[systemd-devel] starting Oracle with systemd

Reindl Harald h.reindl at thelounge.net
Fri Oct 31 10:10:10 PDT 2014


Am 31.10.2014 um 18:06 schrieb Fisher, Charles J. (Top Echelon):
> From: systemd-devel [mailto:systemd-devel-bounces at lists.freedesktop.org] On Behalf Of Reindl Harald
>
>>> For some reason, the iptables didn't happen. Maybe it needs to be fully qualified.
>
>> yes it needs to be as any other path
>> the documentation is very clear here
>
> No, [unix] user oracle doesn't have permission to run iptables.

but it needs to be full qualified anyways

> I either need to sudo something up, or put this elsewhere.
> Letting different commands run with different uids/gids would be a nice feature

"PermissionsStartOnly=true" exists and so you can have helper processes 
as root while restrict the main process - anything else is hardly 
maintainable with the now clear ini-style of a unit

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 181 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freedesktop.org/archives/systemd-devel/attachments/20141031/ad1b7fd9/attachment.sig>


More information about the systemd-devel mailing list