[Unit] Description=analytics server [Service] Type=simple ExecStart=/usr/sbin/analytics LockPersonality=yes MemoryDenyWriteExecute=yes NoNewPrivileges=yes CapabilityBoundingSet= PrivateDevices=yes PrivateNetwork=yes PrivateTmp=yes ProtectClock=yes ProtectControlGroups=yes ProtectHome=yes ProtectHostname=yes ProtectKernelModules=yes ProtectKernelTunables=yes ProtectKernelLogs=yes ProtectSystem=strict RestrictAddressFamilies=AF_UNIX RestrictNamespaces=yes RestrictRealtime=yes RestrictSUIDSGID=yes SystemCallArchitectures=native SystemCallFilter=@system-service