2017-04-03 20:06:49 +02:00
|
|
|
FROM debian:stretch-slim
|
2017-05-13 15:33:32 +02:00
|
|
|
LABEL maintainer "Andre Peters <andre.peters@servercow.de>"
|
2017-03-02 12:23:23 +02:00
|
|
|
|
2017-05-13 16:29:18 +02:00
|
|
|
ARG DEBIAN_FRONTEND=noninteractive
|
2017-03-02 12:23:23 +02:00
|
|
|
ENV LC_ALL C
|
2019-05-01 20:28:11 +02:00
|
|
|
ENV DOVECOT_VERSION 2.3.6
|
|
|
|
ENV PIGEONHOLE_VERSION 0.5.6
|
2018-01-14 11:44:06 +02:00
|
|
|
|
2018-01-08 23:00:54 +02:00
|
|
|
RUN apt-get update && apt-get -y --no-install-recommends install \
|
2018-01-14 11:44:06 +02:00
|
|
|
automake \
|
|
|
|
autotools-dev \
|
|
|
|
build-essential \
|
|
|
|
ca-certificates \
|
|
|
|
cpanminus \
|
|
|
|
curl \
|
|
|
|
default-libmysqlclient-dev \
|
[Docker API] Use TLS encryption for communication with "on-the-fly" created key paris (non-exposed)
[Docker API] Create pipe to pass Rspamd UI worker password
[Dovecot] Pull Spamassassin ruleset to be read by Rspamd (MANY THANKS to Peer Heinlein!)
[Dovecot] Garbage collector for deleted maildirs (set keep time via MAILDIR_GC_TIME which defaults to 1440 minutes)
[Web] Flush memcached after mailbox item changes, fixes #1808
[Web] Fix duplicate IDs, fixes #1792
[Compose] Use SQL sockets
[PHP-FPM] Update APCu and Redis libs
[Dovecot] Encrypt maildir with global key pair in crypt-vol-1 (BACKUP!), also fixes #1791
[Web] Fix deletion of spam aliases
[Helper] Add "crypt" to backup script
[Helper] Override file for external SQL socket (not supported!)
[Compose] New images for Rspamd, PHP-FPM, SOGo, Dovecot, Docker API, Watchdog, ACME, Postfix
2018-09-29 22:01:23 +02:00
|
|
|
dnsutils \
|
2018-11-26 10:11:22 +02:00
|
|
|
gettext \
|
2018-11-12 10:49:23 +02:00
|
|
|
jq \
|
2017-12-17 18:45:05 +02:00
|
|
|
libjson-webtoken-perl \
|
|
|
|
libcgi-pm-perl \
|
|
|
|
libcrypt-openssl-rsa-perl \
|
|
|
|
libdata-uniqid-perl \
|
|
|
|
libhtml-parser-perl \
|
|
|
|
libmail-imapclient-perl \
|
|
|
|
libparse-recdescent-perl \
|
|
|
|
libsys-meminfo-perl \
|
|
|
|
libtest-mockobject-perl \
|
|
|
|
libwww-perl \
|
2018-01-14 11:44:06 +02:00
|
|
|
libauthen-ntlm-perl \
|
|
|
|
libbz2-dev \
|
|
|
|
libcrypt-ssleay-perl \
|
2018-04-26 12:36:13 +02:00
|
|
|
libcurl4-openssl-dev \
|
2018-01-14 11:44:06 +02:00
|
|
|
libdbd-mysql-perl \
|
|
|
|
libdbi-perl \
|
|
|
|
libdigest-hmac-perl \
|
2018-04-26 12:36:13 +02:00
|
|
|
libexpat1-dev \
|
2018-01-14 11:44:06 +02:00
|
|
|
libfile-copy-recursive-perl \
|
|
|
|
libio-compress-perl \
|
|
|
|
libio-socket-inet6-perl \
|
|
|
|
libio-socket-ssl-perl \
|
|
|
|
libio-tee-perl \
|
|
|
|
libipc-run-perl \
|
2018-11-26 10:11:22 +02:00
|
|
|
libldap2-dev \
|
2018-01-14 11:44:06 +02:00
|
|
|
liblockfile-simple-perl \
|
|
|
|
liblz-dev \
|
|
|
|
liblz4-dev \
|
|
|
|
liblzma-dev \
|
|
|
|
libmodule-scandeps-perl \
|
|
|
|
libnet-ssleay-perl \
|
|
|
|
libpam-dev \
|
|
|
|
libpar-packer-perl \
|
|
|
|
libreadonly-perl \
|
|
|
|
libssl-dev \
|
|
|
|
libterm-readkey-perl \
|
|
|
|
libtest-pod-perl \
|
|
|
|
libtest-simple-perl \
|
2018-07-27 22:19:14 +02:00
|
|
|
libtry-tiny-perl \
|
2018-01-14 11:44:06 +02:00
|
|
|
libunicode-string-perl \
|
2017-11-03 21:25:38 +02:00
|
|
|
libproc-processtable-perl \
|
2018-08-02 12:14:13 +02:00
|
|
|
libtest-nowarnings-perl \
|
|
|
|
libtest-deep-perl \
|
|
|
|
libtest-warn-perl \
|
|
|
|
libregexp-common-perl \
|
2018-01-14 11:44:06 +02:00
|
|
|
liburi-perl \
|
|
|
|
lzma-dev \
|
2019-02-05 11:38:28 +02:00
|
|
|
python-html2text \
|
2019-01-29 01:11:12 +02:00
|
|
|
python-jinja2 \
|
|
|
|
python-mysql.connector \
|
2019-02-05 11:38:28 +02:00
|
|
|
python-redis \
|
2018-01-14 11:44:06 +02:00
|
|
|
make \
|
2018-06-03 19:22:44 +02:00
|
|
|
mysql-client \
|
2017-11-03 21:25:38 +02:00
|
|
|
procps \
|
2018-01-14 11:44:06 +02:00
|
|
|
supervisor \
|
2018-01-08 23:00:54 +02:00
|
|
|
cron \
|
2018-08-02 12:14:13 +02:00
|
|
|
redis-server \
|
2018-01-14 11:44:06 +02:00
|
|
|
syslog-ng \
|
|
|
|
syslog-ng-core \
|
|
|
|
syslog-ng-mod-redis \
|
2019-01-29 01:11:12 +02:00
|
|
|
&& rm -rf /var/lib/apt/lists/* \
|
2019-04-24 17:44:15 +02:00
|
|
|
&& curl https://dovecot.org/releases/2.3/dovecot-$DOVECOT_VERSION.tar.gz | tar xvz \
|
2018-01-14 11:44:06 +02:00
|
|
|
&& cd dovecot-$DOVECOT_VERSION \
|
2018-11-26 10:11:22 +02:00
|
|
|
&& ./configure --with-solr --with-mysql --with-ldap --with-lzma --with-lz4 --with-ssl=openssl --with-notify=inotify --with-storages=mdbox,sdbox,maildir,mbox,imapc,pop3c --with-bzlib --with-zlib --enable-hardening \
|
2018-01-14 11:44:06 +02:00
|
|
|
&& make -j3 \
|
|
|
|
&& make install \
|
|
|
|
&& make clean \
|
|
|
|
&& cd .. && rm -rf dovecot-$DOVECOT_VERSION \
|
2018-04-26 12:36:13 +02:00
|
|
|
&& curl https://pigeonhole.dovecot.org/releases/2.3/dovecot-2.3-pigeonhole-$PIGEONHOLE_VERSION.tar.gz | tar xvz \
|
|
|
|
&& cd dovecot-2.3-pigeonhole-$PIGEONHOLE_VERSION \
|
2018-01-14 11:44:06 +02:00
|
|
|
&& ./configure \
|
|
|
|
&& make -j3 \
|
|
|
|
&& make install \
|
|
|
|
&& make clean \
|
|
|
|
&& cd .. \
|
2019-01-29 01:11:12 +02:00
|
|
|
&& rm -rf dovecot-2.3-pigeonhole-$PIGEONHOLE_VERSION \
|
2019-05-05 13:24:12 +02:00
|
|
|
&& cpanm Data::Uniqid Mail::IMAPClient String::Util File::Tail Dist::CheckConflicts Module::Implementation Package::Stash Package::Stash::XS Test::Fatal Test::Mock::Guard Test::Requires \
|
2019-01-29 01:11:12 +02:00
|
|
|
&& groupadd -g 5000 vmail \
|
|
|
|
&& groupadd -g 401 dovecot \
|
|
|
|
&& groupadd -g 402 dovenull \
|
|
|
|
&& useradd -g vmail -u 5000 vmail -d /var/vmail \
|
|
|
|
&& useradd -c "Dovecot unprivileged user" -d /dev/null -u 401 -g dovecot -s /bin/false dovecot \
|
|
|
|
&& useradd -c "Dovecot login user" -d /dev/null -u 402 -g dovenull -s /bin/false dovenull \
|
|
|
|
&& touch /etc/default/locale \
|
|
|
|
&& apt-get purge -y build-essential automake autotools-dev default-libmysqlclient-dev libbz2-dev libcurl4-openssl-dev libexpat1-dev liblz-dev liblz4-dev liblzma-dev libpam-dev libssl-dev lzma-dev \
|
|
|
|
&& apt-get autoremove --purge -y \
|
|
|
|
&& rm -rf /tmp/* /var/tmp/*
|
2017-04-03 20:06:49 +02:00
|
|
|
|
2018-08-02 12:14:13 +02:00
|
|
|
COPY trim_logs.sh /usr/local/bin/trim_logs.sh
|
2017-05-06 23:42:18 +02:00
|
|
|
COPY syslog-ng.conf /etc/syslog-ng/syslog-ng.conf
|
|
|
|
COPY imapsync /usr/local/bin/imapsync
|
|
|
|
COPY postlogin.sh /usr/local/bin/postlogin.sh
|
|
|
|
COPY imapsync_cron.pl /usr/local/bin/imapsync_cron.pl
|
|
|
|
COPY report-spam.sieve /usr/local/lib/dovecot/sieve/report-spam.sieve
|
|
|
|
COPY report-ham.sieve /usr/local/lib/dovecot/sieve/report-ham.sieve
|
|
|
|
COPY rspamd-pipe-ham /usr/local/lib/dovecot/sieve/rspamd-pipe-ham
|
|
|
|
COPY rspamd-pipe-spam /usr/local/lib/dovecot/sieve/rspamd-pipe-spam
|
[Docker API] Use TLS encryption for communication with "on-the-fly" created key paris (non-exposed)
[Docker API] Create pipe to pass Rspamd UI worker password
[Dovecot] Pull Spamassassin ruleset to be read by Rspamd (MANY THANKS to Peer Heinlein!)
[Dovecot] Garbage collector for deleted maildirs (set keep time via MAILDIR_GC_TIME which defaults to 1440 minutes)
[Web] Flush memcached after mailbox item changes, fixes #1808
[Web] Fix duplicate IDs, fixes #1792
[Compose] Use SQL sockets
[PHP-FPM] Update APCu and Redis libs
[Dovecot] Encrypt maildir with global key pair in crypt-vol-1 (BACKUP!), also fixes #1791
[Web] Fix deletion of spam aliases
[Helper] Add "crypt" to backup script
[Helper] Override file for external SQL socket (not supported!)
[Compose] New images for Rspamd, PHP-FPM, SOGo, Dovecot, Docker API, Watchdog, ACME, Postfix
2018-09-29 22:01:23 +02:00
|
|
|
COPY sa-rules.sh /usr/local/bin/sa-rules.sh
|
|
|
|
COPY maildir_gc.sh /usr/local/bin/maildir_gc.sh
|
2017-05-06 23:42:18 +02:00
|
|
|
COPY docker-entrypoint.sh /
|
|
|
|
COPY supervisord.conf /etc/supervisor/supervisord.conf
|
2018-10-25 22:35:07 +02:00
|
|
|
COPY stop-supervisor.sh /usr/local/sbin/stop-supervisor.sh
|
2019-01-29 01:11:12 +02:00
|
|
|
COPY quarantine_notify.py /usr/local/bin/quarantine_notify.py
|
2019-02-05 01:00:22 +02:00
|
|
|
COPY quota_notify.py /usr/local/bin/quota_notify.py
|
2017-05-06 23:42:18 +02:00
|
|
|
|
2017-03-02 12:23:23 +02:00
|
|
|
ENTRYPOINT ["/docker-entrypoint.sh"]
|
|
|
|
CMD exec /usr/bin/supervisord -c /etc/supervisor/supervisord.conf
|