diff --git a/cmd/tailscaled/tailscaled.service b/cmd/tailscaled/tailscaled.service index 7b847c54e..71dc89f1b 100644 --- a/cmd/tailscaled/tailscaled.service +++ b/cmd/tailscaled/tailscaled.service @@ -20,24 +20,5 @@ CacheDirectory=tailscale CacheDirectoryMode=0750 Type=notify -DeviceAllow=/dev/net/tun -DeviceAllow=/dev/null -DeviceAllow=/dev/random -DeviceAllow=/dev/urandom -DevicePolicy=strict -LockPersonality=true -MemoryDenyWriteExecute=true -PrivateTmp=true -ProtectClock=true -ProtectControlGroups=true -ProtectHome=true -ProtectKernelTunables=true -ProtectSystem=strict -ReadWritePaths=/etc/ -ReadWritePaths=/run/ -ReadWritePaths=/var/run/ -RestrictSUIDSGID=true -SystemCallArchitectures=native - [Install] WantedBy=multi-user.target