Use ProcSubset=pid in systemd

This commit is contained in:
Archi
2023-08-02 11:59:48 +02:00
parent abae12b1e1
commit c7610a918d
3 changed files with 3 additions and 0 deletions

View File

@@ -18,6 +18,7 @@ PrivateDevices=yes
PrivateIPC=yes
PrivateMounts=yes
PrivateUsers=yes
ProcSubset=pid
ProtectClock=yes
ProtectControlGroups=yes
ProtectHome=read-only

View File

@@ -18,6 +18,7 @@ PrivateDevices=yes
PrivateIPC=yes
PrivateMounts=yes
PrivateUsers=yes
ProcSubset=pid
ProtectClock=yes
ProtectControlGroups=yes
ProtectHome=read-only

View File

@@ -18,6 +18,7 @@ PrivateDevices=yes
PrivateIPC=yes
PrivateMounts=yes
PrivateUsers=yes
ProcSubset=pid
ProtectClock=yes
ProtectControlGroups=yes
ProtectHome=read-only