DynamicUser can only see its own journald entries by default, so the sshd + authelia journalctl acquisitions were dying with "insufficient permissions" and exit status 1 from the spawned journalctl process. Adding systemd-journal grants the read access journald gates on group membership, restoring the ssh-bf / authelia-bf detection chain. Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com> |
||
|---|---|---|
| .. | ||
| adguard.nix | ||
| arr-interconnect.nix | ||
| authelia.nix | ||
| bazarr.nix | ||
| cloudflare-ddns.md | ||
| cloudflare-ddns.nix | ||
| crowdsec.nix | ||
| fail2ban.nix | ||
| game-servers.nix | ||
| go2rtc.nix | ||
| homepage.nix | ||
| jellyfin.nix | ||
| nginx.nix | ||
| prowlarr.nix | ||
| qbittorrent-nox.nix | ||
| radarr.nix | ||
| router.nix | ||
| server-permissions.nix | ||
| sonarr.nix | ||