Reduce privilege scope.
Section: Restart Policy, Types, Hardening
Limit Linux capabilities
ini
ini
[Service]
CapabilityBoundingSet=CAP_NET_BIND_SERVICE
AmbientCapabilities=CAP_NET_BIND_SERVICEExplanation
Useful when binding privileged ports without full root access.
Learn the surrounding workflow
Compare similar commands or jump into common fixes when this command is part of a bigger troubleshooting path.
Related commands
Same sheet · prioritizing Restart Policy, Types, Hardening