aesmd.service 712 B

1234567891011121314151617181920212223242526
  1. [Unit]
  2. Description=Intel(R) Architectural Enclave Service Manager
  3. After=syslog.target network.target auditd.service
  4. Wants=jhi.service
  5. [Service]
  6. User=aesmd
  7. Type=forking
  8. Environment=NAME=aesm_service
  9. Environment=AESM_PATH=@aesm_folder@
  10. PermissionsStartOnly=true
  11. ExecStartPre=@aesm_folder@/linksgx.sh
  12. ExecStartPre=/bin/mkdir -p /var/run/aesmd/
  13. ExecStartPre=/bin/chown -R aesmd:aesmd /var/run/aesmd/
  14. ExecStartPre=/bin/chmod 0755 /var/run/aesmd/
  15. ExecStart=@aesm_folder@/aesm_service
  16. InaccessibleDirectories=/home
  17. ExecReload=/bin/kill -SIGUP $MAINPID
  18. Restart=on-failure
  19. RestartSec=15s
  20. DevicePolicy=closed
  21. DeviceAllow=/dev/isgx rw
  22. DeviceAllow=/dev/sgx rw
  23. DeviceAllow=/dev/mei0 rw
  24. [Install]
  25. WantedBy=multi-user.target