diff options
| author | 360ied <19516527+360ied@users.noreply.github.com> | 2024-02-02 09:34:43 -0500 |
|---|---|---|
| committer | 360ied <19516527+360ied@users.noreply.github.com> | 2024-02-04 21:23:34 -0500 |
| commit | 11cf6ab0ddc050de98715d4b9353d9ac12f8c9cd (patch) | |
| tree | 18940cdd14b4df456f57b4bc296650f443f44fa7 /pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch | |
| parent | b8b232ae7b8b144397fdb12d20f592e5e7c1a64d (diff) | |
nixos/murmur: systemd service hardening
Murmur provides an official systemd service file in their repo,
which contains various service hardening settings:
https://github.com/mumble-voip/mumble/blob/c4b5858d141f76cce553be2f74dfc4291989fc9b/auxiliary_files/config_files/mumble-server.service.in#L7
The service configuration in nixpkgs does not include these hardening settings.
This commit adds the hardening settings to the murmur service in nixpkgs.
This drops the `systemd-analyze security` score of murmur.service from 9.2 (UNSAFE) to 2.1 (OK).
Diffstat (limited to 'pkgs/development/python-modules/python-mapnik/python-mapnik_std_optional.patch')
0 files changed, 0 insertions, 0 deletions
