summaryrefslogtreecommitdiff
path: root/dovecot-2.2.22-systemd_w_protectsystem.patch
diff options
context:
space:
mode:
Diffstat (limited to 'dovecot-2.2.22-systemd_w_protectsystem.patch')
-rw-r--r--dovecot-2.2.22-systemd_w_protectsystem.patch11
1 files changed, 11 insertions, 0 deletions
diff --git a/dovecot-2.2.22-systemd_w_protectsystem.patch b/dovecot-2.2.22-systemd_w_protectsystem.patch
new file mode 100644
index 0000000..d00a9b9
--- /dev/null
+++ b/dovecot-2.2.22-systemd_w_protectsystem.patch
@@ -0,0 +1,11 @@
+diff -up dovecot-2.3.2/dovecot.service.in.systemd_w_protectsystem dovecot-2.3.2/dovecot.service.in
+--- dovecot-2.3.2/dovecot.service.in.systemd_w_protectsystem 2018-07-09 12:00:13.359193526 +0200
++++ dovecot-2.3.2/dovecot.service.in 2018-07-09 12:00:46.387716884 +0200
+@@ -23,6 +23,7 @@ ExecReload=@bindir@/doveadm reload
+ ExecStop=@bindir@/doveadm stop
+ PrivateTmp=true
+ NonBlocking=yes
++# this will make /usr /boot /etc read only for dovecot
+ ProtectSystem=full
+ ProtectHome=no
+ PrivateDevices=true