Blame clients/cloud-setup/nm-cloud-setup.service.in
|
Packit |
5756e2 |
[Unit]
|
|
Packit |
5756e2 |
Description=Automatically configure NetworkManager in cloud
|
|
Packit |
5756e2 |
After=NetworkManager.service
|
|
Packit |
5756e2 |
|
|
Packit |
5756e2 |
[Service]
|
|
Packit |
5756e2 |
Type=oneshot
|
|
Packit |
5756e2 |
ExecStart=@libexecdir@/nm-cloud-setup
|
|
Packit |
5756e2 |
|
|
Packit |
5756e2 |
#Environment=NM_CLOUD_SETUP_LOG=TRACE
|
|
Packit |
5756e2 |
|
|
Packit |
5756e2 |
# Cloud providers are disabled by default. You need to
|
|
Packit |
5756e2 |
# Opt-in by setting the right environment variable for
|
|
Packit |
5756e2 |
# the provider.
|
|
Packit |
5756e2 |
#Environment=NM_CLOUD_SETUP_EC2=yes
|
|
Packit |
5756e2 |
#Environment=NM_CLOUD_SETUP_GCP=yes
|
|
Packit |
5756e2 |
#Environment=NM_CLOUD_SETUP_AZURE=yes
|
|
Packit |
5756e2 |
|
|
Packit |
5756e2 |
CapabilityBoundingSet=
|
|
Packit |
5756e2 |
LockPersonality=yes
|
|
Packit |
5756e2 |
MemoryDenyWriteExecute=yes
|
|
Packit |
5756e2 |
NoNewPrivileges=yes
|
|
Packit |
5756e2 |
PrivateDevices=yes
|
|
Packit |
5756e2 |
PrivateTmp=yes
|
|
Packit |
5756e2 |
ProtectControlGroups=yes
|
|
Packit |
5756e2 |
ProtectHome=yes
|
|
Packit Service |
dd9f1e |
#ProtectHostname=yes
|
|
Packit Service |
dd9f1e |
#ProtectKernelLogs=yes
|
|
Packit |
5756e2 |
ProtectKernelModules=yes
|
|
Packit |
5756e2 |
ProtectKernelTunables=yes
|
|
Packit |
5756e2 |
ProtectSystem=strict
|
|
Packit |
5756e2 |
RestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6
|
|
Packit |
5756e2 |
RestrictNamespaces=yes
|
|
Packit |
5756e2 |
RestrictRealtime=yes
|
|
Packit Service |
dd9f1e |
#RestrictSUIDSGID=yes
|
|
Packit |
5756e2 |
SystemCallFilter=@system-service
|
|
Packit |
5756e2 |
|
|
Packit |
5756e2 |
[Install]
|
|
Packit |
5756e2 |
WantedBy=NetworkManager.service
|