diff --git a/scripts/systemd/falco-kmod.service b/scripts/systemd/falco-kmod.service index 682f5d3d..d928d91d 100644 --- a/scripts/systemd/falco-kmod.service +++ b/scripts/systemd/falco-kmod.service @@ -19,7 +19,7 @@ NoNewPrivileges=yes ProtectHome=read-only ProtectSystem=full ProtectKernelTunables=true -ReadWritePaths=/sys/module/falco +ReadWriteDirectories=/sys/module/falco RestrictRealtime=true RestrictAddressFamilies=~AF_PACKET StandardOutput=null