From 5bdf12ca8aa13cd98c6a4b7457b37df2b519e8a7 Mon Sep 17 00:00:00 2001 From: Craig Andrews Date: Fri, 28 Nov 2014 12:41:23 -0500 Subject: [PATCH] Add ProtectSystem = full See 13805 --- contrib/dist/tor.service.in | 1 + 1 file changed, 1 insertion(+) diff --git a/contrib/dist/tor.service.in b/contrib/dist/tor.service.in index 5cd460e383..b052405aea 100644 --- a/contrib/dist/tor.service.in +++ b/contrib/dist/tor.service.in @@ -18,6 +18,7 @@ LimitNOFILE = 32768 PrivateTmp = yes PrivateDevices = yes ProtectHome = yes +ProtectSystem = full ReadOnlyDirectories = / ReadWriteDirectories = -@LOCALSTATEDIR@/lib/tor ReadWriteDirectories = -@LOCALSTATEDIR@/log/tor -- 2.47.3