This unit is provided by:
Options
-
[Install]
-
WantedBy=multi-user.target
-
-
[Service]
-
CapabilityBoundingSet=CAP_SETUID CAP_SETGID CAP_NET_BIND_SERVICE CAP_DAC_READ_SEARCH
-
DeviceAllow=/dev/null rw /dev/urandom r
-
ExecReload=/bin/kill -HUP ${MAINPID}
-
ExecStart=/usr/bin/tor --defaults-torrc /run/tor-instances/%i.defaults -f /etc/tor/instances/%i/torrc
-
ExecStart=/usr/bin/tor --runasdaemon 0 --defaults-torrc /usr/share/tor/defaults-torrc -f /etc/tor/%i.torrc
-
ExecStartPre=/usr/bin/install -Z -m 02755 -o _tor-%i -g _tor-%i -d /run/tor-instances/%i /bin/sed -e 's/@@NAME@@/%i/g; w /run/tor-instances/%i.defaults' /usr/share/tor/tor-service-defaults-torrc-instances /usr/bin/tor --defaults-torrc /run/tor-instances/%i.defaults -f /etc/tor/instances/%i/torrc --verify-config
-
ExecStartPre=/usr/bin/tor --runasdaemon 0 --defaults-torrc /usr/share/tor/defaults-torrc -f /etc/tor/%i.torrc --verify-config
-
KillSignal=SIGINT
-
LimitNOFILE=32768
-
LimitNOFILE=65536
-
MemoryDenyWriteExecute
Introduced in systemd 231=yes -
NoNewPrivileges
Introduced in systemd 239=yes -
NotifyAccess=all
-
PIDFile=/run/tor-instances/%i/tor.pid
-
PermissionsStartOnly=yes
-
PrivateDevices
Introduced in systemd 209=yes -
PrivateTmp=yes
-
ProtectHome
Introduced in systemd 214=yes -
ProtectSystem
Introduced in systemd 214=full -
ReadOnlyDirectories=/
-
ReadOnlyDirectories=/run /var
-
ReadWriteDirectories=-/var/lib/tor-instances -/run
-
ReadWriteDirectories=/run/tor /var/lib/tor /var/log/tor
-
Restart=on-failure
-
RestartSec=1
-
TimeoutSec=30
-
TimeoutStartSec=300
-
TimeoutStopSec
Introduced in systemd 188=60 -
Type=notify
-
WatchdogSec=1m
-
-
[Unit]
-
After=network.target nss-lookup.target
-
After=syslog.target network.target nss-lookup.target
-
Description=Anonymizing overlay network for TCP (instance %i)
-
Description=Anonymizing overlay network for TCP (instance: %i)
-
PartOf=tor-master.service
-
PartOf=tor.service
-
ReloadPropagatedFrom=tor-master.service
-
ReloadPropagatedFrom=tor.service
-
Additionnal notes
Nothing here.