deploy dangerzone-bot with puppet
we should deploy the dangerzone-webdav-processor bot with puppet. it's currently deployed by hand following the README "systemd" instructions, but this should be in puppet. and ideally, we should trash the existing setup and redeploy the VM, maybe on a regular basis?
we're not quite tooled for that, of course (see #31239) but we can dream, can we?
this is the current diff i have, incomplete:
diff --git c/modules/profile/manifests/dangerzone.pp i/modules/profile/manifests/dangerzone.pp
new file mode 100644
index 00000000..d20cd4fe
--- /dev/null
+++ i/modules/profile/manifests/dangerzone.pp
@@ -0,0 +1,9 @@
+# sanitization system
+class profile::dangerzone {
+ include profile::docker
+ user { 'dangerzone':
+ systemd => true,
+ groups => [ 'docker' ],
+ }
+ # TODO: deploy the systemd units and script
+}
diff --git c/modules/roles/manifests/dangerzone.pp i/modules/roles/manifests/dangerzone.pp
index a06bfb15..476809f5 100644
--- c/modules/roles/manifests/dangerzone.pp
+++ i/modules/roles/manifests/dangerzone.pp
@@ -1,4 +1,4 @@
# a file sanitization server
class roles::dangerzone {
- include profile::docker
+ include profile::dangerzone
}