blob: c61e39dc80f1e88ff1e90ad0d9a7ca145626a54a [file] [log] [blame]
Patrick Williams213cb262021-08-07 19:21:33 -05001From dfeeb3f1328d09f516edeb6349bd63e3c87f9397 Mon Sep 17 00:00:00 2001
Andrew Geissler82c905d2020-04-13 13:39:40 -05002From: Alex Kiernan <alex.kiernan@gmail.com>
3Date: Thu, 13 Feb 2020 06:08:45 +0000
Patrick Williams213cb262021-08-07 19:21:33 -05004Subject: [PATCH] rarpd:Drop PrivateUsers
Andrew Geissler82c905d2020-04-13 13:39:40 -05005
Patrick Williams213cb262021-08-07 19:21:33 -05006rarpd cannot gain the necessary capabilities with
Andrew Geissler82c905d2020-04-13 13:39:40 -05007PrivateUsers enabled.
8
9Upstream-Status: Pending
10Signed-off-by: Alex Kiernan <alex.kiernan@gmail.com>
Patrick Williams213cb262021-08-07 19:21:33 -050011
Andrew Geissler82c905d2020-04-13 13:39:40 -050012---
13 systemd/rarpd.service.in | 1 -
Patrick Williams213cb262021-08-07 19:21:33 -050014 1 file changed, 1 deletion(-)
Andrew Geissler82c905d2020-04-13 13:39:40 -050015
16diff --git a/systemd/rarpd.service.in b/systemd/rarpd.service.in
Patrick Williams213cb262021-08-07 19:21:33 -050017index e600c10..f5d7621 100644
Andrew Geissler82c905d2020-04-13 13:39:40 -050018--- a/systemd/rarpd.service.in
19+++ b/systemd/rarpd.service.in
20@@ -12,7 +12,6 @@ AmbientCapabilities=CAP_NET_RAW
21 DynamicUser=yes
22 PrivateTmp=yes
23 PrivateDevices=yes
24-PrivateUsers=yes
25 ProtectSystem=strict
26 ProtectHome=yes
27 ProtectControlGroups=yes