diff --git a/dist/init/linux-systemd/caddy.service b/dist/init/linux-systemd/caddy.service index 61b70b1f3..292970509 100644 --- a/dist/init/linux-systemd/caddy.service +++ b/dist/init/linux-systemd/caddy.service @@ -38,7 +38,7 @@ ProtectHome=true ProtectSystem=full ; … except /etc/ssl/caddy, because we want Letsencrypt-certificates there. ; This merely retains r/w access rights, it does not add any new. Must still be writable on the host! -ReadWriteDirectories=/etc/ssl/caddy +ReadWritePaths=/etc/ssl/caddy ; The following additional security directives only work with systemd v229 or later. ; They further restrict privileges that can be gained by caddy. Uncomment if you like.