etc
apt
clamav
dnsmasq.d
dovecot
logrotate.d
mysql
nginx
pam.d
postfix
postfix-clearnet
security
ssh
sysctl.d
systemd
system
dovecot.service.d
mariadb.service.d
postfix.service.d
postfix@.service.d
custom.conf
tor@default.service.d
vsftpd.service.d
hosting-del.service
hosting-del.timer
hosting.service
hosting.timer
nginx.service
php7.2-fpm.service
php7.2-fpm@.service
php7.2-fpm@default.service
php7.3-fpm.service
php7.3-fpm@.service
php7.3-fpm@default.service
php7.4-fpm.service
php7.4-fpm@.service
php7.4-fpm@default.service
journald.conf
timesyncd.conf
tor
login.defs
rc.local
resolv.conf
vsftpd.conf
var
COPYING
README.md
clean_nginx_sockets.sh
install_binaries.sh
15 lines
330 B
Plaintext
15 lines
330 B
Plaintext
[Service]
|
|
ProtectSystem=strict
|
|
PrivateTmp=true
|
|
NoNewPrivileges=true
|
|
PrivateDevices=true
|
|
ProtectKernelTunables=true
|
|
ProtectKernelModules=true
|
|
ProtectControlGroups=true
|
|
LockPersonality=true
|
|
MemoryDenyWriteExecute=true
|
|
SystemCallArchitectures=native
|
|
ReadWritePaths=-/var/spool/
|
|
ReadWritePaths=-/var/lib/
|
|
InaccessiblePaths=-/var/www/
|