Systemd/test/test-execute/exec-systemcallfilter-system-user-nfsnobody.service

12 lines
287 B
SYSTEMD
Raw Normal View History

[Unit]
Description=Test for SystemCallFilter in system mode with User set
[Service]
2017-10-12 06:26:39 +02:00
ExecStart=/bin/sh -c 'echo "Foo bar"'
Type=oneshot
User=nfsnobody
SystemCallFilter=~read write open execve ioperm
SystemCallFilter=ioctl
SystemCallFilter=read write open execve
SystemCallFilter=~ioperm