public inbox for pve-devel@lists.proxmox.com
 help / color / mirror / Atom feed
From: Fiona Ebner <f.ebner@proxmox.com>
To: pve-devel@lists.proxmox.com
Subject: [pve-devel] [PATCH manager v2 1/4] debian: add tpmfiles.d config to create /run/pve directory
Date: Wed, 23 Jul 2025 16:40:06 +0200	[thread overview]
Message-ID: <20250723144131.170616-2-f.ebner@proxmox.com> (raw)
In-Reply-To: <20250723144131.170616-1-f.ebner@proxmox.com>

The pve-lxc-syscalld systemd service currently uses /run/pve as a
runtime directory. This means, that when the service is restarted, the
directory will be recreated. But the /run/pve directory is not just
used as the runtime directory of this service, but also for other
things, e.g. storage tunnel and mtunnel sockets, container stderr logs
as well as pull metric cache and lock, which will be lost when the
service is restarted.

The plan is to give the service its own runtime directory that is only
used for that purpose and nothing else. However, this means the
/run/pve directory will not get created automatically anymore (e.g.
pull metric relies on the existence already). Add this tmpfiles.d
configuration to create it automatically again. Note that the
permissions/owner are different now. As the runtime directory, it was
created with 0755 root:root. This tmpfiles configuration
changes this to 0750 root:root.

Signed-off-by: Fiona Ebner <f.ebner@proxmox.com>
---

Changes in v2:
* use root:root rather than root:www-data
* rely on debhelper v13/dh_installtmpfiles

 debian/tmpfiles | 2 ++
 1 file changed, 2 insertions(+)
 create mode 100644 debian/tmpfiles

diff --git a/debian/tmpfiles b/debian/tmpfiles
new file mode 100644
index 00000000..98b8fb96
--- /dev/null
+++ b/debian/tmpfiles
@@ -0,0 +1,2 @@
+#Type Path     Mode User Group Age Argument
+d     /run/pve 0750 root root  -   -
-- 
2.47.2



_______________________________________________
pve-devel mailing list
pve-devel@lists.proxmox.com
https://lists.proxmox.com/cgi-bin/mailman/listinfo/pve-devel


  reply	other threads:[~2025-07-23 14:40 UTC|newest]

Thread overview: 12+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2025-07-23 14:40 [pve-devel] [PATCH-SERIES manager/container/lxc-syscalld v2 0/4] avoid using generic runtime directory name for pve-lxc-syscalld Fiona Ebner
2025-07-23 14:40 ` Fiona Ebner [this message]
2025-07-30 23:21   ` [pve-devel] applied: [PATCH manager v2 1/4] debian: add tpmfiles.d config to create /run/pve directory Thomas Lamprecht
2025-07-23 14:40 ` [pve-devel] [PATCH container v2 2/4] seccomp config: adapt to new lxc-syscalld runtime directory Fiona Ebner
2025-07-30 12:50   ` Fabian Grünbichler
2025-07-30 13:00     ` Thomas Lamprecht
2025-07-30 13:04       ` Fabian Grünbichler
2025-07-30 13:18   ` [pve-devel] applied: " Thomas Lamprecht
2025-07-23 14:40 ` [pve-devel] [PATCH pve-lxc-syscalld v2 3/4] service: avoid using generic runtime directory name Fiona Ebner
2025-07-30 23:33   ` [pve-devel] applied: " Thomas Lamprecht
2025-07-23 14:40 ` [pve-devel] [PATCH pve-lxc-syscalld v2 4/4] d/postinst: create link to new socket location on upgrade Fiona Ebner
2025-07-30 23:33   ` [pve-devel] applied: " Thomas Lamprecht

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20250723144131.170616-2-f.ebner@proxmox.com \
    --to=f.ebner@proxmox.com \
    --cc=pve-devel@lists.proxmox.com \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox
Service provided by Proxmox Server Solutions GmbH | Privacy | Legal