sharenet/podman-host-socket.service
continuist 2ce3195d35
Some checks are pending
CI/CD Pipeline with Secure Ephemeral PiP / test-backend (push) Waiting to run
CI/CD Pipeline with Secure Ephemeral PiP / test-frontend (push) Blocked by required conditions
CI/CD Pipeline with Secure Ephemeral PiP / build-backend (push) Blocked by required conditions
CI/CD Pipeline with Secure Ephemeral PiP / build-frontend (push) Blocked by required conditions
Security improvements #8
2025-09-05 18:59:51 -04:00

17 lines
No EOL
463 B
Desktop File

[Unit]
Description=Rootless Podman REST (UNIX socket only)
After=default.target
[Service]
Type=simple
Environment="XDG_RUNTIME_DIR=/run/user/%U"
UMask=007
NoNewPrivileges=yes
ExecStartPre=/usr/bin/mkdir -p ${XDG_RUNTIME_DIR}/podman-host
ExecStartPre=/usr/bin/chmod 770 ${XDG_RUNTIME_DIR}/podman-host
ExecStart=/usr/bin/podman system service --time=0 unix://${XDG_RUNTIME_DIR}/podman-host/podman.sock
Restart=always
RestartSec=2
[Install]
WantedBy=default.target