Protect private key from being world-readable
Postfix, Dovecot, and nginx all read the key file while they're running as root — before dropping permissions — so no authorization is needed on the private key file beyond being root-readable.
Showing
Please register or sign in to comment