From 3cba495e622e8aa6af0c40d36833efa9cab74656 Mon Sep 17 00:00:00 2001 From: Roberto Scolaro Date: Thu, 2 Feb 2023 17:17:34 +0100 Subject: [PATCH] fix(scripts): add retrocompatibility to make /usr/share/falco writable Signed-off-by: Roberto Scolaro --- scripts/systemd/falco-kmod.service | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scripts/systemd/falco-kmod.service b/scripts/systemd/falco-kmod.service index 682f5d3d..d928d91d 100644 --- a/scripts/systemd/falco-kmod.service +++ b/scripts/systemd/falco-kmod.service @@ -19,7 +19,7 @@ NoNewPrivileges=yes ProtectHome=read-only ProtectSystem=full ProtectKernelTunables=true -ReadWritePaths=/sys/module/falco +ReadWriteDirectories=/sys/module/falco RestrictRealtime=true RestrictAddressFamilies=~AF_PACKET StandardOutput=null