From 78ad8d4a6242c9baab4b08ee9d0b2ab94b8ed565 Mon Sep 17 00:00:00 2001 From: WilliButz Date: Wed, 13 Jun 2018 19:34:48 +0200 Subject: [PATCH] nixos/gitlab: rebuild authorized_keys during preStart This updates the path to the 'gitlab-shell' to the correct store path when gitlab is restarted. --- nixos/modules/services/misc/gitlab.nix | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/nixos/modules/services/misc/gitlab.nix b/nixos/modules/services/misc/gitlab.nix index fe2dd2798bf..d81aa5643e5 100644 --- a/nixos/modules/services/misc/gitlab.nix +++ b/nixos/modules/services/misc/gitlab.nix @@ -630,6 +630,10 @@ in { touch "${cfg.statePath}/db-seeded" fi + # The gitlab:shell:setup regenerates the authorized_keys file so that + # the store path to the gitlab-shell in it gets updated + ${pkgs.sudo}/bin/sudo -u ${cfg.user} force=yes ${gitlab-rake}/bin/gitlab-rake gitlab:shell:setup RAILS_ENV=production + # The gitlab:shell:create_hooks task seems broken for fixing links # so we instead delete all the hooks and create them anew rm -f ${cfg.statePath}/repositories/**/*.git/hooks