[Unit] Description=Network Router Discovery Daemon Documentation=man:rdisc(8) Requires=network.target After=network.target [Service] EnvironmentFile=-/etc/sysconfig/rdisc EnvironmentFile=-/etc/default/rdisc ExecStart=@sbindir@/rdisc -f -t $OPTIONS $SEND_ADDRESS $RECEIVE_ADDRESS AmbientCapabilities=CAP_NET_RAW CAP_NET_ADMIN CapabilityBoundingSet=CAP_NET_RAW CAP_NET_ADMIN DynamicUser=yes PrivateTmp=yes ProtectSystem=strict ProtectHome=yes ProtectControlGroups=yes ProtectKernelTunables=yes ProtectKernelModules=yes MemoryDenyWriteExecute=yes RestrictRealtime=yes RestrictNamespaces=yes ProtectHostname=true ProtectKernelLogs=true SystemCallArchitectures=native LockPersonality=yes NoNewPrivileges=yes [Install] WantedBy=multi-user.target