diff --git a/files/usertwist.service b/files/usertwist.service index 17cd2d9..ea45de5 100644 --- a/files/usertwist.service +++ b/files/usertwist.service @@ -5,6 +5,16 @@ Description=Simple Web Service User=usertwist Group=usertwist ExecStart=/usr/local/bin/usertwist +PrivateTmp=yes +NoNewPrivileges=true +RestrictNamespaces=uts ipc pid user cgroup +ProtectSystem=strict +CapabilityBoundingSet=CAP_NET_BIND_SERVICE +ProtectKernelTunables=yes +ProtectKernelModules=yes +ProtectControlGroups=yes +PrivateDevices=yes +RestrictSUIDSGID=true [Install] -WantedBy=multi-user.target +WantedBy=multi-user.target \ No newline at end of file