mirror of
https://gitlab.sectorq.eu/home/docker-compose.git
synced 2025-07-02 08:18:33 +02:00
lala
This commit is contained in:
262
mailu/docker-compose.yml
Normal file
262
mailu/docker-compose.yml
Normal file
@ -0,0 +1,262 @@
|
|||||||
|
# This file is auto-generated by the Mailu configuration wizard.
|
||||||
|
# Please read the documentation before attempting any change.
|
||||||
|
# Generated for compose flavor
|
||||||
|
|
||||||
|
services:
|
||||||
|
|
||||||
|
# External dependencies
|
||||||
|
redis:
|
||||||
|
image: ${DOCKER_REGISTRY:-}redis:alpine
|
||||||
|
restart: unless-stopped
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/redis:/data"
|
||||||
|
depends_on:
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
# Core services
|
||||||
|
front:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}nginx:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
logging:
|
||||||
|
driver: loki
|
||||||
|
options:
|
||||||
|
loki-url: "http://192.168.77.101:3100/loki/api/v1/push"
|
||||||
|
ports:
|
||||||
|
- "0.0.0.0:8880:80"
|
||||||
|
- "0.0.0.0:8443:443"
|
||||||
|
- "0.0.0.0:25:25"
|
||||||
|
- "0.0.0.0:465:465"
|
||||||
|
- "0.0.0.0:587:587"
|
||||||
|
- "0.0.0.0:110:110"
|
||||||
|
- "0.0.0.0:995:995"
|
||||||
|
- "0.0.0.0:143:143"
|
||||||
|
- "0.0.0.0:993:993"
|
||||||
|
- "0.0.0.0:4190:4190"
|
||||||
|
networks:
|
||||||
|
- default
|
||||||
|
- webmail
|
||||||
|
- radicale
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/certs:/certs"
|
||||||
|
- "/share/docker_data/mailu3/overrides/nginx:/overrides:ro"
|
||||||
|
depends_on:
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
resolver:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}unbound:${MAILU_VERSION:-2024.06}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-resolver
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
ipv4_address: 192.168.205.254
|
||||||
|
|
||||||
|
admin:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}admin:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-admin
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/data:/data"
|
||||||
|
- "/share/docker_data/mailu3/dkim:/dkim"
|
||||||
|
depends_on:
|
||||||
|
- redis
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
imap:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}dovecot:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-imap
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/mail:/mail"
|
||||||
|
- "/share/docker_data/mailu3/overrides/dovecot:/overrides:ro"
|
||||||
|
networks:
|
||||||
|
- default
|
||||||
|
- fts_attachments
|
||||||
|
depends_on:
|
||||||
|
- front
|
||||||
|
- fts_attachments
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
smtp:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}postfix:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-smtp
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/mailqueue:/queue"
|
||||||
|
- "/share/docker_data/mailu3/overrides/postfix:/overrides:ro"
|
||||||
|
depends_on:
|
||||||
|
- front
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
oletools:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}oletools:${MAILU_VERSION:-2024.06}
|
||||||
|
hostname: oletools
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-oletools
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
networks:
|
||||||
|
- oletools
|
||||||
|
depends_on:
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
fts_attachments:
|
||||||
|
image: ${DOCKER_REGISTRY:-}apache/tika:2.9.2.1-full
|
||||||
|
hostname: tika
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-tika
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
networks:
|
||||||
|
- fts_attachments
|
||||||
|
depends_on:
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
healthcheck:
|
||||||
|
test: ["CMD-SHELL", "wget -nv -t1 -O /dev/null http://127.0.0.1:9998/tika || exit 1"]
|
||||||
|
interval: 10s
|
||||||
|
timeout: 5s
|
||||||
|
retries: 3
|
||||||
|
start_period: 10s
|
||||||
|
|
||||||
|
antispam:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}rspamd:${MAILU_VERSION:-2024.06}
|
||||||
|
hostname: antispam
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-antispam
|
||||||
|
networks:
|
||||||
|
- default
|
||||||
|
- oletools
|
||||||
|
- clamav
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/filter:/var/lib/rspamd"
|
||||||
|
- "/share/docker_data/mailu3/overrides/rspamd:/overrides:ro"
|
||||||
|
depends_on:
|
||||||
|
- front
|
||||||
|
- redis
|
||||||
|
- oletools
|
||||||
|
- antivirus
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
# Optional services
|
||||||
|
antivirus:
|
||||||
|
image: ${DOCKER_REGISTRY:-}clamav/clamav-debian:1.2.0-6
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-antivirus
|
||||||
|
networks:
|
||||||
|
- clamav
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/filter/clamav:/var/lib/clamav"
|
||||||
|
healthcheck:
|
||||||
|
test: ["CMD-SHELL", "kill -0 `cat /tmp/clamd.pid` && kill -0 `cat /tmp/freshclam.pid`"]
|
||||||
|
interval: 10s
|
||||||
|
timeout: 5s
|
||||||
|
retries: 3
|
||||||
|
start_period: 10s
|
||||||
|
|
||||||
|
webdav:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}radicale:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-webdav
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/dav:/data"
|
||||||
|
networks:
|
||||||
|
- radicale
|
||||||
|
|
||||||
|
fetchmail:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}fetchmail:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-fetchmail
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/data/fetchmail:/data"
|
||||||
|
depends_on:
|
||||||
|
- admin
|
||||||
|
- smtp
|
||||||
|
- imap
|
||||||
|
- resolver
|
||||||
|
dns:
|
||||||
|
- 192.168.205.254
|
||||||
|
|
||||||
|
# Webmail
|
||||||
|
webmail:
|
||||||
|
image: ${DOCKER_REGISTRY:-}ghcr.io/mailu/${DOCKER_PREFIX:-}webmail:${MAILU_VERSION:-2024.06}
|
||||||
|
restart: ${RESTART:-unless-stopped}
|
||||||
|
env_file: stack.env
|
||||||
|
# logging:
|
||||||
|
# driver: syslog
|
||||||
|
# options:
|
||||||
|
# tag: mailu-webmail
|
||||||
|
volumes:
|
||||||
|
- "/share/docker_data/mailu3/webmail:/data"
|
||||||
|
- "/share/docker_data/mailu3/overrides/roundcube:/overrides:ro"
|
||||||
|
networks:
|
||||||
|
- webmail
|
||||||
|
depends_on:
|
||||||
|
- front
|
||||||
|
|
||||||
|
networks:
|
||||||
|
default:
|
||||||
|
driver: bridge
|
||||||
|
ipam:
|
||||||
|
driver: default
|
||||||
|
config:
|
||||||
|
- subnet: 192.168.205.0/24
|
||||||
|
radicale:
|
||||||
|
driver: bridge
|
||||||
|
webmail:
|
||||||
|
driver: bridge
|
||||||
|
clamav:
|
||||||
|
driver: bridge
|
||||||
|
oletools:
|
||||||
|
driver: bridge
|
||||||
|
internal: true
|
||||||
|
fts_attachments:
|
||||||
|
driver: bridge
|
||||||
|
internal: true
|
167
mailu/stack.env
Normal file
167
mailu/stack.env
Normal file
@ -0,0 +1,167 @@
|
|||||||
|
# Mailu main configuration file
|
||||||
|
#
|
||||||
|
# This file is autogenerated by the configuration management wizard for compose flavor.
|
||||||
|
# For a detailed list of configuration variables, see the documentation at
|
||||||
|
# https://mailu.io
|
||||||
|
|
||||||
|
###################################
|
||||||
|
# Common configuration variables
|
||||||
|
###################################
|
||||||
|
|
||||||
|
# Set to a randomly generated 16 bytes string
|
||||||
|
SECRET_KEY=T1GSGDDBVRYF7UR7
|
||||||
|
|
||||||
|
# Subnet of the docker network. This should not conflict with any networks to which your system is connected. (Internal and external!)
|
||||||
|
SUBNET=192.168.205.0/24
|
||||||
|
|
||||||
|
# Main mail domain
|
||||||
|
DOMAIN=sectorq.eu
|
||||||
|
|
||||||
|
# Hostnames for this server, separated with commas
|
||||||
|
HOSTNAMES=sectorq.eu,mail.sectorq.eu
|
||||||
|
|
||||||
|
# Postmaster local part (will append the main mail domain)
|
||||||
|
POSTMASTER=admin
|
||||||
|
|
||||||
|
# Choose how secure connections will behave (value: letsencrypt, cert, notls, mail, mail-letsencrypt)
|
||||||
|
TLS_FLAVOR=cert
|
||||||
|
|
||||||
|
# Authentication rate limit per IP (per /24 on ipv4 and /48 on ipv6)
|
||||||
|
AUTH_RATELIMIT_IP=5/hour
|
||||||
|
|
||||||
|
# Authentication rate limit per user (regardless of the source-IP)
|
||||||
|
AUTH_RATELIMIT_USER=50/day
|
||||||
|
|
||||||
|
# Opt-out of statistics, replace with "True" to opt out
|
||||||
|
DISABLE_STATISTICS=True
|
||||||
|
|
||||||
|
###################################
|
||||||
|
# Optional features
|
||||||
|
###################################
|
||||||
|
|
||||||
|
# Expose the admin interface (value: true, false)
|
||||||
|
ADMIN=true
|
||||||
|
|
||||||
|
# Choose which webmail to run if any (values: roundcube, snappymail, none). To enable this feature, recreate the docker-compose.yml file via setup.
|
||||||
|
WEBMAIL=roundcube
|
||||||
|
|
||||||
|
# Expose the API interface (value: true, false)
|
||||||
|
API=true
|
||||||
|
|
||||||
|
# Dav server implementation (value: radicale, none). To enable this feature, recreate the docker-compose.yml file via setup.
|
||||||
|
WEBDAV=radicale
|
||||||
|
|
||||||
|
# Antivirus solution (value: clamav, none). To enable this feature, recreate the docker-compose.yml file via setup.
|
||||||
|
ANTIVIRUS=clamav
|
||||||
|
|
||||||
|
# Scan Macros solution (value: true, false). To enable this feature, recreate the docker-compose.yml file via setup.
|
||||||
|
SCAN_MACROS=true
|
||||||
|
|
||||||
|
###################################
|
||||||
|
# Mail settings
|
||||||
|
###################################
|
||||||
|
|
||||||
|
# Message size limit in bytes
|
||||||
|
# Default: accept messages up to 50MB
|
||||||
|
# Max attachment size will be 33% smaller
|
||||||
|
MESSAGE_SIZE_LIMIT=50000000
|
||||||
|
|
||||||
|
# Message rate limit (per user)
|
||||||
|
MESSAGE_RATELIMIT=200/day
|
||||||
|
|
||||||
|
# Networks granted relay permissions
|
||||||
|
# Use this with care, all hosts in this networks will be able to send mail without authentication!
|
||||||
|
RELAYNETS=
|
||||||
|
|
||||||
|
# Will relay all outgoing mails if configured
|
||||||
|
RELAYHOST=
|
||||||
|
|
||||||
|
# Enable fetchmail
|
||||||
|
FETCHMAIL_ENABLED=true
|
||||||
|
|
||||||
|
# Fetchmail delay
|
||||||
|
FETCHMAIL_DELAY=600
|
||||||
|
|
||||||
|
# Recipient delimiter, character used to delimiter localpart from custom address part
|
||||||
|
RECIPIENT_DELIMITER=+
|
||||||
|
|
||||||
|
# DMARC rua and ruf email
|
||||||
|
DMARC_RUA=admin
|
||||||
|
DMARC_RUF=admin
|
||||||
|
|
||||||
|
# Welcome email, enable and set a topic and body if you wish to send welcome
|
||||||
|
# emails to all users.
|
||||||
|
WELCOME=false
|
||||||
|
WELCOME_SUBJECT=Welcome to your new email account
|
||||||
|
WELCOME_BODY=Welcome to your new email account, if you can read this, then it is configured properly!
|
||||||
|
|
||||||
|
# Maildir Compression
|
||||||
|
# choose compression-method, default: none (value: gz, bz2, zstd)
|
||||||
|
COMPRESSION=
|
||||||
|
# change compression-level, default: 6 (value: 1-9)
|
||||||
|
COMPRESSION_LEVEL=
|
||||||
|
|
||||||
|
# IMAP full-text search is enabled by default.
|
||||||
|
# Set the following variable to off in order to disable the feature
|
||||||
|
# or a comma separated list of language codes to support
|
||||||
|
FULL_TEXT_SEARCH=en
|
||||||
|
|
||||||
|
###################################
|
||||||
|
# Web settings
|
||||||
|
###################################
|
||||||
|
|
||||||
|
# Path to redirect / to
|
||||||
|
WEBROOT_REDIRECT=/webmail
|
||||||
|
|
||||||
|
# Path to the admin interface if enabled
|
||||||
|
WEB_ADMIN=/admin
|
||||||
|
|
||||||
|
# Path to the webmail if enabled
|
||||||
|
WEB_WEBMAIL=/webmail
|
||||||
|
|
||||||
|
# Path to the API interface if enabled
|
||||||
|
WEB_API=/api
|
||||||
|
|
||||||
|
# Website name
|
||||||
|
SITENAME=sectorq
|
||||||
|
|
||||||
|
# Linked Website URL
|
||||||
|
WEBSITE=https://mail.sectorq.eu
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
|
###################################
|
||||||
|
# Advanced settings
|
||||||
|
###################################
|
||||||
|
|
||||||
|
# Docker-compose project name, this will prepended to containers names.
|
||||||
|
COMPOSE_PROJECT_NAME=mailu
|
||||||
|
|
||||||
|
# Number of rounds used by the password hashing scheme
|
||||||
|
CREDENTIAL_ROUNDS=12
|
||||||
|
|
||||||
|
# Header to take the real ip from
|
||||||
|
REAL_IP_HEADER=X-Real-IP
|
||||||
|
|
||||||
|
# IPs for nginx set_real_ip_from (CIDR list separated by commas)
|
||||||
|
REAL_IP_FROM=192.168.77.101
|
||||||
|
|
||||||
|
# choose wether mailu bounces (no) or rejects (yes) mail when recipient is unknown (value: yes, no)
|
||||||
|
REJECT_UNLISTED_RECIPIENT=
|
||||||
|
|
||||||
|
# Log level threshold in start.py (value: CRITICAL, ERROR, WARNING, INFO, DEBUG, NOTSET)
|
||||||
|
LOG_LEVEL=INFO
|
||||||
|
|
||||||
|
# Timezone for the Mailu containers. See this link for all possible values https://en.wikipedia.org/wiki/List_of_tz_database_time_zones
|
||||||
|
TZ=EU/Bratislava
|
||||||
|
|
||||||
|
# Default spam threshold used for new users
|
||||||
|
DEFAULT_SPAM_THRESHOLD=80
|
||||||
|
|
||||||
|
# API token required for authenticating to the RESTful API.
|
||||||
|
# This is a mandatory setting for using the RESTful API.
|
||||||
|
API_TOKEN=WM4QHB7FA6YBOQHC0M98CGM2LDG2OP4N
|
||||||
|
|
||||||
|
# Whether tika should be enabled (scan/OCR email attachements). To enable this feature, recreate the docker-compose.yml file via setup.
|
||||||
|
FULL_TEXT_SEARCH_ATTACHMENTS=true
|
||||||
|
LD_PRELOAD=/usr/lib/libhardened_malloc.so
|
Reference in New Issue
Block a user