From eb111fb5f88ff7834d42008d73a922fdc76e6c3e Mon Sep 17 00:00:00 2001 From: Alex Mickelson Date: Sat, 7 Feb 2026 13:54:49 -0700 Subject: [PATCH] environment --- nix/modules/gitea-runner.nix | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/nix/modules/gitea-runner.nix b/nix/modules/gitea-runner.nix index 7589825..6d61ae4 100644 --- a/nix/modules/gitea-runner.nix +++ b/nix/modules/gitea-runner.nix @@ -52,15 +52,15 @@ systemd.tmpfiles.rules = [ "d /data/runner 0755 gitea-runner gitea-runner -" "f /data/runner/gitea-infrastructure-token.txt 0600 gitea-runner gitea-runner -" + "d /home/gitea-runner 0755 gitea-runner gitea-runner -" ]; systemd.services.gitea-runner-infrastructure.serviceConfig = { - ReadWritePaths = lib.mkForce [ ]; - StateDirectory = lib.mkForce "gitea-runner-infrastructure"; - StateDirectoryMode = lib.mkForce "0755"; + # Let systemd create the working directory with proper permissions + WorkingDirectory = lib.mkForce "/home/gitea-runner"; + WorkingDirectoryMode = lib.mkForce "0755"; - # ADD THIS - set the working directory - WorkingDirectory = lib.mkForce "/var/lib/gitea-runner-infrastructure/infrastructure"; + ReadWritePaths = lib.mkForce [ ]; # Disable all sandboxing features DynamicUser = lib.mkForce false;