aesmd.service 650 B

123456789101112131415161718192021222324
  1. [Unit]
  2. Description=Intel(R) Architectural Enclave Service Manager
  3. After=syslog.target network.target auditd.service
  4. Wants=jhi.service
  5. [Service]
  6. User=aesmd
  7. Type=forking
  8. Environment=NAME=aesm_service
  9. Environment=AESM_PATH=@aesm_folder@
  10. PermissionsStartOnly=true
  11. ExecStartPre=/bin/mkdir -p /var/run/aesmd/
  12. ExecStartPre=/bin/chown -R aesmd:aesmd /var/run/aesmd/
  13. ExecStartPre=/bin/chmod 0755 /var/run/aesmd/
  14. ExecStart=@aesm_folder@/aesm_service
  15. InaccessibleDirectories=/home
  16. ExecReload=/bin/kill -SIGUP $MAINPID
  17. Restart=on-failure
  18. RestartSec=15s
  19. DevicePolicy=closed
  20. DeviceAllow=/dev/isgx rw
  21. DeviceAllow=/dev/mei0 rw
  22. [Install]
  23. WantedBy=multi-user.target