Default borgmatic_file_config_yaml_mode: 0640

It is possible to add secrets to the configuration file, as a result
don't allow world readable.

Change-Id: I32ce383759c48a88431dd753ddcdec0a2e7f49db
Signed-off-by: Paul Belanger <pabelanger@redhat.com>
This commit is contained in:
Paul Belanger 2019-02-15 17:20:50 -05:00
parent b326cd6d82
commit b12d697e79
2 changed files with 2 additions and 2 deletions

View File

@ -25,7 +25,7 @@ borgmatic_user_home: /root
borgmatic_file_config_yaml_dest:
"{{ borgmatic_user_home }}/.config/borgmatic/config.yaml"
borgmatic_file_config_yaml_group: "{{ borgmatic_user_group }}"
borgmatic_file_config_yaml_mode: 0644
borgmatic_file_config_yaml_mode: 0640
borgmatic_file_config_yaml_owner: "{{ borgmatic_user_name }}"
borgmatic_file_config_yaml_src: root/.config/borgmatic/config.yaml.j2

View File

@ -27,7 +27,7 @@ def test_borgmatic_config(host):
assert f.is_file
assert f.user == 'root'
assert f.group == 'root'
assert f.mode == 0o644
assert f.mode == 0o640
del f