ansible-role-systemd_service/tasks/main.yml
Kevin Carter 86ad639f41 Fix global lock path usage
The option `systemd_lock_path` is intended to be set globally
and locally however the global implementation has never been
implemented.

  * The global option will ensure the run and lock path is setup
    for all services within the `systemd_services` array.
  * The local option provices a way to override a global lock path
    based on specific service needs.

Change-Id: I373b8905c01ff666b5705bd3bb3c76c3e74a64ab
2018-12-27 17:52:57 -06:00

191 lines
5.9 KiB
YAML

---
# Copyright 2017, Rackspace US, Inc.
#
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
- name: Pull systemd version
command: "systemctl --version"
changed_when: false
register: get_systemd_version
tags:
# Avoid ANSIBLE0006 lint issue: systemctl used in place of systemd module
- skip_ansible_lint
- always
- name: Set systemd version
set_fact:
systemd_version: "{{ get_systemd_version.stdout_lines[0].split()[-1] }}"
tags:
- always
- name: Create TEMP run dir
file:
path: "/var/run/{{ item.service_name | replace(' ', '_') }}"
state: directory
owner: "{{ item.systemd_user_name | default(systemd_user_name) }}"
group: "{{ item.systemd_group_name | default(systemd_group_name) }}"
mode: "02755"
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Create TEMP service lock dir
file:
path: "/var/lock/{{ item.service_name | replace(' ', '_') }}"
state: directory
owner: "{{ item.systemd_user_name | default(systemd_user_name) }}"
group: "{{ item.systemd_group_name | default(systemd_group_name) }}"
mode: "02755"
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Create TEMP defined lock dir
file:
path: "{{ item.systemd_lock_path | default(systemd_lock_path) }}"
state: directory
owner: "{{ item.systemd_user_name | default(systemd_user_name) }}"
group: "{{ item.systemd_group_name | default(systemd_group_name) }}"
mode: "02755"
when:
- (item.systemd_lock_path is defined) or
(systemd_lock_path is defined)
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Create tmpfiles.d entry
template:
src: "systemd-tmpfiles.j2"
dest: "/etc/tmpfiles.d/{{ item.systemd_tempd_prefix | default(systemd_tempd_prefix) }}-{{ item.service_name | replace(' ', '_') }}.conf"
mode: "0644"
owner: "root"
group: "root"
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Check ExecStarts
fail:
msg: >-
When the service type is "simple" only ONE command can be started. Check
The list of execstarts and limit it to a single command per service or
consider using the "oneshot" service type. Defined ExecStart commands
"{{ item.execstarts }}".
when:
- item.execstarts is not string
- item.execstarts | length > 1
- item.service_type | default(systemd_default_service_type) != 'oneshot'
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Check ExecStops
fail:
msg: >-
When the service type is "simple" only ONE command can be stopped. Check
The list of execstops and limit it to a single command per service or
consider using the "oneshot" service type. Defined ExecStop commands
"{{ item.execstops }}".
when:
- item.execstops is not string
- item.execstops | default([]) | length > 1
- item.service_type | default(systemd_default_service_type) != 'oneshot'
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Check ExecReloads
fail:
msg: >-
When the service type is "simple" only ONE command can be reloaded. Check
The list of execreloads and limit it to a single command per service or
consider using the "oneshot" service type. Defined ExecStop commands
"{{ item.execreloads }}".
when:
- item.execreloads is not string
- item.execreloads | default([]) | length > 1
- item.service_type | default(systemd_default_service_type) != 'oneshot'
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Check timers
fail:
msg: >-
When using systemd timers the "state" must be defined under the timer key.
when:
- item.timer is defined
- item.timer.state is undefined
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Place the systemd service
config_template:
src: "systemd-service.j2"
dest: "/etc/systemd/system/{{ item.service_name | replace(' ', '_') }}.service"
mode: "0644"
owner: "root"
group: "root"
config_overrides: "{{ item.config_overrides | default(systemd_service_config_overrides) }}"
config_type: "ini"
with_items: "{{ systemd_services }}"
notify:
- systemd service changed
register: systemd_services_result
tags:
- systemd-service
- name: Place the systemd timer
template:
src: "systemd-timer.j2"
dest: "/etc/systemd/system/{{ item.service_name | replace(' ', '_') }}.timer"
mode: "0644"
owner: "root"
group: "root"
when:
- item.timer is defined
with_items: "{{ systemd_services }}"
notify:
- systemd service changed
register: systemd_timer_result
tags:
- systemd-service
- name: Reload systemd on unit change
systemd:
daemon_reload: yes
when:
- (systemd_services_result is changed) or (systemd_timer_result is changed)
- name: Load service
systemd:
name: "{{ item.service_name | replace(' ', '_') }}.service"
enabled: "{{ item.enabled | default(systemd_service_enabled) }}"
state: "{{ (item.timer is defined) | ternary(omit, (item.state | default(omit))) }}"
with_items: "{{ systemd_services }}"
tags:
- systemd-service
- name: Load timer
systemd:
name: "{{ item.service_name | replace(' ', '_') }}.timer"
enabled: "{{ item.enabled | default(systemd_service_enabled) }}"
state: "{{ item.timer.state | default(omit) }}"
when:
- item.timer is defined
with_items: "{{ systemd_services }}"
tags:
- systemd-service