mirror of
				https://git.lapiole.org/dani/ansible-roles.git
				synced 2025-11-04 04:41:27 +01:00 
			
		
		
		
	Update to 2022-08-04 14:00
This commit is contained in:
		@@ -76,6 +76,8 @@ nomad_base_conf:
 | 
				
			|||||||
      docker:
 | 
					      docker:
 | 
				
			||||||
        enabled: True
 | 
					        enabled: True
 | 
				
			||||||
        allow_privileged: True
 | 
					        allow_privileged: True
 | 
				
			||||||
 | 
					        # You can set a list of caps allowed for containers, eg
 | 
				
			||||||
 | 
					        # allow_caps: ["audit_write", "chown", "dac_override", "fowner", "fsetid", "kill", "mknod", "net_bind_service", "setfcap", "setgid", "setpcap", "setuid", "sys_chroot"]
 | 
				
			||||||
      raw_exec:
 | 
					      raw_exec:
 | 
				
			||||||
        enabled: False
 | 
					        enabled: False
 | 
				
			||||||
      java:
 | 
					      java:
 | 
				
			||||||
 
 | 
				
			|||||||
@@ -86,6 +86,13 @@ client {
 | 
				
			|||||||
plugin "docker" {
 | 
					plugin "docker" {
 | 
				
			||||||
  config {
 | 
					  config {
 | 
				
			||||||
    allow_privileged = {{ nomad_conf.client.task_drivers.docker.allow_privileged | ternary('true', 'false') }}
 | 
					    allow_privileged = {{ nomad_conf.client.task_drivers.docker.allow_privileged | ternary('true', 'false') }}
 | 
				
			||||||
 | 
					{% if nomad_conf.client.task_drivers.docker.allow_caps is defined %}
 | 
				
			||||||
 | 
					    allow_caps = [
 | 
				
			||||||
 | 
					{% for cap in nomad_conf.client.task_drivers.docker.allow_caps %}
 | 
				
			||||||
 | 
					      "{{ cap }}",
 | 
				
			||||||
 | 
					{% endfor %}
 | 
				
			||||||
 | 
					    ]
 | 
				
			||||||
 | 
					{% endif %}
 | 
				
			||||||
  }
 | 
					  }
 | 
				
			||||||
}
 | 
					}
 | 
				
			||||||
{% endif %}
 | 
					{% endif %}
 | 
				
			||||||
 
 | 
				
			|||||||
		Reference in New Issue
	
	Block a user