diff --git a/conf/bookwyrm-server.service b/conf/bookwyrm-server.service index 4031cff..8aa2716 100644 --- a/conf/bookwyrm-server.service +++ b/conf/bookwyrm-server.service @@ -15,8 +15,8 @@ ProtectSystem=strict ProtectHome=tmpfs #InaccessiblePaths=-/media -/mnt -/srv PrivateTmp=yes -#TemporaryFileSystem=/var /run -PrivateUsers=true +TemporaryFileSystem=/var /run +#PrivateUsers=true PrivateDevices=true BindReadOnlyPaths=__INSTALL_DIR__ BindPaths=__INSTALL_DIR__/images __INSTALL_DIR__/static /var/run/postgresql diff --git a/conf/bookwyrm-worker.service b/conf/bookwyrm-worker.service index 4434043..623a00d 100644 --- a/conf/bookwyrm-worker.service +++ b/conf/bookwyrm-worker.service @@ -15,8 +15,8 @@ ProtectSystem=strict ProtectHome=tmpfs #InaccessiblePaths=-/media -/mnt -/srv PrivateTmp=yes -#TemporaryFileSystem=/var /run -PrivateUsers=true +TemporaryFileSystem=/var /run +#PrivateUsers=true PrivateDevices=true BindReadOnlyPaths=__INSTALL_DIR__ BindPaths=__INSTALL_DIR__/images __INSTALL_DIR__/static /var/run/postgresql