Claims renamed to match the controller's seat set: node-dns-resolver (dnsmasq), node-intrusion-prevention (fail2ban), node-packet-filter (nftables), node-resolver-config (resolv-conf, resolved-split-dns), node-uplink (networkmanager, systemd-networkd, dhcpcd), mesh-build-machine (builder, +mesh scope), mesh-catalog (mesh-catalog). showcase now declares its own seat and claims it. verdaccio removed — the mesh keeps distribution as its registry and gitea already serves npm, so a second npm registry is redundant.
24 lines
1.3 KiB
JSON
24 lines
1.3 KiB
JSON
{
|
|
"module": "resolv-conf",
|
|
"version": "1",
|
|
"slug": "resolv",
|
|
"requires": [
|
|
"wildcard-resolution"
|
|
],
|
|
"claims": [
|
|
{
|
|
"name": "node-resolver-config",
|
|
"scope": "node"
|
|
}
|
|
],
|
|
"resources": [
|
|
{
|
|
"id": "resolv",
|
|
"type": "file",
|
|
"path": "/etc/resolv.conf",
|
|
"mode": "0644",
|
|
"content": "# Managed by the mesh.\n#\n# For a machine where nothing else owns this file. On one where systemd-resolved\n# or NetworkManager does, assign that module instead \u2014 this one and those claim\n# the same thing, so the mesh refuses the pair rather than letting them take\n# turns overwriting each other, which is the failure this claim exists to stop.\n#\n# The mesh's resolver, and only it \u2014 the one line the predecessor wrote on every\n# machine it set up. It answers the mesh's names itself and forwards everything\n# else to upstreams named in its own configuration, never read from this file.\n# This file used to carry a second nameserver as a placeholder for \"whatever\n# this machine used before\"; that was never a fallback for names the mesh does\n# not know \u2014 a resolver's second line is asked only when the first does not\n# answer at all \u2014 and now that the first answers everything it would be a line\n# nothing ever reached.\nnameserver 127.0.0.1\noptions edns0\n"
|
|
}
|
|
]
|
|
}
|