systemd complains about `User=nobody' since `nobody' has access to all files which can't be mapped to a valid UID. We'll also switch to `Group=ssl-cert' since that ought to be able to read TLS certificates. --- examples/[email protected] | 4 ++-- examples/[email protected] | 2 +- examples/[email protected] | 2 +- 3 files changed, 4 insertions(+), 4 deletions(-)
diff --git a/examples/[email protected] b/examples/[email protected] index a56f6f81..11859198 100644 --- a/examples/[email protected] +++ b/examples/[email protected] @@ -32,8 +32,8 @@ NonBlocking = true Sockets = public-inbox-httpd.socket KillSignal = SIGQUIT -User = nobody -Group = nogroup +User = news +Group = ssl-cert ExecReload = /bin/kill -HUP $MAINPID TimeoutStopSec = 86400 KillMode = process diff --git a/examples/[email protected] b/examples/[email protected] index 8f5b79f2..80104605 100644 --- a/examples/[email protected] +++ b/examples/[email protected] @@ -32,7 +32,7 @@ NonBlocking = true Sockets = public-inbox-imapd.socket KillSignal = SIGQUIT -User = nobody +User = news Group = ssl-cert ExecReload = /bin/kill -HUP $MAINPID TimeoutStopSec = 86400 diff --git a/examples/[email protected] b/examples/[email protected] index 11bc223f..24f9ca73 100644 --- a/examples/[email protected] +++ b/examples/[email protected] @@ -32,7 +32,7 @@ NonBlocking = true Sockets = public-inbox-nntpd.socket KillSignal = SIGQUIT -User = nobody +User = news Group = ssl-cert ExecReload = /bin/kill -HUP $MAINPID TimeoutStopSec = 86400
