5 echo "Give arguments of mail domain and DKIM selector."
6 echo "Also, if hosting mail for entire domain, give third argument 'domainwide'."
13 config_tree_prefix="${HOME}/config/all_new_2018"
14 setup_scripts_dir="${config_tree_prefix}/setup_scripts"
15 cd "${setup_scripts_dir}"
17 # Set up DKIM key if necessary.
18 mkdir -p /etc/dkimkeys/
20 if [ ! -f "/etc/dkimkeys/${dkim_selector}.private" ]; then
23 dpkg -s opendkim-tools &> /dev/null
26 if [ ! "${preinstalled}" -eq "0" ]; then
27 apt install -y opendkim-tools
29 opendkim-genkey -s "${dkim_selector}"
30 mv "${dkim_selector}.private" /etc/dkimkeys/
31 if [ ! "${preinstalled}" -eq "0" ]; then
32 apt -y --purge autoremove opendkim-tools
36 # Link and adapt mail-server-specific /etc/ files.
37 ./hardlink_etc.sh mail
38 sed -i "s/REPLACE_maildomain_ECALPER/${mail_domain}/g" /etc/mailutils.conf
39 sed -i "s/REPLACE_Domain_ECALPER/${mail_domain}/g" /etc/opendkim.conf
40 sed -i "s/REPLACE_Selector_ECALPER/${dkim_selector}/g" /etc/opendkim.conf
41 sed -i "s/REPLACE_myhostname_ECALPER/$(hostname -f)/g" /etc/postfix/main.cf
42 if [ "${domainwide}" = "domainwide" ]; then
43 sed -i 's/REPLACE_mydomain_if_domainwide_ECALPER/$mydomain/g' /etc/postfix/main.cf
45 sed -i 's/REPLACE_mydomain_if_domainwide_ECALPER//g' /etc/postfix/main.cf
47 # Since we re-set the iptables rules, we need to reload them.
48 iptables-restore /etc/iptables/rules.v4
50 # Some useful debconf selections.
51 echo "postfix postfix/main_mailer_type string 'Internet Site'" | debconf-set-selections
52 echo "ssl_cert = </etc/letsencrypt/live/$(hostname -f)/fullchain.pem" > /etc/dovecot/conf.d/99-ssl-certs.conf
53 echo "ssl_key = </etc/letsencrypt/live/$(hostname -f)/privkey.pem" >> /etc/dovecot/conf.d/99-ssl-certs.conf
55 # The second line should not be necessary due to the first line, but for
56 # some reason the installation forgets to set up /etc/mailname early
57 # enough to not (when running newaliases) stumble over its absence.
58 echo "postfix postfix/mailname string ${mail_domain}" | debconf-set-selections
59 echo "${mail_domain}" > /etc/mailname
61 # Everything should now be ready for installations. Note that we don't
62 # strictly need dovecot-lmtpd, as postfix will deliver mail to /var/mail/USER
63 # in any case, to be found by dovecot; we use it as a transport mechanism to
64 # allow for sophisticated stuff like dovecot-side sieve filtering (installed
65 # with dovecot-sieve).
66 apt install -y -o Dpkg::Options::=--force-confold postfix dovecot-imapd dovecot-lmtpd dovecot-sieve opendkim
67 cp "${config_tree_prefix}/user_files/dovecot.sieve" /home/plom/.dovecot.sieve
68 chown plom:plom /home/plom/.dovecot.sieve
70 # In addition to our postfix server receiving mails, we funnel mails from a
71 # POP3 account into dovecot via fetchmail. It might make sense to adapt the
72 # ~/.dovecot.sieve to move mails targeted to the fetched mail account to their
74 apt install -y fetchmail
75 cp "${config_tree_prefix}/user_files/fetchmailrc" /home/plom/.fetchmailrc
76 chown plom:plom /home/plom/.fetchmailrc
77 systemctl daemon-reload
78 systemctl start fetchmail.timer
80 # Final advice to user.
81 echo "TODO: Ensure MX entry for your system in your DNS configuration."
82 echo "TODO: Ensure a proper SPF entry for this system in your DNS configuration; something like 'v=spf1 mx -all' mapped to your host."
83 if [ "${add_dkim_record}" -eq "1" ]; then
84 echo "TODO: Add the following DKIM entry to your DNS configuration (possibly with slightly changed host entry – if your mail domain includes a subdomain, append that with a dot):"
85 cat "${dkim_selector}.txt"
87 echo "TODO: passwd plom"
88 echo "TODO: adapt /home/plom/.dovecot.sieve and /home/plom/.fetchmailrc"