INN commit: trunk/contrib (sample.init.systemd)

INN Commit rra at
Thu Nov 26 19:37:49 UTC 2020

    Date: Thursday, November 26, 2020 @ 11:37:48
  Author: iulius
Revision: 10429

Improve sample init systemd service unit

Apply more protections.
Sample shared by Russ Allbery.


 sample.init.systemd |   32 +++++++++++++++++++++++---------
 1 file changed, 23 insertions(+), 9 deletions(-)

Modified: sample.init.systemd
--- sample.init.systemd	2020-11-24 07:20:05 UTC (rev 10428)
+++ sample.init.systemd	2020-11-26 19:37:48 UTC (rev 10429)
@@ -3,20 +3,34 @@
 # This is a simple, bare-bones example of a systemd-style init script for INN.
-Description=InterNetNews Daemon
+Description=InterNetNews News Server
+ExecReload=/usr/sbin/ctlinnd -t 20 reload '' 'systemd unit reload'
+ExecStop=/bin/su -m news -s /bin/sh -c '/usr/lib/news/bin/ stop'
-ExecReload=/usr/libexec/news/ctlinnd -t 20 reload '' 'reload asked'
-ExecStop=/bin/su -m news -s /bin/sh -c '/usr/libexec/news/ stop'
+# Setting NoNewPrivileges will break most local sendmail implementations
+# because they're setuid or setgid to drop off mail in the mail queue.  With
+# this configuration, one can use mSMTP as the configured mta, set to forward
+# mail via SMTP to localhost.  Nevertheless, one can probably do better than
+# this by adding some syscall filtering.

More information about the inn-committers mailing list