/run/matrix-synapse is a tmpfile

This commit is contained in:
Motiejus Jakštys 2023-03-20 17:08:43 +02:00
parent f2f493be78
commit c09ce8f190

View File

@ -564,7 +564,7 @@ in {
matrix-synapse = { matrix-synapse = {
preStart = '' preStart = ''
mkdir -p /run/matrix-synapse/ umask 077
ln -sf ''${CREDENTIALS_DIRECTORY}/jakstys.lt.signing.key /run/matrix-synapse/jakstys.lt.signing.key ln -sf ''${CREDENTIALS_DIRECTORY}/jakstys.lt.signing.key /run/matrix-synapse/jakstys.lt.signing.key
cat > /run/matrix-synapse/secrets.yaml <<EOF cat > /run/matrix-synapse/secrets.yaml <<EOF
registration_shared_secret: "$(cat ''${CREDENTIALS_DIRECTORY}/registration_shared_secret)" registration_shared_secret: "$(cat ''${CREDENTIALS_DIRECTORY}/registration_shared_secret)"
@ -576,6 +576,9 @@ in {
"registration_shared_secret:/var/src/secrets/synapse/registration_shared_secret" "registration_shared_secret:/var/src/secrets/synapse/registration_shared_secret"
"macaroon_secret_key:/var/src/secrets/synapse/macaroon_secret_key" "macaroon_secret_key:/var/src/secrets/synapse/macaroon_secret_key"
]; ];
tmpfiles.rules = [
"d /run/matrix-synapse 0700 matrix-synapse matrix-synapse -"
];
}; };
cert-watcher = { cert-watcher = {