feat(packaging): a desktop-login host restarts with its desktop

The shipped unit's PartOf=punktfunk-kde-session.service covers the
APPLIANCE route, where we start the compositor ourselves. A host on a
machine somebody logs into has no such unit: when Plasma or GNOME
restarts, the daemon keeps running while holding a Wayland socket and a
portal D-Bus connection that both died with the old compositor, and it
cannot recover either in-process. It fails quietly — the host still
listens, still answers, and every session it then serves dies at capture.
A host that mirrors a monitor idles for days between sessions, which is
the shape that finds this at the worst moment.

The drop-in binds the host to graphical-session.target: PartOf takes it
down with the session, WantedBy brings it back with the new one. Shipped
under /usr/share rather than as an active drop-in, because it is wrong
for the appliance route (which may never reach that target at all, and
would then leave the host permanently stopped) — the operator opts in.

Closes the restart half of design/per-monitor-portal-capture.md §6.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
This commit is contained in:
2026-07-27 23:51:41 +02:00
co-authored by Claude Opus 5
parent 45f04f50fe
commit 19deac75fe
5 changed files with 71 additions and 0 deletions
+12
View File
@@ -8,6 +8,18 @@
# cp scripts/host.env.example ~/.config/punktfunk/host.env # defaults are right for a desktop
# systemctl --user daemon-reload && systemctl --user enable --now punktfunk-host
#
# On that desktop-login route, ALSO install scripts/punktfunk-host-desktop-session.conf as a drop-in:
# it binds the host to graphical-session.target, so a Plasma/GNOME restart restarts the host instead
# of leaving it holding a dead Wayland socket + portal connection (the PartOf= below only covers the
# appliance route, where we start the compositor ourselves). The drop-in's header has the commands.
#
# The host does NOT need the login shell's environment: it detects the live session itself per
# connect and derives WAYLAND_DISPLAY, XDG_RUNTIME_DIR, DBUS_SESSION_BUS_ADDRESS, XDG_CURRENT_DESKTOP,
# HYPRLAND_INSTANCE_SIGNATURE and SWAYSOCK from the running compositor (vdisplay::apply_session_env).
# So host.env carries policy, not session plumbing, and `systemctl --user import-environment` is not
# a prerequisite — the host pushes the live values into the manager env itself when a session switch
# needs the portal to re-read them.
#
# Self-contained boot appliance (no login, no manual steps after boot). These routes PIN the
# backend via PUNKTFUNK_COMPOSITOR — correct for a dedicated single-session box, but it turns off
# live-session auto-detection, so never do it on a desktop that switches sessions (Game Mode etc.):