
  76. dbname = ${DBNAME}
  77. query = SELECT CONCAT_WS(':', username, password) AS auth_data FROM relayhosts
  78. WHERE id IN (
  79. SELECT relayhost FROM domain
  80. WHERE CONCAT('@', domain) = '%s'
  81. OR '%s' IN (
  82. SELECT CONCAT('@', alias_domain) FROM alias_domain
  83. )
  84. )
  85. AND username != '';
  86. EOF
  87. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_alias_domain_catchall_maps.cf
  88. user = ${DBUSER}
  89. password = ${DBPASS}
  90. hosts = mysql
  91. dbname = ${DBNAME}
  92. query = SELECT goto FROM alias, alias_domain
  93. WHERE alias_domain.alias_domain = '%d'
  94. AND alias.address = CONCAT('@', alias_domain.target_domain)
  95. AND alias.active = 1 AND alias_domain.active='1'
  96. EOF
  97. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_alias_domain_maps.cf
  98. user = ${DBUSER}
  99. password = ${DBPASS}
  100. hosts = mysql
  101. dbname = ${DBNAME}
  102. query = SELECT username FROM mailbox, alias_domain
  103. WHERE alias_domain.alias_domain = '%d'
  104. AND mailbox.username = CONCAT('%u', '@', alias_domain.target_domain)
  105. AND mailbox.active = '1'
  106. AND alias_domain.active='1'
  107. EOF
  108. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_alias_maps.cf
  109. user = ${DBUSER}
  110. password = ${DBPASS}
  111. hosts = mysql
  112. dbname = ${DBNAME}
  113. query = SELECT goto FROM alias
  114. WHERE address='%s'
  115. AND active='1';
  116. EOF
  117. cat <<EOF > /opt/postfix/conf/sql/mysql_recipient_bcc_maps.cf
  118. user = ${DBUSER}
  119. password = ${DBPASS}
  120. hosts = mysql
  121. dbname = ${DBNAME}
  122. query = SELECT bcc_dest FROM bcc_maps
  123. WHERE local_dest='%s'
  124. AND type='rcpt'
  125. AND active='1';
  126. EOF
  127. cat <<EOF > /opt/postfix/conf/sql/mysql_sender_bcc_maps.cf
  128. user = ${DBUSER}
  129. password = ${DBPASS}
  130. hosts = mysql
  131. dbname = ${DBNAME}
  132. query = SELECT bcc_dest FROM bcc_maps
  133. WHERE local_dest='%s'
  134. AND type='sender'
  135. AND active='1';
  136. EOF
  137. cat <<EOF > /opt/postfix/conf/sql/mysql_recipient_canonical_maps.cf
  138. user = ${DBUSER}
  139. password = ${DBPASS}
  140. hosts = mysql
  141. dbname = ${DBNAME}
  142. query = SELECT new_dest FROM recipient_maps
  143. WHERE old_dest='%s'
  144. AND active='1';
  145. EOF
  146. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_domains_maps.cf
  147. user = ${DBUSER}
  148. password = ${DBPASS}
  149. hosts = mysql
  150. dbname = ${DBNAME}
  151. query = SELECT alias_domain from alias_domain WHERE alias_domain='%s' AND active='1'
  152. UNION
  153. SELECT domain FROM domain
  154. WHERE domain='%s'
  155. AND active = '1'
  156. AND backupmx = '0'
  157. EOF
  158. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_mailbox_maps.cf
  159. user = ${DBUSER}
  160. password = ${DBPASS}
  161. hosts = mysql
  162. dbname = ${DBNAME}
  163. query = SELECT maildir FROM mailbox WHERE username='%s' AND active = '1'
  164. EOF
  165. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_relay_domain_maps.cf
  166. user = ${DBUSER}
  167. password = ${DBPASS}
  168. hosts = mysql
  169. dbname = ${DBNAME}
  170. query = SELECT domain FROM domain WHERE domain='%s' AND backupmx = '1' AND active = '1'
  171. EOF
  172. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_sender_acl.cf
  173. user = ${DBUSER}
  174. password = ${DBPASS}
  175. hosts = mysql
  176. dbname = ${DBNAME}
  177. # First select queries domain and alias_domain to determine if domains are active.
  178. query = SELECT goto FROM alias
  179. WHERE address='%s'
  180. AND active='1'
  181. AND (domain IN
  182. (SELECT domain FROM domain
  183. WHERE domain='%d'
  184. AND active='1')
  185. OR domain in (
  186. SELECT alias_domain FROM alias_domain
  187. WHERE alias_domain='%d'
  188. AND active='1'
  189. )
  190. )
  191. UNION
  192. SELECT logged_in_as FROM sender_acl
  193. WHERE send_as='@%d'
  194. OR send_as='%s'
  195. OR send_as IN (
  196. SELECT CONCAT('@',target_domain) FROM alias_domain
  197. WHERE alias_domain = '%d')
  198. OR send_as IN (
  199. SELECT CONCAT('%u','@',target_domain) FROM alias_domain
  200. WHERE alias_domain = '%d')
  201. AND logged_in_as NOT IN (
  202. SELECT goto FROM alias
  203. WHERE address='%s')
  204. UNION
  205. SELECT username FROM mailbox, alias_domain
  206. WHERE alias_domain.alias_domain = '%d'
  207. AND mailbox.username = CONCAT('%u','@',alias_domain.target_domain)
  208. AND mailbox.active ='1'
  209. AND alias_domain.active='1'
  210. EOF
  211. cat <<EOF > /opt/postfix/conf/sql/mysql_virtual_spamalias_maps.cf
  212. user = ${DBUSER}
  213. password = ${DBPASS}
  214. hosts = mysql
  215. dbname = ${DBNAME}
  216. query = SELECT goto FROM spamalias
  217. WHERE address='%s'
  218. AND validity >= UNIX_TIMESTAMP()
  219. EOF
  220. # Reset GPG key permissions
  221. mkdir -p /var/lib/zeyple/keys
  222. chmod 700 /var/lib/zeyple/keys
  223. chown -R 600:600 /var/lib/zeyple/keys
  224. # Fix Postfix permissions
  225. chgrp -R postdrop /var/spool/postfix/public
  226. chgrp -R postdrop /var/spool/postfix/maildrop
  227. postfix set-permissions
  228. # Check Postfix configuration
  229. postconf -c /opt/postfix/conf
  230. if [[ $? != 0 ]]; then
  231. echo "Postfix configuration error, refusing to start."
  232. exit 1
  233. else
  234. postfix -c /opt/postfix/conf start
  235. sleep 126144000
  236. fi