]> git.immae.eu Git - perso/Immae/Config/Nix.git/blame - modules/private/websites/tools/mail/roundcubemail.nix
Use attrs for secrets instead of lists
[perso/Immae/Config/Nix.git] / modules / private / websites / tools / mail / roundcubemail.nix
CommitLineData
da30ae4f 1{ env, roundcubemail, apacheHttpd, config }:
fffbbb56
IB
2rec {
3 varDir = "/var/lib/roundcubemail";
4 activationScript = {
5 deps = [ "wrappers" ];
6 text = ''
7 install -m 0755 -o ${apache.user} -g ${apache.group} -d ${varDir} \
8 ${varDir}/cache ${varDir}/logs
9 install -m 0750 -o ${apache.user} -g ${apache.group} -d ${varDir}/phpSessions
10 '';
11 };
4c4652aa 12 keys."webapps/tools-roundcube" = {
fffbbb56
IB
13 user = apache.user;
14 group = apache.group;
15 permissions = "0400";
ab8f306d
IB
16 text =
17 let
18 psql_url = with env.postgresql; "pgsql://${user}:${password}@unix(${socket}:${port})/${database}";
19 in ''
fffbbb56 20 <?php
ab8f306d 21 $config['db_dsnw'] = '${psql_url}';
7ccde67a
IB
22 $config['default_host'] = 'ssl://imap.immae.eu';
23 $config['username_domain'] = array(
24 "imap.immae.eu" => "mail.immae.eu"
25 );
fffbbb56 26 $config['imap_conn_options'] = array("ssl" => array("verify_peer" => false));
05f8c21a
IB
27 $config['smtp_server'] = 'tls://smtp.immae.eu';
28 $config['smtp_port'] = '587';
29 $config['managesieve_host'] = 'imap.immae.eu';
fffbbb56
IB
30 $config['managesieve_port'] = '4190';
31 $config['managesieve_usetls'] = true;
32 $config['managesieve_conn_options'] = array("ssl" => array("verify_peer" => false));
d252d718 33
fffbbb56
IB
34 $config['imap_cache'] = 'db';
35 $config['messages_cache'] = 'db';
d252d718 36
fffbbb56 37 $config['support_url'] = ''';
d252d718 38
fffbbb56 39 $config['des_key'] = '${env.secret}';
d252d718 40
fffbbb56
IB
41 $config['skin'] = 'elastic';
42 $config['plugins'] = array(
43 'attachment_reminder',
44 'emoticons',
45 'filesystem_attachments',
46 'hide_blockquote',
47 'identicon',
48 'identity_select',
49 'jqueryui',
a929614f 50 'markasjunk',
fffbbb56
IB
51 'managesieve',
52 'newmail_notifier',
53 'vcard_attachments',
54 'zipdownload',
e2ca51b2 55
fffbbb56
IB
56 'automatic_addressbook',
57 'message_highlight',
58 'carddav',
59 // Ne marche pas ?: 'ident_switch',
60 // Ne marche pas ?: 'thunderbird_labels',
61 );
d252d718 62
fffbbb56 63 $config['language'] = 'fr_FR';
d252d718 64
a929614f
IB
65 $config['drafts_mbox'] = 'Drafts';
66 $config['junk_mbox'] = 'Junk';
67 $config['sent_mbox'] = 'Sent';
68 $config['trash_mbox'] = 'Trash';
69 $config['default_folders'] = array('INBOX', 'Drafts', 'Sent', 'Junk', 'Trash');
fffbbb56
IB
70 $config['draft_autosave'] = 60;
71 $config['enable_installer'] = false;
72 $config['log_driver'] = 'file';
73 $config['temp_dir'] = '${varDir}/cache';
74 $config['mime_types'] = '${apacheHttpd}/conf/mime.types';
75 '';
4c4652aa 76 };
da30ae4f 77 webRoot = (roundcubemail.override { roundcube_config = config.secrets.fullPaths."webapps/tools-roundcube"; }).withPlugins (p: [ p.automatic_addressbook p.carddav p.contextmenu p.contextmenu_folder p.html5_notifier p.ident_switch p.message_highlight p.thunderbird_labels ]);
fffbbb56
IB
78 apache = rec {
79 user = "wwwrun";
80 group = "wwwrun";
81 modules = [ "proxy_fcgi" ];
82 webappName = "tools_roundcubemail";
83 root = "/run/current-system/webapps/${webappName}";
5400b9b6 84 vhostConf = socket: ''
fffbbb56
IB
85 Alias /roundcube "${root}"
86 <Directory "${root}">
87 DirectoryIndex index.php
88 AllowOverride All
89 Options FollowSymlinks
90 Require all granted
91
92 <FilesMatch "\.php$">
5400b9b6 93 SetHandler "proxy:unix:${socket}|fcgi://localhost"
fffbbb56
IB
94 </FilesMatch>
95 </Directory>
d252d718 96 '';
fffbbb56
IB
97 };
98 phpFpm = rec {
99 serviceDeps = [ "postgresql.service" ];
100 basedir = builtins.concatStringsSep ":" (
da30ae4f 101 [ webRoot config.secrets.fullPaths."webapps/tools-roundcube" varDir ]
fffbbb56
IB
102 ++ webRoot.plugins
103 ++ webRoot.skins);
5400b9b6
IB
104 pool = {
105 "listen.owner" = apache.user;
106 "listen.group" = apache.group;
107 "pm" = "ondemand";
108 "pm.max_children" = "60";
109 "pm.process_idle_timeout" = "60";
d252d718 110
5400b9b6
IB
111 # Needed to avoid clashes in browser cookies (same domain)
112 "php_value[session.name]" = "RoundcubemailPHPSESSID";
113 "php_admin_value[upload_max_filesize]" = "200M";
114 "php_admin_value[post_max_size]" = "200M";
115 "php_admin_value[open_basedir]" = "${basedir}:${apacheHttpd}/conf/mime.types:/tmp";
116 "php_admin_value[session.save_path]" = "${varDir}/phpSessions";
117 };
d252d718 118 };
fffbbb56 119}