exim: use upstream security wrappers

This commit is contained in:
lassulus 2023-11-03 18:03:49 +01:00
parent 8fc693cae2
commit 4fd1aaaf8d
1 changed files with 9 additions and 5 deletions

View File

@ -50,14 +50,18 @@ in {
''; '';
systemPackages = [ pkgs.exim ]; systemPackages = [ pkgs.exim ];
}; };
krebs.setuid = { security.wrappers = {
exim = { exim = {
filename = "${pkgs.exim}/bin/exim"; source = "${pkgs.exim}/bin/exim";
mode = "4111"; owner = "root";
group = "root";
setuid = true;
}; };
sendmail = { sendmail = {
filename = "${pkgs.exim}/bin/exim"; source = "${pkgs.exim}/bin/exim";
mode = "4111"; owner = "root";
group = "root";
setuid = true;
}; };
}; };
systemd.services.exim = { systemd.services.exim = {