Alexandre Aubin
50f8c5e316
Make system_is_inside_container a proper bash function
2023-12-19 01:57:31 +01:00
Alexandre Aubin
db6def2d96
Clarify the confusing 'virtualisation' variable thingies ...
2023-08-21 16:51:34 +02:00
lapineige
87b89e1d99
Explain how to use the command line ( #9 )
...
* v2
* Explain how to use the command line
Require packaging v2, I will not do it for v1 as it's more complex and not that useful.
---------
Co-authored-by: Éric Gaspar <46165813+ericgaspar@users.noreply.github.com>
Co-authored-by: oiseauroch <5622590+oiseauroch@users.noreply.github.com>
2023-07-23 21:07:49 +02:00
oiseauroch
ff6be76e85
change systemd file if virtualisation is enabled
2022-12-22 16:14:33 +01:00
oiseauroch
81776945bb
update
2022-11-30 11:59:12 +01:00
oiseauroch
a0ee0ec724
fix
2022-11-29 17:13:50 +01:00
oiseauroch
6e6938f49a
fix systemd
2022-11-29 17:12:15 +01:00
oiseauroch
ac381b9490
test
2022-11-29 15:57:03 +01:00
oiseauroch
2656a675a4
working install
2022-10-06 09:46:45 +02:00
oiseauroch
abff1b3ce2
update script to improve garage configuration
2022-09-12 11:00:57 +02:00
oiseauroch
bbcc67e597
WIP packaging
2022-07-30 14:02:57 +02:00
oiseauroch
7d197c8959
initial commit
2022-07-27 10:00:43 +02:00
yalh76
dd377da623
spaces
2022-07-02 18:44:48 +02:00
yalh76
965f253be5
Merge pull request #136 from YunoHost/sandbox-baseline-for-systemd-services
...
[WIP] Add some systemd.service security baseline
2021-06-11 00:02:06 +02:00
Kay0u
cc0ac3c16a
Fix systemd stdout/stderr
2020-12-10 13:46:39 +01:00
Alexandre Aubin
6dd9c32323
Not sure why but @priviledged is causing issue on some legit services..
2020-11-11 20:00:58 +01:00
Alexandre Aubin
f1ec6a6c85
Add RestrictAddressFamilies and SystemCallFilter
2020-11-11 19:54:27 +01:00
Alexandre Aubin
1ac3a1c1f7
Add RestrictNamespaces=yes
2020-11-11 19:15:01 +01:00
Alexandre Aubin
fe29c72b12
Remove two options that may in fact cause issues ... and add a bunch of CapabilityBoundingSet instructions that should be somewhat sane defaults ?
2020-11-11 18:50:52 +01:00
Alexandre Aubin
2b8e86f9c3
Update systemd.service
2020-11-11 16:02:30 +01:00
Maniack Crudelis
5ef1d07752
Add a systemd default file
2017-09-05 17:47:31 +02:00