From 300f59aa7e6a49247867f69253d2bd733e18d362 Mon Sep 17 00:00:00 2001 From: niten Date: Mon, 23 Jan 2023 12:01:25 -0800 Subject: [PATCH] See if it's dynamic user that's the problem --- objectifier-module.nix | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/objectifier-module.nix b/objectifier-module.nix index 5a96a1f..a5e5b18 100644 --- a/objectifier-module.nix +++ b/objectifier-module.nix @@ -77,11 +77,11 @@ in { ProtectHome = true; ProtectClock = true; ProtectKernelLogs = true; - DynamicUser = true; + # DynamicUser = true; MemoryDenyWriteExecute = true; RestrictRealtime = true; - # LockPersonality = true; - # PermissionsStartOnly = true; + LockPersonality = true; + PermissionsStartOnly = true; WorkingDirectory = "${pkgs.objectifier}"; StateDirectory = "objectifier"; CacheDirectory = "objectifier";