Changes between Version 12 and Version 13 of UnprivilegedUser


Ignore:
Timestamp:
01/29/20 14:25:45 (4 years ago)
Author:
grzeg0rz
Comment:

--

Legend:

Unmodified
Added
Removed
Modified
  • UnprivilegedUser

    v12 v13  
    291291Group=target_unprivileged_group
    292292ExecStart=/usr/bin/podman run --rm -v /home/target_unprivileged_user/ovpn_config_files/:/ovpn_config_files -p 56787:56787 --device /dev/net/tun --device /dev/null --cap-add CAP_IPC_LOCK,CAP_NET_ADMIN,CAP_NET_BIND_SERVICE,CAP_NET_RAW,CAP_SETGID,CAP_SETUID,CAP_SYS_CHROOT,CAP_DAC_OVERRIDE,CAP_AUDIT_WRITE localhost/openvpn:latest /usr/bin/openvpn --config /ovpn_config_files/openvpn_server.conf
    293 ExecStop=/usr/bin/podman stop -t 1 localhost/openvpn:latest
     293ExecStop=/usr/bin/podman stop -t 0 localhost/openvpn:latest
    294294Capabilities=CAP_IPC_LOCK CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_RAW CAP_SETGID CAP_SETUID CAP_SYS_CHROOT CAP_DAC_OVERRIDE CAP_AUDIT_WRITE
    295 DeviceAllow=/dev/null rw
    296 DeviceAllow=/dev/net/tun rw
    297295RestartSec=5s
    298296Restart=on-failure