From 3356fdf92c1aae0cf327218495b5602af18a9b35 Mon Sep 17 00:00:00 2001 From: Jens Nolte <git@queezle.net> Date: Sun, 12 Sep 2021 00:05:01 +0200 Subject: [PATCH] Add ProtectProc to service config --- layers/home.queezle.net.nix | 1 + 1 file changed, 1 insertion(+) diff --git a/layers/home.queezle.net.nix b/layers/home.queezle.net.nix index 414c2aa..bb9a7d6 100644 --- a/layers/home.queezle.net.nix +++ b/layers/home.queezle.net.nix @@ -135,6 +135,7 @@ ProtectSystem = "full"; ProtectHome = true; PrivateDevices = true; + ProtectProc = "invisible"; ProtectKernelTunables = true; ProtectControlGroups = true; ProtectKernelLogs = true; -- GitLab