machined: run machined at minimal capabilities

This commit is contained in:
Lennart Poettering 2013-07-19 03:49:24 +02:00
parent 085b90af43
commit bc5cb1d525
1 changed files with 1 additions and 0 deletions

View File

@ -17,3 +17,4 @@ ExecStart=@rootlibexecdir@/systemd-machined
Restart=always
RestartSec=0
BusName=org.freedesktop.machine1
CapabilityBoundingSet=CAP_KILL