# SPDX-FileCopyrightText: 2025 MDAD project contributors # SPDX-FileCopyrightText: 2025 Catalan Lover # # SPDX-License-Identifier: AGPL-3.0-or-later --- - name: Ensure git installed ansible.builtin.package: name: git state: present # A checkout owned by a different user (a uid change, an earlier clone by another user, etc.) would make the git task below fail on ownership or permissions. - name: Ensure synapse-http-antispam repository ownership is correct ansible.builtin.file: path: "{{ matrix_synapse_ext_path }}/synapse-http-antispam" state: directory owner: "{{ matrix_synapse_uid }}" group: "{{ matrix_synapse_gid }}" recurse: true - name: Clone synapse-http-antispam git repository ansible.builtin.git: repo: "{{ matrix_synapse_ext_synapse_http_antispam_git_repository_url }}" version: "{{ matrix_synapse_ext_synapse_http_antispam_git_version }}" dest: "{{ matrix_synapse_ext_path }}/synapse-http-antispam" force: "yes" become: true become_user: "{{ matrix_synapse_username }}" # Keep this even though the task above normalizes ownership. Git may still see an ownership mismatch when Ansible becomes an unprivileged user (see #5065). environment: GIT_CONFIG_COUNT: "1" GIT_CONFIG_KEY_0: safe.directory GIT_CONFIG_VALUE_0: "{{ matrix_synapse_ext_path }}/synapse-http-antispam" - ansible.builtin.set_fact: matrix_synapse_modules: > {{ matrix_synapse_modules | default([]) + [{ "module": "synapse_http_antispam.HTTPAntispam", "config": matrix_synapse_ext_synapse_http_antispam_config, }] }} matrix_synapse_container_extra_arguments: > {{ matrix_synapse_container_extra_arguments | default([]) + ["--mount type=bind,src=" + matrix_synapse_ext_path + "/synapse-http-antispam/synapse_http_antispam.py,dst=" + matrix_synapse_in_container_python_packages_path + "/synapse_http_antispam.py,ro"] }}