too lazy to think of a message, so enjoy this pointless text. Good luck future me...
All checks were successful
Test action / Print hello world (push) Successful in 8m8s
All checks were successful
Test action / Print hello world (push) Successful in 8m8s
This commit is contained in:
parent
54e1a27cfe
commit
2a8417741d
2 changed files with 8 additions and 1 deletions
|
|
@ -4,3 +4,6 @@ coverageSkipTestFiles = true
|
||||||
coverageReporter = ['text', 'lcov']
|
coverageReporter = ['text', 'lcov']
|
||||||
coverageDir = './.coverage'
|
coverageDir = './.coverage'
|
||||||
preload = "./test.config.ts"
|
preload = "./test.config.ts"
|
||||||
|
|
||||||
|
[install]
|
||||||
|
minimumReleaseAge = 604800 # 7 days in seconds
|
||||||
|
|
@ -109,12 +109,16 @@
|
||||||
Group = cfg.group;
|
Group = cfg.group;
|
||||||
UMask = "0077";
|
UMask = "0077";
|
||||||
|
|
||||||
|
# MemoryAccounting = true;
|
||||||
|
# MemoryHigh = "50M";
|
||||||
|
# MemoryMax = "100M";
|
||||||
|
|
||||||
NoNewPrivileges = true;
|
NoNewPrivileges = true;
|
||||||
PrivateDevices = true;
|
PrivateDevices = true;
|
||||||
ProtectKernelTunables = true;
|
ProtectKernelTunables = true;
|
||||||
ProtectKernelModules = true;
|
ProtectKernelModules = true;
|
||||||
ProtectControlGroups = true;
|
ProtectControlGroups = true;
|
||||||
MemoryDenyWriteExecute = true;
|
# MemoryDenyWriteExecute = true;
|
||||||
LockPersonality = true;
|
LockPersonality = true;
|
||||||
RestrictAddressFamilies = [
|
RestrictAddressFamilies = [
|
||||||
"AF_UNIX"
|
"AF_UNIX"
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue