From cbed9fd4d04fd21c5a968d395c9dc6f434b9431a Mon Sep 17 00:00:00 2001 From: Paul Menzel Date: Tue, 18 May 2021 12:20:23 +0200 Subject: [PATCH] systemd/eturnal: Allow read/write of project directory With `ProtectSystem=strict` eturnal is forbidden to write to the log files stored in the project directory. So, add an exception. --- misc_systemd_units/eturnal.service | 1 + 1 file changed, 1 insertion(+) diff --git a/misc_systemd_units/eturnal.service b/misc_systemd_units/eturnal.service index 5b17d7f..e30df3d 100644 --- a/misc_systemd_units/eturnal.service +++ b/misc_systemd_units/eturnal.service @@ -21,3 +21,4 @@ RuntimeDirectory=eturnal ProtectSystem=strict NoNewPrivileges=true AmbientCapabilities=CAP_NET_BIND_SERVICE +ReadWritePaths=/project/eturnal/