Verified Commit a43feda9 authored by Jelle van der Waa's avatar Jelle van der Waa 🚧
Browse files

Extend php-fpm service hardening

parent b5c138ca
...@@ -21,6 +21,8 @@ InaccessiblePaths=-/var/lib/mysql ...@@ -21,6 +21,8 @@ InaccessiblePaths=-/var/lib/mysql
ProtectKernelModules=true ProtectKernelModules=true
ProtectKernelTunables=true ProtectKernelTunables=true
ProtectControlGroups=true ProtectControlGroups=true
ProtectKernelLogs=true
ProtectClock=true
RestrictRealtime=true RestrictRealtime=true
RestrictNamespaces=true RestrictNamespaces=true
......
Supports Markdown
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment