This unit is provided by:
Options
-
[Install] -
[Service]-
AmbientCapabilities=CAP_NET_BIND_SERVICE -
CacheDirectory=dnscrypt-proxy -
CapabilityBoundingSet=CAP_NET_BIND_SERVICE -
DynamicUser=yes -
ExecStart=/usr/bin/dnscrypt-proxy --config /etc/dnscrypt-proxy/dnscrypt-proxy.toml -
ExecStart=/usr/sbin/dnscrypt-proxy --config /etc/dnscrypt-proxy/dnscrypt-proxy.toml -
ExecStart=/usr/sbin/dnscrypt-proxy -config /etc/dnscrypt-proxy/dnscrypt-proxy.toml -
ExecStartPost=-/bin/bash -c '/bin/echo -n $MAINPID > /run/dnscrypt-proxy/dnscrypt-proxy.pid' -
Group=dnscrypt -
LockPersonalityIntroduced in systemd 235=yes -
LogsDirectory=dnscrypt-proxy -
MemoryDenyWriteExecuteIntroduced in systemd 231=yes -
NoNewPrivilegesIntroduced in systemd 239=yes -
NonBlocking=yes -
PIDFile=/run/dnscrypt-proxy/dnscrypt-proxy.pid -
PrivateDevicesIntroduced in systemd 209=yes -
ProtectControlGroupsIntroduced in systemd 232=yes -
ProtectHomeIntroduced in systemd 214=yes -
ProtectHostnameIntroduced in systemd 242=yes -
ProtectKernelLogsIntroduced in systemd 244=yes -
ProtectKernelModulesIntroduced in systemd 232=yes -
ProtectKernelTunablesIntroduced in systemd 232=yes -
ProtectSystemIntroduced in systemd 214=strict -
RestrictAddressFamilies=AF_INET AF_INET6 -
RestrictNamespacesIntroduced in systemd 233=yes -
RestrictRealtimeIntroduced in systemd 231=yes -
RuntimeDirectory=dnscrypt-proxy -
StateDirectory=dnscrypt-proxy -
SystemCallArchitectures=native -
SystemCallFilter=@system-service ~@resources @privileged @chown -
User=_dnscrypt-proxy -
User=dnscrypt -
WorkingDirectory=~
-
-
[Unit]-
After=network.target -
Before=nss-lookup.target -
Description=DNSCrypt client proxy -
Description=DNSCrypt-proxy client -
Documentation=https://github.com/DNSCrypt/dnscrypt-proxy/wiki -
Documentation=https://github.com/DNSCrypt/dnscrypt-proxy/wiki/systemd file:/usr/share/doc/packages/dnscrypt-proxy/README.openSUSE -
Documentation=https://github.com/jedisct1/dnscrypt-proxy/wiki -
PartOf=dnscrypt-proxy.socket -
Requires=dnscrypt-proxy.socket -
Wants=network-online.target nss-lookup.target -
Wants=nss-lookup.target
-
Additionnal notes
Nothing here.