From mboxrd@z Thu Jan 1 00:00:00 1970 From: Andy Wingo Subject: [PATCH 4/4] gnu: Add polkit service. Date: Wed, 8 Apr 2015 06:24:27 +0200 Message-ID: <1429087555.937607.30170@badger> Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:35787) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1YiIxL-0004U9-Mf for guix-devel@gnu.org; Wed, 15 Apr 2015 04:46:04 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1YiIxI-0000Lc-R0 for guix-devel@gnu.org; Wed, 15 Apr 2015 04:45:59 -0400 Received: from pb-sasl1.int.icgroup.com ([208.72.237.25]:59002 helo=sasl.smtp.pobox.com) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1YiIxI-0000LY-Lk for guix-devel@gnu.org; Wed, 15 Apr 2015 04:45:56 -0400 Received: from sasl.smtp.pobox.com (unknown [127.0.0.1]) by pb-sasl1.pobox.com (Postfix) with ESMTP id 5F55E44881 for ; Wed, 15 Apr 2015 04:45:56 -0400 (EDT) Received: from pb-sasl1.int.icgroup.com (unknown [127.0.0.1]) by pb-sasl1.pobox.com (Postfix) with ESMTP id 525D644880 for ; Wed, 15 Apr 2015 04:45:56 -0400 (EDT) Received: from badger (unknown [88.160.190.192]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by pb-sasl1.pobox.com (Postfix) with ESMTPSA id 937134487E for ; Wed, 15 Apr 2015 04:45:55 -0400 (EDT) List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org To: guix-devel@gnu.org * gnu/services/polkit.scm: New file. * gnu-system.am (GNU_SYSTEM_MODULES): Add polkit service definition. --- gnu-system.am | 1 + gnu/services/polkit.scm | 67 +++++++++++++++++++++++++++++++++++++++++++++++++ 2 files changed, 68 insertions(+) create mode 100644 gnu/services/polkit.scm diff --git a/gnu-system.am b/gnu-system.am index 164564a..5a4d448 100644 --- a/gnu-system.am +++ b/gnu-system.am @@ -330,6 +330,7 @@ GNU_SYSTEM_MODULES = \ gnu/services/dmd.scm \ gnu/services/lirc.scm \ gnu/services/networking.scm \ + gnu/services/polkit.scm \ gnu/services/ssh.scm \ gnu/services/upower.scm \ gnu/services/xorg.scm \ diff --git a/gnu/services/polkit.scm b/gnu/services/polkit.scm new file mode 100644 index 0000000..56ed365 --- /dev/null +++ b/gnu/services/polkit.scm @@ -0,0 +1,67 @@ +;;; GNU Guix --- Functional package management for GNU +;;; Copyright © 2014, 2015 Ludovic Courtès +;;; Copyright © 2015 Andy Wingo +;;; +;;; This file is part of GNU Guix. +;;; +;;; GNU Guix is free software; you can redistribute it and/or modify it +;;; under the terms of the GNU General Public License as published by +;;; the Free Software Foundation; either version 3 of the License, or (at +;;; your option) any later version. +;;; +;;; GNU Guix is distributed in the hope that it will be useful, but +;;; WITHOUT ANY WARRANTY; without even the implied warranty of +;;; MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the +;;; GNU General Public License for more details. +;;; +;;; You should have received a copy of the GNU General Public License +;;; along with GNU Guix. If not, see . + +(define-module (gnu services polkit) + #:use-module (gnu services) + #:use-module (gnu system shadow) + #:use-module (gnu packages polkit) + #:use-module (ice-9 match) + #:use-module (guix monads) + #:use-module (guix store) + #:use-module (guix gexp) + #:export (polkit-application + %standard-polkit-applications + polkit-service)) + +;;; Commentary: +;;; +;;; This module provides a service definition for Polkit, the privilege +;;; management service. +;;; +;;; Code: + +(define (bool value) + (if value "true\n" "false\n")) + +(define* (polkit-service #:key (polkit polkit)) + "Return a service that runs the @command{polkit} location service." + (with-monad %store-monad + (return + (service + (documentation "Run the Polkit privilege management.") + (provision '(polkit-daemon)) + (requirement '(dbus-system)) + + (start #~(make-forkexec-constructor + (list (string-append #$polkit "/lib/polkit-1/polkitd")))) + (stop #~(make-kill-destructor)) + + (user-groups (list (user-group + (name "polkitd") + (system? #t)))) + (user-accounts (list (user-account + (name "polkitd") + (group "polkitd") + (system? #t) + (comment "Polkit daemon user") + (home-directory "/var/empty") + (shell + "/run/current-system/profile/sbin/nologin")))))))) + +;;; polkit.scm ends here -- 2.2.1