- 会话 cookie 增加 Secure 标志;新增 [web].cookie_secure 配置 (默认 true,仅本地 HTTP 调试关闭;缺失字段按安全默认处理) - SMTP/IMAP/POP3 认证接入封禁体系(store.RecordAuthFailure 与 Web 共用 ban_entries):失败计数达 ban.max_fail_attempts 即封禁 IP, 已封禁 IP 拒绝认证,堵住协议层暴力破解 - 附件存储路径遍历防护重写:FullPath 白名单校验(UUID 文件名格式) + baseDir 前缀兜底,非法路径返回错误;Save 扩展名白名单化 - 初始管理员不再使用 admin/admin:密码取 MAILGO_ADMIN_PASSWORD 或 随机生成并打印一次;新增 MustChangePassword 首登强制改密 (管理员重置密码同样触发) - 外发中继默认验证 TLS 证书(保护 AUTH 凭据,防 MITM),直投 MX 保持机会式 TLS;新增 outbound.relay_tls_insecure 开关(默认 false) - 新增安全响应头中间件:HSTS、X-Frame-Options DENY、nosniff、 Referrer-Policy、基础 CSP(frame-ancestors 'none' 防点击劫持, connect-src/form-action 'self' 防数据外泄) - LDAP/OAuth 登录错误统一为通用文案,原始错误只写日志, 不再回显邮箱/内部细节(防用户枚举与信息泄露) - 新增 25 个回归测试:cookie 标志、封禁阈值、路径遍历用例、 中继 TLS 验证(自签证书 STARTTLS 集成)、安全头、OAuth 文案 部署注意:升级后所有会话失效需重新登录;若直接以 HTTP 提供 服务需显式配置 cookie_secure = false。
141 lines
5.9 KiB
Go
141 lines
5.9 KiB
Go
package db
|
||
|
||
import (
|
||
"time"
|
||
)
|
||
|
||
// User represents a mail user in the system.
|
||
type User struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
Username string `gorm:"size:64;not null" json:"username"`
|
||
PasswordHash string `gorm:"size:255;not null" json:"-"`
|
||
DomainID uint `gorm:"index" json:"domain_id"`
|
||
Domain Domain `gorm:"foreignKey:DomainID" json:"domain"`
|
||
QuotaBytes int64 `gorm:"default:5368709120" json:"quota_bytes"`
|
||
UsedBytes int64 `gorm:"default:0" json:"used_bytes"`
|
||
IsActive bool `gorm:"default:true" json:"is_active"`
|
||
IsAdmin bool `gorm:"default:false" json:"is_admin"`
|
||
// MustChangePassword 为 true 时该用户(通常是初始管理员或被重置密码的
|
||
// 用户)在首次登录后必须修改密码。
|
||
MustChangePassword bool `gorm:"default:false" json:"-"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
UpdatedAt time.Time `json:"updated_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for User.
|
||
func (User) TableName() string {
|
||
return "users"
|
||
}
|
||
|
||
// Domain represents a mail domain in the system.
|
||
type Domain struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
Name string `gorm:"size:255;uniqueIndex;not null" json:"name"`
|
||
SmtpPort int `gorm:"default:25" json:"smtp_port"`
|
||
ImapPort int `gorm:"default:143" json:"imap_port"`
|
||
Pop3Port int `gorm:"default:110" json:"pop3_port"`
|
||
TlsCertPath string `gorm:"size:512" json:"tls_cert_path"`
|
||
TlsKeyPath string `gorm:"size:512" json:"tls_key_path"`
|
||
TlsEnabled bool `gorm:"default:false" json:"tls_enabled"`
|
||
DkimSelector string `gorm:"size:64;default:default" json:"dkim_selector"`
|
||
DkimPrivateKey string `gorm:"size:4096" json:"-"`
|
||
DkimPublicKey string `gorm:"size:1024" json:"-"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
UpdatedAt time.Time `json:"updated_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for Domain.
|
||
func (Domain) TableName() string {
|
||
return "domains"
|
||
}
|
||
|
||
// Message represents an email message in the system.
|
||
type Message struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
UserID uint `gorm:"index;not null" json:"user_id"`
|
||
User User `gorm:"foreignKey:UserID" json:"user"`
|
||
MessageID string `gorm:"size:255;index" json:"message_id"`
|
||
Folder string `gorm:"size:64;default:INBOX;index" json:"folder"`
|
||
FromAddr string `gorm:"size:512;not null" json:"from_addr"`
|
||
ToAddr string `gorm:"size:2048;not null" json:"to_addr"`
|
||
CcAddr string `gorm:"size:2048" json:"cc_addr"`
|
||
Subject string `gorm:"size:1024" json:"subject"`
|
||
TextBody string `gorm:"type:text" json:"text_body"`
|
||
HtmlBody string `gorm:"type:text" json:"html_body"`
|
||
RawData string `gorm:"type:mediumtext" json:"raw_data"`
|
||
IsRead bool `gorm:"default:false" json:"is_read"`
|
||
IsFlagged bool `gorm:"default:false" json:"is_flagged"`
|
||
Date time.Time `json:"date"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for Message.
|
||
func (Message) TableName() string {
|
||
return "messages"
|
||
}
|
||
|
||
// Outbound message delivery statuses.
|
||
const (
|
||
OutboundStatusPending = "pending" // 等待发送
|
||
OutboundStatusSending = "sending" // 发送中
|
||
OutboundStatusSent = "sent" // 已送达
|
||
OutboundStatusDeferred = "deferred" // 临时失败,等待重试
|
||
OutboundStatusFailed = "failed" // 永久失败/超过重试上限
|
||
OutboundStatusCanceled = "canceled" // 管理员取消
|
||
)
|
||
|
||
// OutboundMessage represents a message queued for delivery to an external domain.
|
||
type OutboundMessage struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
MessageID string `gorm:"size:255;index" json:"message_id"`
|
||
UserID uint `gorm:"index" json:"user_id"` // 发件用户 ID(Web/SMTP 提交用户)
|
||
FromAddr string `gorm:"size:512;not null" json:"from_addr"`
|
||
ToAddr string `gorm:"size:512;not null" json:"to_addr"`
|
||
RecipientDom string `gorm:"size:255;index" json:"recipient_dom"`
|
||
RawData string `gorm:"type:mediumtext" json:"-"` // DKIM 签名后的完整邮件
|
||
Status string `gorm:"size:32;default:pending;index" json:"status"`
|
||
Attempts int `gorm:"default:0" json:"attempts"`
|
||
NextAttemptAt time.Time `gorm:"index" json:"next_attempt_at"`
|
||
LastResponse string `gorm:"size:1024" json:"last_response"`
|
||
LastError string `gorm:"size:1024" json:"last_error"`
|
||
CompletedAt *time.Time `json:"completed_at"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
UpdatedAt time.Time `json:"updated_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for OutboundMessage.
|
||
func (OutboundMessage) TableName() string {
|
||
return "outbound_messages"
|
||
}
|
||
|
||
// BanEntry represents an IP address that has been banned due to excessive login failures.
|
||
type BanEntry struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
IPAddress string `gorm:"size:45;index;not null" json:"ip_address"`
|
||
Reason string `gorm:"size:255" json:"reason"`
|
||
FailCount int `gorm:"default:0" json:"fail_count"`
|
||
ExpiresAt time.Time `gorm:"index" json:"expires_at"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
UpdatedAt time.Time `json:"updated_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for BanEntry.
|
||
func (BanEntry) TableName() string { return "ban_entries" }
|
||
|
||
// Attachment represents a file attached to an email message.
|
||
type Attachment struct {
|
||
ID uint `gorm:"primaryKey" json:"id"`
|
||
MessageID uint `gorm:"index;not null" json:"message_id"`
|
||
Message Message `gorm:"foreignKey:MessageID" json:"message"`
|
||
FileName string `gorm:"size:255;not null" json:"file_name"`
|
||
FilePath string `gorm:"size:512;not null" json:"file_path"`
|
||
ContentType string `gorm:"size:128" json:"content_type"`
|
||
FileSize int64 `json:"file_size"`
|
||
CreatedAt time.Time `json:"created_at"`
|
||
}
|
||
|
||
// TableName specifies the table name for Attachment.
|
||
func (Attachment) TableName() string {
|
||
return "attachments"
|
||
}
|