-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathconfig.example.ini
More file actions
59 lines (52 loc) · 2.44 KB
/
Copy pathconfig.example.ini
File metadata and controls
59 lines (52 loc) · 2.44 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
# Example configuration for send-secure-mail
#
# Looked up in this order:
# $SEND_SECURE_MAIL_CONFIG
# ~/.config/send-secure-mail/config.ini
# /etc/send-secure-mail/config.ini
#
# Every value can be overridden by an environment variable:
# recipient -> SSM_RECIPIENT transport -> SSM_TRANSPORT etc.
[send-secure-mail]
# --- recipient (any mailbox whose owner can decrypt OpenPGP) -----------
recipient = you@example.org
# The recipient's public OpenPGP key. Used directly through
# "gpg --recipient-file", so no keyring and no trust database are involved.
recipient_key = /etc/send-secure-mail/recipient.asc
# Expected fingerprint. If it does not match the key file, the program
# aborts before anything is encrypted or sent.
recipient_fingerprint = 0123456789ABCDEF0123456789ABCDEF01234567
verify_fingerprint = yes
# --- sender (Gmail) ----------------------------------------------------
sender = your.name@gmail.com
sender_name = my-server
# --- delivery path -----------------------------------------------------
# sendmail = hand over to /usr/sbin/sendmail (msmtp-mta, Postfix, Exim)
# smtp = talk to Gmail over SMTP directly, no local MTA needed
transport = sendmail
sendmail_path = /usr/sbin/sendmail
smtp_host = smtp.gmail.com
smtp_port = 587
smtp_user = your.name@gmail.com
# File holding the Gmail app password, mode 0600. Alternatively use the
# SSM_SMTP_PASSWORD environment variable.
smtp_password_file = /etc/send-secure-mail/smtp-password
smtp_starttls = yes
# --- behaviour ---------------------------------------------------------
# yes (default): only "..." goes out in the clear, the real subject travels
# inside the encrypted part (protected headers + first body line).
# no = subject in the plaintext header, and therefore visible to Gmail.
hide_subject = yes
# What the plaintext header shows in place of the real subject. Anything
# here is visible to Gmail, so keep it constant and uninformative - a tag
# like "WG" makes the mails easy to spot and filter in the inbox list.
hidden_subject = ...
subject_prefix =
gzip_attachments = yes
# Attachments are truncated to this size, keeping the tail. 0 = no limit.
max_attachment_bytes = 5242880
# --- optional: sign with your own key ----------------------------------
gpg_path = gpg
# Fingerprint of a local secret key; empty = do not sign.
sign_key =
sign_passphrase_file =