πŸ’Ύ Archived View for gerikson.com β€Ί gemlog β€Ί tek β€Ί Securing-MB.gmi captured on 2022-04-28 at 17:30:12. Gemini links have been rewritten to link to archived content

View Raw

More Information

⬅️ Previous capture (2022-03-01)

-=-=-=-=-=-=-

The occasional geminer - an artisanal, handcrafted gemlog

↑ latest entries

Securing Molly Brown

Via ~ew, I read perplexing.space on securing gemini servers running under systemd. They use Molly Brown, just like I do.

~ew: Re: Securing Gemini Servers

perplexing.space: Securing Gemini Servers

I followed the instructions about securing the systemd unit file, but ran into a snag. The amended systemd directive

ProtectHome=yes

did not work for me. I don’t know if it was because the home setup for my gemini user is different, or not.

Btw I found this by basically commenting out all changes as suggested by perplexing, then uncommenting them one by one and running

sudo systemctl daemon-reload && \
sudo systemctl restart molly-brown.service && \
sudo systemctl status molly-brown.service 

after each one.

Hopefully this helps.

I might try to chroot M-B next.

────────────────────────────────────────────

✽ Friday, 2022-02-25

β†’ more posts in the β€Ήtekβ€Ί category

About this category: β€œtechnical stuff”

Copyright Β© 2018 - 2022 Gustaf Erikson

Main page for this gemsite

[This Page Viewed Best In Any Gemini Client]