Fix ReadWriteDirectories for fail2ban, added /var/tmp.

This commit is contained in:
Rob Vermaas 2013-07-28 18:33:57 +02:00
parent 5a2390327d
commit 96be2d5a7d

View File

@ -117,7 +117,7 @@ in
serviceConfig = serviceConfig =
{ ExecStart = "${pkgs.fail2ban}/bin/fail2ban-server -f"; { ExecStart = "${pkgs.fail2ban}/bin/fail2ban-server -f";
ReadOnlyDirectories = "/"; ReadOnlyDirectories = "/";
ReadWriteDirectories = "/var/run/fail2ban"; ReadWriteDirectories = "/var/run/fail2ban /var/tmp";
CapabilityBoundingSet="CAP_DAC_READ_SEARCH CAP_NET_ADMIN CAP_NET_RAW"; CapabilityBoundingSet="CAP_DAC_READ_SEARCH CAP_NET_ADMIN CAP_NET_RAW";
}; };