1234567891011121314151617181920212223242526272829303132333435 |
- [Unit]
- Description=Anonymizing overlay network for TCP
- After=syslog.target network.target nss-lookup.target
- [Service]
- Type=notify
- NotifyAccess=all
- ExecStartPre=@BINDIR@/tor -f @CONFDIR@/torrc --verify-config
- ExecStart=@BINDIR@/tor -f @CONFDIR@/torrc
- ExecReload=/bin/kill -HUP ${MAINPID}
- KillSignal=SIGINT
- TimeoutSec=60
- Restart=on-failure
- WatchdogSec=1m
- LimitNOFILE=32768
- PrivateTmp=yes
- PrivateDevices=yes
- ProtectHome=yes
- ProtectSystem=full
- ReadOnlyDirectories=/
- ReadWriteDirectories=-@LOCALSTATEDIR@/lib/tor
- ReadWriteDirectories=-@LOCALSTATEDIR@/log/tor
- NoNewPrivileges=yes
- CapabilityBoundingSet=CAP_SETUID CAP_SETGID CAP_NET_BIND_SERVICE
- [Install]
- WantedBy=multi-user.target
|