Commit 7f68d44
committed
feat(new): add docker-mailserver helm chart v5.1.1
Adds the docker-mailserver chart (IMAP + bundled Postfix for outbound
mail), with sane in-cluster defaults, plus an optional Cilium egress
gateway template for a stable outbound IP (SPF alignment) - since
docker-mailserver bundles its own Postfix, this is the one place mail
actually leaves the cluster for a deployment using this chart, not a
separate relay chart.
Also patches the vendored subchart's service.yaml to support
externalIPs - the upstream template never read that value at all, so
it was being silently ignored.
Egress policy's pod-selector label key is configurable
(egressGateway.podSelectorLabelKey, defaults to 'release' - this
chart's actual convention). Getting this wrong means the policy
silently matches nothing; confirmed happening in production, causing
a real SPF failure until caught and fixed.
Adds tls.enforceOutbound (default off) for anyone who wants to require
TLS on outbound delivery instead of Postfix's default opportunistic
behaviour.
Adds service.exposePlaintextImap (default false) - plaintext IMAP
(143) was included in the Service unconditionally whenever IMAP is
enabled, alongside TLS IMAPS (993), meaning it was reachable from
outside the cluster on any deployment using a LoadBalancer/NodePort
service. Flagged by an external security report against a real
deployment using this chart. Only IMAPS is exposed now unless you
explicitly opt in.
Signed-off-by: Rishi <rishi@obmondo.com>1 parent 27f352c commit 7f68d44
24 files changed
Lines changed: 1914 additions & 0 deletions
File tree
- argocd-helm-charts/docker-mailserver
- charts/docker-mailserver
- ci
- templates
- templates
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
108 | 108 | | |
109 | 109 | | |
110 | 110 | | |
| 111 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
Lines changed: 22 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
Lines changed: 3 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
Lines changed: 22 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
Lines changed: 4 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
Lines changed: 385 additions & 0 deletions
Large diffs are not rendered by default.
Lines changed: 2 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
Lines changed: 13 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
0 commit comments