ci(netty): disable NoNewPrivileges on runner so sudo works for deploy
Some checks failed
quality / changes (push) Successful in 1s
quality / Nix Format Check (push) Successful in 5s
quality / Flake Check (push) Successful in 13s
quality / Deploy netty (push) Failing after 1s

Made-with: Cursor
This commit is contained in:
Harivansh Rathi 2026-04-18 22:48:37 -04:00
parent a1f22bd7b4
commit bac6f96814

View file

@ -8,6 +8,10 @@ let
cacheRoot = "/var/cache/forgejo-runner";
in
{
systemd.services.gitea-runner-netty.serviceConfig = {
NoNewPrivileges = lib.mkForce false;
};
security.sudo.extraRules = [
{
users = [ "gitea-runner" ];