chiark / gitweb /
units: networkd shouldn't have PrivateTmp= set, since it runs in early-boot
[elogind.git] / units / systemd-hostnamed.service.in
index be22a3ad01833b6b026a0d0dd4efe912d2a139d3..44812592e22c036fabfd0f5c9dfa87a724bdc36a 100644 (file)
@@ -13,4 +13,8 @@ Documentation=http://www.freedesktop.org/wiki/Software/systemd/hostnamed
 [Service]
 ExecStart=@rootlibexecdir@/systemd-hostnamed
 BusName=org.freedesktop.hostname1
-CapabilityBoundingSet=CAP_SYS_ADMIN
+CapabilityBoundingSet=CAP_SYS_ADMIN CAP_DAC_OVERRIDE CAP_SYS_PTRACE
+WatchdogSec=1min
+PrivateTmp=yes
+PrivateDevices=yes
+PrivateNetwork=yes