From c9ef77ec5ff5e7e283181e9dcfb93acfb0656ae6 Mon Sep 17 00:00:00 2001 From: Lennart Poettering Date: Fri, 18 Sep 2020 22:01:49 +0200 Subject: [PATCH] units: pass CAP_SYS_RESOURCE to homed The ext4 fs resize ioctl needs CAP_SYS_RESOURCE, irritatingly. Let's grant it to homed hence. Fixes: #15115 --- units/systemd-homed.service.in | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/units/systemd-homed.service.in b/units/systemd-homed.service.in index 45dc9306dd..7109e0351c 100644 --- a/units/systemd-homed.service.in +++ b/units/systemd-homed.service.in @@ -14,7 +14,7 @@ After=home.mount [Service] BusName=org.freedesktop.home1 -CapabilityBoundingSet=CAP_SYS_ADMIN CAP_CHOWN CAP_DAC_OVERRIDE CAP_FOWNER CAP_FSETID CAP_SETGID CAP_SETUID +CapabilityBoundingSet=CAP_SYS_ADMIN CAP_CHOWN CAP_DAC_OVERRIDE CAP_FOWNER CAP_FSETID CAP_SETGID CAP_SETUID CAP_SYS_RESOURCE DeviceAllow=/dev/loop-control rw DeviceAllow=/dev/mapper/control rw DeviceAllow=block-* rw