# Run cert-sync shortly after boot and every 12h thereafter. cert-manager # renews well before expiry, so twice-daily comfortably picks up new certs. [Unit] Description=Periodic mail TLS cert sync for Stalwart [Timer] OnBootSec=3min OnUnitActiveSec=12h Persistent=true [Install] WantedBy=timers.target