remove tls / cert config for openldap, we dont use it

This commit is contained in:
2024-02-17 21:49:56 +11:00
parent 7e52aa8d50
commit 9f5138f8e7

View File

@@ -297,7 +297,7 @@ services:
- POSTFIX_MESSAGE_SIZE_LIMIT=100000000 - POSTFIX_MESSAGE_SIZE_LIMIT=100000000
- SSL_TYPE=letsencrypt - SSL_TYPE=letsencrypt
env_file: env_file:
- /srv/docker/config/secrets/ldap-mail-common - /srv/docker/config/secrets/ldap-mail-common
cap_add: cap_add:
- NET_ADMIN - NET_ADMIN
@@ -316,16 +316,6 @@ services:
LDAP_CUSTOM_SCHEMA_FILE: "/schema/postfix-book.ldif" LDAP_CUSTOM_SCHEMA_FILE: "/schema/postfix-book.ldif"
LDAP_CUSTOM_LDIF_DIR: "/ldifs" LDAP_CUSTOM_LDIF_DIR: "/ldifs"
LDAP_LOGLEVEL: "256" LDAP_LOGLEVEL: "256"
# below not validated
LDAP_ENABLE_TLS: "yes"
LDAP_TLS_CERT_FILE: "/opt/bitnami/openldap/certs/cert.pem"
LDAP_TLS_KEY_FILE: "/opt/bitnami/openldap/certs/privkey.pem"
LDAP_TLS_CA_FILE: "/opt/bitnami/openldap/certs/fullchain.pem"
LDAP_TLS_DH_PARAMS_FILE: "/opt/bitnami/openldap/certs/dhparam.pem"
# these options were from osixia's container, doesn't seem to be an equiv in bitnami, not critical for now as no SASL anyway
# LDAP_TLS_CIPHER_SUITE: "SECURE256:+SECURE128:-VERS-TLS-ALL:+VERS-TLS1.2:-RSA:-DHE-DSS:-CAMELLIA-128-CBC:-CAMELLIA-256-CBC"
# LDAP_TLS_PROTOCOL_MIN: "3.1"
# LDAP_TLS_VERIFY_CLIENT: "try"
env_file: env_file:
- /srv/docker/config/secrets/ldap-mail-common - /srv/docker/config/secrets/ldap-mail-common
tty: true tty: true
@@ -334,7 +324,6 @@ services:
- pihole - pihole
volumes: volumes:
- /srv/docker/container/ldap/:/bitnami/openldap/ - /srv/docker/container/ldap/:/bitnami/openldap/
- /srv/docker/container/ldap/certs:/opt/bitnami/openldap/certs/
- /srv/docker/container/ldap/bootstrap-schema:/schema - /srv/docker/container/ldap/bootstrap-schema:/schema
- /srv/docker/container/ldap/bootstrap-ldifs:/ldifs - /srv/docker/container/ldap/bootstrap-ldifs:/ldifs
- /etc/localtime:/etc/localtime:ro - /etc/localtime:/etc/localtime:ro