1
0
Files
homelab-public-context/runtime/latest.txt
T

35 lines
483 KiB
Plaintext

CHAT_OUTPUT_BEGIN
COMMAND_ID=HOMELAB-CLUSTER-ADMIN-UPDATES-V36-INCIDENT-ENGINE-ROUTE-READ-ONLY-20260805T163500Z
STATUS=OK
RC=0
HOST=pve01
MODE=verify
COMPONENT=homelab-cluster-admin-update-visibility
REFERENCE_REGISTER_CHECK=OK
REFERENCE_SHA256=5763f2f8edc75fcf6f3951f8c95896d1cc112ceccb6cf5b64a383f540a4deb8e
ERROR_REGISTER_CHECK=OK
ERROR_REGISTER_SHA256=24934a2c7fa5c26f6e828583c4aefac7f143b40c0171736ed7571e617d55ab83
COMMAND_SHA256=ea0cfc7d785b957dab0ce8e21a737975ec2de9aafa7f102cb02869bec3955156
DUPLICATE_FAILED_COMMAND_BLOCKED=false
EXECUTION_STARTED=true
CHANGE_DECLARED=false
RESULT_CONTRACT_VALID=true
RESULT_CONTRACT_STATUS=NOT_APPLICABLE
RESULT_CONTRACT_ERROR=NONE
COMMAND_RC=0
CHANGES_MADE=false
ROLLBACK_STARTED=false
ROLLBACK_RESTORED=null
MUTATION_OUTCOME=NO_MUTATION
SANITIZED=yes
SECRETS_INCLUDED=no
PRIVATE_ADDRESSES_INCLUDED=no
RAW_EVIDENCE_SHA256=b3064c5a8714b53b20a7b32d09bcfcba249354f3dd26d792ba3453642c532678
SANITIZED_OUTPUT_SHA256=d7217a95529a0a8d907db08766da9f0faa4af6995c35bf1c5d322ea831006565
OUTPUT_BEGIN
HOMELAB_RESULT_CONTRACT={"auth_protected_route_count":0,"changes_made":false,"command_id":"HOMELAB-CLUSTER-ADMIN-UPDATES-V36-INCIDENT-ENGINE-ROUTE-READ-ONLY-20260805T163500Z","command_rc":0,"control_plane_error":null,"mutation_outcome":"NO_MUTATION","next_action":"resolve the remaining source-to-runtime linkage only","rc":0,"ready_for_actual_ui_patch_design":false,"redirect_route_count":1,"report_bytes":492265,"report_sha256":"bc16503f88e93c8d475e69053eaff85dbeb016fe2e5ad6c691c93a1fbed0fd2e","rollback_restored":false,"rollback_started":false,"route_declaration_count":0,"signature_route_count":0,"source_identity_confirmed":true,"source_linked_process_count":5,"source_linked_unit_count":181,"source_reference_count":0,"status":"OK","v35_exact_result_identity_confirmed":true,"v35_no_mutation_confirmed":true,"version":1}
{"changes_made":false,"command_id":"HOMELAB-CLUSTER-ADMIN-UPDATES-V36-INCIDENT-ENGINE-ROUTE-READ-ONLY-20260805T163500Z","diagnosis":{"auth_protected_route_count":0,"next_action":"resolve the remaining source-to-runtime linkage only","ready_for_actual_ui_patch_design":false,"redirect_route_count":1,"route_declaration_count":0,"signature_route_count":0,"source_identity_confirmed":true,"source_linked_process_count":5,"source_linked_unit_count":181,"source_reference_count":0},"mutation_outcome":"NO_MUTATION","read_only":true,"rollback_restored":false,"rollback_started":false,"runtime_linkage":{"diagnosis":{"auth_protected_route_count":0,"next_action":"resolve the remaining source-to-runtime linkage only","ready_for_actual_ui_patch_design":false,"redirect_route_count":1,"route_declaration_count":0,"signature_route_count":0,"source_identity_confirmed":true,"source_linked_process_count":5,"source_linked_unit_count":181,"source_reference_count":0},"euid":0,"framework_hints":[],"hostname":"cluster-admin","http_probes":[{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/admin","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/dashboard","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/status","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/auth/login","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin/","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/dashboard","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/index.html","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/login","port":22,"rc":1,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (1) Received HTTP/0.9 when not allowed\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/admin","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/dashboard","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/status","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/auth/login","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin/","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/dashboard","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/index.html","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/login","port":53,"rc":7,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (7) Failed to connect to <PRIVATE_IPV4> port 53 after 0 ms: Couldn't connect to server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8002 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/admin","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8002 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/dashboard","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8001 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/status","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8002 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/auth/login","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8001 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8000 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin/","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8001 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/dashboard","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8001 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/index.html","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8002 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/login","port":5355,"rc":28,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (28) Operation timed out after 8001 milliseconds with 0 bytes received\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/admin","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/dashboard","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/api/status","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/auth/login","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/cluster-admin/","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/dashboard","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/index.html","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":null,"location":null,"path":"/login","port":5432,"rc":52,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":"curl: (52) Empty reply from server\n"},{"body_bytes":11619,"body_sha256":"8bae77c925ac16365ee9755f1b2d229c50bd8a5154fa09bd0a00c06e4465a3c1","contains_updates_card":true,"http_status":200,"location":null,"path":"/","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/admin","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/api/dashboard","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/api/status","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/auth/login","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/cluster-admin","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/cluster-admin/","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/dashboard","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":11619,"body_sha256":"8bae77c925ac16365ee9755f1b2d229c50bd8a5154fa09bd0a00c06e4465a3c1","contains_updates_card":true,"http_status":200,"location":null,"path":"/index.html","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":335,"body_sha256":"860b53ed6ea6a0cf602fae632cfcd28dbcf637f85a8bee28d2ee9c6cc9081669","contains_updates_card":false,"http_status":404,"location":null,"path":"/login","port":8080,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":0,"body_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","contains_updates_card":false,"http_status":303,"location":"/login","path":"/","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/admin","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/api/dashboard","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/api/status","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/auth/login","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/cluster-admin","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/cluster-admin/","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/dashboard","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":22,"body_sha256":"37ec4665a8102d115ffd1ac20dae94c98b4dac64b0c1a68228aa2a531caeb35d","contains_updates_card":false,"http_status":404,"location":null,"path":"/index.html","port":8081,"rc":0,"scheme":"http","signature_count":0,"signature_hits":[],"stderr":""},{"body_bytes":1070,"body_sha256":"e014b8eff65373267dfa342281b7754717e9a9707a5408682b271056c3e00fe9","contains_updates_card":false,"http_status":200,"location":null,"path":"/login","port":8081,"rc":0,"scheme":"http","signature_count":1,"signature_hits":["observe/notify"],"stderr":""}],"listeners":[{"line":"LISTEN 0 5 0.0.0.0:8080 0.0.0.0:* users:((\"python3\",pid=439,fd=3)) ","pids":[439],"port":8080},{"line":"LISTEN 0 2048 0.0.0.0:8081 0.0.0.0:* users:((\"python3\",pid=487,fd=6)) ","pids":[487],"port":8081},{"line":"LISTEN 0 244 <PRIVATE_IPV4>:5432 0.0.0.0:* users:((\"postgres\",pid=469,fd=6)) ","pids":[469],"port":5432},{"line":"LISTEN 0 4096 <PRIVATE_IPV4>%lo:53 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=18))","pids":[380],"port":53},{"line":"LISTEN 0 4096 0.0.0.0:5355 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=12))","pids":[380],"port":5355},{"line":"LISTEN 0 4096 <PRIVATE_IPV4>:53 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=20))","pids":[380],"port":53},{"line":"LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:((\"sshd\",pid=457,fd=3)) ","pids":[457],"port":22},{"line":"LISTEN 0 244 [::1]:5432 [::]:* users:((\"postgres\",pid=469,fd=5)) ","pids":[469],"port":5432},{"line":"LISTEN 0 4096 [::]:5355 [::]:* users:((\"systemd-resolve\",pid=380,fd=14))","pids":[380],"port":5355},{"line":"LISTEN 0 128 [::]:22 [::]:* users:((\"sshd\",pid=457,fd=4)) ","pids":[457],"port":22}],"processes":[{"cmdline":"/lib/systemd/systemd-resolved","cwd":"/","exe":"/usr/lib/systemd/systemd-resolved","pid":380,"selected_environment":{},"source_linked":true,"systemd_unit":"systemd-resolved.service"},{"cmdline":"/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin","cwd":"/","exe":"/usr/bin/python3.11","pid":439,"selected_environment":{},"source_linked":true,"systemd_unit":"homelab-cluster-admin-webpanel.service"},{"cmdline":"sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 startups","cwd":"/","exe":"/usr/sbin/sshd","pid":457,"selected_environment":{},"source_linked":true,"systemd_unit":"ssh.service"},{"cmdline":"/usr/lib/postgresql/15/bin/postgres -D /var/lib/postgresql/15/main -c config_file=/etc/postgresql/15/main/postgresql.conf","cwd":"/var/lib/postgresql/15/main","exe":"/usr/lib/postgresql/15/bin/postgres","pid":469,"selected_environment":{"PWD":"/"},"source_linked":true,"systemd_unit":"postgresql@15-main.service"},{"cmdline":"/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>","cwd":"/opt/cluster-admin-incident-engine","exe":"/usr/bin/python3.11","pid":487,"selected_environment":{},"source_linked":true,"systemd_unit":"cluster-admin-incident-engine.service"}],"project_root":"/","relevant_files":[],"route_declarations":[],"scanned_files":30001,"source":{"bytes":28599,"mode":"0o750","path":"/opt/cluster-admin-incident-engine/app.py","sha256":"17d95ebfc28cef34846a8999664019d5d032ee8176b7fedd9ceeebfc5c97e3b6","signature_hits":["Cluster Admin Incident Engine","observe/notify","auto-heal отключён","Активные инциденты","VM и CT","Инциденты"]},"source_linked_processes":[{"cmdline":"/lib/systemd/systemd-resolved","cwd":"/","exe":"/usr/lib/systemd/systemd-resolved","pid":380,"selected_environment":{},"source_linked":true,"systemd_unit":"systemd-resolved.service"},{"cmdline":"/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin","cwd":"/","exe":"/usr/bin/python3.11","pid":439,"selected_environment":{},"source_linked":true,"systemd_unit":"homelab-cluster-admin-webpanel.service"},{"cmdline":"sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 startups","cwd":"/","exe":"/usr/sbin/sshd","pid":457,"selected_environment":{},"source_linked":true,"systemd_unit":"ssh.service"},{"cmdline":"/usr/lib/postgresql/15/bin/postgres -D /var/lib/postgresql/15/main -c config_file=/etc/postgresql/15/main/postgresql.conf","cwd":"/var/lib/postgresql/15/main","exe":"/usr/lib/postgresql/15/bin/postgres","pid":469,"selected_environment":{"PWD":"/"},"source_linked":true,"systemd_unit":"postgresql@15-main.service"},{"cmdline":"/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>","cwd":"/opt/cluster-admin-incident-engine","exe":"/usr/bin/python3.11","pid":487,"selected_environment":{},"source_linked":true,"systemd_unit":"cluster-admin-incident-engine.service"}],"source_linked_units":[{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/apparmor/apparmor.systemd ; argv[]=/lib/apparmor/apparmor.systemd reload ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apparmor.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apparmor.service","unit_text":"# /lib/systemd/system/apparmor.service\n[Unit]\nDescription=Load AppArmor profiles\nDefaultDependencies=no\nBefore=sysinit.target\nAfter=local-fs.target\nAfter=systemd-journald-audit.socket\nRequiresMountsFor=/var/cache/apparmor\nAssertPathIsReadWrite=/sys/kernel/security/apparmor/.load\nConditionSecurity=apparmor\nDocumentation=man:apparmor(7)\nDocumentation=https://gitlab.com/apparmor/apparmor/wikis/home/\n\n# Don't start this unit on the Ubuntu Live CD\nConditionPathExists=!/rofs/etc/apparmor.d\n\n# Don't start this unit on the Debian Live CD when using overlayfs\nConditionPathExists=!/run/live/overlay/work\n\n[Service]\nType=oneshot\nExecStart=/lib/apparmor/apparmor.systemd reload\nExecReload=/lib/apparmor/apparmor.systemd reload\n\n# systemd maps 'restart' to 'stop; start' which means removing AppArmor confinement\n# from running processes (and not being able to re-apply it later).\n# Upstream systemd developers refused to implement an option that allows overriding\n# this behaviour, therefore we have to make ExecStop a no-op to error out on the\n# safe side.\n#\n# If you really want to unload all AppArmor profiles, run aa-teardown\nExecStop=/bin/true\nRemainAfterExit=yes\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/apt/apt.systemd.daily ; argv[]=/usr/lib/apt/apt.systemd.daily install ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apt-daily-upgrade.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"apt-daily-upgrade.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apt-daily-upgrade.service","unit_text":"# /lib/systemd/system/apt-daily-upgrade.service\n[Unit]\nDescription=Daily apt upgrade and clean activities\nDocumentation=man:apt(8)\nConditionACPower=true\nAfter=apt-daily.service network.target network-online.target systemd-networkd.service NetworkManager.service connman.service\n\n[Service]\nType=oneshot\nExecStartPre=-/usr/lib/apt/apt-helper wait-online\nExecStart=/usr/lib/apt/apt.systemd.daily install\nKillMode=process\nTimeoutStopSec=900"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/apt-daily-upgrade.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"apt-daily-upgrade.service","UnitFileState":"enabled"},"source_linked":false,"unit":"apt-daily-upgrade.timer","unit_text":"# /lib/systemd/system/apt-daily-upgrade.timer\n[Unit]\nDescription=Daily apt upgrade and clean activities\nAfter=apt-daily.timer\n\n[Timer]\nOnCalendar=*-*-* 6:00\nRandomizedDelaySec=60m\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/apt/apt.systemd.daily ; argv[]=/usr/lib/apt/apt.systemd.daily update ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apt-daily.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"apt-daily.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apt-daily.service","unit_text":"# /lib/systemd/system/apt-daily.service\n[Unit]\nDescription=Daily apt download activities\nDocumentation=man:apt(8)\nConditionACPower=true\nAfter=network.target network-online.target systemd-networkd.service NetworkManager.service connman.service\n\n[Service]\nType=oneshot\nExecStartPre=-/usr/lib/apt/apt-helper wait-online\nExecStart=/usr/lib/apt/apt.systemd.daily update\n"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/apt-daily.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"apt-daily.service","UnitFileState":"enabled"},"source_linked":false,"unit":"apt-daily.timer","unit_text":"# /lib/systemd/system/apt-daily.timer\n[Unit]\nDescription=Daily apt download activities\n\n[Timer]\nOnCalendar=*-*-* 6,18:00\nRandomizedDelaySec=12h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"autovt@.service","unit_text":"# /lib/systemd/system/getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n# On systems without virtual consoles, don't start any getty. Note\n# that serial gettys are covered by serial-getty@.service, not this\n# unit.\nConditionPathExists=/dev/tty0\n\n[Service]\n# the VT is cleared by TTYVTDisallocate\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nTTYVTDisallocate=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=getty.target\nDefaultInstance=tty1"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init modules --mode=config ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-config.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-config.service","unit_text":"# /lib/systemd/system/cloud-config.service\n[Unit]\nDescription=Apply the settings specified in cloud-config\nAfter=network-online.target cloud-config.target\nAfter=snapd.seeded.service\nWants=network-online.target cloud-config.target\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init modules --mode=config\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init modules --mode=final ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-final.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-final.service","unit_text":"# /lib/systemd/system/cloud-final.service\n[Unit]\nDescription=Execute cloud user/final scripts\nAfter=network-online.target cloud-config.service rc-local.service\nAfter=multi-user.target\nBefore=apt-daily.service\nWants=network-online.target cloud-config.service\n\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init modules --mode=final\nRemainAfterExit=yes\nTimeoutSec=0\nKillMode=process\nTasksMax=infinity\n\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/bash ; argv[]=/bin/bash -c read args <&3; echo \"args=$args\"; exec /usr/bin/cloud-init devel hotplug-hook $args; exit 0 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init-hotplugd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"cloud-init-hotplugd.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-hotplugd.service","unit_text":"# /lib/systemd/system/cloud-init-hotplugd.service\n# Paired with cloud-init-hotplugd.socket to read from the FIFO\n# /run/cloud-init/share/hook-hotplug-cmd which is created during a\n# udev network add or remove event as processed by\n# 10-cloud-init-hook-hotplug.rules.\n\n# On start, read args from the FIFO, process and provide structured arguments\n# to `cloud-init devel hotplug-hook` which will setup or teardown network\n# devices as configured by user-data.\n\n# Known bug with an enforcing SELinux policy: LP: #1936229\n# cloud-init-hotplud.service will read args from file descriptor 3\n\n[Unit]\nDescription=cloud-init hotplug hook daemon\nAfter=cloud-init-hotplugd.socket\nRequires=cloud-init-hotplugd.socket\n\n[Service]\nType=simple\nExecStart=/bin/bash -c 'read args <&3; echo \"args=$args\"; \\\n exec /usr/bin/cloud-init devel hotplug-hook $args; \\\n exit 0'\nSyslogIdentifier=cloud-init-hotplugd\nTimeoutStopSec=5"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/cloud-init-hotplugd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"cloud-init-hotplugd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-hotplugd.socket","unit_text":"# /lib/systemd/system/cloud-init-hotplugd.socket\n# cloud-init-hotplugd.socket listens on the FIFO file\n# /run/cloud-init/share/hook-hotplug-cmd which is created during a\n# udev network add or remove event as processed by\n# 10-cloud-init-hook-hotplug.rules.\n\n# Known bug with an enforcing SELinux policy: LP: #1936229\n[Unit]\nDescription=cloud-init hotplug hook socket\n\n[Socket]\nListenFIFO=/run/cloud-init/share/hook-hotplug-cmd\nSocketMode=0600\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init init --local ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init-local.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-local.service","unit_text":"# /lib/systemd/system/cloud-init-local.service\n[Unit]\nDescription=Initial cloud-init job (pre-networking)\nDefaultDependencies=no\nWants=network-pre.target\nAfter=hv_kvp_daemon.service\nAfter=systemd-remount-fs.service\nBefore=NetworkManager.service\nBefore=network-pre.target\nBefore=shutdown.target\nBefore=sysinit.target\nConflicts=shutdown.target\nRequiresMountsFor=/var/lib/cloud\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init init --local\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init init ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init.service","unit_text":"# /lib/systemd/system/cloud-init.service\n[Unit]\nDescription=Initial cloud-init job (metadata service crawler)\nDefaultDependencies=no\nWants=cloud-init-local.service\nWants=sshd-keygen.service\nWants=sshd.service\nAfter=cloud-init-local.service\nAfter=systemd-networkd-wait-online.service\nAfter=networking.service\nBefore=network-online.target\nBefore=chronyd.service\nBefore=sshd-keygen.service\nBefore=sshd.service\nBefore=sysinit.target\nBefore=shutdown.target\nConflicts=shutdown.target\nBefore=<REDACTED>\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init init\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:15 UTC] ; stop_time=[Wed 2026-08-05 16:36:15 UTC] ; pid=2041570 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.service","Group":"clusteradmin","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-incident-engine-collector.timer","Triggers":"","UnitFileState":"static","User":"clusteradmin","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"source_linked":false,"unit":"cluster-admin-incident-engine-collector.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.service\n[Unit]\nDescription=Cluster Admin inventory metrics and incident collector\nAfter=network-online.target postgresql.service cluster-admin-incident-engine.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nExecStart=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine /var/lib/homelab-health"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-incident-engine-collector.service","UnitFileState":"enabled"},"source_linked":false,"unit":"cluster-admin-incident-engine-collector.timer","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.timer\n[Unit]\nDescription=Run Cluster Admin incident collector every minute\n\n[Timer]\nOnBootSec=30s\nOnUnitActiveSec=60s\nAccuracySec=10s\nPersistent=true\nUnit=cluster-admin-incident-engine-collector.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/cluster-admin-incident-engine/runtime.conf (ignore_errors=no)","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=[PRIVATE_IP],127.0.0.1 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine.service","Group":"clusteradmin","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"clusteradmin","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"source_linked":false,"unit":"cluster-admin-incident-engine.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine.service\n[Unit]\nDescription=Cluster Admin Incident Engine web application\nAfter=network-online.target postgresql.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=simple\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nEnvironmentFile=/etc/cluster-admin-incident-engine/runtime.conf\nExecStart=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>\nRestart=on-failure\nRestartSec=5\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine\nRestrictSUIDSGID=true\nLockPersonality=true\nRestrictRealtime=true\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:08 UTC] ; stop_time=[Wed 2026-08-05 16:36:09 UTC] ; pid=2041551 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.service","Group":"clusteradmin","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-probe-agent.timer","Triggers":"","UnitFileState":"static","User":"clusteradmin","WorkingDirectory":""},"source_linked":false,"unit":"cluster-admin-probe-agent.service","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.service\n[Unit]\nDescription=Cluster Admin restricted read-only probe controller\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nEnvironment=CLUSTER_ADMIN_PROBE_HEALTH=/var/lib/cluster-admin-probe-agent/cluster-admin-probe-agent.txt\nExecStart=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run\nUMask=0077\nNoNewPrivileges=yes\nPrivateTmp=yes\nPrivateDevices=yes\nProtectSystem=strict\nProtectHome=yes\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectKernelLogs=yes\nProtectControlGroups=yes\nProtectClock=yes\nProtectHostname=yes\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nRestrictSUIDSGID=yes\nRestrictRealtime=yes\nRemoveIPC=yes\nCapabilityBoundingSet=\nAmbientCapabilities=\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nIPAddressDeny=any\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nReadOnlyPaths=/etc/cluster-admin-probe-agent /opt/cluster-admin-probe-agent\nReadWritePaths=/var/lib/cluster-admin-probe-agent\nStateDirectory=cluster-admin-probe-agent\nStateDirectoryMode=0750\nRuntimeDirectory=cluster-admin-probe-agent\nTimeoutStartSec=70"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-probe-agent.service","UnitFileState":"enabled"},"source_linked":false,"unit":"cluster-admin-probe-agent.timer","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.timer\n[Unit]\nDescription=Run Cluster Admin restricted probes every minute\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=60s\nRandomizedDelaySec=5s\nPersistent=true\nUnit=cluster-admin-probe-agent.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/agetty ; argv[]=/sbin/agetty -o -p -- \\u --noclear --keep-baud - 115200,38400,9600 $TERM ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/console-getty.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"console-getty.service","unit_text":"# /lib/systemd/system/console-getty.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Console Getty\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nAfter=<REDACTED>\nAfter=rc-local.service getty-pre.target\nBefore=getty.target\n\n# OCI containers may be run without a console\nConditionPathExists=/dev/console\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an option to preserve environment (-p),\n# followed by '--' for safety, and then the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear --keep-baud - 115200,38400,9600 $TERM\nType=idle\nRestart=always\nUtmpIdentifier=cons\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/console\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n[Install]\nWantedBy=getty.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"container-getty@.service","unit_text":"# /lib/systemd/system/container-getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Container Getty on /dev/pts/%I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=man:machinectl(1)\nAfter=<REDACTED>\nAfter=rc-local.service getty-pre.target\nBefore=getty.target\nIgnoreOnIsolate=yes\nConditionPathExists=/dev/pts/%I\n\n# IgnoreOnIsolate is an issue: when someone isolates rescue.target,\n# tradition expects that we shut down all but the main console.\nConflicts=rescue.service\nBefore=rescue.service\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an option to preserve environment (-p),\n# followed by '--' for safety, and then the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=pts/%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/pts/%I\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/cryptdisks-early.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cryptdisks-early.service","unit_text":"# Unit cryptdisks-early.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/cryptdisks.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cryptdisks.service","unit_text":"# Unit cryptdisks.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-hostnamed ; argv[]=/lib/systemd/systemd-hostnamed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hostnamed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.hostname1.service","unit_text":"# /lib/systemd/system/systemd-hostnamed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Hostname Service\nDocumentation=man:systemd-hostnamed.service(8)\nDocumentation=man:hostname(5)\nDocumentation=man:machine-info(5)\nDocumentation=man:org.freedesktop.hostname1(5)\n\n[Service]\nBusName=org.freedesktop.hostname1\nCapabilityBoundingSet=CAP_SYS_ADMIN\nExecStart=/lib/systemd/systemd-hostnamed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc /run/systemd\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service sethostname\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-localed ; argv[]=/lib/systemd/systemd-localed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-localed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.locale1.service","unit_text":"# /lib/systemd/system/systemd-localed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Locale Service\nDocumentation=man:systemd-localed.service(8)\nDocumentation=man:locale.conf(5)\nDocumentation=man:vconsole.conf(5)\nDocumentation=man:org.freedesktop.locale1(5)\n\n[Service]\nBusName=org.freedesktop.locale1\nCapabilityBoundingSet=\nExecStart=/lib/systemd/systemd-localed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nReadWritePaths=/usr/lib/locale\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# /usr/lib/systemd/system/systemd-localed.service.d/locale-gen.conf\n[Service]\n# systemd-localed may run locale-gen which writes to /etc as well as to\n# /usr/lib/locale. This change softens the service hardening a bit so\n# both of these paths are writable.\nReadWritePaths=/usr/lib/locale/"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-logind ; argv[]=/lib/systemd/systemd-logind ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-logind.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.login1.service","unit_text":"# /lib/systemd/system/systemd-logind.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Login Management\nDocumentation=man:sd-login(3)\nDocumentation=man:systemd-logind.service(8)\nDocumentation=man:logind.conf(5)\nDocumentation=man:org.freedesktop.login1(5)\n\nWants=user.slice modprobe@drm.service\nAfter=nss-user-lookup.target user.slice modprobe@drm.service\nConditionPathExists=|/lib/systemd/system/dbus.service\nConditionPathExists=|/lib/systemd/system/dbus-broker.service\n\n# Ask for the dbus socket.\nWants=dbus.socket\nAfter=dbus.socket\n\n[Service]\nBusName=org.freedesktop.login1\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_MAC_ADMIN CAP_AUDIT_CONTROL CAP_CHOWN CAP_DAC_READ_SEARCH CAP_DAC_OVERRIDE CAP_FOWNER CAP_SYS_TTY_CONFIG CAP_LINUX_IMMUTABLE\nDeviceAllow=block-* r\nDeviceAllow=char-/dev/console rw\nDeviceAllow=char-drm rw\nDeviceAllow=char-hvc rw\nDeviceAllow=char-input rw\nDeviceAllow=char-tty rw\nDeviceAllow=char-vcs rw\nExecStart=/lib/systemd/systemd-logind\nFileDescriptorStoreMax=512\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\n# We don't use ProtectProc= since we need to look for usernames and tty for wall messages\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nReadWritePaths=/etc /run\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=<REDACTED>\nRuntimeDirectoryPreserve=yes\nStateDirectory=systemd/linger\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# Increase the default a bit in order to allow many simultaneous logins since\n<REDACTED_SECRET_LINE>\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd ; argv[]=/lib/systemd/systemd-networkd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-networkd.socket","Triggers":"","UnitFileState":"enabled","User":"systemd-network","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.network1.service","unit_text":"# /lib/systemd/system/systemd-networkd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Configuration\nDocumentation=man:systemd-networkd.service(8)\nDocumentation=man:org.freedesktop.network1(5)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\n# systemd-udevd.service can be dropped once tuntap is moved to netlink\nAfter=systemd-networkd.socket systemd-udevd.service network-pre.target systemd-sysusers.service systemd-sysctl.service\nBefore=network.target multi-user.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=systemd-networkd.socket network.target\n\n[Service]\nAmbientCapabilities=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nBusName=org.freedesktop.network1\nCapabilityBoundingSet=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nDeviceAllow=char-* rw\nExecStart=!!/lib/systemd/systemd-networkd\nExecReload=networkctl reload\nFileDescriptorStoreMax=512\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nRestart=on-failure\nRestartKillSignal=SIGUSR2\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6 AF_PACKET\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/netif\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-network\nWatchdogSec=3min\n\n[Install]\nWantedBy=multi-user.target\nAlso=systemd-networkd.socket\nAlias=dbus-org.freedesktop.network1.service\n\n# The output from this generator is used by udevd and networkd. Enable it by\n# default when enabling systemd-networkd.service.\nAlso=systemd-network-generator.service\n\n# We want to enable systemd-networkd-wait-online.service whenever this service\n# is enabled. systemd-networkd-wait-online.service has\n# WantedBy=network-online.target, so enabling it only has an effect if\n# network-online.target itself is enabled or pulled in by some other unit.\nAlso=systemd-networkd-wait-online.service"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-resolved ; argv[]=/lib/systemd/systemd-resolved ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-resolved.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-resolve","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.resolve1.service","unit_text":"# /lib/systemd/system/systemd-resolved.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Name Resolution\nDocumentation=man:systemd-resolved.service(8)\nDocumentation=man:org.freedesktop.resolve1(5)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-network-configuration-managers\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-resolver-clients\n\nDefaultDependencies=no\nAfter=systemd-sysctl.service systemd-sysusers.service\nBefore=sysinit.target network.target nss-lookup.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=nss-lookup.target\n\n[Service]\nAmbientCapabilities=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nBusName=org.freedesktop.resolve1\nCapabilityBoundingSet=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nExecStart=!!/lib/systemd/systemd-resolved\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/resolve\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-resolve\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.resolve1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-timedated ; argv[]=/lib/systemd/systemd-timedated ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timedated.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.timedate1.service","unit_text":"# /lib/systemd/system/systemd-timedated.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Time & Date Service\nDocumentation=man:systemd-timedated.service(8)\nDocumentation=man:localtime(5)\nDocumentation=man:org.freedesktop.timedate1(5)\n\n[Service]\nBusName=org.freedesktop.timedate1\nCapabilityBoundingSet=CAP_SYS_TIME\nDeviceAllow=char-rtc r\nExecStart=/lib/systemd/systemd-timedated\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-timesyncd ; argv[]=/lib/systemd/systemd-timesyncd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timesyncd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-timesync","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.timesync1.service","unit_text":"# /lib/systemd/system/systemd-timesyncd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Time Synchronization\nDocumentation=man:systemd-timesyncd.service(8)\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=time-set.target sysinit.target shutdown.target\nConflicts=shutdown.target\nWants=time-set.target\n\n[Service]\nAmbientCapabilities=CAP_SYS_TIME\nBusName=org.freedesktop.timesync1\nCapabilityBoundingSet=CAP_SYS_TIME\n# Turn off DNSSEC validation for hostname look-ups, since those need the\n# correct time to work, but we likely won't acquire that without NTP. Let's\n# break this chicken-and-egg cycle here.\nEnvironment=SYSTEMD_NSS_RESOLVE_VALIDATE=0\nExecStart=!!/lib/systemd/systemd-timesyncd\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/timesync\nStateDirectory=systemd/timesync\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nType=notify\nUser=systemd-timesync\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.timesync1.service"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/dbus-daemon ; argv[]=/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/dbus.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"dbus.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus.service","unit_text":"# /lib/systemd/system/dbus.service\n[Unit]\nDescription=D-Bus System Message Bus\nDocumentation=man:dbus-daemon(1)\nRequires=dbus.socket\n\n[Service]\nType=notify\nNotifyAccess=main\nExecStart=/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only\nExecReload=/usr/bin/dbus-send --print-reply --system --type=method_call --dest=org.freedesktop.DBus / org.freedesktop.DBus.ReloadConfig\nOOMScoreAdjust=-900"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/dbus.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"dbus.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus.socket","unit_text":"# /lib/systemd/system/dbus.socket\n[Unit]\nDescription=D-Bus System Message Bus Socket\n\n[Socket]\nListenStream=/run/dbus/system_bus_socket"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/bash ; argv[]=/bin/bash ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/debug-shell.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"debug-shell.service","unit_text":"# /lib/systemd/system/debug-shell.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Early root shell on /dev/tty9 FOR DEBUGGING ONLY\nDocumentation=man:systemd-debug-generator(8)\nDefaultDependencies=no\nIgnoreOnIsolate=yes\nConditionPathExists=/dev/tty9\n\n[Service]\nEnvironment=TERM=linux\nExecStart=/bin/bash\nRestart=always\nRestartSec=0\nStandardInput=tty\nTTYPath=/dev/tty9\nTTYReset=yes\nTTYVHangup=yes\nKillMode=process\nIgnoreSIGPIPE=no\n# bash ignores SIGTERM\nKillSignal=SIGHUP\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/libexec/dpkg/dpkg-db-backup ; argv[]=/usr/libexec/dpkg/dpkg-db-backup ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/dpkg-db-backup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"dpkg-db-backup.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dpkg-db-backup.service","unit_text":"# /lib/systemd/system/dpkg-db-backup.service\n[Unit]\nDescription=Daily dpkg database backup service\nDocumentation=man:dpkg(1)\n\n[Service]\nType=oneshot\nExecStart=/usr/libexec/dpkg/dpkg-db-backup"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/dpkg-db-backup.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"dpkg-db-backup.service","UnitFileState":"enabled"},"source_linked":false,"unit":"dpkg-db-backup.timer","unit_text":"# /lib/systemd/system/dpkg-db-backup.timer\n[Unit]\nDescription=Daily dpkg database backup timer\nDocumentation=man:dpkg(1)\n\n[Timer]\nOnCalendar=daily\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"e2scrub@.service","unit_text":"# /lib/systemd/system/e2scrub@.service\n[Unit]\nDescription=Online ext4 Metadata Check for %I\nOnFailure=e2scrub_fail@%i.service\nDocumentation=man:e2scrub(8)\n\n[Service]\nType=oneshot\nWorkingDirectory=/\nPrivateNetwork=true\nProtectSystem=true\nProtectHome=read-only\nPrivateTmp=yes\nAmbientCapabilities=CAP_SYS_ADMIN CAP_SYS_RAWIO\nNoNewPrivileges=yes\nUser=root\nIOSchedulingClass=idle\nCPUSchedulingPolicy=idle\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub -t %I\nSyslogIdentifier=%N"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/e2scrub_all ; argv[]=/sbin/e2scrub_all ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/e2scrub_all.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"e2scrub_all.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"e2scrub_all.service","unit_text":"# /lib/systemd/system/e2scrub_all.service\n[Unit]\nDescription=Online ext4 Metadata Check for All Filesystems\nConditionACPower=true\nConditionCapability=CAP_SYS_ADMIN\nConditionCapability=CAP_SYS_RAWIO\nDocumentation=man:e2scrub_all(8)\n\n[Service]\nType=oneshot\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub_all\nSyslogIdentifier=e2scrub_all"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/e2scrub_all.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"e2scrub_all.service","UnitFileState":"enabled"},"source_linked":false,"unit":"e2scrub_all.timer","unit_text":"# /lib/systemd/system/e2scrub_all.timer\n[Unit]\nDescription=Periodic ext4 Online Metadata Check for All Filesystems\n\n[Timer]\n# Run on Sunday at 3:10am, to avoid running afoul of DST changes\nOnCalendar=Sun *-*-* 03:10:00\nRandomizedDelaySec=60\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"e2scrub_fail@.service","unit_text":"# /lib/systemd/system/e2scrub_fail@.service\n[Unit]\nDescription=Online ext4 Metadata Check Failure Reporting for %I\nDocumentation=man:e2scrub(8)\n\n[Service]\nType=oneshot\nExecStart=/usr/lib/x86_64-linux-gnu/e2fsprogs/e2scrub_fail \"%I\"\nUser=mail\nGroup=mail\nSupplementaryGroups=systemd-journal"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/e2scrub_all ; argv[]=/sbin/e2scrub_all -A -r ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/e2scrub_reap.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"root","WorkingDirectory":"/"},"source_linked":false,"unit":"e2scrub_reap.service","unit_text":"# /lib/systemd/system/e2scrub_reap.service\n[Unit]\nDescription=Remove Stale Online ext4 Metadata Check Snapshots\nConditionCapability=CAP_SYS_ADMIN\nConditionCapability=CAP_SYS_RAWIO\nDocumentation=man:e2scrub_all(8)\n\n[Service]\nType=oneshot\nWorkingDirectory=/\nPrivateNetwork=true\nProtectSystem=true\nProtectHome=read-only\nPrivateTmp=yes\nAmbientCapabilities=CAP_SYS_ADMIN CAP_SYS_RAWIO\nNoNewPrivileges=yes\nUser=root\nIOSchedulingClass=idle\nCPUSchedulingPolicy=idle\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub_all -A -r\nSyslogIdentifier=%N\nRemainAfterExit=no\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sulogin-shell ; argv[]=/lib/systemd/systemd-sulogin-shell emergency ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/emergency.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":"!/root"},"source_linked":false,"unit":"emergency.service","unit_text":"# /lib/systemd/system/emergency.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Emergency Shell\nDocumentation=man:sulogin(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nConflicts=rescue.service\nBefore=shutdown.target\nBefore=rescue.service\n\n[Service]\nEnvironment=HOME=/root\nWorkingDirectory=-/root\nExecStartPre=-/bin/plymouth --wait quit\nExecStart=-/lib/systemd/systemd-sulogin-shell emergency\nType=idle\nStandardInput=tty-force\nStandardOutput=inherit\nStandardError=inherit\nKillMode=process\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/fstrim ; argv[]=/sbin/fstrim --listed-in /etc/fstab:/proc/self/mountinfo --verbose --quiet-unsupported ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/fstrim.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"fstrim.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"fstrim.service","unit_text":"# /lib/systemd/system/fstrim.service\n[Unit]\nDescription=Discard unused blocks on filesystems from /etc/fstab\nDocumentation=man:fstrim(8)\nConditionVirtualization=!container\n\n[Service]\nType=oneshot\nExecStart=/sbin/fstrim --listed-in /etc/fstab:/proc/self/mountinfo --verbose --quiet-unsupported\nPrivateDevices=no\nPrivateNetwork=yes\nPrivateUsers=no\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectControlGroups=yes\nMemoryDenyWriteExecute=yes\nSystemCallFilter=@default @file-system @basic-io @system-service"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/fstrim.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"fstrim.service","UnitFileState":"enabled"},"source_linked":false,"unit":"fstrim.timer","unit_text":"# /lib/systemd/system/fstrim.timer\n[Unit]\nDescription=Discard unused blocks once a week\nDocumentation=man:fstrim\nConditionVirtualization=!container\nConditionPathExists=!/etc/initrd-release\n\n[Timer]\nOnCalendar=weekly\nAccuracySec=1h\nPersistent=true\nRandomizedDelaySec=6000\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block start getty@tty2.service getty@tty3.service getty@tty4.service getty@tty5.service getty@tty6.service ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/getty-static.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"getty-static.service","unit_text":"# /lib/systemd/system/getty-static.service\n[Unit]\nDescription=getty on tty2-tty6 if dbus and logind are not available\nConditionPathExists=/dev/tty0\nConditionPathExists=!/usr/bin/dbus-daemon\nConditionPathExists=!/usr/bin/dbus-broker\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block start getty@tty2.service getty@tty3.service getty@tty4.service getty@tty5.service getty@tty6.service\nRemainAfterExit=true"},{"project_linked":true,"show":{},"source_linked":false,"unit":"getty@.service","unit_text":"# /lib/systemd/system/getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n# On systems without virtual consoles, don't start any getty. Note\n# that serial gettys are covered by serial-getty@.service, not this\n# unit.\nConditionPathExists=/dev/tty0\n\n[Service]\n# the VT is cleared by TTYVTDisallocate\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nTTYVTDisallocate=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=getty.target\nDefaultInstance=tty1"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/full-observer.sh ; argv[]=/opt/homelab-cluster-admin/full-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:21 UTC] ; pid=2041047 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-full-observer.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-full-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.service\n[Unit]\nDescription=Homelab cluster-admin full observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/full-observer.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-full-observer.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-full-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin full observer\n\n[Timer]\nOnBootSec=5min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/cluster-observer.sh ; argv[]=/opt/homelab-cluster-admin/cluster-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:15 UTC] ; pid=2041048 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-observer.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.service\n[Unit]\nDescription=Homelab cluster-admin observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/cluster-observer.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-observer.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin observer\n\n[Timer]\nOnBootSec=3min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/self-check.sh ; argv[]=/opt/homelab-cluster-admin/self-check.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:15 UTC] ; pid=2041049 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-self-check.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-self-check.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.service\n[Unit]\nDescription=Homelab cluster-admin self check\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/self-check.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-self-check.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-self-check.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.timer\n[Unit]\nDescription=Run homelab cluster-admin self check\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.path","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.path\n[Unit]\nDescription=Reapply Cluster Admin update visibility after index regeneration\nStartLimitIntervalSec=0\n\n[Path]\nPathChanged=/var/www/homelab-cluster-admin/index.html\nPathModified=/var/www/homelab-cluster-admin/index.html\nPathChanged=/var/www/homelab-cluster-admin\nUnit=homelab-cluster-admin-update-visibility-index.service\nTriggerLimitIntervalSec=0\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher ; argv[]=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:48 UTC] ; stop_time=[Wed 2026-08-05 16:36:48 UTC] ; pid=2041661 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.service","Group":"root","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-update-visibility-index.path homelab-cluster-admin-update-visibility-index.timer","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.service\n[Unit]\nDescription=Maintain Cluster Admin update visibility card\nAfter=local-fs.target\nStartLimitIntervalSec=0\n\n[Service]\nType=oneshot\nUser=root\nGroup=root\nExecStart=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json\nUMask=0022\nNoNewPrivileges=true\nPrivateTmp=true\nProtectHome=read-only\nProtectSystem=full\nReadWritePaths=/var/www/homelab-cluster-admin"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer\n[Unit]\nDescription=Periodic Cluster Admin update visibility repair\n\n[Timer]\nOnBootSec=20s\nOnUnitActiveSec=30s\nAccuracySec=5s\nRandomizedDelaySec=0\nPersistent=true\nUnit=homelab-cluster-admin-update-visibility-index.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; argv[]=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:15 UTC] ; stop_time=[Wed 2026-08-05 16:36:15 UTC] ; pid=2041571 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-webpanel-render.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-webpanel-render.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service\n[Unit]\nDescription=Render Homelab cluster-admin web panel\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/render-webpanel.sh\n\n# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service.d/10-cycle-break.conf\n[Service]\nExecStart=\nExecStart=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-webpanel-render.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-webpanel-render.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.timer\n[Unit]\nDescription=Refresh Homelab cluster-admin web panel\n\n[Timer]\nOnBootSec=1min\nOnUnitActiveSec=1min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-webpanel.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel.service\n[Unit]\nDescription=Homelab cluster-admin web panel\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=simple\nExecStart=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin\nRestart=always\nRestartSec=5\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"failed","ExecStart":"{ path=/usr/local/sbin/homelab-stage4i-verify ; argv[]=/usr/local/sbin/homelab-stage4i-verify ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:26:30 UTC] ; stop_time=[Wed 2026-08-05 16:26:30 UTC] ; pid=2039387 ; code=exited ; status=50 }","FragmentPath":"/etc/systemd/system/homelab-stage4i-verify.service","Group":"root","LoadState":"loaded","SubState":"failed","TriggeredBy":"homelab-stage4i-verify.timer","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"homelab-stage4i-verify.service","unit_text":"# /etc/systemd/system/homelab-stage4i-verify.service\n[Unit]\nDescription=Verify active immutable Stage 4I task version\nAfter=local-fs.target\n\n[Service]\nType=oneshot\nUser=root\nGroup=root\nExecStart=/usr/local/sbin/homelab-stage4i-verify\nNoNewPrivileges=true\nPrivateDevices=true\nProtectClock=true\nProtectControlGroups=true\nProtectHome=true\nProtectKernelLogs=true\nProtectKernelModules=true\nProtectKernelTunables=true\nRestrictNamespaces=true\nRestrictRealtime=true\nLockPersonality=true\nMemoryDenyWriteExecute=true\nUMask=0027"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-stage4i-verify.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-stage4i-verify.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-stage4i-verify.timer","unit_text":"# /etc/systemd/system/homelab-stage4i-verify.timer\n[Unit]\nDescription=Regularly verify active immutable Stage 4I task version\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=15min\nAccuracySec=1min\nPersistent=true\nUnit=homelab-stage4i-verify.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/hwclock.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"hwclock.service","unit_text":"# Unit hwclock.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block isolate initrd-switch-root.target ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-cleanup.service","unit_text":"# /lib/systemd/system/initrd-cleanup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleaning Up and Shutting Down Daemons\nDefaultDependencies=no\nAssertPathExists=/etc/initrd-release\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\nAfter=initrd-root-fs.target initrd-fs.target initrd.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block isolate initrd-switch-root.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block start initrd-cleanup.service ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-parse-etc.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-parse-etc.service","unit_text":"# /lib/systemd/system/initrd-parse-etc.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Mountpoints Configured in the Real Root\nAssertPathExists=/etc/initrd-release\n\nDefaultDependencies=no\nRequires=initrd-root-fs.target\nAfter=initrd-root-fs.target\n\nConflicts=emergency.target\n\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\n\n# FIXME: once dracut is patched to install the symlink, change to:\n# ExecStart=/lib/systemd/systemd-sysroot-fstab-check\nExecStart=@/lib/systemd/system-generators/systemd-fstab-generator systemd-sysroot-fstab-check\n\n# We want to enqueue initrd-cleanup.service/start after we finished the part\n# above. It can't be part of the initial transaction, because non-oneshot units\n# use Conflicts=initrd-cleanup.service to be terminated before we switch root.\n# Effectively, initrd-parse-etc.service acts as a synchronization point after\n# which cleanup of the initrd processes starts.\nExecStart=systemctl --no-block start initrd-cleanup.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block switch-root /sysroot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-switch-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-switch-root.service","unit_text":"# /lib/systemd/system/initrd-switch-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Switch Root\n\nAssertPathExists=/etc/initrd-release\n\nDefaultDependencies=no\nWants=initrd-switch-root.target\nAllowIsolate=yes\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block switch-root /sysroot"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=udevadm ; argv[]=udevadm info --cleanup-db ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-udevadm-cleanup-db.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-udevadm-cleanup-db.service","unit_text":"# /lib/systemd/system/initrd-udevadm-cleanup-db.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleanup udev Database\nDefaultDependencies=no\nAssertPathExists=/etc/initrd-release\nConflicts=systemd-udevd.service systemd-udevd-control.socket systemd-udevd-kernel.socket systemd-udev-trigger.service systemd-udev-settle.service\nAfter=systemd-udevd.service systemd-udevd-control.socket systemd-udevd-kernel.socket systemd-udev-trigger.service systemd-udev-settle.service\nBefore=initrd-switch-root.target\n\n[Service]\nType=oneshot\nExecStart=-udevadm info --cleanup-db"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/bin/kmod ; argv[]=/bin/kmod static-nodes --format=tmpfiles --output=/run/tmpfiles.d/static-nodes.conf ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/kmod-static-nodes.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"kmod-static-nodes.service","unit_text":"# /lib/systemd/system/kmod-static-nodes.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create List of Static Device Nodes\nDefaultDependencies=no\nBefore=sysinit.target systemd-tmpfiles-setup-dev.service\nConditionCapability=CAP_SYS_MODULE\nConditionFileNotEmpty=/lib/modules/%v/modules.devname\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/bin/kmod static-nodes --format=tmpfiles --output=/run/tmpfiles.d/static-nodes.conf"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-modules-load ; argv[]=/lib/systemd/systemd-modules-load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-modules-load.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"kmod.service","unit_text":"# /lib/systemd/system/systemd-modules-load.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Modules\nDocumentation=man:systemd-modules-load.service(8) man:modules-load.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nConditionCapability=CAP_SYS_MODULE\nConditionDirectoryNotEmpty=|/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/local/lib/modules-load.d\nConditionDirectoryNotEmpty=|/etc/modules-load.d\nConditionDirectoryNotEmpty=|/run/modules-load.d\nConditionKernelCommandLine=|modules-load\nConditionKernelCommandLine=|modules_load\nConditionKernelCommandLine=|rd.modules-load\nConditionKernelCommandLine=|rd.modules_load\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-modules-load\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/logrotate ; argv[]=/usr/sbin/logrotate /etc/logrotate.conf ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/logrotate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"logrotate.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"logrotate.service","unit_text":"# /lib/systemd/system/logrotate.service\n[Unit]\nDescription=Rotate log files\nDocumentation=man:logrotate(8) man:logrotate.conf(5)\nRequiresMountsFor=/var/log\nConditionACPower=true\n\n[Service]\nType=oneshot\nExecStart=/usr/sbin/logrotate /etc/logrotate.conf\n\n# performance options\nNice=19\nIOSchedulingClass=best-effort\nIOSchedulingPriority=7\n\n# hardening options\n# details: https://www.freedesktop.org/software/systemd/man/systemd.exec.html\n# no ProtectHome for userdir logs\n# no PrivateNetwork for mail deliviery\n# no NoNewPrivileges for third party rotate scripts\n# no RestrictSUIDSGID for creating setgid directories\nLockPersonality=true\nMemoryDenyWriteExecute=true\nPrivateDevices=true\nPrivateTmp=true\nProtectClock=true\nProtectControlGroups=true\nProtectHostname=true\nProtectKernelLogs=true\nProtectKernelModules=true\nProtectKernelTunables=true\nProtectSystem=full\nRestrictNamespaces=true\nRestrictRealtime=true"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/logrotate.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"logrotate.service","UnitFileState":"enabled"},"source_linked":false,"unit":"logrotate.timer","unit_text":"# /lib/systemd/system/logrotate.timer\n[Unit]\nDescription=Daily rotation of log files\nDocumentation=man:logrotate(8) man:logrotate.conf(5)\n\n[Timer]\nOnCalendar=daily\nAccuracySec=1h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/mandb ; argv[]=/usr/bin/mandb --quiet ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/man-db.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"man-db.timer","Triggers":"","UnitFileState":"static","User":"man","WorkingDirectory":""},"source_linked":false,"unit":"man-db.service","unit_text":"# /lib/systemd/system/man-db.service\n[Unit]\nDescription=Daily man-db regeneration\nDocumentation=man:mandb(8)\nConditionACPower=true\n\n[Service]\nType=oneshot\n# Recover from deletion, per FHS.\nExecStart=+/usr/bin/install -d -o man -g man -m 0755 /var/cache/man\n# Expunge old catman pages which have not been read in a week.\nExecStart=/usr/bin/find /var/cache/man -type f -name *.gz -atime +6 -delete\n# Regenerate man database.\nExecStart=/usr/bin/mandb --quiet\nUser=man\nNice=19\nIOSchedulingClass=idle\nIOSchedulingPriority=7\nProtectSystem=full\nProtectHome=true\nPrivateTmp=true\nPrivateDevices=true\nProtectHostname=true\nProtectClock=true\nProtectKernelTunables=true\nProtectKernelModules=true\nProtectKernelLogs=true\nProtectControlGroups=true\nLockPersonality=true\nRestrictRealtime=true"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/man-db.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"man-db.service","UnitFileState":"enabled"},"source_linked":false,"unit":"man-db.timer","unit_text":"# /lib/systemd/system/man-db.timer\n[Unit]\nDescription=Daily man-db regeneration\nDocumentation=man:mandb(8)\n\n[Timer]\nOnCalendar=daily\nRandomizedDelaySec=12h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"modprobe@.service","unit_text":"# /lib/systemd/system/modprobe@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Module %i\nDefaultDependencies=no\nBefore=sysinit.target\nDocumentation=man:modprobe(8)\nConditionCapability=CAP_SYS_MODULE\nStartLimitIntervalSec=0\n\n[Service]\nType=oneshot\nExecStart=-/sbin/modprobe -abq %i"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/netplan ; argv[]=/usr/sbin/netplan apply --only-ovs-cleanup ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/run/systemd/system/netplan-ovs-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"netplan-ovs-cleanup.service","unit_text":"# /run/systemd/system/netplan-ovs-cleanup.service\n[Unit]\nDescription=OpenVSwitch configuration for cleanup\nDefaultDependencies=no\nWants=ovsdb-server.service\nAfter=ovsdb-server.service\nConditionFileIsExecutable=/usr/bin/ovs-vsctl\nBefore=network.target\nWants=network.target\n\n[Service]\nType=oneshot\nTimeoutStartSec=10s\nExecStart=/usr/sbin/netplan apply --only-ovs-cleanup"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/pam_namespace_helper ; argv[]=/sbin/pam_namespace_helper ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/pam_namespace.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"pam_namespace.service","unit_text":"# /lib/systemd/system/pam_namespace.service\n[Unit]\nAfter=local-fs.target\nBefore=multi-user.target shutdown.target\nConflicts=shutdown.target\nDefaultDependencies=no\nDescription=Make sure parent directories configured in /etc/security/namespace.conf for polyinstantiation exist\nDocumentation=man:pam_namespace(8)\n\n[Service]\nExecStart=/sbin/pam_namespace_helper\nType=oneshot"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_basebackup@.service","unit_text":"# /lib/systemd/system/pg_basebackup@.service\n[Unit]\nDescription=Basebackup of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nEnvironment=\"KEEP=3\"\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i basebackup\nExecStart=/usr/bin/pg_backupcluster %i expirebasebackups $KEEP"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_basebackup@.timer","unit_text":"# /lib/systemd/system/pg_basebackup@.timer\n[Unit]\nDescription=Weekly Basebackup of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=weekly\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_compresswal@.service","unit_text":"# /lib/systemd/system/pg_compresswal@.service\n[Unit]\nDescription=Compress WAL of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nExecStart=/usr/bin/pg_backupcluster %i compresswal"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_compresswal@.timer","unit_text":"# /lib/systemd/system/pg_compresswal@.timer\n[Unit]\nDescription=Daily Compress WAL of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=daily\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with pg_receivewal@%i\nWantedBy=pg_receivewal@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_dump@.service","unit_text":"# /lib/systemd/system/pg_dump@.service\n[Unit]\nDescription=Dump of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nEnvironment=\"KEEP=3\"\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i dump\nExecStart=/usr/bin/pg_backupcluster %i expiredumps $KEEP"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_dump@.timer","unit_text":"# /lib/systemd/system/pg_dump@.timer\n[Unit]\nDescription=Weekly Dump of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=weekly\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_receivewal@.service","unit_text":"# /lib/systemd/system/pg_receivewal@.service\n[Unit]\nDescription=WAL archival of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=simple\nUser=postgres\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i receivewal\nRestart=on-failure\nRestartSec=1min\n# pg_receivewal only flushes compressed output on SIGINT\n# (https://www.postgresql.org/message-id/flat/Yvo/5No5S0c4EFMj%40msg.df7cb.de)\nKillSignal=SIGINT\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/polkit-1/polkitd ; argv[]=/usr/lib/polkit-1/polkitd --no-debug ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/polkit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"polkit.service","unit_text":"# /lib/systemd/system/polkit.service\n[Unit]\nDescription=<REDACTED>\nDocumentation=man:polkit(8)\n\n[Service]\nType=dbus\nBusName=org.freedesktop.PolicyKit1\nExecStart=/usr/lib/polkit-1/polkitd --no-debug"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/bin/true ; argv[]=/bin/true ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/postgresql.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"postgresql.service","unit_text":"# /lib/systemd/system/postgresql.service\n# postgresql.service is the meta unit for managing all PostgreSQL clusters on\n# the system at once. Conceptually, this unit is more like a systemd target,\n# but we are using a service since targets cannot be reloaded.\n#\n# The unit actually managing PostgreSQL clusters is postgresql@.service,\n# instantiated as postgresql@15-main.service for individual clusters.\n\n[Unit]\nDescription=PostgreSQL RDBMS\n\n[Service]\nType=oneshot\nExecStart=/bin/true\nExecReload=/bin/true\nRemainAfterExit=on\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"postgresql@.service","unit_text":"# /lib/systemd/system/postgresql@.service\n# systemd service template for PostgreSQL clusters. The actual instances will\n# be called \"postgresql@version-cluster\", e.g. \"postgresql@9.3-main\". The\n# variable %i expands to \"version-cluster\", %I expands to \"version/cluster\".\n# (%I breaks for cluster names containing dashes.)\n\n[Unit]\nDescription=PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nRequiresMountsFor=/etc/postgresql/%I /var/lib/postgresql/%I\nPartOf=postgresql.service\nReloadPropagatedFrom=postgresql.service\nBefore=postgresql.service\n# stop server before networking goes down on shutdown\nAfter=network.target\n\n[Service]\nType=forking\n# -: ignore startup failure (recovery might take arbitrarily long)\n# the actual pg_ctl timeout is configured in pg_ctl.conf\nExecStart=-/usr/bin/pg_ctlcluster --skip-systemctl-redirect %i start\n# 0 is the same as infinity, but \"infinity\" needs systemd 229\nTimeoutStartSec=0\nExecStop=/usr/bin/pg_ctlcluster --skip-systemctl-redirect -m fast %i stop\nTimeoutStopSec=1h\nExecReload=/usr/bin/pg_ctlcluster --skip-systemctl-redirect %i reload\nPIDFile=/run/postgresql/%i.pid\nSyslogIdentifier=postgresql@%i\n# prevent OOM killer from choosing the postmaster (individual backends will\n# reset the score to 0)\nOOMScoreAdjust=-900\n# restarting automatically will prevent \"pg_ctlcluster ... stop\" from working,\n# so we disable it here. Also, the postmaster will restart by itself on most\n# problems anyway, so it is questionable if one wants to enable external\n# automatic restarts.\n#Restart=on-failure\n# (This should make pg_ctlcluster stop work, but doesn't:)\n#RestartPreventExitStatus=SIGINT SIGTERM\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-sysctl ; argv[]=/lib/systemd/systemd-sysctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysctl.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"procps.service","unit_text":"# /lib/systemd/system/systemd-sysctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Apply Kernel Variables\nDocumentation=man:systemd-sysctl.service(8) man:sysctl.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-modules-load.service\nBefore=sysinit.target shutdown.target\nConditionPathIsReadWrite=/proc/sys/net/\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-sysctl\nTimeoutSec=90s\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/sbin/qemu-ga ; argv[]=/usr/sbin/qemu-ga ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/qemu-guest-agent.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"qemu-guest-agent.service","unit_text":"# /lib/systemd/system/qemu-guest-agent.service\n[Unit]\nDescription=QEMU Guest Agent\nBindsTo=dev-virtio\\x2dports-org.qemu.guest_agent.0.device\nAfter=dev-virtio\\x2dports-org.qemu.guest_agent.0.device\n\n[Service]\nExecStart=-/usr/sbin/qemu-ga\nRestart=always\nRestartSec=0\n\n[Install]"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/quotaon ; argv[]=/sbin/quotaon -aug ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/quotaon.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"quotaon.service","unit_text":"# /lib/systemd/system/quotaon.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Enable File System Quotas\nDocumentation=man:quotaon(8)\nDefaultDependencies=no\nAfter=systemd-quotacheck.service\nBefore=remote-fs.target shutdown.target\nConditionPathExists=/sbin/quotaon\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/sbin/quotaon -aug"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/etc/rc.local ; argv[]=/etc/rc.local start ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/rc-local.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rc-local.service","unit_text":"# /lib/systemd/system/rc-local.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n# This unit gets pulled automatically into multi-user.target by\n# systemd-rc-local-generator if /etc/rc.local is executable.\n[Unit]\nDescription=/etc/rc.local Compatibility\nDocumentation=man:systemd-rc-local-generator(8)\nConditionFileIsExecutable=/etc/rc.local\nAfter=network.target\n\n[Service]\nType=forking\nExecStart=/etc/rc.local start\nTimeoutSec=0\nRemainAfterExit=yes\nGuessMainPID=no\n\n# /usr/lib/systemd/system/rc-local.service.d/debian.conf\n[Unit]\n# not specified by LSB, but has been behaving that way in Debian under SysV\n# init and upstart\nAfter=network-online.target\n\n# Often contains status messages which users expect to see on the console\n# during boot\n[Service]\nStandardOutput=journal+console\nStandardError=journal+console"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/rc.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rc.service","unit_text":"# Unit rc.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/rcS.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rcS.service","unit_text":"# Unit rcS.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sulogin-shell ; argv[]=/lib/systemd/systemd-sulogin-shell rescue ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/rescue.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":"!/root"},"source_linked":false,"unit":"rescue.service","unit_text":"# /lib/systemd/system/rescue.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rescue Shell\nDocumentation=man:sulogin(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysinit.target plymouth-start.service\nBefore=shutdown.target\n\n[Service]\nEnvironment=HOME=/root\nWorkingDirectory=-/root\nExecStartPre=-/bin/plymouth --wait quit\nExecStart=-/lib/systemd/systemd-sulogin-shell rescue\nType=idle\nStandardInput=tty-force\nStandardOutput=inherit\nStandardError=inherit\nKillMode=process\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/screen-cleanup.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"screen-cleanup.service","unit_text":"# Unit screen-cleanup.service is masked."},{"project_linked":true,"show":{},"source_linked":false,"unit":"serial-getty@.service","unit_text":"# /lib/systemd/system/serial-getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Serial Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nBindsTo=dev-%i.device\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --keep-baud 115200,57600,38400,9600 - $TERM\nType=idle\nRestart=always\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n[Install]\nWantedBy=getty.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/default/ssh (ignore_errors=yes)","ExecStart":"{ path=/usr/sbin/sshd ; argv[]=/usr/sbin/sshd -D $SSHD_OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/ssh.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"ssh.service","unit_text":"# /lib/systemd/system/ssh.service\n[Unit]\nDescription=OpenBSD Secure Shell server\nDocumentation=man:sshd(8) man:sshd_config(5)\nAfter=network.target auditd.service\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Service]\nEnvironmentFile=-/etc/default/ssh\nExecStartPre=/usr/sbin/sshd -t\nExecStart=/usr/sbin/sshd -D $SSHD_OPTS\nExecReload=/usr/sbin/sshd -t\nExecReload=/bin/kill -HUP $MAINPID\nKillMode=process\nRestart=on-failure\nRestartPreventExitStatus=255\nType=notify\nRuntimeDirectory=sshd\nRuntimeDirectoryMode=0755\n\n[Install]\nWantedBy=multi-user.target\nAlias=sshd.service"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/ssh.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"ssh.service","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"ssh.socket","unit_text":"# /lib/systemd/system/ssh.socket\n[Unit]\nDescription=OpenBSD Secure Shell server socket\nBefore=sockets.target\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Socket]\nListenStream=22\nAccept=no\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/default/ssh (ignore_errors=yes)","ExecStart":"{ path=/usr/sbin/sshd ; argv[]=/usr/sbin/sshd -D $SSHD_OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/ssh.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"sshd.service","unit_text":"# /lib/systemd/system/ssh.service\n[Unit]\nDescription=OpenBSD Secure Shell server\nDocumentation=man:sshd(8) man:sshd_config(5)\nAfter=network.target auditd.service\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Service]\nEnvironmentFile=-/etc/default/ssh\nExecStartPre=/usr/sbin/sshd -t\nExecStart=/usr/sbin/sshd -D $SSHD_OPTS\nExecReload=/usr/sbin/sshd -t\nExecReload=/bin/kill -HUP $MAINPID\nKillMode=process\nRestart=on-failure\nRestartPreventExitStatus=255\nType=notify\nRuntimeDirectory=sshd\nRuntimeDirectoryMode=0755\n\n[Install]\nWantedBy=multi-user.target\nAlias=sshd.service"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sudo.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"sudo.service","unit_text":"# Unit sudo.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/syslog.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"syslog.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"syslog.socket","unit_text":"# /lib/systemd/system/syslog.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Syslog Socket\nDocumentation=man:systemd.special(7)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/syslog\nDefaultDependencies=no\nBefore=sockets.target\n\n# Don't allow logging until the very end\nConflicts=shutdown.target\nBefore=shutdown.target\n\n# Don't try to activate syslog.service if sysinit.target has failed.\nConflicts=emergency.service\nBefore=emergency.service\n\n[Socket]\nListenDatagram=/run/systemd/journal/syslog\nSocketMode=0666\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\n\n# The default syslog implementation should make syslog.service a\n# symlink to itself, so that this socket activates the right actual\n# syslog service.\n#\n# Examples:\n#\n# /etc/systemd/system/syslog.service -> /lib/systemd/system/rsyslog.service\n# /etc/systemd/system/syslog.service -> /lib/systemd/system/syslog-ng.service\n#\n# Best way to achieve that is by adding this to your unit file\n# (i.e. to rsyslog.service or syslog-ng.service):\n#\n# [Install]\n# Alias=syslog.service\n#\n# See https://www.freedesktop.org/wiki/Software/systemd/syslog for details."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa1 ; argv[]=/usr/lib/sysstat/sa1 1 1 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat-collect.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat-collect.service","unit_text":"# /lib/systemd/system/sysstat-collect.service\n# /lib/systemd/system/sysstat-collect.service\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Collects system activity data\n# Activated by sysstat-collect.timer unit\n\n[Unit]\nDescription=system activity accounting tool\nDocumentation=man:sa1(8)\nAfter=sysstat.service\n\n[Service]\nType=oneshot\nUser=root\nExecStart=/usr/lib/sysstat/sa1 1 1\n"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sysstat-collect.timer","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"sysstat-collect.service","UnitFileState":"disabled"},"source_linked":false,"unit":"sysstat-collect.timer","unit_text":"# /lib/systemd/system/sysstat-collect.timer\n# /lib/systemd/system/sysstat-collect.timer\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Activates activity collector every 10 minutes\n\n[Unit]\nDescription=Run system activity accounting tool every 10 minutes\n\n[Timer]\nOnCalendar=*:00/10\n\n[Install]\nWantedBy=sysstat.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa2 ; argv[]=/usr/lib/sysstat/sa2 -A ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat-summary.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat-summary.service","unit_text":"# /lib/systemd/system/sysstat-summary.service\n# /lib/systemd/system/sysstat-summary.service\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Generates daily summary of process accounting\n\n[Unit]\nDescription=Generate a daily summary of process accounting\nDocumentation=man:sa2(8)\nAfter=sysstat.service\n\n[Service]\nType=oneshot\nUser=root\nExecStart=/usr/lib/sysstat/sa2 -A"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sysstat-summary.timer","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"sysstat-summary.service","UnitFileState":"disabled"},"source_linked":false,"unit":"sysstat-summary.timer","unit_text":"# /lib/systemd/system/sysstat-summary.timer\n# /lib/systemd/system/sysstat-summary.timer\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Triggers daily summary generation.\n# Activates sysstat-summary.service\n\n[Unit]\nDescription=Generate summary of yesterday's process accounting\n\n[Timer]\nOnCalendar=00:07:00\n\n[Install]\nWantedBy=sysstat.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa1 ; argv[]=/usr/lib/sysstat/sa1 --boot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat.service","unit_text":"# /lib/systemd/system/sysstat.service\n# /lib/systemd/system/sysstat.service\n# (C) 2012 Peter Schiffer (pschiffe <at> redhat.com)\n#\n# sysstat-12.6.1 systemd unit file:\n#\t Insert a dummy record in current daily data file.\n#\t This indicates that the counters have restarted from 0.\n\n[Unit]\nDescription=Resets System Activity Logs\nDocumentation=man:sa1(8) man:sadc(8) man:sar(1)\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nUser=root\nExecStart=/usr/lib/sysstat/sa1 --boot\n\n[Install]\nWantedBy=multi-user.target\nAlso=sysstat-collect.timer\nAlso=sysstat-summary.timer"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=rm ; argv[]=rm -fv /system-update ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/system-update-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"system-update-cleanup.service","unit_text":"# /lib/systemd/system/system-update-cleanup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Remove the Offline System Updates Symlink\nDocumentation=man:systemd.special(7) man:systemd.offline-updates(7)\nAfter=system-update.target\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=shutdown.target\nSuccessAction=reboot\n\n# system-update-generator uses laccess(\"/system-update\"), while a plain\n# ConditionPathExists=/system-update uses access(\"/system-update\"), so\n# we need an alternate condition to cover the case of a dangling symlink.\n#\n# This service is only invoked if /system-update exists, i.e. if the\n# condition tested by system-update-generator remains true and the system\n# would be diverted into system-update.target again after reboot. This way\n# we guard against being diverted into system-update.target again, which\n# works as a safety measure, but we will not step on the toes of the\n# update script if it successfully removed the symlink and scheduled a\n# reboot or some other action on its own.\nConditionPathExists=|/system-update\nConditionPathIsSymbolicLink=|/system-update\n\n[Service]\nType=oneshot\nExecStart=rm -fv /system-update"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-ask-password-console.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-ask-password-console.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-ask-password-console.path","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nConditionPathExists=!/run/plymouth/pid\n\nDefaultDependencies=no\nAfter=plymouth-start.service\nBefore=paths.target cryptsetup.target\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Path]\nDirectoryNotEmpty=<REDACTED>\nMakeDirectory=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tty-ask-password-agent ; argv[]=systemd-tty-ask-password-agent --watch --console ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-ask-password-console.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-ask-password-console.path","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-ask-password-console.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nConditionPathExists=!/run/plymouth/pid\n\nDefaultDependencies=no\nAfter=plymouth-start.service systemd-vconsole-setup.service\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nExecStart=<REDACTED>\nSystemCallArchitectures=native"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-ask-password-wall.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-ask-password-wall.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-ask-password-wall.path","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nDefaultDependencies=no\nBefore=paths.target cryptsetup.target\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Path]\nDirectoryNotEmpty=<REDACTED>\nMakeDirectory=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tty-ask-password-agent ; argv[]=systemd-tty-ask-password-agent --wall ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-ask-password-wall.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-ask-password-wall.path","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-ask-password-wall.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\nAfter=<REDACTED>\n\n[Service]\nExecStartPre=<REDACTED>\nExecStart=<REDACTED>\nSystemCallArchitectures=native"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-backlight@.service","unit_text":"# /lib/systemd/system/systemd-backlight@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save Screen Backlight Brightness of %i\nDocumentation=man:systemd-backlight@.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-backlight load %i\nExecStop=/lib/systemd/systemd-backlight save %i\nTimeoutSec=90s\nStateDirectory=systemd/backlight"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-binfmt ; argv[]=/lib/systemd/systemd-binfmt ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-binfmt.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-binfmt.service","unit_text":"# /lib/systemd/system/systemd-binfmt.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Set Up Additional Binary Formats\nDocumentation=man:systemd-binfmt.service(8) man:binfmt.d(5)\nDocumentation=https://docs.kernel.org/admin-guide/binfmt-misc.html\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/APIFileSystems\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=proc-sys-fs-binfmt_misc.automount\nAfter=proc-sys-fs-binfmt_misc.mount\nAfter=local-fs.target\nBefore=sysinit.target shutdown.target\nConditionPathIsMountPoint=/proc/sys/fs/binfmt_misc\nConditionDirectoryNotEmpty=|/lib/binfmt.d\nConditionDirectoryNotEmpty=|/usr/lib/binfmt.d\nConditionDirectoryNotEmpty=|/usr/local/lib/binfmt.d\nConditionDirectoryNotEmpty=|/etc/binfmt.d\nConditionDirectoryNotEmpty=|/run/binfmt.d\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-binfmt\nExecStop=/lib/systemd/systemd-binfmt --unregister\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-boot-check-no-failures ; argv[]=/lib/systemd/systemd-boot-check-no-failures ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-boot-check-no-failures.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-boot-check-no-failures.service","unit_text":"# /lib/systemd/system/systemd-boot-check-no-failures.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Check if Any System Units Failed\nDocumentation=man:systemd-boot-check-no-failures.service(8)\nAfter=default.target graphical.target multi-user.target\nBefore=boot-complete.target\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-boot-check-no-failures\n\n[Install]\nRequiredBy=boot-complete.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-exit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-exit.service","unit_text":"# /lib/systemd/system/systemd-exit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Exit the Container\nDocumentation=man:systemd.special(7)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=exit-force"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-firstboot ; argv[]=systemd-firstboot --prompt-locale --prompt-timezone --prompt-root-password ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-firstboot.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-firstboot.service","unit_text":"# /lib/systemd/system/systemd-firstboot.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=First Boot Wizard\nDocumentation=man:systemd-firstboot(1)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service\nBefore=systemd-sysusers.service systemd-vconsole-setup.service sysinit.target first-boot-complete.target shutdown.target\nWants=first-boot-complete.target\nConditionPathIsReadWrite=/etc\nConditionFirstBoot=yes\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=<REDACTED>\nStandardOutput=tty\nStandardInput=tty\nStandardError=tty\n\n<REDACTED_SECRET_LINE>\n# manager. This is useful for importing this data from nspawn's\n# --set-credential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-fsck ; argv[]=/lib/systemd/systemd-fsck ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-fsck-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsck-root.service","unit_text":"# /lib/systemd/system/systemd-fsck-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check on Root Device\nDocumentation=man:systemd-fsck-root.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=local-fs.target shutdown.target\nWants=systemd-fsckd.socket\nAfter=systemd-fsckd.socket\nConditionPathIsReadWrite=!/\nConditionPathExists=!/run/initramfs/fsck-root\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-fsck\nTimeoutSec=0"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-fsck@.service","unit_text":"# /lib/systemd/system/systemd-fsck@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check on %f\nDocumentation=man:systemd-fsck@.service(8)\nDefaultDependencies=no\nBindsTo=%i.device\nConflicts=shutdown.target\nWants=systemd-fsckd.socket\nAfter=%i.device systemd-fsck-root.service local-fs-pre.target systemd-fsckd.socket\nBefore=systemd-quotacheck.service shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-fsck %f\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-fsckd ; argv[]=/lib/systemd/systemd-fsckd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-fsckd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-fsckd.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsckd.service","unit_text":"# /lib/systemd/system/systemd-fsckd.service\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check Daemon to report status\nDocumentation=man:systemd-fsckd.service(8)\nDefaultDependencies=no\nRequires=systemd-fsckd.socket\nBefore=shutdown.target\n\n[Service]\nExecStart=/lib/systemd/systemd-fsckd\nStandardOutput=journal+console"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-fsckd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"systemd-fsckd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsckd.socket","unit_text":"# /lib/systemd/system/systemd-fsckd.socket\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=fsck to fsckd communication Socket\nDocumentation=man:systemd-fsckd.service(8) man:systemd-fsck@.service(8) man:systemd-fsck-root.service(8)\nDefaultDependencies=no\n\n[Socket]\nListenStream=/run/systemd/fsck.progress\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-growfs ; argv[]=/lib/systemd/systemd-growfs / ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/run/systemd/generator/systemd-growfs@-.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"generated","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-growfs@-.service","unit_text":"# /run/systemd/generator/systemd-growfs@-.service\n# Automatically generated by systemd-fstab-generator\n\n[Unit]\nDescription=Grow File System on %f\nDocumentation=man:systemd-growfs@.service(8)\nDefaultDependencies=no\nBindsTo=%i.mount\nConflicts=shutdown.target\nAfter=systemd-repart.service %i.mount\nBefore=shutdown.target local-fs.target\nAfter=systemd-remount-fs.service\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-growfs /\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --force halt ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-halt.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-halt.service","unit_text":"# /lib/systemd/system/systemd-halt.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Halt\nDocumentation=man:systemd-halt.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --force halt"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-hibernate-resume@.service","unit_text":"# /lib/systemd/system/systemd-hibernate-resume@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Resume from hibernation using device %f\nDocumentation=man:systemd-hibernate-resume@.service(8)\nDefaultDependencies=no\nBindsTo=%i.device\nWants=local-fs-pre.target\nAfter=%i.device\nBefore=local-fs-pre.target\nAssertPathExists=/etc/initrd-release\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-hibernate-resume %f"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep hibernate ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hibernate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hibernate.service","unit_text":"# /lib/systemd/system/systemd-hibernate.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Hibernate\nDocumentation=man:systemd-hibernate.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep hibernate"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-hostnamed ; argv[]=/lib/systemd/systemd-hostnamed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hostnamed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hostnamed.service","unit_text":"# /lib/systemd/system/systemd-hostnamed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Hostname Service\nDocumentation=man:systemd-hostnamed.service(8)\nDocumentation=man:hostname(5)\nDocumentation=man:machine-info(5)\nDocumentation=man:org.freedesktop.hostname1(5)\n\n[Service]\nBusName=org.freedesktop.hostname1\nCapabilityBoundingSet=CAP_SYS_ADMIN\nExecStart=/lib/systemd/systemd-hostnamed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc /run/systemd\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service sethostname\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep hybrid-sleep ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hybrid-sleep.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hybrid-sleep.service","unit_text":"# /lib/systemd/system/systemd-hybrid-sleep.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Hybrid Suspend+Hibernate\nDocumentation=man:systemd-hybrid-sleep.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep hybrid-sleep"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-initctl ; argv[]=/lib/systemd/systemd-initctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-initctl.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-initctl.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-initctl.service","unit_text":"# /lib/systemd/system/systemd-initctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=initctl Compatibility Daemon\nDocumentation=man:systemd-initctl.service(8)\nDefaultDependencies=no\n\n[Service]\nExecStart=/lib/systemd/systemd-initctl\nNoNewPrivileges=yes\nNotifyAccess=all\nSystemCallArchitectures=native"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-initctl.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"systemd-initctl.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-initctl.socket","unit_text":"# /lib/systemd/system/systemd-initctl.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=initctl Compatibility Named Pipe\nDocumentation=man:systemd-initctl.socket(8)\nDefaultDependencies=no\nBefore=sockets.target\n\n[Socket]\nListenFIFO=/run/initctl\nSymlinks=/dev/initctl\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=journalctl ; argv[]=journalctl --flush ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-journal-flush.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journal-flush.service","unit_text":"# /lib/systemd/system/systemd-journal-flush.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Flush Journal to Persistent Storage\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nWants=systemd-journald.service\nAfter=systemd-journald.service systemd-remount-fs.service\nBefore=systemd-tmpfiles-setup.service\nRequiresMountsFor=/var/log/journal\nConditionPathExists=!/etc/initrd-release\n\n[Service]\nExecStart=journalctl --flush\nExecStop=journalctl --smart-relinquish-var\nType=oneshot\nRemainAfterExit=yes\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald-audit.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald-audit.socket","unit_text":"# /lib/systemd/system/systemd-journald-audit.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Audit Socket\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\nConditionSecurity=audit\nConditionCapability=CAP_AUDIT_READ\n\n[Socket]\nService=systemd-journald.service\nReceiveBuffer=128M\nListenNetlink=audit 1\nPassCredentials=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald-dev-log.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald-dev-log.socket","unit_text":"# /lib/systemd/system/systemd-journald-dev-log.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket (/dev/log)\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\n\n# Mount and swap units need this. If this socket unit is removed by an isolate\n# request the mount and swap units would be removed too, hence let's exclude\n# systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Socket]\nListenDatagram=/run/systemd/journal/dev-log\nPassCredentials=<REDACTED>\nPassSecurity=yes\nService=systemd-journald.service\nSocketMode=0666\nSymlinks=/dev/log\nTimestamping=us\n\n# Increase both the send and receive buffer, so that things don't\n# block early. Note that journald internally uses the this socket both\n# for receiving syslog messages, and for forwarding them to any other\n# syslog, hence we bump both values.\nReceiveBuffer=8M\nSendBuffer=8M"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald-varlink@.socket","unit_text":"# /lib/systemd/system/systemd-journald-varlink@.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Varlink Socket for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nStopWhenUnneeded=yes\n\n[Socket]\nService=systemd-journald@%i.service\nListenStream=/run/systemd/journal.%i/io.systemd.journal\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-journald ; argv[]=/lib/systemd/systemd-journald ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-journald.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-journald-audit.socket systemd-journald-dev-log.socket systemd-journald.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald.service","unit_text":"# /lib/systemd/system/systemd-journald.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Service\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nRequires=systemd-journald.socket\nAfter=systemd-journald.socket systemd-journald-dev-log.socket systemd-journald-audit.socket syslog.socket\nBefore=sysinit.target\n\n# Mount and swap units need the journal socket units. If they were removed by\n# an isolate request the mount and swap units would be removed too, hence let's\n# exclude systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Service]\nDeviceAllow=char-* rw\nExecStart=/lib/systemd/systemd-journald\nFileDescriptorStoreMax=4224\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nOOMScoreAdjust=-250\nProtectClock=yes\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/journal\nRuntimeDirectoryPreserve=yes\nSockets=systemd-journald.socket systemd-journald-dev-log.socket systemd-journald-audit.socket\nStandardOutput=null\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nWatchdogSec=3min\n\n# In case you're wondering why CAP_SYS_PTRACE is needed, access to\n# /proc/<pid>/exe requires this capability. Thus if this capability is missing\n# the _EXE=/OBJECT_EXE= fields will be missing from the journal entries.\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_DAC_OVERRIDE CAP_SYS_PTRACE CAP_SYSLOG CAP_AUDIT_CONTROL CAP_AUDIT_READ CAP_CHOWN CAP_DAC_READ_SEARCH CAP_FOWNER CAP_SETUID CAP_SETGID CAP_MAC_OVERRIDE\n\n# If there are many split up journal files we need a lot of fds to access them\n# all in parallel.\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald.socket","unit_text":"# /lib/systemd/system/systemd-journald.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\n\n# Mount and swap units need this. If this socket unit is removed by an isolate\n# request the mount and swap units would be removed too, hence let's exclude\n# systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Socket]\nListenDatagram=/run/systemd/journal/socket\nListenStream=/run/systemd/journal/stdout\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\nService=systemd-journald.service\nSocketMode=0666\nTimestamping=us"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald@.service","unit_text":"# /lib/systemd/system/systemd-journald@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Service for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nRequires=systemd-journald@%i.socket systemd-journald-varlink@%i.socket\nAfter=systemd-journald@%i.socket systemd-journald-varlink@%i.socket\n\n[Service]\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_DAC_OVERRIDE CAP_SYS_PTRACE CAP_CHOWN CAP_DAC_READ_SEARCH CAP_FOWNER CAP_SETUID CAP_SETGID CAP_MAC_OVERRIDE\nDevicePolicy=closed\nExecStart=/lib/systemd/systemd-journald %i\nFileDescriptorStoreMax=4224\nGroup=systemd-journal\nIPAddressDeny=any\nLockPersonality=yes\nLogsDirectory=journal/%m.%i\nLogsDirectoryMode=02755\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/journal.%i\nRuntimeDirectoryPreserve=yes\nSockets=systemd-journald@%i.socket\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nWatchdogSec=3min\n\n# If there are many split up journal files we need a lot of fds to access them\n# all in parallel.\nLimitNOFILE=524288"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald@.socket","unit_text":"# /lib/systemd/system/systemd-journald@.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nStopWhenUnneeded=yes\n\n[Socket]\nService=systemd-journald@%i.service\nListenStream=/run/systemd/journal.%i/stdout\nListenDatagram=/run/systemd/journal.%i/socket\nListenDatagram=/run/systemd/journal.%i/dev-log\nSocketMode=0666\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\nSendBuffer=8M"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --force kexec ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-kexec.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-kexec.service","unit_text":"# /lib/systemd/system/systemd-kexec.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Reboot via kexec\nDocumentation=man:systemd-kexec.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --force kexec"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-localed ; argv[]=/lib/systemd/systemd-localed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-localed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-localed.service","unit_text":"# /lib/systemd/system/systemd-localed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Locale Service\nDocumentation=man:systemd-localed.service(8)\nDocumentation=man:locale.conf(5)\nDocumentation=man:vconsole.conf(5)\nDocumentation=man:org.freedesktop.locale1(5)\n\n[Service]\nBusName=org.freedesktop.locale1\nCapabilityBoundingSet=\nExecStart=/lib/systemd/systemd-localed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nReadWritePaths=/usr/lib/locale\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# /usr/lib/systemd/system/systemd-localed.service.d/locale-gen.conf\n[Service]\n# systemd-localed may run locale-gen which writes to /etc as well as to\n# /usr/lib/locale. This change softens the service hardening a bit so\n# both of these paths are writable.\nReadWritePaths=/usr/lib/locale/"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-logind ; argv[]=/lib/systemd/systemd-logind ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-logind.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-logind.service","unit_text":"# /lib/systemd/system/systemd-logind.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Login Management\nDocumentation=man:sd-login(3)\nDocumentation=man:systemd-logind.service(8)\nDocumentation=man:logind.conf(5)\nDocumentation=man:org.freedesktop.login1(5)\n\nWants=user.slice modprobe@drm.service\nAfter=nss-user-lookup.target user.slice modprobe@drm.service\nConditionPathExists=|/lib/systemd/system/dbus.service\nConditionPathExists=|/lib/systemd/system/dbus-broker.service\n\n# Ask for the dbus socket.\nWants=dbus.socket\nAfter=dbus.socket\n\n[Service]\nBusName=org.freedesktop.login1\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_MAC_ADMIN CAP_AUDIT_CONTROL CAP_CHOWN CAP_DAC_READ_SEARCH CAP_DAC_OVERRIDE CAP_FOWNER CAP_SYS_TTY_CONFIG CAP_LINUX_IMMUTABLE\nDeviceAllow=block-* r\nDeviceAllow=char-/dev/console rw\nDeviceAllow=char-drm rw\nDeviceAllow=char-hvc rw\nDeviceAllow=char-input rw\nDeviceAllow=char-tty rw\nDeviceAllow=char-vcs rw\nExecStart=/lib/systemd/systemd-logind\nFileDescriptorStoreMax=512\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\n# We don't use ProtectProc= since we need to look for usernames and tty for wall messages\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nReadWritePaths=/etc /run\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=<REDACTED>\nRuntimeDirectoryPreserve=yes\nStateDirectory=systemd/linger\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# Increase the default a bit in order to allow many simultaneous logins since\n<REDACTED_SECRET_LINE>\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-machine-id-setup ; argv[]=systemd-machine-id-setup --commit ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-machine-id-commit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-machine-id-commit.service","unit_text":"# /lib/systemd/system/systemd-machine-id-commit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Commit a transient machine-id on disk\nDocumentation=man:systemd-machine-id-commit.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=shutdown.target\nAfter=local-fs.target first-boot-complete.target\nConditionPathIsReadWrite=/etc\nConditionPathIsMountPoint=/etc/machine-id\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-machine-id-setup --commit\nTimeoutSec=30s"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-modules-load ; argv[]=/lib/systemd/systemd-modules-load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-modules-load.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-modules-load.service","unit_text":"# /lib/systemd/system/systemd-modules-load.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Modules\nDocumentation=man:systemd-modules-load.service(8) man:modules-load.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nConditionCapability=CAP_SYS_MODULE\nConditionDirectoryNotEmpty=|/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/local/lib/modules-load.d\nConditionDirectoryNotEmpty=|/etc/modules-load.d\nConditionDirectoryNotEmpty=|/run/modules-load.d\nConditionKernelCommandLine=|modules-load\nConditionKernelCommandLine=|modules_load\nConditionKernelCommandLine=|rd.modules-load\nConditionKernelCommandLine=|rd.modules_load\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-modules-load\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-network-generator ; argv[]=/lib/systemd/systemd-network-generator ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-network-generator.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-network-generator.service","unit_text":"# /lib/systemd/system/systemd-network-generator.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Generate network units from Kernel command line\nDocumentation=man:systemd-network-generator.service(8)\n\nDefaultDependencies=no\nBefore=network-pre.target systemd-udevd.service\nWants=network-pre.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-network-generator\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd-wait-online ; argv[]=/lib/systemd/systemd-networkd-wait-online ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd-wait-online.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd-wait-online.service","unit_text":"# /lib/systemd/system/systemd-networkd-wait-online.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait for Network to be Configured\nDocumentation=man:systemd-networkd-wait-online.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBindsTo=systemd-networkd.service\nAfter=systemd-networkd.service\nBefore=network-online.target shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-networkd-wait-online\nRemainAfterExit=yes\n\n[Install]\nWantedBy=network-online.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-networkd-wait-online@.service","unit_text":"# /lib/systemd/system/systemd-networkd-wait-online@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait for Network Interface %i to be Configured\nDocumentation=man:systemd-networkd-wait-online.service(8)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\nConflicts=shutdown.target\nBindsTo=systemd-networkd.service\nAfter=systemd-networkd.service\nBefore=network-online.target shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-networkd-wait-online -i %i\nRemainAfterExit=yes\n\n[Install]\nWantedBy=network-online.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd ; argv[]=/lib/systemd/systemd-networkd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-networkd.socket","Triggers":"","UnitFileState":"enabled","User":"systemd-network","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd.service","unit_text":"# /lib/systemd/system/systemd-networkd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Configuration\nDocumentation=man:systemd-networkd.service(8)\nDocumentation=man:org.freedesktop.network1(5)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\n# systemd-udevd.service can be dropped once tuntap is moved to netlink\nAfter=systemd-networkd.socket systemd-udevd.service network-pre.target systemd-sysusers.service systemd-sysctl.service\nBefore=network.target multi-user.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=systemd-networkd.socket network.target\n\n[Service]\nAmbientCapabilities=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nBusName=org.freedesktop.network1\nCapabilityBoundingSet=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nDeviceAllow=char-* rw\nExecStart=!!/lib/systemd/systemd-networkd\nExecReload=networkctl reload\nFileDescriptorStoreMax=512\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nRestart=on-failure\nRestartKillSignal=SIGUSR2\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6 AF_PACKET\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/netif\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-network\nWatchdogSec=3min\n\n[Install]\nWantedBy=multi-user.target\nAlso=systemd-networkd.socket\nAlias=dbus-org.freedesktop.network1.service\n\n# The output from this generator is used by udevd and networkd. Enable it by\n# default when enabling systemd-networkd.service.\nAlso=systemd-network-generator.service\n\n# We want to enable systemd-networkd-wait-online.service whenever this service\n# is enabled. systemd-networkd-wait-online.service has\n# WantedBy=network-online.target, so enabling it only has an effect if\n# network-online.target itself is enabled or pulled in by some other unit.\nAlso=systemd-networkd-wait-online.service"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-networkd.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-networkd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd.socket","unit_text":"# /lib/systemd/system/systemd-networkd.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Service Netlink Socket\nDocumentation=man:systemd-networkd.service(8) man:rtnetlink(7)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\nBefore=sockets.target shutdown.target\nConflicts=shutdown.target\n\n[Socket]\nReceiveBuffer=128M\nListenNetlink=route 1361\nPassPacketInfo=yes\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful enter-initrd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase-initrd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase-initrd.service","unit_text":"# /lib/systemd/system/systemd-pcrphase-initrd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (initrd)\nDocumentation=man:systemd-pcrphase-initrd.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target initrd-switch-root.target\nBefore=sysinit.target cryptsetup-pre.target cryptsetup.target shutdown.target initrd-switch-root.target systemd-sysext.service\nConditionPathExists=/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful enter-initrd\nExecStop=/lib/systemd/systemd-pcrphase --graceful leave-initrd"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful sysinit ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase-sysinit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase-sysinit.service","unit_text":"# /lib/systemd/system/systemd-pcrphase-sysinit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (Initialization)\nDocumentation=man:systemd-pcrphase-sysinit.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysinit.target\nBefore=basic.target shutdown.target\nConditionPathExists=!/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful sysinit\nExecStop=/lib/systemd/systemd-pcrphase --graceful final"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful ready ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase.service","unit_text":"# /lib/systemd/system/systemd-pcrphase.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (User)\nDocumentation=man:systemd-pcrphase.service(8)\nAfter=remote-fs.target remote-cryptsetup.target\nBefore=<REDACTED>\nConditionPathExists=!/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful ready\nExecStop=/lib/systemd/systemd-pcrphase --graceful shutdown"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-poweroff.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-poweroff.service","unit_text":"# /lib/systemd/system/systemd-poweroff.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Power Off\nDocumentation=man:systemd-poweroff.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=poweroff-force"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pstore ; argv[]=/lib/systemd/systemd-pstore ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pstore.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pstore.service","unit_text":"# /lib/systemd/system/systemd-pstore.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Platform Persistent Storage Archival\nDocumentation=man:systemd-pstore(8)\nConditionDirectoryNotEmpty=/sys/fs/pstore\nConditionVirtualization=!container\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nAfter=modprobe@efi_pstore.service\nWants=modprobe@efi_pstore.service\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-pstore\nRemainAfterExit=yes\nStateDirectory=systemd/pstore\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-quotacheck ; argv[]=/lib/systemd/systemd-quotacheck ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-quotacheck.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-quotacheck.service","unit_text":"# /lib/systemd/system/systemd-quotacheck.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Quota Check\nDocumentation=man:systemd-quotacheck.service(8)\nDefaultDependencies=no\nAfter=systemd-remount-fs.service\nBefore=remote-fs.target shutdown.target\nConditionPathExists=/sbin/quotacheck\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-quotacheck\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-random-seed ; argv[]=/lib/systemd/systemd-random-seed load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-random-seed.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-random-seed.service","unit_text":"# /lib/systemd/system/systemd-random-seed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save Random Seed\nDocumentation=man:systemd-random-seed.service(8) man:random(4)\nDefaultDependencies=no\nRequiresMountsFor=/var/lib/systemd/random-seed\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service\nBefore=first-boot-complete.target shutdown.target\nWants=first-boot-complete.target\nConditionVirtualization=!container\nConditionPathExists=!/etc/initrd-release\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-random-seed load\nExecStop=/lib/systemd/systemd-random-seed save\n\n# This service waits until the kernel's entropy pool is initialized, and may be\n# used as ordering barrier for service that require an initialized entropy\n# pool. Since initialization can take a while on entropy-starved systems, let's\n# increase the timeout substantially here.\nTimeoutSec=10min"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-reboot.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-reboot.service","unit_text":"# /lib/systemd/system/systemd-reboot.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Reboot\nDocumentation=man:systemd-reboot.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=reboot-force"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-remount-fs ; argv[]=/lib/systemd/systemd-remount-fs ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-remount-fs.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-remount-fs.service","unit_text":"# /lib/systemd/system/systemd-remount-fs.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Remount Root and Kernel File Systems\nDocumentation=man:systemd-remount-fs.service(8)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/APIFileSystems\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-fsck-root.service\nBefore=local-fs-pre.target local-fs.target shutdown.target\nWants=local-fs-pre.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-remount-fs"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/systemd-repart ; argv[]=/bin/systemd-repart --dry-run=no ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-repart.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-repart.service","unit_text":"# /lib/systemd/system/systemd-repart.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Repartition Root Disk\nDocumentation=man:systemd-repart.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nWants=modprobe@loop.service modprobe@dm_mod.service\nAfter=initrd-usr-fs.target modprobe@loop.service modprobe@dm_mod.service\nBefore=initrd-root-fs.target shutdown.target\nConditionVirtualization=!container\nConditionDirectoryNotEmpty=|/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/usr/local/lib/repart.d\nConditionDirectoryNotEmpty=|/etc/repart.d\nConditionDirectoryNotEmpty=|/run/repart.d\nConditionDirectoryNotEmpty=|/sysroot/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/sysroot/usr/local/lib/repart.d\nConditionDirectoryNotEmpty=|/sysroot/etc/repart.d\nConditionDirectoryNotEmpty=|/sysusr/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/sysusr/usr/local/lib/repart.d\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/bin/systemd-repart --dry-run=no\n\n# The tool returns 77 if there's no existing GPT partition table\nSuccessExitStatus=77"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-resolved ; argv[]=/lib/systemd/systemd-resolved ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-resolved.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-resolve","WorkingDirectory":""},"source_linked":false,"unit":"systemd-resolved.service","unit_text":"# /lib/systemd/system/systemd-resolved.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Name Resolution\nDocumentation=man:systemd-resolved.service(8)\nDocumentation=man:org.freedesktop.resolve1(5)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-network-configuration-managers\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-resolver-clients\n\nDefaultDependencies=no\nAfter=systemd-sysctl.service systemd-sysusers.service\nBefore=sysinit.target network.target nss-lookup.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=nss-lookup.target\n\n[Service]\nAmbientCapabilities=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nBusName=org.freedesktop.resolve1\nCapabilityBoundingSet=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nExecStart=!!/lib/systemd/systemd-resolved\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/resolve\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-resolve\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.resolve1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-rfkill ; argv[]=/lib/systemd/systemd-rfkill ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-rfkill.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-rfkill.service","unit_text":"# /lib/systemd/system/systemd-rfkill.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save RF Kill Switch Status\nDocumentation=man:systemd-rfkill.service(8)\nDefaultDependencies=no\nBindsTo=sys-devices-virtual-misc-rfkill.device\nConflicts=shutdown.target\nAfter=sys-devices-virtual-misc-rfkill.device\nBefore=shutdown.target\n\n[Service]\nExecStart=/lib/systemd/systemd-rfkill\nNoNewPrivileges=yes\nStateDirectory=systemd/rfkill\nTimeoutSec=30s\nType=notify"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-rfkill.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"systemd-rfkill.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-rfkill.socket","unit_text":"# /lib/systemd/system/systemd-rfkill.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save RF Kill Switch Status /dev/rfkill Watch\nDocumentation=man:systemd-rfkill.socket(8)\nDefaultDependencies=no\nBindsTo=sys-devices-virtual-misc-rfkill.device\nAfter=sys-devices-virtual-misc-rfkill.device systemd-remount-fs.service\nRequiresMountsFor=/var/lib/systemd/rfkill\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Socket]\nListenSpecial=/dev/rfkill\nWritable=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep suspend-then-hibernate ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-suspend-then-hibernate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-suspend-then-hibernate.service","unit_text":"# /lib/systemd/system/systemd-suspend-then-hibernate.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Suspend then Hibernate\nDocumentation=man:systemd-suspend-then-hibernate.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep suspend-then-hibernate"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep suspend ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-suspend.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-suspend.service","unit_text":"# /lib/systemd/system/systemd-suspend.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Suspend\nDocumentation=man:systemd-suspend.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep suspend"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-sysctl ; argv[]=/lib/systemd/systemd-sysctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysctl.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysctl.service","unit_text":"# /lib/systemd/system/systemd-sysctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Apply Kernel Variables\nDocumentation=man:systemd-sysctl.service(8) man:sysctl.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-modules-load.service\nBefore=sysinit.target shutdown.target\nConditionPathIsReadWrite=/proc/sys/net/\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-sysctl\nTimeoutSec=90s\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-sysext ; argv[]=systemd-sysext merge ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysext.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysext.service","unit_text":"# /lib/systemd/system/systemd-sysext.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Merge System Extension Images into /usr/ and /opt/\nDocumentation=man:systemd-sysext.service(8)\n\nConditionCapability=CAP_SYS_ADMIN\nConditionDirectoryNotEmpty=|/etc/extensions\nConditionDirectoryNotEmpty=|/run/extensions\nConditionDirectoryNotEmpty=|/var/lib/extensions\nConditionDirectoryNotEmpty=|/usr/local/lib/extensions\nConditionDirectoryNotEmpty=|/usr/lib/extensions\n\nDefaultDependencies=no\nAfter=local-fs.target\nBefore=sysinit.target systemd-tmpfiles-setup.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-sysext merge\nExecStop=systemd-sysext unmerge\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-sysusers ; argv[]=systemd-sysusers ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysusers.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysusers.service","unit_text":"# /lib/systemd/system/systemd-sysusers.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create System Users\nDocumentation=man:sysusers.d(5) man:systemd-sysusers.service(8)\n\nDefaultDependencies=no\nAfter=systemd-remount-fs.service\nBefore=sysinit.target systemd-update-done.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\nConditionNeedsUpdate=|/etc\nConditionCredential=<REDACTED>\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-sysusers\nTimeoutSec=90s\n\n<REDACTED_SECRET_LINE>\n<REDACTED_SECRET_LINE>\n# data from nspawn's --set-credential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\n\n<REDACTED_SECRET_LINE>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-time-wait-sync ; argv[]=/lib/systemd/systemd-time-wait-sync ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-time-wait-sync.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-time-wait-sync.service","unit_text":"# /lib/systemd/system/systemd-time-wait-sync.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait Until Kernel Time Synchronized\nDocumentation=man:systemd-time-wait-sync.service(8)\n\n# Note that this tool doesn't need CAP_SYS_TIME itself, but its primary\n# usecase is to run in conjunction with a local NTP service such as\n# systemd-timesyncd.service, which is conditioned this way. There might be\n# niche usecases where running this service independently is desired, but let's\n# make this all \"just work\" for the general case, and leave it to local\n# modifications to make it work in the remaining cases.\n\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\n\nDefaultDependencies=no\nBefore=time-sync.target shutdown.target\nWants=time-sync.target\nConflicts=shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-time-wait-sync\nTimeoutStartSec=infinity\nRemainAfterExit=yes\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-timedated ; argv[]=/lib/systemd/systemd-timedated ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timedated.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-timedated.service","unit_text":"# /lib/systemd/system/systemd-timedated.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Time & Date Service\nDocumentation=man:systemd-timedated.service(8)\nDocumentation=man:localtime(5)\nDocumentation=man:org.freedesktop.timedate1(5)\n\n[Service]\nBusName=org.freedesktop.timedate1\nCapabilityBoundingSet=CAP_SYS_TIME\nDeviceAllow=char-rtc r\nExecStart=/lib/systemd/systemd-timedated\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-timesyncd ; argv[]=/lib/systemd/systemd-timesyncd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timesyncd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-timesync","WorkingDirectory":""},"source_linked":false,"unit":"systemd-timesyncd.service","unit_text":"# /lib/systemd/system/systemd-timesyncd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Time Synchronization\nDocumentation=man:systemd-timesyncd.service(8)\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=time-set.target sysinit.target shutdown.target\nConflicts=shutdown.target\nWants=time-set.target\n\n[Service]\nAmbientCapabilities=CAP_SYS_TIME\nBusName=org.freedesktop.timesync1\nCapabilityBoundingSet=CAP_SYS_TIME\n# Turn off DNSSEC validation for hostname look-ups, since those need the\n# correct time to work, but we likely won't acquire that without NTP. Let's\n# break this chicken-and-egg cycle here.\nEnvironment=SYSTEMD_NSS_RESOLVE_VALIDATE=0\nExecStart=!!/lib/systemd/systemd-timesyncd\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/timesync\nStateDirectory=systemd/timesync\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nType=notify\nUser=systemd-timesync\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.timesync1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --clean ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-clean.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-tmpfiles-clean.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-clean.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-clean.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleanup of Temporary Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=local-fs.target time-set.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nExecStart=systemd-tmpfiles --clean\nSuccessExitStatus=DATAERR\nIOSchedulingClass=idle\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-clean.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-tmpfiles-clean.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-tmpfiles-clean.timer","unit_text":"# /lib/systemd/system/systemd-tmpfiles-clean.timer\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Daily Cleanup of Temporary Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\nConditionPathExists=!/etc/initrd-release\n\n[Timer]\nOnBootSec=15min\nOnUnitActiveSec=1d"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --prefix=/dev --create --boot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-setup-dev.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-setup-dev.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-setup-dev.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create Static Device Nodes in /dev\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=sysinit.target local-fs-pre.target systemd-udevd.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-tmpfiles --prefix=/dev --create --boot\nSuccessExitStatus=DATAERR CANTCREAT\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --create --remove --boot --exclude-prefix=/dev ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-setup.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-setup.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-setup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create System Files and Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=local-fs.target systemd-sysusers.service systemd-journald.service\nBefore=sysinit.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\nRefuseManualStop=yes\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-tmpfiles --create --remove --boot --exclude-prefix=/dev\nSuccessExitStatus=DATAERR CANTCREAT\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=udevadm ; argv[]=udevadm settle ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udev-settle.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udev-settle.service","unit_text":"# /lib/systemd/system/systemd-udev-settle.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n# This service can dynamically be pulled-in by legacy services which\n# cannot reliably cope with dynamic device configurations, and wrongfully\n# expect a populated /dev during bootup.\n\n[Unit]\nDescription=Wait for udev To Complete Device Initialization\nDocumentation=man:systemd-udev-settle.service(8)\nDefaultDependencies=no\nWants=systemd-udevd.service\nAfter=systemd-udev-trigger.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nType=oneshot\nTimeoutSec=180\nRemainAfterExit=yes\nExecStart=udevadm settle"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=udevadm ; argv[]=udevadm trigger --type=all --action=add --prioritized-subsystem=module,block,tpmrm,net,tty,input ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udev-trigger.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udev-trigger.service","unit_text":"# /lib/systemd/system/systemd-udev-trigger.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Coldplug All udev Devices\nDocumentation=man:udev(7) man:systemd-udevd.service(8)\nDefaultDependencies=no\nWants=systemd-udevd.service\nAfter=systemd-udevd-kernel.socket systemd-udevd-control.socket\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=-udevadm trigger --type=all --action=add --prioritized-subsystem=module,block,tpmrm,net,tty,input"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-udevd-control.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-udevd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd-control.socket","unit_text":"# /lib/systemd/system/systemd-udevd-control.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=udev Control Socket\nDocumentation=man:systemd-udevd-control.socket(8) man:udev(7)\nDefaultDependencies=no\nBefore=sockets.target\nConditionPathIsReadWrite=/sys\n\n[Socket]\nService=systemd-udevd.service\nListenSequentialPacket=/run/udev/control\nSocketMode=0600\nPassCredentials=<REDACTED>\nRemoveOnStop=yes"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-udevd-kernel.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-udevd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd-kernel.socket","unit_text":"# /lib/systemd/system/systemd-udevd-kernel.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=udev Kernel Socket\nDocumentation=man:systemd-udevd-kernel.socket(8) man:udev(7)\nDefaultDependencies=no\nBefore=sockets.target\nConditionPathIsReadWrite=/sys\n\n[Socket]\nService=systemd-udevd.service\nReceiveBuffer=128M\nListenNetlink=kobject-uevent 1\nPassCredentials=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-udevd ; argv[]=/lib/systemd/systemd-udevd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udevd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-udevd-control.socket systemd-udevd-kernel.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd.service","unit_text":"# /lib/systemd/system/systemd-udevd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rule-based Manager for Device Events and Files\nDocumentation=man:systemd-udevd.service(8) man:udev(7)\nDefaultDependencies=no\nAfter=systemd-sysusers.service systemd-hwdb-update.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nCapabilityBoundingSet=~CAP_SYS_TIME CAP_WAKE_ALARM\nDelegate=pids\nType=notify\n# Note that udev will reset the value internally for its workers\nOOMScoreAdjust=-1000\nSockets=systemd-udevd-control.socket systemd-udevd-kernel.socket\nRestart=always\nRestartSec=0\nExecStart=/lib/systemd/systemd-udevd\nExecReload=udevadm control --reload --timeout 0\nKillMode=mixed\nTasksMax=infinity\nPrivateMounts=yes\nProtectHostname=yes\nMemoryDenyWriteExecute=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallFilter=@system-service @module @raw-io bpf\nSystemCallFilter=~@clock\nSystemCallErrorNumber=EPERM\nLockPersonality=yes\nIPAddressDeny=any\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-update-utmp ; argv[]=/lib/systemd/systemd-update-utmp runlevel ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-update-utmp-runlevel.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-update-utmp-runlevel.service","unit_text":"# /lib/systemd/system/systemd-update-utmp-runlevel.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Record Runlevel Change in UTMP\nDocumentation=man:systemd-update-utmp-runlevel.service(8) man:utmp(5)\nDefaultDependencies=no\nRequiresMountsFor=/var/log/wtmp\nConflicts=shutdown.target\nRequisite=systemd-update-utmp.service\nAfter=systemd-update-utmp.service\nAfter=runlevel1.target runlevel2.target runlevel3.target runlevel4.target runlevel5.target\nBefore=shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-update-utmp runlevel"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-update-utmp ; argv[]=/lib/systemd/systemd-update-utmp reboot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-update-utmp.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-update-utmp.service","unit_text":"# /lib/systemd/system/systemd-update-utmp.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Record System Boot/Shutdown in UTMP\nDocumentation=man:systemd-update-utmp.service(8) man:utmp(5)\nDefaultDependencies=no\nRequiresMountsFor=/var/log/wtmp\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service systemd-tmpfiles-setup.service auditd.service\nBefore=sysinit.target shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-update-utmp reboot\nExecStop=/lib/systemd/systemd-update-utmp shutdown"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-user-sessions ; argv[]=/lib/systemd/systemd-user-sessions start ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-user-sessions.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-user-sessions.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\nAfter=remote-fs.target nss-user-lookup.target network.target home.mount\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=<REDACTED>\nExecStop=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-volatile-root ; argv[]=/lib/systemd/systemd-volatile-root yes /sysroot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-volatile-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-volatile-root.service","unit_text":"# /lib/systemd/system/systemd-volatile-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Enforce Volatile Root File Systems\nDocumentation=man:systemd-volatile-root.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysroot.mount sysroot-usr.mount systemd-repart.service\nBefore=initrd-root-fs.target shutdown.target\nAssertPathExists=/etc/initrd-release\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-volatile-root yes /sysroot"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-udevd ; argv[]=/lib/systemd/systemd-udevd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udevd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-udevd-control.socket systemd-udevd-kernel.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"udev.service","unit_text":"# /lib/systemd/system/systemd-udevd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rule-based Manager for Device Events and Files\nDocumentation=man:systemd-udevd.service(8) man:udev(7)\nDefaultDependencies=no\nAfter=systemd-sysusers.service systemd-hwdb-update.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nCapabilityBoundingSet=~CAP_SYS_TIME CAP_WAKE_ALARM\nDelegate=pids\nType=notify\n# Note that udev will reset the value internally for its workers\nOOMScoreAdjust=-1000\nSockets=systemd-udevd-control.socket systemd-udevd-kernel.socket\nRestart=always\nRestartSec=0\nExecStart=/lib/systemd/systemd-udevd\nExecReload=udevadm control --reload --timeout 0\nKillMode=mixed\nTasksMax=infinity\nPrivateMounts=yes\nProtectHostname=yes\nMemoryDenyWriteExecute=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallFilter=@system-service @module @raw-io bpf\nSystemCallFilter=~@clock\nSystemCallErrorNumber=EPERM\nLockPersonality=yes\nIPAddressDeny=any\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/share/unattended-upgrades/unattended-upgrade-shutdown ; argv[]=/usr/share/unattended-upgrades/unattended-upgrade-shutdown --wait-for-signal ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/unattended-upgrades.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"unattended-upgrades.service","unit_text":"# /lib/systemd/system/unattended-upgrades.service\n[Unit]\nDescription=Unattended Upgrades Shutdown\nAfter=network.target local-fs.target systemd-logind.service\nRequiresMountsFor=/run /var/log /var/run /var/lib /boot\nDocumentation=man:unattended-upgrade(8)\n\n[Service]\nExecStart=/usr/share/unattended-upgrades/unattended-upgrade-shutdown --wait-for-signal\nKillMode=process\nTimeoutStopSec=1800\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"user-runtime-dir@.service","unit_text":"# /lib/systemd/system/user-runtime-dir@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Runtime Directory /run/user/%i\nDocumentation=man:user@.service(5)\nAfter=dbus.service\nStopWhenUnneeded=yes\nIgnoreOnIsolate=yes\n\n[Service]\nExecStart=/lib/systemd/systemd-user-runtime-dir start %i\nExecStop=/lib/systemd/systemd-user-runtime-dir stop %i\nType=oneshot\nRemainAfterExit=yes\nSlice=user-%i.slice"},{"project_linked":true,"show":{},"source_linked":false,"unit":"user@.service","unit_text":"# /lib/systemd/system/user@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Manager for UID %i\nDocumentation=man:user@.service(5)\nAfter=user-runtime-dir@%i.service dbus.service systemd-oomd.service\nRequires=user-runtime-dir@%i.service\nIgnoreOnIsolate=yes\n\n[Service]\nUser=%i\nPAMName=systemd-user\nType=notify\nExecStart=/lib/systemd/systemd --user\nSlice=user-%i.slice\nKillMode=mixed\nDelegate=pids memory cpu\nTasksMax=infinity\nTimeoutStopSec=120s\nKeyringMode=inherit\nOOMScoreAdjust=100\n\n# /usr/lib/systemd/system/user@.service.d/10-login-barrier.conf\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\n# Make sure user instances are started after logins are allowed. However this\n# is not desirable for user@0.service since root should be able to log in\n# earlier during the boot process especially if something goes wrong.\nAfter=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/uuidd ; argv[]=/usr/sbin/uuidd --socket-activation ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/uuidd.service","Group":"uuidd","LoadState":"loaded","SubState":"dead","TriggeredBy":"uuidd.socket","Triggers":"","UnitFileState":"indirect","User":"uuidd","WorkingDirectory":""},"source_linked":false,"unit":"uuidd.service","unit_text":"# /lib/systemd/system/uuidd.service\n[Unit]\nDescription=Daemon for generating UUIDs\nDocumentation=man:uuidd(8)\nRequires=uuidd.socket\n\n[Service]\nExecStart=/usr/sbin/uuidd --socket-activation\nRestart=no\nUser=uuidd\nGroup=uuidd\nProtectSystem=strict\nProtectHome=yes\nPrivateDevices=yes\nPrivateUsers=yes\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectControlGroups=yes\nMemoryDenyWriteExecute=yes\nReadWritePaths=/var/lib/libuuid/\nSystemCallFilter=@default @file-system @basic-io @system-service @signal @io-event @network-io\n\n[Install]\nAlso=uuidd.socket"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/uuidd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"uuidd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"uuidd.socket","unit_text":"# /lib/systemd/system/uuidd.socket\n[Unit]\nDescription=UUID daemon activation socket\n\n[Socket]\nListenStream=/run/uuidd/request\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/x11-common.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"x11-common.service","unit_text":"# Unit x11-common.service is masked."}],"source_references":[],"units":[{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/apparmor/apparmor.systemd ; argv[]=/lib/apparmor/apparmor.systemd reload ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apparmor.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apparmor.service","unit_text":"# /lib/systemd/system/apparmor.service\n[Unit]\nDescription=Load AppArmor profiles\nDefaultDependencies=no\nBefore=sysinit.target\nAfter=local-fs.target\nAfter=systemd-journald-audit.socket\nRequiresMountsFor=/var/cache/apparmor\nAssertPathIsReadWrite=/sys/kernel/security/apparmor/.load\nConditionSecurity=apparmor\nDocumentation=man:apparmor(7)\nDocumentation=https://gitlab.com/apparmor/apparmor/wikis/home/\n\n# Don't start this unit on the Ubuntu Live CD\nConditionPathExists=!/rofs/etc/apparmor.d\n\n# Don't start this unit on the Debian Live CD when using overlayfs\nConditionPathExists=!/run/live/overlay/work\n\n[Service]\nType=oneshot\nExecStart=/lib/apparmor/apparmor.systemd reload\nExecReload=/lib/apparmor/apparmor.systemd reload\n\n# systemd maps 'restart' to 'stop; start' which means removing AppArmor confinement\n# from running processes (and not being able to re-apply it later).\n# Upstream systemd developers refused to implement an option that allows overriding\n# this behaviour, therefore we have to make ExecStop a no-op to error out on the\n# safe side.\n#\n# If you really want to unload all AppArmor profiles, run aa-teardown\nExecStop=/bin/true\nRemainAfterExit=yes\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/apt/apt.systemd.daily ; argv[]=/usr/lib/apt/apt.systemd.daily install ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apt-daily-upgrade.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"apt-daily-upgrade.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apt-daily-upgrade.service","unit_text":"# /lib/systemd/system/apt-daily-upgrade.service\n[Unit]\nDescription=Daily apt upgrade and clean activities\nDocumentation=man:apt(8)\nConditionACPower=true\nAfter=apt-daily.service network.target network-online.target systemd-networkd.service NetworkManager.service connman.service\n\n[Service]\nType=oneshot\nExecStartPre=-/usr/lib/apt/apt-helper wait-online\nExecStart=/usr/lib/apt/apt.systemd.daily install\nKillMode=process\nTimeoutStopSec=900"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/apt-daily-upgrade.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"apt-daily-upgrade.service","UnitFileState":"enabled"},"source_linked":false,"unit":"apt-daily-upgrade.timer","unit_text":"# /lib/systemd/system/apt-daily-upgrade.timer\n[Unit]\nDescription=Daily apt upgrade and clean activities\nAfter=apt-daily.timer\n\n[Timer]\nOnCalendar=*-*-* 6:00\nRandomizedDelaySec=60m\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/apt/apt.systemd.daily ; argv[]=/usr/lib/apt/apt.systemd.daily update ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/apt-daily.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"apt-daily.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"apt-daily.service","unit_text":"# /lib/systemd/system/apt-daily.service\n[Unit]\nDescription=Daily apt download activities\nDocumentation=man:apt(8)\nConditionACPower=true\nAfter=network.target network-online.target systemd-networkd.service NetworkManager.service connman.service\n\n[Service]\nType=oneshot\nExecStartPre=-/usr/lib/apt/apt-helper wait-online\nExecStart=/usr/lib/apt/apt.systemd.daily update\n"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/apt-daily.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"apt-daily.service","UnitFileState":"enabled"},"source_linked":false,"unit":"apt-daily.timer","unit_text":"# /lib/systemd/system/apt-daily.timer\n[Unit]\nDescription=Daily apt download activities\n\n[Timer]\nOnCalendar=*-*-* 6,18:00\nRandomizedDelaySec=12h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"autovt@.service","unit_text":"# /lib/systemd/system/getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n# On systems without virtual consoles, don't start any getty. Note\n# that serial gettys are covered by serial-getty@.service, not this\n# unit.\nConditionPathExists=/dev/tty0\n\n[Service]\n# the VT is cleared by TTYVTDisallocate\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nTTYVTDisallocate=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=getty.target\nDefaultInstance=tty1"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init modules --mode=config ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-config.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-config.service","unit_text":"# /lib/systemd/system/cloud-config.service\n[Unit]\nDescription=Apply the settings specified in cloud-config\nAfter=network-online.target cloud-config.target\nAfter=snapd.seeded.service\nWants=network-online.target cloud-config.target\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init modules --mode=config\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init modules --mode=final ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-final.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-final.service","unit_text":"# /lib/systemd/system/cloud-final.service\n[Unit]\nDescription=Execute cloud user/final scripts\nAfter=network-online.target cloud-config.service rc-local.service\nAfter=multi-user.target\nBefore=apt-daily.service\nWants=network-online.target cloud-config.service\n\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init modules --mode=final\nRemainAfterExit=yes\nTimeoutSec=0\nKillMode=process\nTasksMax=infinity\n\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/bash ; argv[]=/bin/bash -c read args <&3; echo \"args=$args\"; exec /usr/bin/cloud-init devel hotplug-hook $args; exit 0 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init-hotplugd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"cloud-init-hotplugd.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-hotplugd.service","unit_text":"# /lib/systemd/system/cloud-init-hotplugd.service\n# Paired with cloud-init-hotplugd.socket to read from the FIFO\n# /run/cloud-init/share/hook-hotplug-cmd which is created during a\n# udev network add or remove event as processed by\n# 10-cloud-init-hook-hotplug.rules.\n\n# On start, read args from the FIFO, process and provide structured arguments\n# to `cloud-init devel hotplug-hook` which will setup or teardown network\n# devices as configured by user-data.\n\n# Known bug with an enforcing SELinux policy: LP: #1936229\n# cloud-init-hotplud.service will read args from file descriptor 3\n\n[Unit]\nDescription=cloud-init hotplug hook daemon\nAfter=cloud-init-hotplugd.socket\nRequires=cloud-init-hotplugd.socket\n\n[Service]\nType=simple\nExecStart=/bin/bash -c 'read args <&3; echo \"args=$args\"; \\\n exec /usr/bin/cloud-init devel hotplug-hook $args; \\\n exit 0'\nSyslogIdentifier=cloud-init-hotplugd\nTimeoutStopSec=5"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/cloud-init-hotplugd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"cloud-init-hotplugd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-hotplugd.socket","unit_text":"# /lib/systemd/system/cloud-init-hotplugd.socket\n# cloud-init-hotplugd.socket listens on the FIFO file\n# /run/cloud-init/share/hook-hotplug-cmd which is created during a\n# udev network add or remove event as processed by\n# 10-cloud-init-hook-hotplug.rules.\n\n# Known bug with an enforcing SELinux policy: LP: #1936229\n[Unit]\nDescription=cloud-init hotplug hook socket\n\n[Socket]\nListenFIFO=/run/cloud-init/share/hook-hotplug-cmd\nSocketMode=0600\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init init --local ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init-local.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init-local.service","unit_text":"# /lib/systemd/system/cloud-init-local.service\n[Unit]\nDescription=Initial cloud-init job (pre-networking)\nDefaultDependencies=no\nWants=network-pre.target\nAfter=hv_kvp_daemon.service\nAfter=systemd-remount-fs.service\nBefore=NetworkManager.service\nBefore=network-pre.target\nBefore=shutdown.target\nBefore=sysinit.target\nConflicts=shutdown.target\nRequiresMountsFor=/var/lib/cloud\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init init --local\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/cloud-init ; argv[]=/usr/bin/cloud-init init ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/cloud-init.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cloud-init.service","unit_text":"# /lib/systemd/system/cloud-init.service\n[Unit]\nDescription=Initial cloud-init job (metadata service crawler)\nDefaultDependencies=no\nWants=cloud-init-local.service\nWants=sshd-keygen.service\nWants=sshd.service\nAfter=cloud-init-local.service\nAfter=systemd-networkd-wait-online.service\nAfter=networking.service\nBefore=network-online.target\nBefore=chronyd.service\nBefore=sshd-keygen.service\nBefore=sshd.service\nBefore=sysinit.target\nBefore=shutdown.target\nConflicts=shutdown.target\nBefore=<REDACTED>\n\n[Service]\nType=oneshot\nExecStart=/usr/bin/cloud-init init\nRemainAfterExit=yes\nTimeoutSec=0\n\n# Output needs to appear in instance console output\nStandardOutput=journal+console\n\n[Install]\nWantedBy=cloud-init.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:15 UTC] ; stop_time=[Wed 2026-08-05 16:36:15 UTC] ; pid=2041570 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.service","Group":"clusteradmin","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-incident-engine-collector.timer","Triggers":"","UnitFileState":"static","User":"clusteradmin","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"source_linked":false,"unit":"cluster-admin-incident-engine-collector.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.service\n[Unit]\nDescription=Cluster Admin inventory metrics and incident collector\nAfter=network-online.target postgresql.service cluster-admin-incident-engine.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nExecStart=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine /var/lib/homelab-health"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-incident-engine-collector.service","UnitFileState":"enabled"},"source_linked":false,"unit":"cluster-admin-incident-engine-collector.timer","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.timer\n[Unit]\nDescription=Run Cluster Admin incident collector every minute\n\n[Timer]\nOnBootSec=30s\nOnUnitActiveSec=60s\nAccuracySec=10s\nPersistent=true\nUnit=cluster-admin-incident-engine-collector.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/cluster-admin-incident-engine/runtime.conf (ignore_errors=no)","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=[PRIVATE_IP],127.0.0.1 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine.service","Group":"clusteradmin","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"clusteradmin","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"source_linked":false,"unit":"cluster-admin-incident-engine.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine.service\n[Unit]\nDescription=Cluster Admin Incident Engine web application\nAfter=network-online.target postgresql.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=simple\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nEnvironmentFile=/etc/cluster-admin-incident-engine/runtime.conf\nExecStart=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>\nRestart=on-failure\nRestartSec=5\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine\nRestrictSUIDSGID=true\nLockPersonality=true\nRestrictRealtime=true\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:08 UTC] ; stop_time=[Wed 2026-08-05 16:36:09 UTC] ; pid=2041551 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.service","Group":"clusteradmin","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-probe-agent.timer","Triggers":"","UnitFileState":"static","User":"clusteradmin","WorkingDirectory":""},"source_linked":false,"unit":"cluster-admin-probe-agent.service","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.service\n[Unit]\nDescription=Cluster Admin restricted read-only probe controller\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nEnvironment=CLUSTER_ADMIN_PROBE_HEALTH=/var/lib/cluster-admin-probe-agent/cluster-admin-probe-agent.txt\nExecStart=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run\nUMask=0077\nNoNewPrivileges=yes\nPrivateTmp=yes\nPrivateDevices=yes\nProtectSystem=strict\nProtectHome=yes\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectKernelLogs=yes\nProtectControlGroups=yes\nProtectClock=yes\nProtectHostname=yes\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nRestrictSUIDSGID=yes\nRestrictRealtime=yes\nRemoveIPC=yes\nCapabilityBoundingSet=\nAmbientCapabilities=\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nIPAddressDeny=any\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nReadOnlyPaths=/etc/cluster-admin-probe-agent /opt/cluster-admin-probe-agent\nReadWritePaths=/var/lib/cluster-admin-probe-agent\nStateDirectory=cluster-admin-probe-agent\nStateDirectoryMode=0750\nRuntimeDirectory=cluster-admin-probe-agent\nTimeoutStartSec=70"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-probe-agent.service","UnitFileState":"enabled"},"source_linked":false,"unit":"cluster-admin-probe-agent.timer","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.timer\n[Unit]\nDescription=Run Cluster Admin restricted probes every minute\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=60s\nRandomizedDelaySec=5s\nPersistent=true\nUnit=cluster-admin-probe-agent.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/agetty ; argv[]=/sbin/agetty -o -p -- \\u --noclear --keep-baud - 115200,38400,9600 $TERM ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/console-getty.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"console-getty.service","unit_text":"# /lib/systemd/system/console-getty.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Console Getty\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nAfter=<REDACTED>\nAfter=rc-local.service getty-pre.target\nBefore=getty.target\n\n# OCI containers may be run without a console\nConditionPathExists=/dev/console\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an option to preserve environment (-p),\n# followed by '--' for safety, and then the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear --keep-baud - 115200,38400,9600 $TERM\nType=idle\nRestart=always\nUtmpIdentifier=cons\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/console\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n[Install]\nWantedBy=getty.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"container-getty@.service","unit_text":"# /lib/systemd/system/container-getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Container Getty on /dev/pts/%I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=man:machinectl(1)\nAfter=<REDACTED>\nAfter=rc-local.service getty-pre.target\nBefore=getty.target\nIgnoreOnIsolate=yes\nConditionPathExists=/dev/pts/%I\n\n# IgnoreOnIsolate is an issue: when someone isolates rescue.target,\n# tradition expects that we shut down all but the main console.\nConflicts=rescue.service\nBefore=rescue.service\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an option to preserve environment (-p),\n# followed by '--' for safety, and then the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=pts/%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/pts/%I\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/cryptdisks-early.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cryptdisks-early.service","unit_text":"# Unit cryptdisks-early.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/cryptdisks.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"cryptdisks.service","unit_text":"# Unit cryptdisks.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-hostnamed ; argv[]=/lib/systemd/systemd-hostnamed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hostnamed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.hostname1.service","unit_text":"# /lib/systemd/system/systemd-hostnamed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Hostname Service\nDocumentation=man:systemd-hostnamed.service(8)\nDocumentation=man:hostname(5)\nDocumentation=man:machine-info(5)\nDocumentation=man:org.freedesktop.hostname1(5)\n\n[Service]\nBusName=org.freedesktop.hostname1\nCapabilityBoundingSet=CAP_SYS_ADMIN\nExecStart=/lib/systemd/systemd-hostnamed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc /run/systemd\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service sethostname\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-localed ; argv[]=/lib/systemd/systemd-localed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-localed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.locale1.service","unit_text":"# /lib/systemd/system/systemd-localed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Locale Service\nDocumentation=man:systemd-localed.service(8)\nDocumentation=man:locale.conf(5)\nDocumentation=man:vconsole.conf(5)\nDocumentation=man:org.freedesktop.locale1(5)\n\n[Service]\nBusName=org.freedesktop.locale1\nCapabilityBoundingSet=\nExecStart=/lib/systemd/systemd-localed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nReadWritePaths=/usr/lib/locale\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# /usr/lib/systemd/system/systemd-localed.service.d/locale-gen.conf\n[Service]\n# systemd-localed may run locale-gen which writes to /etc as well as to\n# /usr/lib/locale. This change softens the service hardening a bit so\n# both of these paths are writable.\nReadWritePaths=/usr/lib/locale/"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-logind ; argv[]=/lib/systemd/systemd-logind ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-logind.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.login1.service","unit_text":"# /lib/systemd/system/systemd-logind.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Login Management\nDocumentation=man:sd-login(3)\nDocumentation=man:systemd-logind.service(8)\nDocumentation=man:logind.conf(5)\nDocumentation=man:org.freedesktop.login1(5)\n\nWants=user.slice modprobe@drm.service\nAfter=nss-user-lookup.target user.slice modprobe@drm.service\nConditionPathExists=|/lib/systemd/system/dbus.service\nConditionPathExists=|/lib/systemd/system/dbus-broker.service\n\n# Ask for the dbus socket.\nWants=dbus.socket\nAfter=dbus.socket\n\n[Service]\nBusName=org.freedesktop.login1\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_MAC_ADMIN CAP_AUDIT_CONTROL CAP_CHOWN CAP_DAC_READ_SEARCH CAP_DAC_OVERRIDE CAP_FOWNER CAP_SYS_TTY_CONFIG CAP_LINUX_IMMUTABLE\nDeviceAllow=block-* r\nDeviceAllow=char-/dev/console rw\nDeviceAllow=char-drm rw\nDeviceAllow=char-hvc rw\nDeviceAllow=char-input rw\nDeviceAllow=char-tty rw\nDeviceAllow=char-vcs rw\nExecStart=/lib/systemd/systemd-logind\nFileDescriptorStoreMax=512\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\n# We don't use ProtectProc= since we need to look for usernames and tty for wall messages\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nReadWritePaths=/etc /run\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=<REDACTED>\nRuntimeDirectoryPreserve=yes\nStateDirectory=systemd/linger\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# Increase the default a bit in order to allow many simultaneous logins since\n<REDACTED_SECRET_LINE>\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd ; argv[]=/lib/systemd/systemd-networkd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-networkd.socket","Triggers":"","UnitFileState":"enabled","User":"systemd-network","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.network1.service","unit_text":"# /lib/systemd/system/systemd-networkd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Configuration\nDocumentation=man:systemd-networkd.service(8)\nDocumentation=man:org.freedesktop.network1(5)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\n# systemd-udevd.service can be dropped once tuntap is moved to netlink\nAfter=systemd-networkd.socket systemd-udevd.service network-pre.target systemd-sysusers.service systemd-sysctl.service\nBefore=network.target multi-user.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=systemd-networkd.socket network.target\n\n[Service]\nAmbientCapabilities=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nBusName=org.freedesktop.network1\nCapabilityBoundingSet=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nDeviceAllow=char-* rw\nExecStart=!!/lib/systemd/systemd-networkd\nExecReload=networkctl reload\nFileDescriptorStoreMax=512\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nRestart=on-failure\nRestartKillSignal=SIGUSR2\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6 AF_PACKET\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/netif\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-network\nWatchdogSec=3min\n\n[Install]\nWantedBy=multi-user.target\nAlso=systemd-networkd.socket\nAlias=dbus-org.freedesktop.network1.service\n\n# The output from this generator is used by udevd and networkd. Enable it by\n# default when enabling systemd-networkd.service.\nAlso=systemd-network-generator.service\n\n# We want to enable systemd-networkd-wait-online.service whenever this service\n# is enabled. systemd-networkd-wait-online.service has\n# WantedBy=network-online.target, so enabling it only has an effect if\n# network-online.target itself is enabled or pulled in by some other unit.\nAlso=systemd-networkd-wait-online.service"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-resolved ; argv[]=/lib/systemd/systemd-resolved ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-resolved.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-resolve","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.resolve1.service","unit_text":"# /lib/systemd/system/systemd-resolved.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Name Resolution\nDocumentation=man:systemd-resolved.service(8)\nDocumentation=man:org.freedesktop.resolve1(5)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-network-configuration-managers\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-resolver-clients\n\nDefaultDependencies=no\nAfter=systemd-sysctl.service systemd-sysusers.service\nBefore=sysinit.target network.target nss-lookup.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=nss-lookup.target\n\n[Service]\nAmbientCapabilities=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nBusName=org.freedesktop.resolve1\nCapabilityBoundingSet=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nExecStart=!!/lib/systemd/systemd-resolved\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/resolve\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-resolve\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.resolve1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-timedated ; argv[]=/lib/systemd/systemd-timedated ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timedated.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.timedate1.service","unit_text":"# /lib/systemd/system/systemd-timedated.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Time & Date Service\nDocumentation=man:systemd-timedated.service(8)\nDocumentation=man:localtime(5)\nDocumentation=man:org.freedesktop.timedate1(5)\n\n[Service]\nBusName=org.freedesktop.timedate1\nCapabilityBoundingSet=CAP_SYS_TIME\nDeviceAllow=char-rtc r\nExecStart=/lib/systemd/systemd-timedated\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-timesyncd ; argv[]=/lib/systemd/systemd-timesyncd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timesyncd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-timesync","WorkingDirectory":""},"source_linked":false,"unit":"dbus-org.freedesktop.timesync1.service","unit_text":"# /lib/systemd/system/systemd-timesyncd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Time Synchronization\nDocumentation=man:systemd-timesyncd.service(8)\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=time-set.target sysinit.target shutdown.target\nConflicts=shutdown.target\nWants=time-set.target\n\n[Service]\nAmbientCapabilities=CAP_SYS_TIME\nBusName=org.freedesktop.timesync1\nCapabilityBoundingSet=CAP_SYS_TIME\n# Turn off DNSSEC validation for hostname look-ups, since those need the\n# correct time to work, but we likely won't acquire that without NTP. Let's\n# break this chicken-and-egg cycle here.\nEnvironment=SYSTEMD_NSS_RESOLVE_VALIDATE=0\nExecStart=!!/lib/systemd/systemd-timesyncd\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/timesync\nStateDirectory=systemd/timesync\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nType=notify\nUser=systemd-timesync\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.timesync1.service"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/dbus-daemon ; argv[]=/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/dbus.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"dbus.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus.service","unit_text":"# /lib/systemd/system/dbus.service\n[Unit]\nDescription=D-Bus System Message Bus\nDocumentation=man:dbus-daemon(1)\nRequires=dbus.socket\n\n[Service]\nType=notify\nNotifyAccess=main\nExecStart=/usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation --syslog-only\nExecReload=/usr/bin/dbus-send --print-reply --system --type=method_call --dest=org.freedesktop.DBus / org.freedesktop.DBus.ReloadConfig\nOOMScoreAdjust=-900"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/dbus.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"dbus.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dbus.socket","unit_text":"# /lib/systemd/system/dbus.socket\n[Unit]\nDescription=D-Bus System Message Bus Socket\n\n[Socket]\nListenStream=/run/dbus/system_bus_socket"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/bash ; argv[]=/bin/bash ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/debug-shell.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"debug-shell.service","unit_text":"# /lib/systemd/system/debug-shell.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Early root shell on /dev/tty9 FOR DEBUGGING ONLY\nDocumentation=man:systemd-debug-generator(8)\nDefaultDependencies=no\nIgnoreOnIsolate=yes\nConditionPathExists=/dev/tty9\n\n[Service]\nEnvironment=TERM=linux\nExecStart=/bin/bash\nRestart=always\nRestartSec=0\nStandardInput=tty\nTTYPath=/dev/tty9\nTTYReset=yes\nTTYVHangup=yes\nKillMode=process\nIgnoreSIGPIPE=no\n# bash ignores SIGTERM\nKillSignal=SIGHUP\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/libexec/dpkg/dpkg-db-backup ; argv[]=/usr/libexec/dpkg/dpkg-db-backup ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/dpkg-db-backup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"dpkg-db-backup.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"dpkg-db-backup.service","unit_text":"# /lib/systemd/system/dpkg-db-backup.service\n[Unit]\nDescription=Daily dpkg database backup service\nDocumentation=man:dpkg(1)\n\n[Service]\nType=oneshot\nExecStart=/usr/libexec/dpkg/dpkg-db-backup"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/dpkg-db-backup.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"dpkg-db-backup.service","UnitFileState":"enabled"},"source_linked":false,"unit":"dpkg-db-backup.timer","unit_text":"# /lib/systemd/system/dpkg-db-backup.timer\n[Unit]\nDescription=Daily dpkg database backup timer\nDocumentation=man:dpkg(1)\n\n[Timer]\nOnCalendar=daily\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"e2scrub@.service","unit_text":"# /lib/systemd/system/e2scrub@.service\n[Unit]\nDescription=Online ext4 Metadata Check for %I\nOnFailure=e2scrub_fail@%i.service\nDocumentation=man:e2scrub(8)\n\n[Service]\nType=oneshot\nWorkingDirectory=/\nPrivateNetwork=true\nProtectSystem=true\nProtectHome=read-only\nPrivateTmp=yes\nAmbientCapabilities=CAP_SYS_ADMIN CAP_SYS_RAWIO\nNoNewPrivileges=yes\nUser=root\nIOSchedulingClass=idle\nCPUSchedulingPolicy=idle\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub -t %I\nSyslogIdentifier=%N"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/e2scrub_all ; argv[]=/sbin/e2scrub_all ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/e2scrub_all.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"e2scrub_all.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"e2scrub_all.service","unit_text":"# /lib/systemd/system/e2scrub_all.service\n[Unit]\nDescription=Online ext4 Metadata Check for All Filesystems\nConditionACPower=true\nConditionCapability=CAP_SYS_ADMIN\nConditionCapability=CAP_SYS_RAWIO\nDocumentation=man:e2scrub_all(8)\n\n[Service]\nType=oneshot\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub_all\nSyslogIdentifier=e2scrub_all"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/e2scrub_all.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"e2scrub_all.service","UnitFileState":"enabled"},"source_linked":false,"unit":"e2scrub_all.timer","unit_text":"# /lib/systemd/system/e2scrub_all.timer\n[Unit]\nDescription=Periodic ext4 Online Metadata Check for All Filesystems\n\n[Timer]\n# Run on Sunday at 3:10am, to avoid running afoul of DST changes\nOnCalendar=Sun *-*-* 03:10:00\nRandomizedDelaySec=60\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"e2scrub_fail@.service","unit_text":"# /lib/systemd/system/e2scrub_fail@.service\n[Unit]\nDescription=Online ext4 Metadata Check Failure Reporting for %I\nDocumentation=man:e2scrub(8)\n\n[Service]\nType=oneshot\nExecStart=/usr/lib/x86_64-linux-gnu/e2fsprogs/e2scrub_fail \"%I\"\nUser=mail\nGroup=mail\nSupplementaryGroups=systemd-journal"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/e2scrub_all ; argv[]=/sbin/e2scrub_all -A -r ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/e2scrub_reap.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"root","WorkingDirectory":"/"},"source_linked":false,"unit":"e2scrub_reap.service","unit_text":"# /lib/systemd/system/e2scrub_reap.service\n[Unit]\nDescription=Remove Stale Online ext4 Metadata Check Snapshots\nConditionCapability=CAP_SYS_ADMIN\nConditionCapability=CAP_SYS_RAWIO\nDocumentation=man:e2scrub_all(8)\n\n[Service]\nType=oneshot\nWorkingDirectory=/\nPrivateNetwork=true\nProtectSystem=true\nProtectHome=read-only\nPrivateTmp=yes\nAmbientCapabilities=CAP_SYS_ADMIN CAP_SYS_RAWIO\nNoNewPrivileges=yes\nUser=root\nIOSchedulingClass=idle\nCPUSchedulingPolicy=idle\nEnvironment=SERVICE_MODE=1\nExecStart=/sbin/e2scrub_all -A -r\nSyslogIdentifier=%N\nRemainAfterExit=no\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sulogin-shell ; argv[]=/lib/systemd/systemd-sulogin-shell emergency ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/emergency.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":"!/root"},"source_linked":false,"unit":"emergency.service","unit_text":"# /lib/systemd/system/emergency.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Emergency Shell\nDocumentation=man:sulogin(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nConflicts=rescue.service\nBefore=shutdown.target\nBefore=rescue.service\n\n[Service]\nEnvironment=HOME=/root\nWorkingDirectory=-/root\nExecStartPre=-/bin/plymouth --wait quit\nExecStart=-/lib/systemd/systemd-sulogin-shell emergency\nType=idle\nStandardInput=tty-force\nStandardOutput=inherit\nStandardError=inherit\nKillMode=process\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/fstrim ; argv[]=/sbin/fstrim --listed-in /etc/fstab:/proc/self/mountinfo --verbose --quiet-unsupported ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/fstrim.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"fstrim.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"fstrim.service","unit_text":"# /lib/systemd/system/fstrim.service\n[Unit]\nDescription=Discard unused blocks on filesystems from /etc/fstab\nDocumentation=man:fstrim(8)\nConditionVirtualization=!container\n\n[Service]\nType=oneshot\nExecStart=/sbin/fstrim --listed-in /etc/fstab:/proc/self/mountinfo --verbose --quiet-unsupported\nPrivateDevices=no\nPrivateNetwork=yes\nPrivateUsers=no\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectControlGroups=yes\nMemoryDenyWriteExecute=yes\nSystemCallFilter=@default @file-system @basic-io @system-service"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/fstrim.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"fstrim.service","UnitFileState":"enabled"},"source_linked":false,"unit":"fstrim.timer","unit_text":"# /lib/systemd/system/fstrim.timer\n[Unit]\nDescription=Discard unused blocks once a week\nDocumentation=man:fstrim\nConditionVirtualization=!container\nConditionPathExists=!/etc/initrd-release\n\n[Timer]\nOnCalendar=weekly\nAccuracySec=1h\nPersistent=true\nRandomizedDelaySec=6000\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block start getty@tty2.service getty@tty3.service getty@tty4.service getty@tty5.service getty@tty6.service ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/getty-static.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"getty-static.service","unit_text":"# /lib/systemd/system/getty-static.service\n[Unit]\nDescription=getty on tty2-tty6 if dbus and logind are not available\nConditionPathExists=/dev/tty0\nConditionPathExists=!/usr/bin/dbus-daemon\nConditionPathExists=!/usr/bin/dbus-broker\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block start getty@tty2.service getty@tty3.service getty@tty4.service getty@tty5.service getty@tty6.service\nRemainAfterExit=true"},{"project_linked":true,"show":{},"source_linked":false,"unit":"getty@.service","unit_text":"# /lib/systemd/system/getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n# On systems without virtual consoles, don't start any getty. Note\n# that serial gettys are covered by serial-getty@.service, not this\n# unit.\nConditionPathExists=/dev/tty0\n\n[Service]\n# the VT is cleared by TTYVTDisallocate\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --noclear - $TERM\nType=idle\nRestart=always\nRestartSec=0\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nTTYVTDisallocate=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n# Unset locale for the console getty since the console has problems\n# displaying some internationalized messages.\nUnsetEnvironment=LANG LANGUAGE LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES LC_PAPER LC_NAME LC_ADDRESS LC_TELEPHONE LC_MEASUREMENT LC_IDENTIFICATION\n\n[Install]\nWantedBy=getty.target\nDefaultInstance=tty1"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/full-observer.sh ; argv[]=/opt/homelab-cluster-admin/full-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:21 UTC] ; pid=2041047 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-full-observer.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-full-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.service\n[Unit]\nDescription=Homelab cluster-admin full observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/full-observer.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-full-observer.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-full-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin full observer\n\n[Timer]\nOnBootSec=5min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/cluster-observer.sh ; argv[]=/opt/homelab-cluster-admin/cluster-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:15 UTC] ; pid=2041048 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-observer.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.service\n[Unit]\nDescription=Homelab cluster-admin observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/cluster-observer.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-observer.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin observer\n\n[Timer]\nOnBootSec=3min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/self-check.sh ; argv[]=/opt/homelab-cluster-admin/self-check.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:34:15 UTC] ; stop_time=[Wed 2026-08-05 16:34:15 UTC] ; pid=2041049 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-self-check.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-self-check.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.service\n[Unit]\nDescription=Homelab cluster-admin self check\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/self-check.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-self-check.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-self-check.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.timer\n[Unit]\nDescription=Run homelab cluster-admin self check\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.path","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.path\n[Unit]\nDescription=Reapply Cluster Admin update visibility after index regeneration\nStartLimitIntervalSec=0\n\n[Path]\nPathChanged=/var/www/homelab-cluster-admin/index.html\nPathModified=/var/www/homelab-cluster-admin/index.html\nPathChanged=/var/www/homelab-cluster-admin\nUnit=homelab-cluster-admin-update-visibility-index.service\nTriggerLimitIntervalSec=0\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher ; argv[]=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:48 UTC] ; stop_time=[Wed 2026-08-05 16:36:48 UTC] ; pid=2041661 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.service","Group":"root","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-update-visibility-index.path homelab-cluster-admin-update-visibility-index.timer","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.service\n[Unit]\nDescription=Maintain Cluster Admin update visibility card\nAfter=local-fs.target\nStartLimitIntervalSec=0\n\n[Service]\nType=oneshot\nUser=root\nGroup=root\nExecStart=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json\nUMask=0022\nNoNewPrivileges=true\nPrivateTmp=true\nProtectHome=read-only\nProtectSystem=full\nReadWritePaths=/var/www/homelab-cluster-admin"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-update-visibility-index.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer\n[Unit]\nDescription=Periodic Cluster Admin update visibility repair\n\n[Timer]\nOnBootSec=20s\nOnUnitActiveSec=30s\nAccuracySec=5s\nRandomizedDelaySec=0\nPersistent=true\nUnit=homelab-cluster-admin-update-visibility-index.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; argv[]=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:36:15 UTC] ; stop_time=[Wed 2026-08-05 16:36:15 UTC] ; pid=2041571 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-webpanel-render.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-webpanel-render.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service\n[Unit]\nDescription=Render Homelab cluster-admin web panel\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/render-webpanel.sh\n\n# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service.d/10-cycle-break.conf\n[Service]\nExecStart=\nExecStart=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-webpanel-render.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-cluster-admin-webpanel-render.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.timer\n[Unit]\nDescription=Refresh Homelab cluster-admin web panel\n\n[Timer]\nOnBootSec=1min\nOnUnitActiveSec=1min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"homelab-cluster-admin-webpanel.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel.service\n[Unit]\nDescription=Homelab cluster-admin web panel\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=simple\nExecStart=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin\nRestart=always\nRestartSec=5\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"failed","ExecStart":"{ path=/usr/local/sbin/homelab-stage4i-verify ; argv[]=/usr/local/sbin/homelab-stage4i-verify ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:26:30 UTC] ; stop_time=[Wed 2026-08-05 16:26:30 UTC] ; pid=2039387 ; code=exited ; status=50 }","FragmentPath":"/etc/systemd/system/homelab-stage4i-verify.service","Group":"root","LoadState":"loaded","SubState":"failed","TriggeredBy":"homelab-stage4i-verify.timer","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"homelab-stage4i-verify.service","unit_text":"# /etc/systemd/system/homelab-stage4i-verify.service\n[Unit]\nDescription=Verify active immutable Stage 4I task version\nAfter=local-fs.target\n\n[Service]\nType=oneshot\nUser=root\nGroup=root\nExecStart=/usr/local/sbin/homelab-stage4i-verify\nNoNewPrivileges=true\nPrivateDevices=true\nProtectClock=true\nProtectControlGroups=true\nProtectHome=true\nProtectKernelLogs=true\nProtectKernelModules=true\nProtectKernelTunables=true\nRestrictNamespaces=true\nRestrictRealtime=true\nLockPersonality=true\nMemoryDenyWriteExecute=true\nUMask=0027"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-stage4i-verify.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-stage4i-verify.service","UnitFileState":"enabled"},"source_linked":false,"unit":"homelab-stage4i-verify.timer","unit_text":"# /etc/systemd/system/homelab-stage4i-verify.timer\n[Unit]\nDescription=Regularly verify active immutable Stage 4I task version\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=15min\nAccuracySec=1min\nPersistent=true\nUnit=homelab-stage4i-verify.service\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/hwclock.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"hwclock.service","unit_text":"# Unit hwclock.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block isolate initrd-switch-root.target ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-cleanup.service","unit_text":"# /lib/systemd/system/initrd-cleanup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleaning Up and Shutting Down Daemons\nDefaultDependencies=no\nAssertPathExists=/etc/initrd-release\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\nAfter=initrd-root-fs.target initrd-fs.target initrd.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block isolate initrd-switch-root.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block start initrd-cleanup.service ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-parse-etc.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-parse-etc.service","unit_text":"# /lib/systemd/system/initrd-parse-etc.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Mountpoints Configured in the Real Root\nAssertPathExists=/etc/initrd-release\n\nDefaultDependencies=no\nRequires=initrd-root-fs.target\nAfter=initrd-root-fs.target\n\nConflicts=emergency.target\n\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\n\n# FIXME: once dracut is patched to install the symlink, change to:\n# ExecStart=/lib/systemd/systemd-sysroot-fstab-check\nExecStart=@/lib/systemd/system-generators/systemd-fstab-generator systemd-sysroot-fstab-check\n\n# We want to enqueue initrd-cleanup.service/start after we finished the part\n# above. It can't be part of the initial transaction, because non-oneshot units\n# use Conflicts=initrd-cleanup.service to be terminated before we switch root.\n# Effectively, initrd-parse-etc.service acts as a synchronization point after\n# which cleanup of the initrd processes starts.\nExecStart=systemctl --no-block start initrd-cleanup.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --no-block switch-root /sysroot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-switch-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-switch-root.service","unit_text":"# /lib/systemd/system/initrd-switch-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Switch Root\n\nAssertPathExists=/etc/initrd-release\n\nDefaultDependencies=no\nWants=initrd-switch-root.target\nAllowIsolate=yes\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\nExecStart=systemctl --no-block switch-root /sysroot"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=udevadm ; argv[]=udevadm info --cleanup-db ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/initrd-udevadm-cleanup-db.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"initrd-udevadm-cleanup-db.service","unit_text":"# /lib/systemd/system/initrd-udevadm-cleanup-db.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleanup udev Database\nDefaultDependencies=no\nAssertPathExists=/etc/initrd-release\nConflicts=systemd-udevd.service systemd-udevd-control.socket systemd-udevd-kernel.socket systemd-udev-trigger.service systemd-udev-settle.service\nAfter=systemd-udevd.service systemd-udevd-control.socket systemd-udevd-kernel.socket systemd-udev-trigger.service systemd-udev-settle.service\nBefore=initrd-switch-root.target\n\n[Service]\nType=oneshot\nExecStart=-udevadm info --cleanup-db"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/bin/kmod ; argv[]=/bin/kmod static-nodes --format=tmpfiles --output=/run/tmpfiles.d/static-nodes.conf ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/kmod-static-nodes.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"kmod-static-nodes.service","unit_text":"# /lib/systemd/system/kmod-static-nodes.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create List of Static Device Nodes\nDefaultDependencies=no\nBefore=sysinit.target systemd-tmpfiles-setup-dev.service\nConditionCapability=CAP_SYS_MODULE\nConditionFileNotEmpty=/lib/modules/%v/modules.devname\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/bin/kmod static-nodes --format=tmpfiles --output=/run/tmpfiles.d/static-nodes.conf"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-modules-load ; argv[]=/lib/systemd/systemd-modules-load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-modules-load.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"kmod.service","unit_text":"# /lib/systemd/system/systemd-modules-load.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Modules\nDocumentation=man:systemd-modules-load.service(8) man:modules-load.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nConditionCapability=CAP_SYS_MODULE\nConditionDirectoryNotEmpty=|/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/local/lib/modules-load.d\nConditionDirectoryNotEmpty=|/etc/modules-load.d\nConditionDirectoryNotEmpty=|/run/modules-load.d\nConditionKernelCommandLine=|modules-load\nConditionKernelCommandLine=|modules_load\nConditionKernelCommandLine=|rd.modules-load\nConditionKernelCommandLine=|rd.modules_load\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-modules-load\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/logrotate ; argv[]=/usr/sbin/logrotate /etc/logrotate.conf ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/logrotate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"logrotate.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"logrotate.service","unit_text":"# /lib/systemd/system/logrotate.service\n[Unit]\nDescription=Rotate log files\nDocumentation=man:logrotate(8) man:logrotate.conf(5)\nRequiresMountsFor=/var/log\nConditionACPower=true\n\n[Service]\nType=oneshot\nExecStart=/usr/sbin/logrotate /etc/logrotate.conf\n\n# performance options\nNice=19\nIOSchedulingClass=best-effort\nIOSchedulingPriority=7\n\n# hardening options\n# details: https://www.freedesktop.org/software/systemd/man/systemd.exec.html\n# no ProtectHome for userdir logs\n# no PrivateNetwork for mail deliviery\n# no NoNewPrivileges for third party rotate scripts\n# no RestrictSUIDSGID for creating setgid directories\nLockPersonality=true\nMemoryDenyWriteExecute=true\nPrivateDevices=true\nPrivateTmp=true\nProtectClock=true\nProtectControlGroups=true\nProtectHostname=true\nProtectKernelLogs=true\nProtectKernelModules=true\nProtectKernelTunables=true\nProtectSystem=full\nRestrictNamespaces=true\nRestrictRealtime=true"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/logrotate.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"logrotate.service","UnitFileState":"enabled"},"source_linked":false,"unit":"logrotate.timer","unit_text":"# /lib/systemd/system/logrotate.timer\n[Unit]\nDescription=Daily rotation of log files\nDocumentation=man:logrotate(8) man:logrotate.conf(5)\n\n[Timer]\nOnCalendar=daily\nAccuracySec=1h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/mandb ; argv[]=/usr/bin/mandb --quiet ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/man-db.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"man-db.timer","Triggers":"","UnitFileState":"static","User":"man","WorkingDirectory":""},"source_linked":false,"unit":"man-db.service","unit_text":"# /lib/systemd/system/man-db.service\n[Unit]\nDescription=Daily man-db regeneration\nDocumentation=man:mandb(8)\nConditionACPower=true\n\n[Service]\nType=oneshot\n# Recover from deletion, per FHS.\nExecStart=+/usr/bin/install -d -o man -g man -m 0755 /var/cache/man\n# Expunge old catman pages which have not been read in a week.\nExecStart=/usr/bin/find /var/cache/man -type f -name *.gz -atime +6 -delete\n# Regenerate man database.\nExecStart=/usr/bin/mandb --quiet\nUser=man\nNice=19\nIOSchedulingClass=idle\nIOSchedulingPriority=7\nProtectSystem=full\nProtectHome=true\nPrivateTmp=true\nPrivateDevices=true\nProtectHostname=true\nProtectClock=true\nProtectKernelTunables=true\nProtectKernelModules=true\nProtectKernelLogs=true\nProtectControlGroups=true\nLockPersonality=true\nRestrictRealtime=true"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/man-db.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"man-db.service","UnitFileState":"enabled"},"source_linked":false,"unit":"man-db.timer","unit_text":"# /lib/systemd/system/man-db.timer\n[Unit]\nDescription=Daily man-db regeneration\nDocumentation=man:mandb(8)\n\n[Timer]\nOnCalendar=daily\nRandomizedDelaySec=12h\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"modprobe@.service","unit_text":"# /lib/systemd/system/modprobe@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Module %i\nDefaultDependencies=no\nBefore=sysinit.target\nDocumentation=man:modprobe(8)\nConditionCapability=CAP_SYS_MODULE\nStartLimitIntervalSec=0\n\n[Service]\nType=oneshot\nExecStart=-/sbin/modprobe -abq %i"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/netplan ; argv[]=/usr/sbin/netplan apply --only-ovs-cleanup ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/run/systemd/system/netplan-ovs-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"netplan-ovs-cleanup.service","unit_text":"# /run/systemd/system/netplan-ovs-cleanup.service\n[Unit]\nDescription=OpenVSwitch configuration for cleanup\nDefaultDependencies=no\nWants=ovsdb-server.service\nAfter=ovsdb-server.service\nConditionFileIsExecutable=/usr/bin/ovs-vsctl\nBefore=network.target\nWants=network.target\n\n[Service]\nType=oneshot\nTimeoutStartSec=10s\nExecStart=/usr/sbin/netplan apply --only-ovs-cleanup"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/pam_namespace_helper ; argv[]=/sbin/pam_namespace_helper ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/pam_namespace.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"pam_namespace.service","unit_text":"# /lib/systemd/system/pam_namespace.service\n[Unit]\nAfter=local-fs.target\nBefore=multi-user.target shutdown.target\nConflicts=shutdown.target\nDefaultDependencies=no\nDescription=Make sure parent directories configured in /etc/security/namespace.conf for polyinstantiation exist\nDocumentation=man:pam_namespace(8)\n\n[Service]\nExecStart=/sbin/pam_namespace_helper\nType=oneshot"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_basebackup@.service","unit_text":"# /lib/systemd/system/pg_basebackup@.service\n[Unit]\nDescription=Basebackup of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nEnvironment=\"KEEP=3\"\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i basebackup\nExecStart=/usr/bin/pg_backupcluster %i expirebasebackups $KEEP"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_basebackup@.timer","unit_text":"# /lib/systemd/system/pg_basebackup@.timer\n[Unit]\nDescription=Weekly Basebackup of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=weekly\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_compresswal@.service","unit_text":"# /lib/systemd/system/pg_compresswal@.service\n[Unit]\nDescription=Compress WAL of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nExecStart=/usr/bin/pg_backupcluster %i compresswal"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_compresswal@.timer","unit_text":"# /lib/systemd/system/pg_compresswal@.timer\n[Unit]\nDescription=Daily Compress WAL of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=daily\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with pg_receivewal@%i\nWantedBy=pg_receivewal@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_dump@.service","unit_text":"# /lib/systemd/system/pg_dump@.service\n[Unit]\nDescription=Dump of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=oneshot\nUser=postgres\nEnvironment=\"KEEP=3\"\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i dump\nExecStart=/usr/bin/pg_backupcluster %i expiredumps $KEEP"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_dump@.timer","unit_text":"# /lib/systemd/system/pg_dump@.timer\n[Unit]\nDescription=Weekly Dump of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\n\n[Timer]\nOnCalendar=weekly\nRandomizedDelaySec=1h\nFixedRandomDelay=true\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{},"source_linked":false,"unit":"pg_receivewal@.service","unit_text":"# /lib/systemd/system/pg_receivewal@.service\n[Unit]\nDescription=WAL archival of PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nWants=postgresql@%i.service\nAfter=postgresql@%i.service\nRequiresMountsFor=/var/backups/postgresql\n\n[Service]\nType=simple\nUser=postgres\nExecStartPre=+/usr/bin/pg_backupcluster %i createdirectory\nExecStart=/usr/bin/pg_backupcluster %i receivewal\nRestart=on-failure\nRestartSec=1min\n# pg_receivewal only flushes compressed output on SIGINT\n# (https://www.postgresql.org/message-id/flat/Yvo/5No5S0c4EFMj%40msg.df7cb.de)\nKillSignal=SIGINT\n\n[Install]\n# when enabled, start along with postgresql@%i\nWantedBy=postgresql@%i.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/polkit-1/polkitd ; argv[]=/usr/lib/polkit-1/polkitd --no-debug ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/polkit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"polkit.service","unit_text":"# /lib/systemd/system/polkit.service\n[Unit]\nDescription=<REDACTED>\nDocumentation=man:polkit(8)\n\n[Service]\nType=dbus\nBusName=org.freedesktop.PolicyKit1\nExecStart=/usr/lib/polkit-1/polkitd --no-debug"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/bin/true ; argv[]=/bin/true ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/postgresql.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"postgresql.service","unit_text":"# /lib/systemd/system/postgresql.service\n# postgresql.service is the meta unit for managing all PostgreSQL clusters on\n# the system at once. Conceptually, this unit is more like a systemd target,\n# but we are using a service since targets cannot be reloaded.\n#\n# The unit actually managing PostgreSQL clusters is postgresql@.service,\n# instantiated as postgresql@15-main.service for individual clusters.\n\n[Unit]\nDescription=PostgreSQL RDBMS\n\n[Service]\nType=oneshot\nExecStart=/bin/true\nExecReload=/bin/true\nRemainAfterExit=on\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"postgresql@.service","unit_text":"# /lib/systemd/system/postgresql@.service\n# systemd service template for PostgreSQL clusters. The actual instances will\n# be called \"postgresql@version-cluster\", e.g. \"postgresql@9.3-main\". The\n# variable %i expands to \"version-cluster\", %I expands to \"version/cluster\".\n# (%I breaks for cluster names containing dashes.)\n\n[Unit]\nDescription=PostgreSQL Cluster %i\nAssertPathExists=/etc/postgresql/%I/postgresql.conf\nRequiresMountsFor=/etc/postgresql/%I /var/lib/postgresql/%I\nPartOf=postgresql.service\nReloadPropagatedFrom=postgresql.service\nBefore=postgresql.service\n# stop server before networking goes down on shutdown\nAfter=network.target\n\n[Service]\nType=forking\n# -: ignore startup failure (recovery might take arbitrarily long)\n# the actual pg_ctl timeout is configured in pg_ctl.conf\nExecStart=-/usr/bin/pg_ctlcluster --skip-systemctl-redirect %i start\n# 0 is the same as infinity, but \"infinity\" needs systemd 229\nTimeoutStartSec=0\nExecStop=/usr/bin/pg_ctlcluster --skip-systemctl-redirect -m fast %i stop\nTimeoutStopSec=1h\nExecReload=/usr/bin/pg_ctlcluster --skip-systemctl-redirect %i reload\nPIDFile=/run/postgresql/%i.pid\nSyslogIdentifier=postgresql@%i\n# prevent OOM killer from choosing the postmaster (individual backends will\n# reset the score to 0)\nOOMScoreAdjust=-900\n# restarting automatically will prevent \"pg_ctlcluster ... stop\" from working,\n# so we disable it here. Also, the postmaster will restart by itself on most\n# problems anyway, so it is questionable if one wants to enable external\n# automatic restarts.\n#Restart=on-failure\n# (This should make pg_ctlcluster stop work, but doesn't:)\n#RestartPreventExitStatus=SIGINT SIGTERM\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-sysctl ; argv[]=/lib/systemd/systemd-sysctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysctl.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"procps.service","unit_text":"# /lib/systemd/system/systemd-sysctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Apply Kernel Variables\nDocumentation=man:systemd-sysctl.service(8) man:sysctl.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-modules-load.service\nBefore=sysinit.target shutdown.target\nConditionPathIsReadWrite=/proc/sys/net/\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-sysctl\nTimeoutSec=90s\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/sbin/qemu-ga ; argv[]=/usr/sbin/qemu-ga ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/qemu-guest-agent.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"qemu-guest-agent.service","unit_text":"# /lib/systemd/system/qemu-guest-agent.service\n[Unit]\nDescription=QEMU Guest Agent\nBindsTo=dev-virtio\\x2dports-org.qemu.guest_agent.0.device\nAfter=dev-virtio\\x2dports-org.qemu.guest_agent.0.device\n\n[Service]\nExecStart=-/usr/sbin/qemu-ga\nRestart=always\nRestartSec=0\n\n[Install]"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/sbin/quotaon ; argv[]=/sbin/quotaon -aug ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/quotaon.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"quotaon.service","unit_text":"# /lib/systemd/system/quotaon.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Enable File System Quotas\nDocumentation=man:quotaon(8)\nDefaultDependencies=no\nAfter=systemd-quotacheck.service\nBefore=remote-fs.target shutdown.target\nConditionPathExists=/sbin/quotaon\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/sbin/quotaon -aug"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/etc/rc.local ; argv[]=/etc/rc.local start ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/rc-local.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rc-local.service","unit_text":"# /lib/systemd/system/rc-local.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n# This unit gets pulled automatically into multi-user.target by\n# systemd-rc-local-generator if /etc/rc.local is executable.\n[Unit]\nDescription=/etc/rc.local Compatibility\nDocumentation=man:systemd-rc-local-generator(8)\nConditionFileIsExecutable=/etc/rc.local\nAfter=network.target\n\n[Service]\nType=forking\nExecStart=/etc/rc.local start\nTimeoutSec=0\nRemainAfterExit=yes\nGuessMainPID=no\n\n# /usr/lib/systemd/system/rc-local.service.d/debian.conf\n[Unit]\n# not specified by LSB, but has been behaving that way in Debian under SysV\n# init and upstart\nAfter=network-online.target\n\n# Often contains status messages which users expect to see on the console\n# during boot\n[Service]\nStandardOutput=journal+console\nStandardError=journal+console"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/rc.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rc.service","unit_text":"# Unit rc.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/rcS.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"rcS.service","unit_text":"# Unit rcS.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sulogin-shell ; argv[]=/lib/systemd/systemd-sulogin-shell rescue ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/rescue.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":"!/root"},"source_linked":false,"unit":"rescue.service","unit_text":"# /lib/systemd/system/rescue.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rescue Shell\nDocumentation=man:sulogin(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysinit.target plymouth-start.service\nBefore=shutdown.target\n\n[Service]\nEnvironment=HOME=/root\nWorkingDirectory=-/root\nExecStartPre=-/bin/plymouth --wait quit\nExecStart=-/lib/systemd/systemd-sulogin-shell rescue\nType=idle\nStandardInput=tty-force\nStandardOutput=inherit\nStandardError=inherit\nKillMode=process\nIgnoreSIGPIPE=no\nSendSIGHUP=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/screen-cleanup.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"screen-cleanup.service","unit_text":"# Unit screen-cleanup.service is masked."},{"project_linked":true,"show":{},"source_linked":false,"unit":"serial-getty@.service","unit_text":"# /lib/systemd/system/serial-getty@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Serial Getty on %I\nDocumentation=man:agetty(8) man:systemd-getty-generator(8)\nDocumentation=https://0pointer.de/blog/projects/serial-console.html\nBindsTo=dev-%i.device\nAfter=<REDACTED>\nAfter=rc-local.service\n\n# If additional gettys are spawned during boot then we should make\n# sure that this is synchronized before getty.target, even though\n# getty.target didn't actually pull it in.\nBefore=getty.target\nIgnoreOnIsolate=yes\n\n# IgnoreOnIsolate causes issues with sulogin, if someone isolates\n# rescue.target or starts rescue.service from multi-user.target or\n# graphical.target.\nConflicts=rescue.service\nBefore=rescue.service\n\n[Service]\n# The '-o' option value tells agetty to replace 'login' arguments with an\n# option to preserve environment (-p), followed by '--' for safety, and then\n# the entered username.\nExecStart=-/sbin/agetty -o '-p -- \\\\u' --keep-baud 115200,57600,38400,9600 - $TERM\nType=idle\nRestart=always\nUtmpIdentifier=%I\nStandardInput=tty\nStandardOutput=tty\nTTYPath=/dev/%I\nTTYReset=yes\nTTYVHangup=yes\nIgnoreSIGPIPE=no\nSendSIGHUP=yes\n\n[Install]\nWantedBy=getty.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/default/ssh (ignore_errors=yes)","ExecStart":"{ path=/usr/sbin/sshd ; argv[]=/usr/sbin/sshd -D $SSHD_OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/ssh.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"ssh.service","unit_text":"# /lib/systemd/system/ssh.service\n[Unit]\nDescription=OpenBSD Secure Shell server\nDocumentation=man:sshd(8) man:sshd_config(5)\nAfter=network.target auditd.service\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Service]\nEnvironmentFile=-/etc/default/ssh\nExecStartPre=/usr/sbin/sshd -t\nExecStart=/usr/sbin/sshd -D $SSHD_OPTS\nExecReload=/usr/sbin/sshd -t\nExecReload=/bin/kill -HUP $MAINPID\nKillMode=process\nRestart=on-failure\nRestartPreventExitStatus=255\nType=notify\nRuntimeDirectory=sshd\nRuntimeDirectoryMode=0755\n\n[Install]\nWantedBy=multi-user.target\nAlias=sshd.service"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/ssh.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"ssh.service","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"ssh.socket","unit_text":"# /lib/systemd/system/ssh.socket\n[Unit]\nDescription=OpenBSD Secure Shell server socket\nBefore=sockets.target\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Socket]\nListenStream=22\nAccept=no\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/default/ssh (ignore_errors=yes)","ExecStart":"{ path=/usr/sbin/sshd ; argv[]=/usr/sbin/sshd -D $SSHD_OPTS ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/ssh.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"sshd.service","unit_text":"# /lib/systemd/system/ssh.service\n[Unit]\nDescription=OpenBSD Secure Shell server\nDocumentation=man:sshd(8) man:sshd_config(5)\nAfter=network.target auditd.service\nConditionPathExists=!/etc/ssh/sshd_not_to_be_run\n\n[Service]\nEnvironmentFile=-/etc/default/ssh\nExecStartPre=/usr/sbin/sshd -t\nExecStart=/usr/sbin/sshd -D $SSHD_OPTS\nExecReload=/usr/sbin/sshd -t\nExecReload=/bin/kill -HUP $MAINPID\nKillMode=process\nRestart=on-failure\nRestartPreventExitStatus=255\nType=notify\nRuntimeDirectory=sshd\nRuntimeDirectoryMode=0755\n\n[Install]\nWantedBy=multi-user.target\nAlias=sshd.service"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sudo.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"sudo.service","unit_text":"# Unit sudo.service is masked."},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/syslog.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"syslog.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"syslog.socket","unit_text":"# /lib/systemd/system/syslog.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Syslog Socket\nDocumentation=man:systemd.special(7)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/syslog\nDefaultDependencies=no\nBefore=sockets.target\n\n# Don't allow logging until the very end\nConflicts=shutdown.target\nBefore=shutdown.target\n\n# Don't try to activate syslog.service if sysinit.target has failed.\nConflicts=emergency.service\nBefore=emergency.service\n\n[Socket]\nListenDatagram=/run/systemd/journal/syslog\nSocketMode=0666\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\n\n# The default syslog implementation should make syslog.service a\n# symlink to itself, so that this socket activates the right actual\n# syslog service.\n#\n# Examples:\n#\n# /etc/systemd/system/syslog.service -> /lib/systemd/system/rsyslog.service\n# /etc/systemd/system/syslog.service -> /lib/systemd/system/syslog-ng.service\n#\n# Best way to achieve that is by adding this to your unit file\n# (i.e. to rsyslog.service or syslog-ng.service):\n#\n# [Install]\n# Alias=syslog.service\n#\n# See https://www.freedesktop.org/wiki/Software/systemd/syslog for details."},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa1 ; argv[]=/usr/lib/sysstat/sa1 1 1 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat-collect.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat-collect.service","unit_text":"# /lib/systemd/system/sysstat-collect.service\n# /lib/systemd/system/sysstat-collect.service\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Collects system activity data\n# Activated by sysstat-collect.timer unit\n\n[Unit]\nDescription=system activity accounting tool\nDocumentation=man:sa1(8)\nAfter=sysstat.service\n\n[Service]\nType=oneshot\nUser=root\nExecStart=/usr/lib/sysstat/sa1 1 1\n"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sysstat-collect.timer","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"sysstat-collect.service","UnitFileState":"disabled"},"source_linked":false,"unit":"sysstat-collect.timer","unit_text":"# /lib/systemd/system/sysstat-collect.timer\n# /lib/systemd/system/sysstat-collect.timer\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Activates activity collector every 10 minutes\n\n[Unit]\nDescription=Run system activity accounting tool every 10 minutes\n\n[Timer]\nOnCalendar=*:00/10\n\n[Install]\nWantedBy=sysstat.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa2 ; argv[]=/usr/lib/sysstat/sa2 -A ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat-summary.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat-summary.service","unit_text":"# /lib/systemd/system/sysstat-summary.service\n# /lib/systemd/system/sysstat-summary.service\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Generates daily summary of process accounting\n\n[Unit]\nDescription=Generate a daily summary of process accounting\nDocumentation=man:sa2(8)\nAfter=sysstat.service\n\n[Service]\nType=oneshot\nUser=root\nExecStart=/usr/lib/sysstat/sa2 -A"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/sysstat-summary.timer","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"sysstat-summary.service","UnitFileState":"disabled"},"source_linked":false,"unit":"sysstat-summary.timer","unit_text":"# /lib/systemd/system/sysstat-summary.timer\n# /lib/systemd/system/sysstat-summary.timer\n# (C) 2014 Tomasz Torcz <tomek@pipebreaker.pl>\n#\n# sysstat-12.6.1 systemd unit file:\n# Triggers daily summary generation.\n# Activates sysstat-summary.service\n\n[Unit]\nDescription=Generate summary of yesterday's process accounting\n\n[Timer]\nOnCalendar=00:07:00\n\n[Install]\nWantedBy=sysstat.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/lib/sysstat/sa1 ; argv[]=/usr/lib/sysstat/sa1 --boot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/sysstat.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"root","WorkingDirectory":""},"source_linked":false,"unit":"sysstat.service","unit_text":"# /lib/systemd/system/sysstat.service\n# /lib/systemd/system/sysstat.service\n# (C) 2012 Peter Schiffer (pschiffe <at> redhat.com)\n#\n# sysstat-12.6.1 systemd unit file:\n#\t Insert a dummy record in current daily data file.\n#\t This indicates that the counters have restarted from 0.\n\n[Unit]\nDescription=Resets System Activity Logs\nDocumentation=man:sa1(8) man:sadc(8) man:sar(1)\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nUser=root\nExecStart=/usr/lib/sysstat/sa1 --boot\n\n[Install]\nWantedBy=multi-user.target\nAlso=sysstat-collect.timer\nAlso=sysstat-summary.timer"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=rm ; argv[]=rm -fv /system-update ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/system-update-cleanup.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"system-update-cleanup.service","unit_text":"# /lib/systemd/system/system-update-cleanup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Remove the Offline System Updates Symlink\nDocumentation=man:systemd.special(7) man:systemd.offline-updates(7)\nAfter=system-update.target\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=shutdown.target\nSuccessAction=reboot\n\n# system-update-generator uses laccess(\"/system-update\"), while a plain\n# ConditionPathExists=/system-update uses access(\"/system-update\"), so\n# we need an alternate condition to cover the case of a dangling symlink.\n#\n# This service is only invoked if /system-update exists, i.e. if the\n# condition tested by system-update-generator remains true and the system\n# would be diverted into system-update.target again after reboot. This way\n# we guard against being diverted into system-update.target again, which\n# works as a safety measure, but we will not step on the toes of the\n# update script if it successfully removed the symlink and scheduled a\n# reboot or some other action on its own.\nConditionPathExists=|/system-update\nConditionPathIsSymbolicLink=|/system-update\n\n[Service]\nType=oneshot\nExecStart=rm -fv /system-update"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-ask-password-console.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-ask-password-console.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-ask-password-console.path","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nConditionPathExists=!/run/plymouth/pid\n\nDefaultDependencies=no\nAfter=plymouth-start.service\nBefore=paths.target cryptsetup.target\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Path]\nDirectoryNotEmpty=<REDACTED>\nMakeDirectory=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tty-ask-password-agent ; argv[]=systemd-tty-ask-password-agent --watch --console ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-ask-password-console.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-ask-password-console.path","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-ask-password-console.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nConditionPathExists=!/run/plymouth/pid\n\nDefaultDependencies=no\nAfter=plymouth-start.service systemd-vconsole-setup.service\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nExecStart=<REDACTED>\nSystemCallArchitectures=native"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-ask-password-wall.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-ask-password-wall.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-ask-password-wall.path","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\n\nDefaultDependencies=no\nBefore=paths.target cryptsetup.target\nConflicts=emergency.service\nBefore=emergency.service\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Path]\nDirectoryNotEmpty=<REDACTED>\nMakeDirectory=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tty-ask-password-agent ; argv[]=systemd-tty-ask-password-agent --wall ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-ask-password-wall.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-ask-password-wall.path","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-ask-password-wall.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\nAfter=<REDACTED>\n\n[Service]\nExecStartPre=<REDACTED>\nExecStart=<REDACTED>\nSystemCallArchitectures=native"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-backlight@.service","unit_text":"# /lib/systemd/system/systemd-backlight@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save Screen Backlight Brightness of %i\nDocumentation=man:systemd-backlight@.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-backlight load %i\nExecStop=/lib/systemd/systemd-backlight save %i\nTimeoutSec=90s\nStateDirectory=systemd/backlight"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-binfmt ; argv[]=/lib/systemd/systemd-binfmt ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-binfmt.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-binfmt.service","unit_text":"# /lib/systemd/system/systemd-binfmt.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Set Up Additional Binary Formats\nDocumentation=man:systemd-binfmt.service(8) man:binfmt.d(5)\nDocumentation=https://docs.kernel.org/admin-guide/binfmt-misc.html\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/APIFileSystems\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=proc-sys-fs-binfmt_misc.automount\nAfter=proc-sys-fs-binfmt_misc.mount\nAfter=local-fs.target\nBefore=sysinit.target shutdown.target\nConditionPathIsMountPoint=/proc/sys/fs/binfmt_misc\nConditionDirectoryNotEmpty=|/lib/binfmt.d\nConditionDirectoryNotEmpty=|/usr/lib/binfmt.d\nConditionDirectoryNotEmpty=|/usr/local/lib/binfmt.d\nConditionDirectoryNotEmpty=|/etc/binfmt.d\nConditionDirectoryNotEmpty=|/run/binfmt.d\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-binfmt\nExecStop=/lib/systemd/systemd-binfmt --unregister\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-boot-check-no-failures ; argv[]=/lib/systemd/systemd-boot-check-no-failures ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-boot-check-no-failures.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-boot-check-no-failures.service","unit_text":"# /lib/systemd/system/systemd-boot-check-no-failures.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Check if Any System Units Failed\nDocumentation=man:systemd-boot-check-no-failures.service(8)\nAfter=default.target graphical.target multi-user.target\nBefore=boot-complete.target\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-boot-check-no-failures\n\n[Install]\nRequiredBy=boot-complete.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-exit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-exit.service","unit_text":"# /lib/systemd/system/systemd-exit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Exit the Container\nDocumentation=man:systemd.special(7)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=exit-force"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-firstboot ; argv[]=systemd-firstboot --prompt-locale --prompt-timezone --prompt-root-password ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-firstboot.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-firstboot.service","unit_text":"# /lib/systemd/system/systemd-firstboot.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=First Boot Wizard\nDocumentation=man:systemd-firstboot(1)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service\nBefore=systemd-sysusers.service systemd-vconsole-setup.service sysinit.target first-boot-complete.target shutdown.target\nWants=first-boot-complete.target\nConditionPathIsReadWrite=/etc\nConditionFirstBoot=yes\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=<REDACTED>\nStandardOutput=tty\nStandardInput=tty\nStandardError=tty\n\n<REDACTED_SECRET_LINE>\n# manager. This is useful for importing this data from nspawn's\n# --set-credential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-fsck ; argv[]=/lib/systemd/systemd-fsck ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-fsck-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsck-root.service","unit_text":"# /lib/systemd/system/systemd-fsck-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check on Root Device\nDocumentation=man:systemd-fsck-root.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=local-fs.target shutdown.target\nWants=systemd-fsckd.socket\nAfter=systemd-fsckd.socket\nConditionPathIsReadWrite=!/\nConditionPathExists=!/run/initramfs/fsck-root\nOnFailure=emergency.target\nOnFailureJobMode=replace-irreversibly\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-fsck\nTimeoutSec=0"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-fsck@.service","unit_text":"# /lib/systemd/system/systemd-fsck@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check on %f\nDocumentation=man:systemd-fsck@.service(8)\nDefaultDependencies=no\nBindsTo=%i.device\nConflicts=shutdown.target\nWants=systemd-fsckd.socket\nAfter=%i.device systemd-fsck-root.service local-fs-pre.target systemd-fsckd.socket\nBefore=systemd-quotacheck.service shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-fsck %f\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-fsckd ; argv[]=/lib/systemd/systemd-fsckd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-fsckd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-fsckd.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsckd.service","unit_text":"# /lib/systemd/system/systemd-fsckd.service\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Check Daemon to report status\nDocumentation=man:systemd-fsckd.service(8)\nDefaultDependencies=no\nRequires=systemd-fsckd.socket\nBefore=shutdown.target\n\n[Service]\nExecStart=/lib/systemd/systemd-fsckd\nStandardOutput=journal+console"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-fsckd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"systemd-fsckd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-fsckd.socket","unit_text":"# /lib/systemd/system/systemd-fsckd.socket\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=fsck to fsckd communication Socket\nDocumentation=man:systemd-fsckd.service(8) man:systemd-fsck@.service(8) man:systemd-fsck-root.service(8)\nDefaultDependencies=no\n\n[Socket]\nListenStream=/run/systemd/fsck.progress\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-growfs ; argv[]=/lib/systemd/systemd-growfs / ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/run/systemd/generator/systemd-growfs@-.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"generated","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-growfs@-.service","unit_text":"# /run/systemd/generator/systemd-growfs@-.service\n# Automatically generated by systemd-fstab-generator\n\n[Unit]\nDescription=Grow File System on %f\nDocumentation=man:systemd-growfs@.service(8)\nDefaultDependencies=no\nBindsTo=%i.mount\nConflicts=shutdown.target\nAfter=systemd-repart.service %i.mount\nBefore=shutdown.target local-fs.target\nAfter=systemd-remount-fs.service\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-growfs /\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --force halt ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-halt.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-halt.service","unit_text":"# /lib/systemd/system/systemd-halt.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Halt\nDocumentation=man:systemd-halt.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --force halt"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-hibernate-resume@.service","unit_text":"# /lib/systemd/system/systemd-hibernate-resume@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Resume from hibernation using device %f\nDocumentation=man:systemd-hibernate-resume@.service(8)\nDefaultDependencies=no\nBindsTo=%i.device\nWants=local-fs-pre.target\nAfter=%i.device\nBefore=local-fs-pre.target\nAssertPathExists=/etc/initrd-release\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-hibernate-resume %f"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep hibernate ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hibernate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hibernate.service","unit_text":"# /lib/systemd/system/systemd-hibernate.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Hibernate\nDocumentation=man:systemd-hibernate.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep hibernate"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-hostnamed ; argv[]=/lib/systemd/systemd-hostnamed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hostnamed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hostnamed.service","unit_text":"# /lib/systemd/system/systemd-hostnamed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Hostname Service\nDocumentation=man:systemd-hostnamed.service(8)\nDocumentation=man:hostname(5)\nDocumentation=man:machine-info(5)\nDocumentation=man:org.freedesktop.hostname1(5)\n\n[Service]\nBusName=org.freedesktop.hostname1\nCapabilityBoundingSet=CAP_SYS_ADMIN\nExecStart=/lib/systemd/systemd-hostnamed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc /run/systemd\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service sethostname\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep hybrid-sleep ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-hybrid-sleep.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-hybrid-sleep.service","unit_text":"# /lib/systemd/system/systemd-hybrid-sleep.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Hybrid Suspend+Hibernate\nDocumentation=man:systemd-hybrid-sleep.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep hybrid-sleep"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-initctl ; argv[]=/lib/systemd/systemd-initctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-initctl.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-initctl.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-initctl.service","unit_text":"# /lib/systemd/system/systemd-initctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=initctl Compatibility Daemon\nDocumentation=man:systemd-initctl.service(8)\nDefaultDependencies=no\n\n[Service]\nExecStart=/lib/systemd/systemd-initctl\nNoNewPrivileges=yes\nNotifyAccess=all\nSystemCallArchitectures=native"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-initctl.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"systemd-initctl.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-initctl.socket","unit_text":"# /lib/systemd/system/systemd-initctl.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=initctl Compatibility Named Pipe\nDocumentation=man:systemd-initctl.socket(8)\nDefaultDependencies=no\nBefore=sockets.target\n\n[Socket]\nListenFIFO=/run/initctl\nSymlinks=/dev/initctl\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=journalctl ; argv[]=journalctl --flush ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-journal-flush.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journal-flush.service","unit_text":"# /lib/systemd/system/systemd-journal-flush.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Flush Journal to Persistent Storage\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nWants=systemd-journald.service\nAfter=systemd-journald.service systemd-remount-fs.service\nBefore=systemd-tmpfiles-setup.service\nRequiresMountsFor=/var/log/journal\nConditionPathExists=!/etc/initrd-release\n\n[Service]\nExecStart=journalctl --flush\nExecStop=journalctl --smart-relinquish-var\nType=oneshot\nRemainAfterExit=yes\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald-audit.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald-audit.socket","unit_text":"# /lib/systemd/system/systemd-journald-audit.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Audit Socket\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\nConditionSecurity=audit\nConditionCapability=CAP_AUDIT_READ\n\n[Socket]\nService=systemd-journald.service\nReceiveBuffer=128M\nListenNetlink=audit 1\nPassCredentials=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald-dev-log.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald-dev-log.socket","unit_text":"# /lib/systemd/system/systemd-journald-dev-log.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket (/dev/log)\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\n\n# Mount and swap units need this. If this socket unit is removed by an isolate\n# request the mount and swap units would be removed too, hence let's exclude\n# systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Socket]\nListenDatagram=/run/systemd/journal/dev-log\nPassCredentials=<REDACTED>\nPassSecurity=yes\nService=systemd-journald.service\nSocketMode=0666\nSymlinks=/dev/log\nTimestamping=us\n\n# Increase both the send and receive buffer, so that things don't\n# block early. Note that journald internally uses the this socket both\n# for receiving syslog messages, and for forwarding them to any other\n# syslog, hence we bump both values.\nReceiveBuffer=8M\nSendBuffer=8M"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald-varlink@.socket","unit_text":"# /lib/systemd/system/systemd-journald-varlink@.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Varlink Socket for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nStopWhenUnneeded=yes\n\n[Socket]\nService=systemd-journald@%i.service\nListenStream=/run/systemd/journal.%i/io.systemd.journal\nSocketMode=0600"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-journald ; argv[]=/lib/systemd/systemd-journald ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-journald.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-journald-audit.socket systemd-journald-dev-log.socket systemd-journald.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald.service","unit_text":"# /lib/systemd/system/systemd-journald.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Service\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nRequires=systemd-journald.socket\nAfter=systemd-journald.socket systemd-journald-dev-log.socket systemd-journald-audit.socket syslog.socket\nBefore=sysinit.target\n\n# Mount and swap units need the journal socket units. If they were removed by\n# an isolate request the mount and swap units would be removed too, hence let's\n# exclude systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Service]\nDeviceAllow=char-* rw\nExecStart=/lib/systemd/systemd-journald\nFileDescriptorStoreMax=4224\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nOOMScoreAdjust=-250\nProtectClock=yes\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/journal\nRuntimeDirectoryPreserve=yes\nSockets=systemd-journald.socket systemd-journald-dev-log.socket systemd-journald-audit.socket\nStandardOutput=null\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nWatchdogSec=3min\n\n# In case you're wondering why CAP_SYS_PTRACE is needed, access to\n# /proc/<pid>/exe requires this capability. Thus if this capability is missing\n# the _EXE=/OBJECT_EXE= fields will be missing from the journal entries.\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_DAC_OVERRIDE CAP_SYS_PTRACE CAP_SYSLOG CAP_AUDIT_CONTROL CAP_AUDIT_READ CAP_CHOWN CAP_DAC_READ_SEARCH CAP_FOWNER CAP_SETUID CAP_SETGID CAP_MAC_OVERRIDE\n\n# If there are many split up journal files we need a lot of fds to access them\n# all in parallel.\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-journald.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-journald.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-journald.socket","unit_text":"# /lib/systemd/system/systemd-journald.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nDefaultDependencies=no\nBefore=sockets.target\n\n# Mount and swap units need this. If this socket unit is removed by an isolate\n# request the mount and swap units would be removed too, hence let's exclude\n# systemd-journald and its sockets from isolate requests.\nIgnoreOnIsolate=yes\n\n[Socket]\nListenDatagram=/run/systemd/journal/socket\nListenStream=/run/systemd/journal/stdout\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\nService=systemd-journald.service\nSocketMode=0666\nTimestamping=us"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald@.service","unit_text":"# /lib/systemd/system/systemd-journald@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Service for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nRequires=systemd-journald@%i.socket systemd-journald-varlink@%i.socket\nAfter=systemd-journald@%i.socket systemd-journald-varlink@%i.socket\n\n[Service]\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_DAC_OVERRIDE CAP_SYS_PTRACE CAP_CHOWN CAP_DAC_READ_SEARCH CAP_FOWNER CAP_SETUID CAP_SETGID CAP_MAC_OVERRIDE\nDevicePolicy=closed\nExecStart=/lib/systemd/systemd-journald %i\nFileDescriptorStoreMax=4224\nGroup=systemd-journal\nIPAddressDeny=any\nLockPersonality=yes\nLogsDirectory=journal/%m.%i\nLogsDirectoryMode=02755\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/journal.%i\nRuntimeDirectoryPreserve=yes\nSockets=systemd-journald@%i.socket\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nWatchdogSec=3min\n\n# If there are many split up journal files we need a lot of fds to access them\n# all in parallel.\nLimitNOFILE=524288"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-journald@.socket","unit_text":"# /lib/systemd/system/systemd-journald@.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Journal Socket for Namespace %i\nDocumentation=man:systemd-journald.service(8) man:journald.conf(5)\nStopWhenUnneeded=yes\n\n[Socket]\nService=systemd-journald@%i.service\nListenStream=/run/systemd/journal.%i/stdout\nListenDatagram=/run/systemd/journal.%i/socket\nListenDatagram=/run/systemd/journal.%i/dev-log\nSocketMode=0666\nPassCredentials=<REDACTED>\nPassSecurity=yes\nReceiveBuffer=8M\nSendBuffer=8M"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemctl ; argv[]=systemctl --force kexec ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-kexec.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-kexec.service","unit_text":"# /lib/systemd/system/systemd-kexec.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Reboot via kexec\nDocumentation=man:systemd-kexec.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\n\n[Service]\nType=oneshot\nExecStart=systemctl --force kexec"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-localed ; argv[]=/lib/systemd/systemd-localed ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-localed.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-localed.service","unit_text":"# /lib/systemd/system/systemd-localed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Locale Service\nDocumentation=man:systemd-localed.service(8)\nDocumentation=man:locale.conf(5)\nDocumentation=man:vconsole.conf(5)\nDocumentation=man:org.freedesktop.locale1(5)\n\n[Service]\nBusName=org.freedesktop.locale1\nCapabilityBoundingSet=\nExecStart=/lib/systemd/systemd-localed\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateNetwork=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nReadWritePaths=/usr/lib/locale\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# /usr/lib/systemd/system/systemd-localed.service.d/locale-gen.conf\n[Service]\n# systemd-localed may run locale-gen which writes to /etc as well as to\n# /usr/lib/locale. This change softens the service hardening a bit so\n# both of these paths are writable.\nReadWritePaths=/usr/lib/locale/"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-logind ; argv[]=/lib/systemd/systemd-logind ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-logind.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-logind.service","unit_text":"# /lib/systemd/system/systemd-logind.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Login Management\nDocumentation=man:sd-login(3)\nDocumentation=man:systemd-logind.service(8)\nDocumentation=man:logind.conf(5)\nDocumentation=man:org.freedesktop.login1(5)\n\nWants=user.slice modprobe@drm.service\nAfter=nss-user-lookup.target user.slice modprobe@drm.service\nConditionPathExists=|/lib/systemd/system/dbus.service\nConditionPathExists=|/lib/systemd/system/dbus-broker.service\n\n# Ask for the dbus socket.\nWants=dbus.socket\nAfter=dbus.socket\n\n[Service]\nBusName=org.freedesktop.login1\nCapabilityBoundingSet=CAP_SYS_ADMIN CAP_MAC_ADMIN CAP_AUDIT_CONTROL CAP_CHOWN CAP_DAC_READ_SEARCH CAP_DAC_OVERRIDE CAP_FOWNER CAP_SYS_TTY_CONFIG CAP_LINUX_IMMUTABLE\nDeviceAllow=block-* r\nDeviceAllow=char-/dev/console rw\nDeviceAllow=char-drm rw\nDeviceAllow=char-hvc rw\nDeviceAllow=char-input rw\nDeviceAllow=char-tty rw\nDeviceAllow=char-vcs rw\nExecStart=/lib/systemd/systemd-logind\nFileDescriptorStoreMax=512\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\n# We don't use ProtectProc= since we need to look for usernames and tty for wall messages\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nReadWritePaths=/etc /run\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=<REDACTED>\nRuntimeDirectoryPreserve=yes\nStateDirectory=systemd/linger\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nWatchdogSec=3min\n\n# Increase the default a bit in order to allow many simultaneous logins since\n<REDACTED_SECRET_LINE>\nLimitNOFILE=524288"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-machine-id-setup ; argv[]=systemd-machine-id-setup --commit ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-machine-id-commit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-machine-id-commit.service","unit_text":"# /lib/systemd/system/systemd-machine-id-commit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Commit a transient machine-id on disk\nDocumentation=man:systemd-machine-id-commit.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=shutdown.target\nAfter=local-fs.target first-boot-complete.target\nConditionPathIsReadWrite=/etc\nConditionPathIsMountPoint=/etc/machine-id\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-machine-id-setup --commit\nTimeoutSec=30s"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-modules-load ; argv[]=/lib/systemd/systemd-modules-load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-modules-load.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-modules-load.service","unit_text":"# /lib/systemd/system/systemd-modules-load.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load Kernel Modules\nDocumentation=man:systemd-modules-load.service(8) man:modules-load.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nConditionCapability=CAP_SYS_MODULE\nConditionDirectoryNotEmpty=|/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/lib/modules-load.d\nConditionDirectoryNotEmpty=|/usr/local/lib/modules-load.d\nConditionDirectoryNotEmpty=|/etc/modules-load.d\nConditionDirectoryNotEmpty=|/run/modules-load.d\nConditionKernelCommandLine=|modules-load\nConditionKernelCommandLine=|modules_load\nConditionKernelCommandLine=|rd.modules-load\nConditionKernelCommandLine=|rd.modules_load\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-modules-load\nTimeoutSec=90s"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-network-generator ; argv[]=/lib/systemd/systemd-network-generator ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-network-generator.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-network-generator.service","unit_text":"# /lib/systemd/system/systemd-network-generator.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Generate network units from Kernel command line\nDocumentation=man:systemd-network-generator.service(8)\n\nDefaultDependencies=no\nBefore=network-pre.target systemd-udevd.service\nWants=network-pre.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-network-generator\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd-wait-online ; argv[]=/lib/systemd/systemd-networkd-wait-online ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd-wait-online.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd-wait-online.service","unit_text":"# /lib/systemd/system/systemd-networkd-wait-online.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait for Network to be Configured\nDocumentation=man:systemd-networkd-wait-online.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nBindsTo=systemd-networkd.service\nAfter=systemd-networkd.service\nBefore=network-online.target shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-networkd-wait-online\nRemainAfterExit=yes\n\n[Install]\nWantedBy=network-online.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"systemd-networkd-wait-online@.service","unit_text":"# /lib/systemd/system/systemd-networkd-wait-online@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait for Network Interface %i to be Configured\nDocumentation=man:systemd-networkd-wait-online.service(8)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\nConflicts=shutdown.target\nBindsTo=systemd-networkd.service\nAfter=systemd-networkd.service\nBefore=network-online.target shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-networkd-wait-online -i %i\nRemainAfterExit=yes\n\n[Install]\nWantedBy=network-online.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-networkd ; argv[]=/lib/systemd/systemd-networkd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-networkd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-networkd.socket","Triggers":"","UnitFileState":"enabled","User":"systemd-network","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd.service","unit_text":"# /lib/systemd/system/systemd-networkd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Configuration\nDocumentation=man:systemd-networkd.service(8)\nDocumentation=man:org.freedesktop.network1(5)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\n# systemd-udevd.service can be dropped once tuntap is moved to netlink\nAfter=systemd-networkd.socket systemd-udevd.service network-pre.target systemd-sysusers.service systemd-sysctl.service\nBefore=network.target multi-user.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=systemd-networkd.socket network.target\n\n[Service]\nAmbientCapabilities=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nBusName=org.freedesktop.network1\nCapabilityBoundingSet=CAP_NET_ADMIN CAP_NET_BIND_SERVICE CAP_NET_BROADCAST CAP_NET_RAW\nDeviceAllow=char-* rw\nExecStart=!!/lib/systemd/systemd-networkd\nExecReload=networkctl reload\nFileDescriptorStoreMax=512\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectSystem=strict\nRestart=on-failure\nRestartKillSignal=SIGUSR2\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6 AF_PACKET\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/netif\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-network\nWatchdogSec=3min\n\n[Install]\nWantedBy=multi-user.target\nAlso=systemd-networkd.socket\nAlias=dbus-org.freedesktop.network1.service\n\n# The output from this generator is used by udevd and networkd. Enable it by\n# default when enabling systemd-networkd.service.\nAlso=systemd-network-generator.service\n\n# We want to enable systemd-networkd-wait-online.service whenever this service\n# is enabled. systemd-networkd-wait-online.service has\n# WantedBy=network-online.target, so enabling it only has an effect if\n# network-online.target itself is enabled or pulled in by some other unit.\nAlso=systemd-networkd-wait-online.service"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-networkd.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-networkd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-networkd.socket","unit_text":"# /lib/systemd/system/systemd-networkd.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Service Netlink Socket\nDocumentation=man:systemd-networkd.service(8) man:rtnetlink(7)\nConditionCapability=CAP_NET_ADMIN\nDefaultDependencies=no\nBefore=sockets.target shutdown.target\nConflicts=shutdown.target\n\n[Socket]\nReceiveBuffer=128M\nListenNetlink=route 1361\nPassPacketInfo=yes\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful enter-initrd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase-initrd.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase-initrd.service","unit_text":"# /lib/systemd/system/systemd-pcrphase-initrd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (initrd)\nDocumentation=man:systemd-pcrphase-initrd.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target initrd-switch-root.target\nBefore=sysinit.target cryptsetup-pre.target cryptsetup.target shutdown.target initrd-switch-root.target systemd-sysext.service\nConditionPathExists=/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful enter-initrd\nExecStop=/lib/systemd/systemd-pcrphase --graceful leave-initrd"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful sysinit ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase-sysinit.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase-sysinit.service","unit_text":"# /lib/systemd/system/systemd-pcrphase-sysinit.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (Initialization)\nDocumentation=man:systemd-pcrphase-sysinit.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysinit.target\nBefore=basic.target shutdown.target\nConditionPathExists=!/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful sysinit\nExecStop=/lib/systemd/systemd-pcrphase --graceful final"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pcrphase ; argv[]=/lib/systemd/systemd-pcrphase --graceful ready ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pcrphase.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pcrphase.service","unit_text":"# /lib/systemd/system/systemd-pcrphase.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=TPM2 PCR Barrier (User)\nDocumentation=man:systemd-pcrphase.service(8)\nAfter=remote-fs.target remote-cryptsetup.target\nBefore=<REDACTED>\nConditionPathExists=!/etc/initrd-release\nConditionSecurity=tpm2\nConditionPathExists=/sys/firmware/efi/efivars/StubPcrKernelImage-4a67b082-0a4c-41cf-b6c7-440b29bb8c4f\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-pcrphase --graceful ready\nExecStop=/lib/systemd/systemd-pcrphase --graceful shutdown"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-poweroff.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-poweroff.service","unit_text":"# /lib/systemd/system/systemd-poweroff.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Power Off\nDocumentation=man:systemd-poweroff.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=poweroff-force"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-pstore ; argv[]=/lib/systemd/systemd-pstore ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-pstore.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-pstore.service","unit_text":"# /lib/systemd/system/systemd-pstore.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Platform Persistent Storage Archival\nDocumentation=man:systemd-pstore(8)\nConditionDirectoryNotEmpty=/sys/fs/pstore\nConditionVirtualization=!container\nDefaultDependencies=no\nConflicts=shutdown.target\nBefore=sysinit.target shutdown.target\nAfter=modprobe@efi_pstore.service\nWants=modprobe@efi_pstore.service\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-pstore\nRemainAfterExit=yes\nStateDirectory=systemd/pstore\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-quotacheck ; argv[]=/lib/systemd/systemd-quotacheck ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-quotacheck.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-quotacheck.service","unit_text":"# /lib/systemd/system/systemd-quotacheck.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=File System Quota Check\nDocumentation=man:systemd-quotacheck.service(8)\nDefaultDependencies=no\nAfter=systemd-remount-fs.service\nBefore=remote-fs.target shutdown.target\nConditionPathExists=/sbin/quotacheck\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-quotacheck\nTimeoutSec=0"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-random-seed ; argv[]=/lib/systemd/systemd-random-seed load ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-random-seed.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-random-seed.service","unit_text":"# /lib/systemd/system/systemd-random-seed.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save Random Seed\nDocumentation=man:systemd-random-seed.service(8) man:random(4)\nDefaultDependencies=no\nRequiresMountsFor=/var/lib/systemd/random-seed\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service\nBefore=first-boot-complete.target shutdown.target\nWants=first-boot-complete.target\nConditionVirtualization=!container\nConditionPathExists=!/etc/initrd-release\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-random-seed load\nExecStop=/lib/systemd/systemd-random-seed save\n\n# This service waits until the kernel's entropy pool is initialized, and may be\n# used as ordering barrier for service that require an initialized entropy\n# pool. Since initialization can take a while on entropy-starved systems, let's\n# increase the timeout substantially here.\nTimeoutSec=10min"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-reboot.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-reboot.service","unit_text":"# /lib/systemd/system/systemd-reboot.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Reboot\nDocumentation=man:systemd-reboot.service(8)\nDefaultDependencies=no\nRequires=shutdown.target umount.target final.target\nAfter=shutdown.target umount.target final.target\nSuccessAction=reboot-force"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-remount-fs ; argv[]=/lib/systemd/systemd-remount-fs ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-remount-fs.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"enabled-runtime","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-remount-fs.service","unit_text":"# /lib/systemd/system/systemd-remount-fs.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Remount Root and Kernel File Systems\nDocumentation=man:systemd-remount-fs.service(8)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/APIFileSystems\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-fsck-root.service\nBefore=local-fs-pre.target local-fs.target shutdown.target\nWants=local-fs-pre.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-remount-fs"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/bin/systemd-repart ; argv[]=/bin/systemd-repart --dry-run=no ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-repart.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-repart.service","unit_text":"# /lib/systemd/system/systemd-repart.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Repartition Root Disk\nDocumentation=man:systemd-repart.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nWants=modprobe@loop.service modprobe@dm_mod.service\nAfter=initrd-usr-fs.target modprobe@loop.service modprobe@dm_mod.service\nBefore=initrd-root-fs.target shutdown.target\nConditionVirtualization=!container\nConditionDirectoryNotEmpty=|/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/usr/local/lib/repart.d\nConditionDirectoryNotEmpty=|/etc/repart.d\nConditionDirectoryNotEmpty=|/run/repart.d\nConditionDirectoryNotEmpty=|/sysroot/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/sysroot/usr/local/lib/repart.d\nConditionDirectoryNotEmpty=|/sysroot/etc/repart.d\nConditionDirectoryNotEmpty=|/sysusr/usr/lib/repart.d\nConditionDirectoryNotEmpty=|/sysusr/usr/local/lib/repart.d\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/bin/systemd-repart --dry-run=no\n\n# The tool returns 77 if there's no existing GPT partition table\nSuccessExitStatus=77"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-resolved ; argv[]=/lib/systemd/systemd-resolved ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-resolved.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-resolve","WorkingDirectory":""},"source_linked":false,"unit":"systemd-resolved.service","unit_text":"# /lib/systemd/system/systemd-resolved.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Name Resolution\nDocumentation=man:systemd-resolved.service(8)\nDocumentation=man:org.freedesktop.resolve1(5)\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-network-configuration-managers\nDocumentation=https://www.freedesktop.org/wiki/Software/systemd/writing-resolver-clients\n\nDefaultDependencies=no\nAfter=systemd-sysctl.service systemd-sysusers.service\nBefore=sysinit.target network.target nss-lookup.target shutdown.target initrd-switch-root.target\nConflicts=shutdown.target initrd-switch-root.target\nWants=nss-lookup.target\n\n[Service]\nAmbientCapabilities=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nBusName=org.freedesktop.resolve1\nCapabilityBoundingSet=CAP_SETPCAP CAP_NET_RAW CAP_NET_BIND_SERVICE\nExecStart=!!/lib/systemd/systemd-resolved\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectClock=yes\nProtectControlGroups=yes\nProtectHome=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/resolve\nRuntimeDirectoryPreserve=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service\nType=notify\nUser=systemd-resolve\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.resolve1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-rfkill ; argv[]=/lib/systemd/systemd-rfkill ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-rfkill.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-rfkill.service","unit_text":"# /lib/systemd/system/systemd-rfkill.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save RF Kill Switch Status\nDocumentation=man:systemd-rfkill.service(8)\nDefaultDependencies=no\nBindsTo=sys-devices-virtual-misc-rfkill.device\nConflicts=shutdown.target\nAfter=sys-devices-virtual-misc-rfkill.device\nBefore=shutdown.target\n\n[Service]\nExecStart=/lib/systemd/systemd-rfkill\nNoNewPrivileges=yes\nStateDirectory=systemd/rfkill\nTimeoutSec=30s\nType=notify"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/systemd-rfkill.socket","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"systemd-rfkill.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-rfkill.socket","unit_text":"# /lib/systemd/system/systemd-rfkill.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Load/Save RF Kill Switch Status /dev/rfkill Watch\nDocumentation=man:systemd-rfkill.socket(8)\nDefaultDependencies=no\nBindsTo=sys-devices-virtual-misc-rfkill.device\nAfter=sys-devices-virtual-misc-rfkill.device systemd-remount-fs.service\nRequiresMountsFor=/var/lib/systemd/rfkill\nConflicts=shutdown.target\nBefore=shutdown.target\n\n[Socket]\nListenSpecial=/dev/rfkill\nWritable=yes"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep suspend-then-hibernate ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-suspend-then-hibernate.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-suspend-then-hibernate.service","unit_text":"# /lib/systemd/system/systemd-suspend-then-hibernate.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Suspend then Hibernate\nDocumentation=man:systemd-suspend-then-hibernate.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep suspend-then-hibernate"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-sleep ; argv[]=/lib/systemd/systemd-sleep suspend ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-suspend.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-suspend.service","unit_text":"# /lib/systemd/system/systemd-suspend.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=System Suspend\nDocumentation=man:systemd-suspend.service(8)\nDefaultDependencies=no\nRequires=sleep.target\nAfter=sleep.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-sleep suspend"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-sysctl ; argv[]=/lib/systemd/systemd-sysctl ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysctl.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysctl.service","unit_text":"# /lib/systemd/system/systemd-sysctl.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Apply Kernel Variables\nDocumentation=man:systemd-sysctl.service(8) man:sysctl.d(5)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=systemd-modules-load.service\nBefore=sysinit.target shutdown.target\nConditionPathIsReadWrite=/proc/sys/net/\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-sysctl\nTimeoutSec=90s\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-sysext ; argv[]=systemd-sysext merge ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysext.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysext.service","unit_text":"# /lib/systemd/system/systemd-sysext.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Merge System Extension Images into /usr/ and /opt/\nDocumentation=man:systemd-sysext.service(8)\n\nConditionCapability=CAP_SYS_ADMIN\nConditionDirectoryNotEmpty=|/etc/extensions\nConditionDirectoryNotEmpty=|/run/extensions\nConditionDirectoryNotEmpty=|/var/lib/extensions\nConditionDirectoryNotEmpty=|/usr/local/lib/extensions\nConditionDirectoryNotEmpty=|/usr/lib/extensions\n\nDefaultDependencies=no\nAfter=local-fs.target\nBefore=sysinit.target systemd-tmpfiles-setup.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-sysext merge\nExecStop=systemd-sysext unmerge\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-sysusers ; argv[]=systemd-sysusers ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-sysusers.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-sysusers.service","unit_text":"# /lib/systemd/system/systemd-sysusers.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create System Users\nDocumentation=man:sysusers.d(5) man:systemd-sysusers.service(8)\n\nDefaultDependencies=no\nAfter=systemd-remount-fs.service\nBefore=sysinit.target systemd-update-done.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\nConditionNeedsUpdate=|/etc\nConditionCredential=<REDACTED>\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-sysusers\nTimeoutSec=90s\n\n<REDACTED_SECRET_LINE>\n<REDACTED_SECRET_LINE>\n# data from nspawn's --set-credential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\n\n<REDACTED_SECRET_LINE>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-time-wait-sync ; argv[]=/lib/systemd/systemd-time-wait-sync ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-time-wait-sync.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"disabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-time-wait-sync.service","unit_text":"# /lib/systemd/system/systemd-time-wait-sync.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Wait Until Kernel Time Synchronized\nDocumentation=man:systemd-time-wait-sync.service(8)\n\n# Note that this tool doesn't need CAP_SYS_TIME itself, but its primary\n# usecase is to run in conjunction with a local NTP service such as\n# systemd-timesyncd.service, which is conditioned this way. There might be\n# niche usecases where running this service independently is desired, but let's\n# make this all \"just work\" for the general case, and leave it to local\n# modifications to make it work in the remaining cases.\n\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\n\nDefaultDependencies=no\nBefore=time-sync.target shutdown.target\nWants=time-sync.target\nConflicts=shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-time-wait-sync\nTimeoutStartSec=infinity\nRemainAfterExit=yes\n\n[Install]\nWantedBy=sysinit.target"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-timedated ; argv[]=/lib/systemd/systemd-timedated ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timedated.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-timedated.service","unit_text":"# /lib/systemd/system/systemd-timedated.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Time & Date Service\nDocumentation=man:systemd-timedated.service(8)\nDocumentation=man:localtime(5)\nDocumentation=man:org.freedesktop.timedate1(5)\n\n[Service]\nBusName=org.freedesktop.timedate1\nCapabilityBoundingSet=CAP_SYS_TIME\nDeviceAllow=char-rtc r\nExecStart=/lib/systemd/systemd-timedated\nIPAddressDeny=any\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nReadWritePaths=/etc\nRestrictAddressFamilies=AF_UNIX\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-timesyncd ; argv[]=/lib/systemd/systemd-timesyncd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-timesyncd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"systemd-timesync","WorkingDirectory":""},"source_linked":false,"unit":"systemd-timesyncd.service","unit_text":"# /lib/systemd/system/systemd-timesyncd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Network Time Synchronization\nDocumentation=man:systemd-timesyncd.service(8)\nConditionCapability=CAP_SYS_TIME\nConditionVirtualization=!container\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=time-set.target sysinit.target shutdown.target\nConflicts=shutdown.target\nWants=time-set.target\n\n[Service]\nAmbientCapabilities=CAP_SYS_TIME\nBusName=org.freedesktop.timesync1\nCapabilityBoundingSet=CAP_SYS_TIME\n# Turn off DNSSEC validation for hostname look-ups, since those need the\n# correct time to work, but we likely won't acquire that without NTP. Let's\n# break this chicken-and-egg cycle here.\nEnvironment=SYSTEMD_NSS_RESOLVE_VALIDATE=0\nExecStart=!!/lib/systemd/systemd-timesyncd\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nNoNewPrivileges=yes\nPrivateDevices=yes\nPrivateTmp=yes\nProtectProc=invisible\nProtectControlGroups=yes\nProtectHome=yes\nProtectHostname=yes\nProtectKernelLogs=yes\nProtectKernelModules=yes\nProtectKernelTunables=yes\nProtectSystem=strict\nRestart=always\nRestartSec=0\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nRestrictNamespaces=yes\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nRuntimeDirectory=systemd/timesync\nStateDirectory=systemd/timesync\nSystemCallArchitectures=native\nSystemCallErrorNumber=EPERM\nSystemCallFilter=@system-service @clock\nType=notify\nUser=systemd-timesync\nWatchdogSec=3min\n\n[Install]\nWantedBy=sysinit.target\nAlias=dbus-org.freedesktop.timesync1.service"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --clean ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-clean.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"systemd-tmpfiles-clean.timer","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-clean.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-clean.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Cleanup of Temporary Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=local-fs.target time-set.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nExecStart=systemd-tmpfiles --clean\nSuccessExitStatus=DATAERR\nIOSchedulingClass=idle\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-clean.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"systemd-tmpfiles-clean.service","UnitFileState":"static"},"source_linked":false,"unit":"systemd-tmpfiles-clean.timer","unit_text":"# /lib/systemd/system/systemd-tmpfiles-clean.timer\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Daily Cleanup of Temporary Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\nConditionPathExists=!/etc/initrd-release\n\n[Timer]\nOnBootSec=15min\nOnUnitActiveSec=1d"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --prefix=/dev --create --boot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-setup-dev.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-setup-dev.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-setup-dev.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create Static Device Nodes in /dev\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=systemd-sysusers.service\nBefore=sysinit.target local-fs-pre.target systemd-udevd.service\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-tmpfiles --prefix=/dev --create --boot\nSuccessExitStatus=DATAERR CANTCREAT\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=systemd-tmpfiles ; argv[]=systemd-tmpfiles --create --remove --boot --exclude-prefix=/dev ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-tmpfiles-setup.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-tmpfiles-setup.service","unit_text":"# /lib/systemd/system/systemd-tmpfiles-setup.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Create System Files and Directories\nDocumentation=man:tmpfiles.d(5) man:systemd-tmpfiles(8)\n\nDefaultDependencies=no\nAfter=local-fs.target systemd-sysusers.service systemd-journald.service\nBefore=sysinit.target\nConflicts=shutdown.target initrd-switch-root.target\nBefore=shutdown.target initrd-switch-root.target\nRefuseManualStop=yes\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=systemd-tmpfiles --create --remove --boot --exclude-prefix=/dev\nSuccessExitStatus=DATAERR CANTCREAT\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>\nLoadCredential=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=udevadm ; argv[]=udevadm settle ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udev-settle.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udev-settle.service","unit_text":"# /lib/systemd/system/systemd-udev-settle.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n# This service can dynamically be pulled-in by legacy services which\n# cannot reliably cope with dynamic device configurations, and wrongfully\n# expect a populated /dev during bootup.\n\n[Unit]\nDescription=Wait for udev To Complete Device Initialization\nDocumentation=man:systemd-udev-settle.service(8)\nDefaultDependencies=no\nWants=systemd-udevd.service\nAfter=systemd-udev-trigger.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nType=oneshot\nTimeoutSec=180\nRemainAfterExit=yes\nExecStart=udevadm settle"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=udevadm ; argv[]=udevadm trigger --type=all --action=add --prioritized-subsystem=module,block,tpmrm,net,tty,input ; ignore_errors=yes ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udev-trigger.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udev-trigger.service","unit_text":"# /lib/systemd/system/systemd-udev-trigger.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Coldplug All udev Devices\nDocumentation=man:udev(7) man:systemd-udevd.service(8)\nDefaultDependencies=no\nWants=systemd-udevd.service\nAfter=systemd-udevd-kernel.socket systemd-udevd-control.socket\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=-udevadm trigger --type=all --action=add --prioritized-subsystem=module,block,tpmrm,net,tty,input"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-udevd-control.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-udevd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd-control.socket","unit_text":"# /lib/systemd/system/systemd-udevd-control.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=udev Control Socket\nDocumentation=man:systemd-udevd-control.socket(8) man:udev(7)\nDefaultDependencies=no\nBefore=sockets.target\nConditionPathIsReadWrite=/sys\n\n[Socket]\nService=systemd-udevd.service\nListenSequentialPacket=/run/udev/control\nSocketMode=0600\nPassCredentials=<REDACTED>\nRemoveOnStop=yes"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/systemd-udevd-kernel.socket","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"systemd-udevd.service","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd-kernel.socket","unit_text":"# /lib/systemd/system/systemd-udevd-kernel.socket\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=udev Kernel Socket\nDocumentation=man:systemd-udevd-kernel.socket(8) man:udev(7)\nDefaultDependencies=no\nBefore=sockets.target\nConditionPathIsReadWrite=/sys\n\n[Socket]\nService=systemd-udevd.service\nReceiveBuffer=128M\nListenNetlink=kobject-uevent 1\nPassCredentials=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-udevd ; argv[]=/lib/systemd/systemd-udevd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udevd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-udevd-control.socket systemd-udevd-kernel.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-udevd.service","unit_text":"# /lib/systemd/system/systemd-udevd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rule-based Manager for Device Events and Files\nDocumentation=man:systemd-udevd.service(8) man:udev(7)\nDefaultDependencies=no\nAfter=systemd-sysusers.service systemd-hwdb-update.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nCapabilityBoundingSet=~CAP_SYS_TIME CAP_WAKE_ALARM\nDelegate=pids\nType=notify\n# Note that udev will reset the value internally for its workers\nOOMScoreAdjust=-1000\nSockets=systemd-udevd-control.socket systemd-udevd-kernel.socket\nRestart=always\nRestartSec=0\nExecStart=/lib/systemd/systemd-udevd\nExecReload=udevadm control --reload --timeout 0\nKillMode=mixed\nTasksMax=infinity\nPrivateMounts=yes\nProtectHostname=yes\nMemoryDenyWriteExecute=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallFilter=@system-service @module @raw-io bpf\nSystemCallFilter=~@clock\nSystemCallErrorNumber=EPERM\nLockPersonality=yes\nIPAddressDeny=any\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-update-utmp ; argv[]=/lib/systemd/systemd-update-utmp runlevel ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-update-utmp-runlevel.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-update-utmp-runlevel.service","unit_text":"# /lib/systemd/system/systemd-update-utmp-runlevel.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Record Runlevel Change in UTMP\nDocumentation=man:systemd-update-utmp-runlevel.service(8) man:utmp(5)\nDefaultDependencies=no\nRequiresMountsFor=/var/log/wtmp\nConflicts=shutdown.target\nRequisite=systemd-update-utmp.service\nAfter=systemd-update-utmp.service\nAfter=runlevel1.target runlevel2.target runlevel3.target runlevel4.target runlevel5.target\nBefore=shutdown.target\n\n[Service]\nType=oneshot\nExecStart=/lib/systemd/systemd-update-utmp runlevel"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-update-utmp ; argv[]=/lib/systemd/systemd-update-utmp reboot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-update-utmp.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-update-utmp.service","unit_text":"# /lib/systemd/system/systemd-update-utmp.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Record System Boot/Shutdown in UTMP\nDocumentation=man:systemd-update-utmp.service(8) man:utmp(5)\nDefaultDependencies=no\nRequiresMountsFor=/var/log/wtmp\nConflicts=shutdown.target\nAfter=systemd-remount-fs.service systemd-tmpfiles-setup.service auditd.service\nBefore=sysinit.target shutdown.target\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-update-utmp reboot\nExecStop=/lib/systemd/systemd-update-utmp shutdown"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-user-sessions ; argv[]=/lib/systemd/systemd-user-sessions start ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-user-sessions.service","Group":"","LoadState":"loaded","SubState":"exited","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-user-sessions.service","unit_text":"<REDACTED_SECRET_LINE>\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=<REDACTED>\nDocumentation=<REDACTED>\nAfter=remote-fs.target nss-user-lookup.target network.target home.mount\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=<REDACTED>\nExecStop=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/lib/systemd/systemd-volatile-root ; argv[]=/lib/systemd/systemd-volatile-root yes /sysroot ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-volatile-root.service","Group":"","LoadState":"loaded","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"systemd-volatile-root.service","unit_text":"# /lib/systemd/system/systemd-volatile-root.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Enforce Volatile Root File Systems\nDocumentation=man:systemd-volatile-root.service(8)\nDefaultDependencies=no\nConflicts=shutdown.target\nAfter=sysroot.mount sysroot-usr.mount systemd-repart.service\nBefore=initrd-root-fs.target shutdown.target\nAssertPathExists=/etc/initrd-release\n\n[Service]\nType=oneshot\nRemainAfterExit=yes\nExecStart=/lib/systemd/systemd-volatile-root yes /sysroot"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/lib/systemd/systemd-udevd ; argv[]=/lib/systemd/systemd-udevd ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/systemd-udevd.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"systemd-udevd-control.socket systemd-udevd-kernel.socket","Triggers":"","UnitFileState":"static","User":"","WorkingDirectory":""},"source_linked":false,"unit":"udev.service","unit_text":"# /lib/systemd/system/systemd-udevd.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=Rule-based Manager for Device Events and Files\nDocumentation=man:systemd-udevd.service(8) man:udev(7)\nDefaultDependencies=no\nAfter=systemd-sysusers.service systemd-hwdb-update.service\nBefore=sysinit.target\nConditionPathIsReadWrite=/sys\n\n[Service]\nCapabilityBoundingSet=~CAP_SYS_TIME CAP_WAKE_ALARM\nDelegate=pids\nType=notify\n# Note that udev will reset the value internally for its workers\nOOMScoreAdjust=-1000\nSockets=systemd-udevd-control.socket systemd-udevd-kernel.socket\nRestart=always\nRestartSec=0\nExecStart=/lib/systemd/systemd-udevd\nExecReload=udevadm control --reload --timeout 0\nKillMode=mixed\nTasksMax=infinity\nPrivateMounts=yes\nProtectHostname=yes\nMemoryDenyWriteExecute=yes\nRestrictAddressFamilies=AF_UNIX AF_NETLINK AF_INET AF_INET6\nRestrictRealtime=yes\nRestrictSUIDSGID=yes\nSystemCallFilter=@system-service @module @raw-io bpf\nSystemCallFilter=~@clock\nSystemCallErrorNumber=EPERM\nLockPersonality=yes\nIPAddressDeny=any\nWatchdogSec=3min"},{"project_linked":true,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/share/unattended-upgrades/unattended-upgrade-shutdown ; argv[]=/usr/share/unattended-upgrades/unattended-upgrade-shutdown --wait-for-signal ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/unattended-upgrades.service","Group":"","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"unattended-upgrades.service","unit_text":"# /lib/systemd/system/unattended-upgrades.service\n[Unit]\nDescription=Unattended Upgrades Shutdown\nAfter=network.target local-fs.target systemd-logind.service\nRequiresMountsFor=/run /var/log /var/run /var/lib /boot\nDocumentation=man:unattended-upgrade(8)\n\n[Service]\nExecStart=/usr/share/unattended-upgrades/unattended-upgrade-shutdown --wait-for-signal\nKillMode=process\nTimeoutStopSec=1800\n\n[Install]\nWantedBy=multi-user.target"},{"project_linked":true,"show":{},"source_linked":false,"unit":"user-runtime-dir@.service","unit_text":"# /lib/systemd/system/user-runtime-dir@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Runtime Directory /run/user/%i\nDocumentation=man:user@.service(5)\nAfter=dbus.service\nStopWhenUnneeded=yes\nIgnoreOnIsolate=yes\n\n[Service]\nExecStart=/lib/systemd/systemd-user-runtime-dir start %i\nExecStop=/lib/systemd/systemd-user-runtime-dir stop %i\nType=oneshot\nRemainAfterExit=yes\nSlice=user-%i.slice"},{"project_linked":true,"show":{},"source_linked":false,"unit":"user@.service","unit_text":"# /lib/systemd/system/user@.service\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\nDescription=User Manager for UID %i\nDocumentation=man:user@.service(5)\nAfter=user-runtime-dir@%i.service dbus.service systemd-oomd.service\nRequires=user-runtime-dir@%i.service\nIgnoreOnIsolate=yes\n\n[Service]\nUser=%i\nPAMName=systemd-user\nType=notify\nExecStart=/lib/systemd/systemd --user\nSlice=user-%i.slice\nKillMode=mixed\nDelegate=pids memory cpu\nTasksMax=infinity\nTimeoutStopSec=120s\nKeyringMode=inherit\nOOMScoreAdjust=100\n\n# /usr/lib/systemd/system/user@.service.d/10-login-barrier.conf\n# SPDX-License-Identifier: LGPL-2.1-or-later\n#\n# This file is part of systemd.\n#\n# systemd is free software; you can redistribute it and/or modify it\n# under the terms of the GNU Lesser General Public License as published by\n# the Free Software Foundation; either version 2.1 of the License, or\n# (at your option) any later version.\n\n[Unit]\n# Make sure user instances are started after logins are allowed. However this\n# is not desirable for user@0.service since root should be able to log in\n# earlier during the boot process especially if something goes wrong.\nAfter=<REDACTED>"},{"project_linked":true,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/sbin/uuidd ; argv[]=/usr/sbin/uuidd --socket-activation ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/lib/systemd/system/uuidd.service","Group":"uuidd","LoadState":"loaded","SubState":"dead","TriggeredBy":"uuidd.socket","Triggers":"","UnitFileState":"indirect","User":"uuidd","WorkingDirectory":""},"source_linked":false,"unit":"uuidd.service","unit_text":"# /lib/systemd/system/uuidd.service\n[Unit]\nDescription=Daemon for generating UUIDs\nDocumentation=man:uuidd(8)\nRequires=uuidd.socket\n\n[Service]\nExecStart=/usr/sbin/uuidd --socket-activation\nRestart=no\nUser=uuidd\nGroup=uuidd\nProtectSystem=strict\nProtectHome=yes\nPrivateDevices=yes\nPrivateUsers=yes\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectControlGroups=yes\nMemoryDenyWriteExecute=yes\nReadWritePaths=/var/lib/libuuid/\nSystemCallFilter=@default @file-system @basic-io @system-service @signal @io-event @network-io\n\n[Install]\nAlso=uuidd.socket"},{"project_linked":true,"show":{"ActiveState":"active","FragmentPath":"/lib/systemd/system/uuidd.socket","Group":"","LoadState":"loaded","SubState":"listening","TriggeredBy":"","Triggers":"uuidd.service","UnitFileState":"enabled","User":"","WorkingDirectory":""},"source_linked":false,"unit":"uuidd.socket","unit_text":"# /lib/systemd/system/uuidd.socket\n[Unit]\nDescription=UUID daemon activation socket\n\n[Socket]\nListenStream=/run/uuidd/request\n\n[Install]\nWantedBy=sockets.target"},{"project_linked":true,"show":{"ActiveState":"inactive","FragmentPath":"/lib/systemd/system/x11-common.service","Group":"","LoadState":"masked","SubState":"dead","TriggeredBy":"","Triggers":"","UnitFileState":"masked","User":"","WorkingDirectory":""},"source_linked":false,"unit":"x11-common.service","unit_text":"# Unit x11-common.service is masked."}]},"schema":36,"status":"OK","transport":{"rc":0,"stderr":"","stderr_bytes":0,"stderr_sha256":"e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855","stdout_bytes":462420,"stdout_sha256":"19b0301f2172500169375c703aa1f19fb440ef59c03ee9e7029a8957e04b82bd"},"v35_exact_result":{"actual_ui_source":{"bytes":28599,"contexts":[{"line":73,"matched":["observe/notify"],"text":" return f\"\"\"<!doctype html><html lang=<REDACTED>"},{"line":208,"matched":["VM и CT","Инциденты"],"text":" cards = \"\".join([summary_card(\"Ноды\", counts[\"nodes\"], \"OK\" if counts[\"nodes\"] > 0 else \"ERROR\"), summary_card(\"VM и CT\", counts[\"guests\"], \"OK\" if counts[\"guests\"] > 0 else \"ERROR\"), summary_card(\"Сервисы\", counts[\"services\"], \"OK\" if counts[\"services\"] > 0 else \"ERROR\"), summary_card(\"Инциденты\", counts[\"incidents\"], \"ERROR\" if counts[\"incidents\"] > 0 else \"OK\")])"},{"line":217,"matched":["Активные инциденты"],"text":" incidents_html = health_section(\"Активные инциденты\", len(incidents), incidents_state, incidents_table)"},{"line":220,"matched":["Cluster Admin Incident Engine","observe/notify","auto-heal отключён"],"text":" page = f\"\"\"<!doctype html><html lang=\"ru\"><head><meta charset=\"utf-8\"><meta name=\"viewport\" content=\"width=device-width,initial-scale=1\"><meta http-equiv=\"refresh\" content=\"30\"><title>Cluster Admin Incident Engine</title><style>body{{margin:0;background:#07101d;color:#e8eef7;font:14px Arial}}header{{padding:14px 22px;background:#101b2b;border-bottom:1px solid #2a3b54;display:flex;justify-content:space-between}}main{{max-width:1500px;margin:auto;padding:20px}}.cards{{display:grid;grid-template-columns:repeat(4,1fr);gap:14px}}.card,.panel{{background:#111d2e;border:1px solid #283b56;border-radius:14px;padding:16px}}.card b{{font-size:30px;display:block}}.card span,.muted{{color:#879ab3}}.grid{{display:grid;grid-template-columns:1fr 1fr;gap:14px;margin-top:14px}}.wide{{grid-column:1/-1}}table{{width:100%;border-collapse:collapse}}th,td{{padding:9px;border-bottom:1px solid #253750;text-align:left}}th{{color:#8fa3bc}}.state{{display:inline-flex;align-items:center;gap:7px;font-weight:700}}.state-dot{{width:10px;height:10px;border-radius:50%;display:inline-block;background:#8392a5}}.state-ok .state-dot{{background:#39d98a;box-shadow:0 0 12px rgba(57,217,138,.75)}}.state-bad .state-dot{{background:#ff5d73;box-shadow:0 0 12px rgba(255,93,115,.75)}}.state-warn .state-dot{{background:#f6c85f;box-shadow:0 0 12px rgba(246,200,95,.7)}}.state-unknown .state-dot{{background:#8392a5}}.row-bad{{background:rgba(255,93,115,.07)}}.row-warn{{background:rgba(246,200,95,.06)}}.card-health{{float:right}}.health-section{{padding:0;overflow:hidden}}.health-section summary{{list-style:none;cursor:pointer;display:flex;align-items:center;justify-content:space-between;gap:12px;padding:16px;user-select:none}}.health-section summary::-webkit-details-marker{{display:none}}.section-heading{{display:flex;align-items:center;gap:10px;font-size:20px;font-weight:700}}.section-heading .state{{font-size:0}}.section-title{{color:#e8eef7}}.section-count{{font-size:12px;color:#879ab3;border:1px solid #334a68;border-radius:999px;padding:3px 8px}}.section-chevron{{font-size:20px;color:#8fa3bc;transition:transform .18s ease}}.health-section[open] .section-chevron{{transform:rotate(180deg)}}.health-section[open] summary{{border-bottom:1px solid #253750;margin-bottom:8px}}.section-body{{padding:0 16px 16px}}button{{background:#18283d;color:white;border:1px solid #3b506d;border-radius:8px;padding:8px 12px}}@media(max-width:800px){{.cards,.grid{{grid-template-columns:1fr 1fr}}.wide{{grid-column:1/-1}}}}</style></head><body><header><div><b>Cluster Admin Incident Engine</b> {engine_badge}<div class=muted>observe/notify · auto-heal отключён</div></div><form method=\"post\" action=\"/logout\"><input type=\"hidden\" name=\"csrf\" value=\"{csrf}\"><button>Выйти</button></form></header><main><section class=cards>{cards}</section><section class=grid>{nodes_html}{incidents_html}{services_html}</section></main></body></html>\"\"\""},{"line":243,"matched":["Cluster Admin Incident Engine"],"text":" \"# HELP cluster_admin_up Cluster Admin Incident Engine availability\","}],"matched_signatures":["Cluster Admin Incident Engine","observe/notify","auto-heal отключён","Активные инциденты","VM и CT","Инциденты"],"mode":"0o750","path":"/opt/cluster-admin-incident-engine/app.py","sha256":"17d95ebfc28cef34846a8999664019d5d032ee8176b7fedd9ceeebfc5c97e3b6","signature_count":6},"changes_made":false,"control_plane_error":null,"identity_confirmed":true,"listeners":[{"line":"LISTEN 0 5 0.0.0.0:8080 0.0.0.0:* users:((\"python3\",pid=439,fd=3)) ","pids":[439],"port":8080},{"line":"LISTEN 0 2048 0.0.0.0:8081 0.0.0.0:* users:((\"python3\",pid=487,fd=6)) ","pids":[487],"port":8081},{"line":"LISTEN 0 244 <PRIVATE_IPV4>:5432 0.0.0.0:* users:((\"postgres\",pid=469,fd=6)) ","pids":[469],"port":5432},{"line":"LISTEN 0 4096 <PRIVATE_IPV4>%lo:53 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=18))","pids":[380],"port":53},{"line":"LISTEN 0 4096 0.0.0.0:5355 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=12))","pids":[380],"port":5355},{"line":"LISTEN 0 4096 <PRIVATE_IPV4>:53 0.0.0.0:* users:((\"systemd-resolve\",pid=380,fd=20))","pids":[380],"port":53},{"line":"LISTEN 0 128 0.0.0.0:22 0.0.0.0:* users:((\"sshd\",pid=457,fd=3)) ","pids":[457],"port":22},{"line":"LISTEN 0 244 [::1]:5432 [::]:* users:((\"postgres\",pid=469,fd=5)) ","pids":[469],"port":5432},{"line":"LISTEN 0 4096 [::]:5355 [::]:* users:((\"systemd-resolve\",pid=380,fd=14))","pids":[380],"port":5355},{"line":"LISTEN 0 128 [::]:22 [::]:* users:((\"sshd\",pid=457,fd=4)) ","pids":[457],"port":22}],"mutation_outcome":"NO_MUTATION","output_bytes":47554,"output_sha256":"db4f6d44451f8920c1e8ffc0966413765f623391053e3dac989965f3de9b4eaf","processes":[{"cmdline":"/lib/systemd/systemd-resolved","cwd":"/","exe":"/usr/lib/systemd/systemd-resolved","pid":380,"status_rc":0,"systemd_unit":"systemd-resolved.service"},{"cmdline":"/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin","cwd":"/","exe":"/usr/bin/python3.11","pid":439,"status_rc":0,"systemd_unit":"homelab-cluster-admin-webpanel.service"},{"cmdline":"sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 startups","cwd":"/","exe":"/usr/sbin/sshd","pid":457,"status_rc":0,"systemd_unit":"ssh.service"},{"cmdline":"/usr/lib/postgresql/15/bin/postgres -D /var/lib/postgresql/15/main -c config_file=/etc/postgresql/15/main/postgresql.conf","cwd":"/var/lib/postgresql/15/main","exe":"/usr/lib/postgresql/15/bin/postgres","pid":469,"status_rc":0,"systemd_unit":"postgresql@15-main.service"},{"cmdline":"/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>","cwd":"/opt/cluster-admin-incident-engine","exe":"/usr/bin/python3.11","pid":487,"status_rc":0,"systemd_unit":"cluster-admin-incident-engine.service"}],"rollback_restored":false,"rollback_started":false,"runner_json_sha256":"d9d52eac017545ee3b531376d19339bfb7246bbc98a448a3555674480e4cf12e","runner_text_sha256":"19dd8ecbba47a84d24313cd56bc9c3aa9961791c014fdaca6da5b7eb15215d08","source_matches":[{"bytes":28599,"contexts":[{"line":73,"matched":["observe/notify"],"text":" return f\"\"\"<!doctype html><html lang=<REDACTED>"},{"line":208,"matched":["VM и CT","Инциденты"],"text":" cards = \"\".join([summary_card(\"Ноды\", counts[\"nodes\"], \"OK\" if counts[\"nodes\"] > 0 else \"ERROR\"), summary_card(\"VM и CT\", counts[\"guests\"], \"OK\" if counts[\"guests\"] > 0 else \"ERROR\"), summary_card(\"Сервисы\", counts[\"services\"], \"OK\" if counts[\"services\"] > 0 else \"ERROR\"), summary_card(\"Инциденты\", counts[\"incidents\"], \"ERROR\" if counts[\"incidents\"] > 0 else \"OK\")])"},{"line":217,"matched":["Активные инциденты"],"text":" incidents_html = health_section(\"Активные инциденты\", len(incidents), incidents_state, incidents_table)"},{"line":220,"matched":["Cluster Admin Incident Engine","observe/notify","auto-heal отключён"],"text":" page = f\"\"\"<!doctype html><html lang=\"ru\"><head><meta charset=\"utf-8\"><meta name=\"viewport\" content=\"width=device-width,initial-scale=1\"><meta http-equiv=\"refresh\" content=\"30\"><title>Cluster Admin Incident Engine</title><style>body{{margin:0;background:#07101d;color:#e8eef7;font:14px Arial}}header{{padding:14px 22px;background:#101b2b;border-bottom:1px solid #2a3b54;display:flex;justify-content:space-between}}main{{max-width:1500px;margin:auto;padding:20px}}.cards{{display:grid;grid-template-columns:repeat(4,1fr);gap:14px}}.card,.panel{{background:#111d2e;border:1px solid #283b56;border-radius:14px;padding:16px}}.card b{{font-size:30px;display:block}}.card span,.muted{{color:#879ab3}}.grid{{display:grid;grid-template-columns:1fr 1fr;gap:14px;margin-top:14px}}.wide{{grid-column:1/-1}}table{{width:100%;border-collapse:collapse}}th,td{{padding:9px;border-bottom:1px solid #253750;text-align:left}}th{{color:#8fa3bc}}.state{{display:inline-flex;align-items:center;gap:7px;font-weight:700}}.state-dot{{width:10px;height:10px;border-radius:50%;display:inline-block;background:#8392a5}}.state-ok .state-dot{{background:#39d98a;box-shadow:0 0 12px rgba(57,217,138,.75)}}.state-bad .state-dot{{background:#ff5d73;box-shadow:0 0 12px rgba(255,93,115,.75)}}.state-warn .state-dot{{background:#f6c85f;box-shadow:0 0 12px rgba(246,200,95,.7)}}.state-unknown .state-dot{{background:#8392a5}}.row-bad{{background:rgba(255,93,115,.07)}}.row-warn{{background:rgba(246,200,95,.06)}}.card-health{{float:right}}.health-section{{padding:0;overflow:hidden}}.health-section summary{{list-style:none;cursor:pointer;display:flex;align-items:center;justify-content:space-between;gap:12px;padding:16px;user-select:none}}.health-section summary::-webkit-details-marker{{display:none}}.section-heading{{display:flex;align-items:center;gap:10px;font-size:20px;font-weight:700}}.section-heading .state{{font-size:0}}.section-title{{color:#e8eef7}}.section-count{{font-size:12px;color:#879ab3;border:1px solid #334a68;border-radius:999px;padding:3px 8px}}.section-chevron{{font-size:20px;color:#8fa3bc;transition:transform .18s ease}}.health-section[open] .section-chevron{{transform:rotate(180deg)}}.health-section[open] summary{{border-bottom:1px solid #253750;margin-bottom:8px}}.section-body{{padding:0 16px 16px}}button{{background:#18283d;color:white;border:1px solid #3b506d;border-radius:8px;padding:8px 12px}}@media(max-width:800px){{.cards,.grid{{grid-template-columns:1fr 1fr}}.wide{{grid-column:1/-1}}}}</style></head><body><header><div><b>Cluster Admin Incident Engine</b> {engine_badge}<div class=muted>observe/notify · auto-heal отключён</div></div><form method=\"post\" action=\"/logout\"><input type=\"hidden\" name=\"csrf\" value=\"{csrf}\"><button>Выйти</button></form></header><main><section class=cards>{cards}</section><section class=grid>{nodes_html}{incidents_html}{services_html}</section></main></body></html>\"\"\""},{"line":243,"matched":["Cluster Admin Incident Engine"],"text":" \"# HELP cluster_admin_up Cluster Admin Incident Engine availability\","}],"matched_signatures":["Cluster Admin Incident Engine","observe/notify","auto-heal отключён","Активные инциденты","VM и CT","Инциденты"],"mode":"0o750","path":"/opt/cluster-admin-incident-engine/app.py","sha256":"17d95ebfc28cef34846a8999664019d5d032ee8176b7fedd9ceeebfc5c97e3b6","signature_count":6},{"bytes":803,"contexts":[{"line":2,"matched":["Cluster Admin Incident Engine"],"text":"Description=Cluster Admin Incident Engine web application"}],"matched_signatures":["Cluster Admin Incident Engine"],"mode":"0o644","path":"/etc/systemd/system/cluster-admin-incident-engine.service","sha256":"1892e494de5caab11100d5ea9257b82857fd6138d73cfae91e888759321745ea","signature_count":1},{"bytes":803,"contexts":[{"line":2,"matched":["Cluster Admin Incident Engine"],"text":"Description=Cluster Admin Incident Engine web application"}],"matched_signatures":["Cluster Admin Incident Engine"],"mode":"0o644","path":"/etc/systemd/system/cluster-admin-incident-engine.service","sha256":"1892e494de5caab11100d5ea9257b82857fd6138d73cfae91e888759321745ea","signature_count":1}],"state_document_sha256":"4dc964096166c271f62bb527ca7f949f13ab768b3e8c6ed5811adc5866bdd515","units":[{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:28:53 UTC] ; stop_time=[Wed 2026-08-05 16:28:53 UTC] ; pid=2039685 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-incident-engine-collector.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"cluster-admin-incident-engine-collector.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.service\n[Unit]\nDescription=Cluster Admin inventory metrics and incident collector\nAfter=network-online.target postgresql.service cluster-admin-incident-engine.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nExecStart=/usr/bin/python3 /opt/cluster-admin-incident-engine/collector.py\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine /var/lib/homelab-health"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine-collector.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-incident-engine-collector.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"cluster-admin-incident-engine-collector.timer","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine-collector.timer\n[Unit]\nDescription=Run Cluster Admin incident collector every minute\n\n[Timer]\nOnBootSec=30s\nOnUnitActiveSec=60s\nAccuracySec=10s\nPersistent=true\nUnit=cluster-admin-incident-engine-collector.service\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"active","EnvironmentFiles":"/etc/cluster-admin-incident-engine/runtime.conf (ignore_errors=no)","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=[PRIVATE_IP],127.0.0.1 ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/cluster-admin-incident-engine.service","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","WorkingDirectory":"/opt/cluster-admin-incident-engine"},"show_rc":0,"signature_hits":["Cluster Admin Incident Engine"],"source_path_hits":["/etc/systemd/system/cluster-admin-incident-engine.service"],"unit":"cluster-admin-incident-engine.service","unit_text":"# /etc/systemd/system/cluster-admin-incident-engine.service\n[Unit]\nDescription=Cluster Admin Incident Engine web application\nAfter=network-online.target postgresql.service\nWants=network-online.target\nRequires=postgresql.service\n\n[Service]\nType=simple\nUser=clusteradmin\nGroup=clusteradmin\nWorkingDirectory=/opt/cluster-admin-incident-engine\nEnvironmentFile=/etc/cluster-admin-incident-engine/runtime.conf\nExecStart=/usr/bin/python3 -m uvicorn app:app --host 0.0.0.0 --port 8081 --proxy-headers --forwarded-allow-ips=<PRIVATE_IPV4>,<PRIVATE_IPV4>\nRestart=on-failure\nRestartSec=5\nUMask=0027\nNoNewPrivileges=true\nPrivateTmp=true\nProtectSystem=strict\nProtectHome=true\nReadOnlyPaths=/etc/cluster-admin-incident-engine\nReadWritePaths=/var/lib/cluster-admin-incident-engine\nRestrictSUIDSGID=true\nLockPersonality=true\nRestrictRealtime=true\n\n[Install]\nWantedBy=multi-user.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:29:22 UTC] ; stop_time=[Wed 2026-08-05 16:29:23 UTC] ; pid=2040010 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"cluster-admin-probe-agent.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"cluster-admin-probe-agent.service","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.service\n[Unit]\nDescription=Cluster Admin restricted read-only probe controller\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=oneshot\nUser=clusteradmin\nGroup=clusteradmin\nEnvironment=CLUSTER_ADMIN_PROBE_HEALTH=/var/lib/cluster-admin-probe-agent/cluster-admin-probe-agent.txt\nExecStart=/usr/bin/python3 /opt/cluster-admin-probe-agent/controller.py --run\nUMask=0077\nNoNewPrivileges=yes\nPrivateTmp=yes\nPrivateDevices=yes\nProtectSystem=strict\nProtectHome=yes\nProtectKernelTunables=yes\nProtectKernelModules=yes\nProtectKernelLogs=yes\nProtectControlGroups=yes\nProtectClock=yes\nProtectHostname=yes\nLockPersonality=yes\nMemoryDenyWriteExecute=yes\nRestrictSUIDSGID=yes\nRestrictRealtime=yes\nRemoveIPC=yes\nCapabilityBoundingSet=\nAmbientCapabilities=\nRestrictAddressFamilies=AF_UNIX AF_INET AF_INET6\nIPAddressDeny=any\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nIPAddressAllow=<PRIVATE_IPV4>\nReadOnlyPaths=/etc/cluster-admin-probe-agent /opt/cluster-admin-probe-agent\nReadWritePaths=/var/lib/cluster-admin-probe-agent\nStateDirectory=cluster-admin-probe-agent\nStateDirectoryMode=0750\nRuntimeDirectory=cluster-admin-probe-agent\nTimeoutStartSec=70"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/cluster-admin-probe-agent.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"cluster-admin-probe-agent.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"cluster-admin-probe-agent.timer","unit_text":"# /etc/systemd/system/cluster-admin-probe-agent.timer\n[Unit]\nDescription=Run Cluster Admin restricted probes every minute\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=60s\nRandomizedDelaySec=5s\nPersistent=true\nUnit=cluster-admin-probe-agent.service\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/full-observer.sh ; argv[]=/opt/homelab-cluster-admin/full-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:29:08 UTC] ; stop_time=[Wed 2026-08-05 16:29:14 UTC] ; pid=2039783 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-full-observer.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-full-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.service\n[Unit]\nDescription=Homelab cluster-admin full observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/full-observer.sh"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-full-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-full-observer.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-full-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-full-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin full observer\n\n[Timer]\nOnBootSec=5min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/cluster-observer.sh ; argv[]=/opt/homelab-cluster-admin/cluster-observer.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:29:08 UTC] ; stop_time=[Wed 2026-08-05 16:29:08 UTC] ; pid=2039784 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-observer.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-observer.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.service\n[Unit]\nDescription=Homelab cluster-admin observer\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/cluster-observer.sh"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-observer.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-observer.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-observer.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-observer.timer\n[Unit]\nDescription=Run homelab cluster-admin observer\n\n[Timer]\nOnBootSec=3min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/self-check.sh ; argv[]=/opt/homelab-cluster-admin/self-check.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:29:08 UTC] ; stop_time=[Wed 2026-08-05 16:29:08 UTC] ; pid=2039785 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-self-check.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-self-check.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.service\n[Unit]\nDescription=Homelab cluster-admin self check\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/self-check.sh"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-self-check.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-self-check.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-self-check.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-self-check.timer\n[Unit]\nDescription=Run homelab cluster-admin self check\n\n[Timer]\nOnBootSec=2min\nOnUnitActiveSec=5min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.path","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-update-visibility-index.path","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.path\n[Unit]\nDescription=Reapply Cluster Admin update visibility after index regeneration\nStartLimitIntervalSec=0\n\n[Path]\nPathChanged=/var/www/homelab-cluster-admin/index.html\nPathModified=/var/www/homelab-cluster-admin/index.html\nPathChanged=/var/www/homelab-cluster-admin\nUnit=homelab-cluster-admin-update-visibility-index.service\nTriggerLimitIntervalSec=0\n\n[Install]\nWantedBy=multi-user.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher ; argv[]=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:29:23 UTC] ; stop_time=[Wed 2026-08-05 16:29:23 UTC] ; pid=2040044 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-update-visibility-index.path homelab-cluster-admin-update-visibility-index.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-update-visibility-index.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.service\n[Unit]\nDescription=Maintain Cluster Admin update visibility card\nAfter=local-fs.target\nStartLimitIntervalSec=0\n\n[Service]\nType=oneshot\nUser=root\nGroup=root\nExecStart=/usr/local/sbin/homelab-cluster-admin-update-visibility-index-patcher --config /etc/homelab-cluster-admin-update-visibility-index.json\nUMask=0022\nNoNewPrivileges=true\nPrivateTmp=true\nProtectHome=read-only\nProtectSystem=full\nReadWritePaths=/var/www/homelab-cluster-admin"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-update-visibility-index.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-update-visibility-index.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-update-visibility-index.timer\n[Unit]\nDescription=Periodic Cluster Admin update visibility repair\n\n[Timer]\nOnBootSec=20s\nOnUnitActiveSec=30s\nAccuracySec=5s\nRandomizedDelaySec=0\nPersistent=true\nUnit=homelab-cluster-admin-update-visibility-index.service\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"inactive","ExecStart":"{ path=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; argv[]=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh ; ignore_errors=no ; start_time=[Wed 2026-08-05 16:28:53 UTC] ; stop_time=[Wed 2026-08-05 16:28:53 UTC] ; pid=2039687 ; code=exited ; status=0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.service","LoadState":"loaded","SubState":"dead","TriggeredBy":"homelab-cluster-admin-webpanel-render.timer","Triggers":"","UnitFileState":"static","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-webpanel-render.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service\n[Unit]\nDescription=Render Homelab cluster-admin web panel\n\n[Service]\nType=oneshot\nExecStart=/opt/homelab-cluster-admin/render-webpanel.sh\n\n# /etc/systemd/system/homelab-cluster-admin-webpanel-render.service.d/10-cycle-break.conf\n[Service]\nExecStart=\nExecStart=/opt/homelab-cluster-admin/render-webpanel-cycle-break.sh"},{"cat_rc":0,"show":{"ActiveState":"active","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel-render.timer","LoadState":"loaded","SubState":"waiting","TriggeredBy":"","Triggers":"homelab-cluster-admin-webpanel-render.service","UnitFileState":"enabled"},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-webpanel-render.timer","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel-render.timer\n[Unit]\nDescription=Refresh Homelab cluster-admin web panel\n\n[Timer]\nOnBootSec=1min\nOnUnitActiveSec=1min\nPersistent=true\n\n[Install]\nWantedBy=timers.target"},{"cat_rc":0,"show":{"ActiveState":"active","ExecStart":"{ path=/usr/bin/python3 ; argv[]=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin ; ignore_errors=no ; start_time=[n/a] ; stop_time=[n/a] ; pid=0 ; code=(null) ; status=0/0 }","FragmentPath":"/etc/systemd/system/homelab-cluster-admin-webpanel.service","LoadState":"loaded","SubState":"running","TriggeredBy":"","Triggers":"","UnitFileState":"enabled","WorkingDirectory":""},"show_rc":0,"signature_hits":[],"source_path_hits":[],"unit":"homelab-cluster-admin-webpanel.service","unit_text":"# /etc/systemd/system/homelab-cluster-admin-webpanel.service\n[Unit]\nDescription=Homelab cluster-admin web panel\nAfter=network-online.target\nWants=network-online.target\n\n[Service]\nType=simple\nExecStart=/usr/bin/python3 -m http.server 8080 --bind 0.0.0.0 --directory /var/www/homelab-cluster-admin\nRestart=always\nRestartSec=5\n\n[Install]\nWantedBy=multi-user.target"}]}}
OUTPUT_END
CHAT_OUTPUT_END