[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]
[tor-bugs] #12751 [Tor]: systemd unit file could use more filesystem namespace hardening options
#12751: systemd unit file could use more filesystem namespace hardening options
---------------------------------+---------------------------
Reporter: intrigeri | Owner: intrigeri
Type: defect | Status: new
Priority: normal | Milestone:
Component: Tor | Version:
Keywords: tor-relays, systemd | Actual Points:
Parent ID: | Points:
---------------------------------+---------------------------
systemd has nice features to restrict what part of the filesystem a
service has read-only or read-write access to (ReadOnlyDirectories,
ReadWriteDirectories) that we could use. Also InaccessibleDirectories
could be made a bit more restrictive.
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/12751>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
_______________________________________________
tor-bugs mailing list
tor-bugs@xxxxxxxxxxxxxxxxxxxx
https://lists.torproject.org/cgi-bin/mailman/listinfo/tor-bugs