summaryrefslogtreecommitdiffstats
path: root/roles/common/files/etc/systemd/system/stunnel4@.service
diff options
context:
space:
mode:
Diffstat (limited to 'roles/common/files/etc/systemd/system/stunnel4@.service')
-rw-r--r--roles/common/files/etc/systemd/system/stunnel4@.service3
1 files changed, 1 insertions, 2 deletions
diff --git a/roles/common/files/etc/systemd/system/stunnel4@.service b/roles/common/files/etc/systemd/system/stunnel4@.service
index e53d29e..d634e50 100644
--- a/roles/common/files/etc/systemd/system/stunnel4@.service
+++ b/roles/common/files/etc/systemd/system/stunnel4@.service
@@ -1,23 +1,22 @@
[Unit]
Description=SSL tunnel for network daemons (instance %i)
After=network.target nss-lookup.target
PartOf=stunnel4.service
ReloadPropagatedFrom=stunnel4.service
[Service]
ExecStart=/usr/bin/stunnel4 /etc/stunnel/%i.conf
ExecReload=/bin/kill -HUP ${MAINPID}
KillSignal=SIGINT
TimeoutStartSec=120
TimeoutStopSec=60
Restart=on-failure
# Hardening
NoNewPrivileges=yes
PrivateDevices=yes
ProtectHome=yes
-ProtectSystem=full
-ReadOnlyDirectories=/
+ProtectSystem=strict
[Install]
WantedBy=multi-user.target