systemd-service-file-missing-hardening-features
The specified systemd .service
file does not appear to
enable any hardening options.
systemd has support for many security-oriented features such as
isolating services from the network, private /tmp
directories,
as well as control over making directories appear read-only or even
inaccessible, etc.
Please consider supporting some options, collaborating upstream where necessary about any potential changes.
Severity: | pedantic |
Experimental: | true |
See also
the systemd.service(5) manual page
- list of all the affected packages
- the source of this tag