diff --git a/handlers/main.yml b/handlers/main.yml index 3b75b87..0b9b945 100644 --- a/handlers/main.yml +++ b/handlers/main.yml @@ -1,11 +1,8 @@ ---- - name: "Restart traefik" ansible.builtin.service: name: traefik state: restarted - when: ansible_service_mgr == "systemd - name: "Reload systemd" ansible.builtin.systemd: daemon_reload: true - when: ansible_service_mgr == "systemd" diff --git a/templates/traefik.quadlet.j2 b/templates/traefik.quadlet.j2 index ce4c8ef..2aa0cf1 100644 --- a/templates/traefik.quadlet.j2 +++ b/templates/traefik.quadlet.j2 @@ -19,7 +19,7 @@ Network=traefik.network Volume=/etc/traefik:/etc/traefik:rw Volume=/var/run/podman/podman.sock:/var/run/docker.sock:ro Volume=/letsencrypt/acme.json:/letsencrypt/acme.json - + NoNewPrivileges=true DropCapability=All AddCapability=net_bind_service