This unit is provided by:
Options
-
[Install]-
WantedBy=multi-user.target
-
-
[Service]-
AmbientCapabilities=CAP_NET_BIND_SERVICE CAP_NET_RAW -
CapabilityBoundingSet=CAP_SETGID CAP_SETUID CAP_NET_BIND_SERVICE CAP_NET_RAW -
DynamicUser=yes -
ExecStart=/usr/bin/sslh-select --config /etc/sslh.cfg --foreground -
KillMode=process -
MemoryDenyWriteExecuteIntroduced in systemd 231=yes -
MountFlags=private -
NoNewPrivilegesIntroduced in systemd 239=yes -
PrivateDevicesIntroduced in systemd 209=yes -
PrivateTmp=yes -
ProtectControlGroupsIntroduced in systemd 232=yes -
ProtectHomeIntroduced in systemd 214=yes -
ProtectKernelModulesIntroduced in systemd 232=yes -
ProtectKernelTunablesIntroduced in systemd 232=yes -
ProtectSystemIntroduced in systemd 214=strict -
RestrictAddressFamilies=AF_INET AF_INET6 AF_UNIX -
SecureBits=noroot-locked -
User=sslh
-
-
[Unit]-
After=network.target -
Conflicts=sslh-fork.service sslh.socket -
Description=SSL/SSH multiplexer (select mode)
-
Additionnal notes
Nothing here.