codimd: Adjust directory permissions

This patch reduces the permissions on the install directory to just the root user and also fixes the ansible-lint issue for specifying the `mode`.
For all container mounted volumes, the ansible-lint rule is disabled, as codimd takes care of the permissions etc.
This commit is contained in:
saibotk 2020-09-26 21:30:10 +02:00
parent 94e2d335b8
commit d6ab9643cc
No known key found for this signature in database
GPG key ID: A3299C587D5DF523

View file

@ -40,6 +40,9 @@
file:
path: "{{ item }}"
state: directory
mode: '0700'
owner: 'root'
group: 'root'
with_items:
- "{{ codimd_install_location }}"
tags:
@ -47,7 +50,7 @@
become: true
- name: Create data directory
file:
file: # noqa 208 # Container adjusts permissions on its own
path: "{{ item.location }}"
state: directory
setype: "container_file_t"