|
|
@@ -17,6 +17,8 @@ ExecStartPre={{ matrix_host_command_sleep }} 5 |
|
|
ExecStart={{ matrix_host_command_docker }} run --rm --name {{ matrix_synapse_worker_container_name }} \ |
|
|
ExecStart={{ matrix_host_command_docker }} run --rm --name {{ matrix_synapse_worker_container_name }} \ |
|
|
--log-driver=none \ |
|
|
--log-driver=none \ |
|
|
--user={{ matrix_user_uid }}:{{ matrix_user_gid }} \ |
|
|
--user={{ matrix_user_uid }}:{{ matrix_user_gid }} \ |
|
|
|
|
|
-e UID={{ matrix_user_uid }} \ |
|
|
|
|
|
-e GID={{ matrix_user_gid }} \ |
|
|
--cap-drop=ALL \ |
|
|
--cap-drop=ALL \ |
|
|
--read-only \ |
|
|
--read-only \ |
|
|
--tmpfs=/tmp:rw,noexec,nosuid,size={{ matrix_synapse_tmp_directory_size_mb }}m \ |
|
|
--tmpfs=/tmp:rw,noexec,nosuid,size={{ matrix_synapse_tmp_directory_size_mb }}m \ |
|
|
|