maddy

Fork https://github.com/foxcpp/maddy

git clone git://git.lin.moe/go/maddy.git

 1/*
 2Maddy Mail Server - Composable all-in-one email server.
 3Copyright © 2019-2020 Max Mazurov <fox.cpp@disroot.org>, Maddy Mail Server contributors
 4
 5This program is free software: you can redistribute it and/or modify
 6it under the terms of the GNU General Public License as published by
 7the Free Software Foundation, either version 3 of the License, or
 8(at your option) any later version.
 9
10This program is distributed in the hope that it will be useful,
11but WITHOUT ANY WARRANTY; without even the implied warranty of
12MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
13GNU General Public License for more details.
14
15You should have received a copy of the GNU General Public License
16along with this program.  If not, see <https://www.gnu.org/licenses/>.
17*/
18
19package requiretls
20
21import (
22	modconfig "github.com/foxcpp/maddy/framework/config/module"
23	"github.com/foxcpp/maddy/framework/exterrors"
24	"github.com/foxcpp/maddy/framework/module"
25	"github.com/foxcpp/maddy/internal/check"
26)
27
28func requireTLS(ctx check.StatelessCheckContext) module.CheckResult {
29	if ctx.MsgMeta.Conn != nil && ctx.MsgMeta.Conn.TLS.HandshakeComplete {
30		return module.CheckResult{}
31	}
32
33	return module.CheckResult{
34		Reason: &exterrors.SMTPError{
35			Code:         550,
36			EnhancedCode: exterrors.EnhancedCode{5, 7, 1},
37			Message:      "TLS conversation required",
38			CheckName:    "require_tls",
39		},
40	}
41}
42
43func init() {
44	check.RegisterStatelessCheck("require_tls", modconfig.FailAction{Reject: true}, requireTLS, nil, nil, nil)
45}