syscom-dev-environment/roles/systemd_workarounds/tasks/main.yml

23 lines
583 B
YAML

- name: create override directory
file:
path: "/etc/systemd/system/{{ item }}.service.d"
mode: 0755
state: directory
loop: "{{ services }}"
- name: disable mount namespaces
copy:
content: |
[Service]
ProtectSystem=false
PrivateTmp=false
PrivateDevices=false
ProtectHome=false
ProtectControlGroups=false
ProtectKernelModules=false
dest: "/etc/systemd/system/{{ item }}.service.d/override.conf"
loop: "{{ services }}"
register: service_overrides
notify:
- reload systemd
- restart service for overrides