mirror of
https://github.com/outbackdingo/firezone.git
synced 2026-01-27 10:18:54 +00:00
chore(gui-client): fix IPC log permissions (#6355)
Closes #6289 Since the IPC service deletes its own logs now, we don't need to allow users in the group `firezone-client` to have write permissions on the logs
This commit is contained in:
@@ -7,8 +7,8 @@ CapabilityBoundingSet=CAP_CHOWN CAP_NET_ADMIN
|
||||
DeviceAllow=/dev/net/tun
|
||||
LockPersonality=true
|
||||
LogsDirectory=dev.firezone.client
|
||||
# Allow users in `firezone` group to delete log files
|
||||
LogsDirectoryMode=775
|
||||
# Allow anyone to read log files
|
||||
LogsDirectoryMode=755
|
||||
MemoryDenyWriteExecute=true
|
||||
NoNewPrivileges=true
|
||||
PrivateMounts=true
|
||||
|
||||
Reference in New Issue
Block a user