diff --git a/tripleo_ansible/roles/tripleo_podman/defaults/main.yml b/tripleo_ansible/roles/tripleo_podman/defaults/main.yml index 1a9061fa5..07453db36 100644 --- a/tripleo_ansible/roles/tripleo_podman/defaults/main.yml +++ b/tripleo_ansible/roles/tripleo_podman/defaults/main.yml @@ -76,3 +76,4 @@ tripleo_podman_default_network_config: # - prefix: registry.fedoraproject.org # blocked: true tripleo_podman_registries: [] +tripleo_container_default_pids_limit: 4096 diff --git a/tripleo_ansible/roles/tripleo_podman/tasks/tripleo_podman_install.yml b/tripleo_ansible/roles/tripleo_podman/tasks/tripleo_podman_install.yml index 02bd444d8..9bd30296c 100644 --- a/tripleo_ansible/roles/tripleo_podman/tasks/tripleo_podman_install.yml +++ b/tripleo_ansible/roles/tripleo_podman/tasks/tripleo_podman_install.yml @@ -61,3 +61,15 @@ group: root setype: etc_t mode: '0644' + + - name: Write containers.conf + ini_file: + path: /etc/containers/containers.conf + owner: root + group: root + setype: etc_t + mode: '0644' + create: true + section: containers + option: pids_limit + value: "{{ tripleo_container_default_pids_limit }}"