systemd: lock down systemctl status
Mitigates a security issue that allows unprivileged users to read other unprivileged user's processes' credentials from CGroup using `systemctl status`.
This commit is contained in:
parent
6e694890eb
commit
0248e6493f
3 changed files with 59 additions and 0 deletions
|
|
@ -15,6 +15,7 @@
|
|||
./lnd.nix
|
||||
./secrets/secrets.nix
|
||||
./netns-isolation.nix
|
||||
./dbus.nix
|
||||
];
|
||||
|
||||
disabledModules = [ "services/networking/bitcoind.nix" ];
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue