|
|
|
@@ -1,100 +1,75 @@ |
|
|
|
#jinja2: lstrip_blocks: True |
|
|
|
[Unit] |
|
|
|
Description=Synapse worker ({{ matrix_synapse_worker_container_name }}) |
|
|
|
AssertPathExists={{ matrix_synapse_config_dir_path }}/{{ matrix_synapse_worker_config_file_name }} |
|
|
|
AssertPathExists={{ matrix_synapse_worker_systemd_shared.config_dir_path }}/{{ matrix_synapse_worker_config_file_name }} |
|
|
|
After=matrix-synapse.service |
|
|
|
Requires=matrix-synapse.service |
|
|
|
|
|
|
|
{% set matrix_synapse_container_worker_arguments = [] %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_worker_systemd_shared.container_worker_arguments_by_type[matrix_synapse_worker_type] | default([]) %} |
|
|
|
|
|
|
|
{% if matrix_synapse_worker_type == "room_worker" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_room_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "sync_worker" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_sync_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "client_reader" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_client_reader_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "federation_reader" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_federation_reader_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "generic_worker" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_generic_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "stream_writer" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_stream_writers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "federation_sender" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_federation_sender_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "pusher" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_pusher_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "appservice" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_appservice_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "user_dir" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_user_dir_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "background" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_background_workers_container_arguments %} |
|
|
|
{% elif matrix_synapse_worker_type == "media_repository" %} |
|
|
|
{% set matrix_synapse_container_worker_arguments = matrix_synapse_workers_media_repository_workers_container_arguments %} |
|
|
|
{% endif %} |
|
|
|
|
|
|
|
[Service] |
|
|
|
Type=simple |
|
|
|
Environment="HOME={{ devture_systemd_docker_base_systemd_unit_home_path }}" |
|
|
|
Environment="HOME={{ matrix_synapse_worker_systemd_shared.systemd_unit_home_path }}" |
|
|
|
|
|
|
|
ExecStartPre=-{{ devture_systemd_docker_base_host_command_sh }} -c '{{ devture_systemd_docker_base_host_command_docker }} stop -t {{ devture_systemd_docker_base_container_stop_grace_time_seconds }} {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStartPre=-{{ devture_systemd_docker_base_host_command_sh }} -c '{{ devture_systemd_docker_base_host_command_docker }} rm {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStartPre=-{{ matrix_synapse_worker_systemd_shared.host_command_sh }} -c '{{ matrix_synapse_worker_systemd_shared.host_command_docker }} stop -t {{ matrix_synapse_worker_systemd_shared.container_stop_grace_time_seconds }} {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStartPre=-{{ matrix_synapse_worker_systemd_shared.host_command_sh }} -c '{{ matrix_synapse_worker_systemd_shared.host_command_docker }} rm {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
|
|
|
|
ExecStartPre={{ devture_systemd_docker_base_host_command_docker }} create \ |
|
|
|
ExecStartPre={{ matrix_synapse_worker_systemd_shared.host_command_docker }} create \ |
|
|
|
--rm \ |
|
|
|
--name={{ matrix_synapse_worker_container_name }} \ |
|
|
|
--log-driver=none \ |
|
|
|
--user={{ matrix_synapse_uid }}:{{ matrix_synapse_gid }} \ |
|
|
|
--user={{ matrix_synapse_worker_systemd_shared.uid }}:{{ matrix_synapse_worker_systemd_shared.gid }} \ |
|
|
|
--cap-drop=ALL \ |
|
|
|
--read-only \ |
|
|
|
--tmpfs=/tmp:rw,noexec,nosuid,size={{ matrix_synapse_tmp_directory_size_mb }}m \ |
|
|
|
--network={{ matrix_synapse_container_network }} \ |
|
|
|
--tmpfs=/tmp:rw,noexec,nosuid,size={{ matrix_synapse_worker_systemd_shared.tmp_directory_size_mb }}m \ |
|
|
|
--network={{ matrix_synapse_worker_systemd_shared.container_network }} \ |
|
|
|
{% if matrix_synapse_worker_details.port != 0 and matrix_synapse_worker_details.webserving %} |
|
|
|
--health-cmd 'curl -fSs http://localhost:{{ matrix_synapse_worker_details.port }}/health || exit 1' \ |
|
|
|
{% else %} |
|
|
|
--no-healthcheck \ |
|
|
|
{% endif %} |
|
|
|
{% if matrix_synapse_workers_enabled and matrix_synapse_workers_container_host_bind_address %} |
|
|
|
{% if matrix_synapse_worker_systemd_shared.workers_enabled and matrix_synapse_worker_systemd_shared.workers_container_host_bind_address %} |
|
|
|
{% if matrix_synapse_worker_details.port != 0 %} |
|
|
|
-p {{ '' if matrix_synapse_workers_container_host_bind_address == '*' else (matrix_synapse_workers_container_host_bind_address + ':') }}{{ matrix_synapse_worker_details.port }}:{{ matrix_synapse_worker_details.port }} \ |
|
|
|
-p {{ '' if matrix_synapse_worker_systemd_shared.workers_container_host_bind_address == '*' else (matrix_synapse_worker_systemd_shared.workers_container_host_bind_address + ':') }}{{ matrix_synapse_worker_details.port }}:{{ matrix_synapse_worker_details.port }} \ |
|
|
|
{% endif %} |
|
|
|
{% if matrix_synapse_worker_details.metrics_port != 0 %} |
|
|
|
-p {{ '' if matrix_synapse_workers_container_host_bind_address == '*' else (matrix_synapse_workers_container_host_bind_address + ':') }}{{ matrix_synapse_worker_details.metrics_port }}:{{ matrix_synapse_worker_details.metrics_port }} \ |
|
|
|
-p {{ '' if matrix_synapse_worker_systemd_shared.workers_container_host_bind_address == '*' else (matrix_synapse_worker_systemd_shared.workers_container_host_bind_address + ':') }}{{ matrix_synapse_worker_details.metrics_port }}:{{ matrix_synapse_worker_details.metrics_port }} \ |
|
|
|
{% endif %} |
|
|
|
{% endif %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_config_dir_path }},dst=/data,ro \ |
|
|
|
--mount type=bind,src={{ matrix_synapse_storage_path }},dst=/matrix-media-store-parent,bind-propagation=slave \ |
|
|
|
{% for volume in matrix_synapse_container_additional_volumes %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_worker_systemd_shared.config_dir_path }},dst=/data,ro \ |
|
|
|
--mount type=bind,src={{ matrix_synapse_worker_systemd_shared.storage_path }},dst=/matrix-media-store-parent,bind-propagation=slave \ |
|
|
|
{% for volume in matrix_synapse_worker_systemd_shared.container_additional_volumes %} |
|
|
|
--mount type={{ volume.type | default('bind' if '/' in volume.src else 'volume') }},src={{ volume.src }},dst={{ volume.dst }}{{ (',' + volume.options) if volume.options else '' }} \ |
|
|
|
{% endfor %} |
|
|
|
{% if matrix_synapse_redis_path_enabled %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_redis_path_host }},dst={{ matrix_synapse_redis_path }} \ |
|
|
|
{% if matrix_synapse_worker_systemd_shared.redis_path_enabled %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_worker_systemd_shared.redis_path_host }},dst={{ matrix_synapse_worker_systemd_shared.redis_path }} \ |
|
|
|
{% endif %} |
|
|
|
{% if matrix_synapse_database_socket_enabled %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_database_socket_path_host }},dst={{ matrix_synapse_database_socket_path }} \ |
|
|
|
{% if matrix_synapse_worker_systemd_shared.database_socket_enabled %} |
|
|
|
--mount type=bind,src={{ matrix_synapse_worker_systemd_shared.database_socket_path_host }},dst={{ matrix_synapse_worker_systemd_shared.database_socket_path }} \ |
|
|
|
{% endif %} |
|
|
|
--label-file={{ matrix_synapse_base_path }}/{{ matrix_synapse_worker_labels_file_name }} \ |
|
|
|
{% for arg in matrix_synapse_container_arguments %} |
|
|
|
--label-file={{ matrix_synapse_worker_systemd_shared.base_path }}/{{ matrix_synapse_worker_labels_file_name }} \ |
|
|
|
{% for arg in matrix_synapse_worker_systemd_shared.container_arguments %} |
|
|
|
{{ arg }} \ |
|
|
|
{% endfor %} |
|
|
|
{% for arg in matrix_synapse_container_worker_arguments %} |
|
|
|
{{ arg }} \ |
|
|
|
{% endfor %} |
|
|
|
{{ matrix_synapse_container_image_final }} \ |
|
|
|
{{ matrix_synapse_worker_systemd_shared.container_image_final }} \ |
|
|
|
run -m synapse.app.{{ matrix_synapse_worker_details.app }} -c /data/homeserver.yaml -c /data/{{ matrix_synapse_worker_config_file_name }} |
|
|
|
|
|
|
|
{% if matrix_synapse_container_network != 'host' %} |
|
|
|
{% for network in matrix_synapse_container_additional_networks %} |
|
|
|
ExecStartPre={{ devture_systemd_docker_base_host_command_docker }} network connect {{ network }} {{ matrix_synapse_worker_container_name }} |
|
|
|
{% if matrix_synapse_worker_systemd_shared.container_network != 'host' %} |
|
|
|
{% for network in matrix_synapse_worker_systemd_shared.container_additional_networks %} |
|
|
|
ExecStartPre={{ matrix_synapse_worker_systemd_shared.host_command_docker }} network connect {{ network }} {{ matrix_synapse_worker_container_name }} |
|
|
|
{% endfor %} |
|
|
|
{% endif %} |
|
|
|
|
|
|
|
ExecStart={{ devture_systemd_docker_base_host_command_docker }} start --attach {{ matrix_synapse_worker_container_name }} |
|
|
|
ExecStart={{ matrix_synapse_worker_systemd_shared.host_command_docker }} start --attach {{ matrix_synapse_worker_container_name }} |
|
|
|
|
|
|
|
ExecStop=-{{ devture_systemd_docker_base_host_command_sh }} -c '{{ devture_systemd_docker_base_host_command_docker }} stop -t {{ devture_systemd_docker_base_container_stop_grace_time_seconds }} {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStop=-{{ devture_systemd_docker_base_host_command_sh }} -c '{{ devture_systemd_docker_base_host_command_docker }} rm {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStop=-{{ matrix_synapse_worker_systemd_shared.host_command_sh }} -c '{{ matrix_synapse_worker_systemd_shared.host_command_docker }} stop -t {{ matrix_synapse_worker_systemd_shared.container_stop_grace_time_seconds }} {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
ExecStop=-{{ matrix_synapse_worker_systemd_shared.host_command_sh }} -c '{{ matrix_synapse_worker_systemd_shared.host_command_docker }} rm {{ matrix_synapse_worker_container_name }} 2>/dev/null || true' |
|
|
|
|
|
|
|
ExecReload={{ devture_systemd_docker_base_host_command_docker }} exec {{ matrix_synapse_worker_container_name }} /bin/sh -c 'kill -HUP 1' |
|
|
|
ExecReload={{ matrix_synapse_worker_systemd_shared.host_command_docker }} exec {{ matrix_synapse_worker_container_name }} /bin/sh -c 'kill -HUP 1' |
|
|
|
Restart=always |
|
|
|
RestartSec=30 |
|
|
|
SyslogIdentifier={{ matrix_synapse_worker_container_name }} |
|
|
|
|