Files
hosting/etc/systemd/system/dovecot.service.d/custom.conf
2018-12-24 06:27:33 +01:00

18 lines
381 B
Plaintext

[Service]
LimitNOFILE=100000
ProtectSystem=strict
PrivateTmp=true
NoNewPrivileges=true
PrivateDevices=true
ProtectKernelTunables=true
ProtectKernelModules=true
ProtectControlGroups=true
LockPersonality=true
MemoryDenyWriteExecute=true
SystemCallArchitectures=native
BindPaths=-/run
BindPaths=-/var/run
BindPaths=-/var/lib/dovecot
InaccessiblePaths=/var/www
InaccessiblePaths=/root