Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Consider using systemd DynamicUser #3

Open
markpash opened this issue Feb 28, 2023 · 1 comment
Open

Consider using systemd DynamicUser #3

markpash opened this issue Feb 28, 2023 · 1 comment

Comments

@markpash
Copy link

https://0pointer.net/blog/dynamic-users-with-systemd.html

Using this, the user doesn't need to create a new user on the machine to run the service. Or need to use any existing user.

@SasukeFreestyle
Copy link
Owner

SasukeFreestyle commented Feb 28, 2023

Hi!

I tried using Dynamicusers when I did my own first setup.
I was unable to get it to work without editing user permissions of the letsencrypt folder.
On some systems SELinux permission block also occurred.

Certbot does not recommend changing any permissions to letsencrypt folder as it can cause conflicts when updating the certificates.

I also tried using environmental variables for the certificates but got permissions errors.

If you have a solution that does not change the permission of the letsencrypt folder I will gladly implement it and rewrite the guide.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants