openstack-ansible-os_nova/tasks/drivers/kvm/nova_kernel_permissions.yml
Kevin Carter 33b2472724 Streamline task execution
This change moves the compute drivers into their own directory which will
isolate the compute execution tasks which will limit the loaded tasks
and ensure we're not excessively skipping tasks.

Change-Id: I67895687906c3ba4cbdc8c3cb6a3b17f07bceee1
Signed-off-by: Kevin Carter <kevin.carter@rackspace.com>
2017-05-18 18:46:05 -05:00

40 lines
1.4 KiB
YAML

---
# Licensed under the Apache License, Version 2.0 (the "License");
# you may not use this file except in compliance with the License.
# You may obtain a copy of the License at
#
# http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software
# distributed under the License is distributed on an "AS IS" BASIS,
# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
# See the License for the specific language governing permissions and
# limitations under the License.
- name: Find installed kernels
find:
paths: '/boot'
patterns: 'vmlinuz-*'
register: kernels
- name: Determine latest installed kernel
set_fact:
latest_kernel: "{{ kernels.files | map(attribute='path') | sort(reverse=True) | first }}"
- name: Latest kernel readable to nova group/user
command: 'dpkg-statoverride --update --add root nova 0640 {{ latest_kernel }}'
register: dpkg_statoverride_result
changed_when: >
'an override for \'{{ latest_kernel }}\' already exists; aborting'
not in dpkg_statoverride_result.stderr
failed_when: >
(dpkg_statoverride_result.rc != 0) and
('an override for \'{{ latest_kernel }}\' already exists; aborting'
not in dpkg_statoverride_result.stderr)
- name: Script installed to make future kernels readable to nova group/user
copy:
src: 'nova_kernel_permissions.sh'
dest: '/etc/kernel/postinst.d/nova_kernel_permissions.sh'
mode: '0755'