Enable systemd hardening options for named

Ludovic Gasc gmludo at gmail.com
Tue Jan 16 09:20:12 UTC 2018


2018-01-15 19:11 GMT+01:00 Reindl Harald <h.reindl at thelounge.net>:

>
> ReadOnlyDirectories=/etc
> ReadOnlyDirectories=/usr
>

FYI, you can use ProtectSystem=strict to have more strict rules for the
root filesystem:
https://www.freedesktop.org/software/systemd/man/systemd.exec.html#ProtectSystem=
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.isc.org/pipermail/bind-users/attachments/20180116/f546354b/attachment.html>


More information about the bind-users mailing list