summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorHugo Hörnquist <hugo@lysator.liu.se>2022-01-02 03:08:29 +0100
committerHugo Hörnquist <hugo@lysator.liu.se>2022-01-02 03:08:29 +0100
commit22ba89e796aa44321e68b7f16a2b37a3ee60db2f (patch)
treec795f6e1f1f8be0078fc6262b3c5d725d5159cc7
parentOnly run nspawn stuff if machine not running. (diff)
downloadnspawn-22ba89e796aa44321e68b7f16a2b37a3ee60db2f.tar.gz
nspawn-22ba89e796aa44321e68b7f16a2b37a3ee60db2f.tar.xz
Nspawn with a bind mount.
-rw-r--r--manifests/machine.pp5
1 files changed, 5 insertions, 0 deletions
diff --git a/manifests/machine.pp b/manifests/machine.pp
index d747069..1c688f6 100644
--- a/manifests/machine.pp
+++ b/manifests/machine.pp
@@ -15,6 +15,11 @@ define nspawn::machine (
# /usr/lib/systemd/resolv.conf
ResolvConf=copy-static
+ [Files]
+ # TODO This should only be mounted on puppet servers, in case it
+ # contains secrets
+ BindReadOnly=/usr/local/puppet:/puppet
+
[Network]
Bridge=br0
| EOF