Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
我之前由于疏忽没有测试透明代理就提交的 service 文件,导致类似 #2378 中描述因为 CapabilityBoundingSet 中没有 CAP_NET_ADMIN 导致无法设置 SO_MARK 的权限问题
目前该 pr 中尚未启用的的 ExecStart= 符合 FHS 并且与 #2328 相似(需要全部迁移使用 confdir)
可能需要在合并 #2379 之前合并此 pr