From ed0341fc51f12ba4d3da8ca109e3a6fe7d25948f Mon Sep 17 00:00:00 2001 From: perennate Date: Mon, 23 Sep 2013 18:28:33 -0400 Subject: [PATCH 1/2] Add addendum detailing how to create a dedicated user for gpg-mailgate public keys. --- INSTALL | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/INSTALL b/INSTALL index 350eba4..77e3979 100644 --- a/INSTALL +++ b/INSTALL @@ -24,3 +24,15 @@ gpg-mailgate unix - n n - - pipe content_filter = gpg-mailgate 7) Restart postfix. + +Note 1: it is also possible to create a dedicated user to store the PGP public keys + + 1) useradd -s /bin/false -d /var/gpg -M gpgmap + 2) mkdir -p /var/gpg/.gnupg + 3) chown -R gpgmap /var/gpg + 4) chmod 700 /var/gpg/.gnupg + 5) sudo -u gpgmap /usr/bin/gpg --import /home/youruser/public.key --homedir=/var/gpg/.gnupg + a) replace the path with the location of your public key + b) the path can be deleted after importation + 6) Confirm that it's working: sudo -u gpgmap /usr/bin/gpg --list-keys --homedir=/var/gpg/.gnupg + 7) Use keyhome = /var/gpg/.gnupg in gpg-mailgate.conf From 70692d221c2958f9397912a15dd22a95c33f4121 Mon Sep 17 00:00:00 2001 From: perennate Date: Mon, 23 Sep 2013 18:32:36 -0400 Subject: [PATCH 2/2] Update README file. --- README.md | 11 +++++++---- 1 file changed, 7 insertions(+), 4 deletions(-) diff --git a/README.md b/README.md index c93b60e..2726445 100644 --- a/README.md +++ b/README.md @@ -2,7 +2,10 @@ gpg-mailgate is a content filter for Postfix that automatically encrypts unencrypted incoming email using PGP for select recipients. -# TODO -- fix attachments support -- multipart messages support -- testing +For installation instructions, please refer to the included INSTALL file. + +# Features +- Correctly displays attachments and general email content; currently will only display first part of multipart messages +- Public keys can be stored in a dedicated gpg-home-directory (see Note 1 in INSTALL) +- Encrypts both matching incoming and outgoing mail (this means gpg-mailgate can be used to encrypt outgoing mail for software that doesn't support PGP) +- Easy installation