# Use SMIME unset crypt_use_gpgme # Locations set smime_ca_location="~/.keys/neomutt/smime/ca" set smime_certificates="~/.keys/neomutt/smime/public" set smime_keys="~/.keys/neomutt/smime/private" # Commands (smime_keys) set smime_pk7out_command="openssl smime -verify -in %f -noverify -pk7out" set smime_get_cert_command="openssl pkcs7 -print_certs -in %f" set smime_get_signer_cert_command="openssl smime -verify -in %f -noverify -signer %c -out /dev/null" set smime_get_cert_email_command="openssl x509 -in %f -noout -email" set smime_import_cert_command="smime_keys add_cert %f" # Outgoing set smime_encrypt_with="aes256" set smime_encrypt_command="openssl smime -encrypt -%a -outform DER -in %f %c" set smime_sign_digest_alg="sha256" set smime_sign_command="openssl smime -sign -md %d -signer %c -inkey %k -passin stdin -in %f -certfile %i -outform DER" # Incoming set smime_decrypt_command="openssl smime -decrypt -passin stdin -inform DER -in %f -inkey %k -recip %c" set smime_verify_command="openssl smime -verify -inform DER -in %s %C -content %f" set smime_verify_opaque_command="\ openssl smime -verify -inform DER -in %s %C || \ openssl smime -verify -inform DER -in %s -noverify 2>/dev/null"