LINUXOR.SK ... open source notes ...

Email - bash-postfix-encrypt-filter-sync-smime.service (systemd unit)

category: solutionz · date: 2019-12-31 · updated: 2026-10-02 · author: LALA

Email Solution · Config document · referenced from High availability and key synchronization

The systemd unit that starts the synchronization loop for S/MIME certificates at boot and keeps it in the background.

ItemValue
Path on the server/etc/systemd/system/bash-postfix-encrypt-filter-sync-smime.service
Shown hereDC2-A-VCMSX001
Also onDC2-B-VCMSX001, identical (diff is empty)
Starts/usr/local/bin/bash-postfix-encrypt-filter-sync-smime.sh, as root
Activated withsystemctl start and systemctl enable of the unit
systemd at the timethe one of RHEL 7

The file

ini
[Unit]
Description = BASH postfix encrypt filter - SMIME certs synchronization
After = network.target

[Service]
PIDFile = /run/bash-postfix-encrypt-filter-sync-smime.pid
User = root
Group = root
WorkingDirectory = /var/spool/postfix/bash-postfix-encrypt-filter/smime/
ExecStart = /bin/bash /usr/local/bin/bash-postfix-encrypt-filter-sync-smime.sh
ExecReload = /bin/kill -s HUP $MAINPID
ExecStop = /bin/kill -s TERM $MAINPID
PrivateTmp = true

[Install]
WantedBy = multi-user.target

Reading it today

Checked against current systemd

As builtToday
PIDFile = without Type=Still valid, still without function here. systemd recommends PIDFile= only for Type=forking and says PID files should be avoided in new units
After = network.targetStill valid; network-online.target exists for units that need a configured network
ExecStart, ExecReload, ExecStop, User, Group, PrivateTmp, WantedByAll still valid

The unit loads unchanged on a current system, and is as incomplete there as it was.

← solutionz