Don't let every user read the environment variables in Systemd units? #38
Loading…
x
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
We started discussing it in #37
I thought making the unit files not world readable is enough, let's find a good solution and use it everywhere
From
kosmos-dev@chat.kosmos.org:https://www.freedesktop.org/software/systemd/man/systemd.exec.html#Environment=
Another post on the topic:
https://movingfast.io/articles/environment-variables-considered-harmful/
The gist is to just use local config files that aren't loaded into ENV vars.
Closing in favor of assessing the situation use case by use case.