]>
Commit | Line | Data |
---|---|---|
ec6e7d04 JR |
1 | [Unit] |
2 | Description=OpenVPN tunnel on %I | |
3 | Requires=openvpn.target | |
4 | After=openvpn.target | |
5 | PropagateReloadFrom=openvpn.target | |
7d0baea5 AM |
6 | Documentation=man:openvpn(8) |
7 | Documentation=https://community.openvpn.net/openvpn/wiki/Openvpn24ManPage | |
8 | Documentation=https://community.openvpn.net/openvpn/wiki/HOWTO | |
ec6e7d04 JR |
9 | |
10 | [Service] | |
7d0baea5 | 11 | Type=notify |
ec6e7d04 JR |
12 | PrivateTmp=true |
13 | EnvironmentFile=-/etc/sysconfig/openvpn | |
14 | PIDFile=/var/run/openvpn/%i.pid | |
80486563 | 15 | ExecStart=/usr/sbin/openvpn --suppress-timestamps --writepid /var/run/openvpn/%i.pid --config /etc/openvpn/%i.conf --cd /etc/openvpn $OPENVPN_OPT |
ec6e7d04 | 16 | ExecReload=/bin/kill -HUP $MAINPID |
7d0baea5 AM |
17 | CapabilityBoundingSet=CAP_IPC_LOCK CAP_NET_ADMIN CAP_NET_RAW CAP_SETGID CAP_SETUID CAP_SYS_CHROOT CAP_DAC_OVERRIDE |
18 | LimitNPROC=10 | |
19 | DeviceAllow=/dev/null rw | |
20 | DeviceAllow=/dev/net/tun rw | |
21 | ProtectSystem=true | |
22 | ProtectHome=true | |
23 | KillMode=process | |
ec6e7d04 JR |
24 | |
25 | [Install] | |
26 | WantedBy=openvpn.target |