[systemd-devel] how to debug failures when trying to lock down services

Lennart Poettering lennart at poettering.net
Thu Nov 30 17:24:30 UTC 2017


On Do, 30.11.17 10:35, Mantas Mikulėnas (grawity at gmail.com) wrote:

> Then I'm guessing ProtectSystem=strict overrides ReadWritePaths and makes
> /var/log read-only... 

Hmm, it does? It really shouldn't.

I thought the issues were mostly around InaccessiblePaths= not
permitting exclusions, not about ProtectSystem/ReadOnlyPaths...

Have a link?

Lennart

-- 
Lennart Poettering, Red Hat


More information about the systemd-devel mailing list