|
|
|
|
|
by e12e
2110 days ago
|
|
Re: your latest point - typically I'd like imap/smptd to run in separate static containers/vms with read access to the cert, but not write (and a volume or db to write emails to etc). In general I'd prefer the certs be something the services get via configuration mgmnt - while the cert service can run via cron and make sure certs are valid an present. In particular, I don't want my smtpd server to have write access to my dns, if I can help it. |
|