Changes between Version 16 and Version 17 of UnprivilegedUser


Ignore:
Timestamp:
02/14/20 17:17:10 (4 years ago)
Author:
grzeg0rz
Comment:

Removing not required configuration option from systemd script

Legend:

Unmodified
Added
Removed
Modified
  • UnprivilegedUser

    v16 v17  
    337337DeviceAllow=/dev/null rw
    338338DeviceAllow=/dev/net/tun rw
    339 AmbientCapabilities=CAP_MKNOD CAP_IPC_LOCK CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_RAW CAP_SETGID CAP_SETUID CAP_SYS_CHROOT CAP_DAC_OVERRIDE CAP_AUDIT_WRITE
    340339WorkingDirectory=/opt/openvpn
    341340ExecStart=/usr/bin/podman run --rm --name openvpn -v /opt/openvpn/server:/server --network="host" -p 37898:37898 --device /dev/net/tun --device /dev/null --cap-add CAP_IPC_LOCK,CAP_NET_ADMIN,CAP_NET_BIND_SERVICE,CAP_NET_RAW,CAP_SETGID,CAP_SETUID,CAP_SYS_CHROOT,CAP_DAC_OVERRIDE,CAP_AUDIT_WRITE archlinux:latest /usr/bin/bash /server/entrypoint.sh