forked from pool/dehydrated
- actually try to find the real path to bash and don't hardcode
/usr/bin/bash OBS-URL: https://build.opensuse.org/package/show/security:dehydrated/dehydrated?expand=0&rev=19
This commit is contained in:
parent
dd7fda6243
commit
69cee6f711
@ -1,3 +1,8 @@
|
|||||||
|
-------------------------------------------------------------------
|
||||||
|
Fri Oct 20 11:02:24 UTC 2017 - mrueckert@suse.de
|
||||||
|
|
||||||
|
- revert accidental change to the service file
|
||||||
|
|
||||||
-------------------------------------------------------------------
|
-------------------------------------------------------------------
|
||||||
Fri Oct 20 10:55:26 UTC 2017 - mrueckert@suse.de
|
Fri Oct 20 10:55:26 UTC 2017 - mrueckert@suse.de
|
||||||
|
|
||||||
|
@ -7,8 +7,7 @@ Wants=acmeresponder.socket
|
|||||||
[Service]
|
[Service]
|
||||||
Type=oneshot
|
Type=oneshot
|
||||||
ExecStartPost=-/usr/bin/find -L @POSTRUNHOOKS_DIR@ -maxdepth 1 -executable -type f -exec {} \;
|
ExecStartPost=-/usr/bin/find -L @POSTRUNHOOKS_DIR@ -maxdepth 1 -executable -type f -exec {} \;
|
||||||
EnvironmentFile=/etc/dehydrated/config
|
ExecStart=/usr/bin/dehydrated --cron
|
||||||
ExecStart=/usr/bin/su -s /bin/bash -c "/usr/bin/dehydrated --cron" -g $DEHYDRATED_GROUP $DEHYDRATED_USER
|
|
||||||
|
|
||||||
# dehydrated --cron will drop permissions and run critical code as dehydrated user.
|
# dehydrated --cron will drop permissions and run critical code as dehydrated user.
|
||||||
User=root
|
User=root
|
||||||
|
Loading…
Reference in New Issue
Block a user