Compare commits

...

2 Commits

Author SHA1 Message Date
a4756377b4 Add stryfry policy option 2024-06-11 22:55:51 +02:00
65b6d65527 Only run compilation when source code is updated 2024-06-08 17:13:51 +02:00
3 changed files with 8 additions and 6 deletions

View File

@@ -8,3 +8,4 @@ node.default["strfry"]["db_path"] = "/var/lib/strfry"
node.default["strfry"]["bind_ip"] = "0.0.0.0" node.default["strfry"]["bind_ip"] = "0.0.0.0"
node.default["strfry"]["real_ip_header"] = "" node.default["strfry"]["real_ip_header"] = ""
node.default["strfry"]["info"] = {} node.default["strfry"]["info"] = {}
node.default["strfry"]["policy_path"] = ""

View File

@@ -40,7 +40,7 @@ else
execute "compile" do execute "compile" do
cwd "/usr/local/src/strfry" cwd "/usr/local/src/strfry"
command "make setup-golpe && make -j$(nproc)" command "make setup-golpe && make -j$(nproc)"
# action :nothing action :nothing
notifies :create, "link[/usr/local/bin/strfry]", :immediately notifies :create, "link[/usr/local/bin/strfry]", :immediately
notifies :restart, "service[strfry]", :delayed notifies :restart, "service[strfry]", :delayed
end end
@@ -55,8 +55,8 @@ group node["strfry"]["group"]
user node["strfry"]["user"] do user node["strfry"]["user"] do
gid node["strfry"]["group"] gid node["strfry"]["group"]
manage_home false manage_home true
shell "/usr/sbin/nologin" shell "/bin/bash"
end end
directory node["strfry"]["db_path"] do directory node["strfry"]["db_path"] do
@@ -76,7 +76,8 @@ template "/etc/strfry.conf" do
real_ip_header: node["strfry"]["real_ip_header"], real_ip_header: node["strfry"]["real_ip_header"],
port: node["strfry"]["port"], port: node["strfry"]["port"],
nofiles: node["strfry"]["nofiles"], nofiles: node["strfry"]["nofiles"],
info: node["strfry"]["info"] info: node["strfry"]["info"],
policy_path: node["strfry"]["policy_path"]
} }
notifies :restart, "service[strfry]", :delayed notifies :restart, "service[strfry]", :delayed
end end
@@ -97,7 +98,7 @@ systemd_unit "strfry.service" do
ExecStart: "/usr/local/bin/strfry relay", ExecStart: "/usr/local/bin/strfry relay",
Restart: "on-failure", Restart: "on-failure",
RestartSec: "5", RestartSec: "5",
ProtectHome: "yes", ProtectHome: "no",
NoNewPrivileges: "yes", NoNewPrivileges: "yes",
ProtectSystem: "full", ProtectSystem: "full",
LimitCORE: "1000000000" LimitCORE: "1000000000"

View File

@@ -82,7 +82,7 @@ relay {
writePolicy { writePolicy {
# If non-empty, path to an executable script that implements the writePolicy plugin logic # If non-empty, path to an executable script that implements the writePolicy plugin logic
plugin = "" plugin = "<%= @config[:policy_path] %>"
} }
compression { compression {