FS#52178 - [privoxy] Hardening Service-File

Attached to Project: Community Packages
Opened by Michael Schönitzer (Nudin) - Friday, 16 December 2016, 15:22 GMT
Last edited by Buggy McBugFace (bugbot) - Saturday, 25 November 2023, 20:09 GMT
Task Type Feature Request
Category Security
Status Closed
Assigned To Felix Yan (felixonmars)
Brett Cornwall (ainola)
Architecture All
Severity Low
Priority Normal
Reported Version
Due in Version Undecided
Due Date Undecided
Percent Complete 100%
Votes 1
Private No

Details

Is there a reason against hardening the systemd service-file? I'm running the following setup without problems:

´´´
PrivateDevices=yes
PrivateTmp=yes
ProtectHome=yes
ProtectSystem=yes
MountFlags=slave
RestrictAddressFamilies=AF_UNIX AF_INET AF_INET6
NoNewPrivileges=yes
SystemCallArchitectures=native
´´´
This task depends upon

Closed by  Buggy McBugFace (bugbot)
Saturday, 25 November 2023, 20:09 GMT
Reason for closing:  Moved
Additional comments about closing:  https://gitlab.archlinux.org/archlinux/p ackaging/packages/privoxy/issues/2
Comment by Doug Newgard (Scimmia) - Friday, 16 December 2016, 15:35 GMT
#1 would be that the service file comes from upstream, not from Arch.

Edit: Nevermind, I was looking at the wrong package.
Comment by Buggy McBugFace (bugbot) - Tuesday, 08 August 2023, 19:11 GMT
This is an automated comment as this bug is open for more then 2 years. Please reply if you still experience this bug otherwise this issue will be closed after 1 month.

Loading...