I'm running this exact settings on my Debian Stretch machine using haproxy 1.8.x, without issues so far.
The first patch could cause issues for users that store their configuration in /home or /root, but I consider this unlikely. Tim Duesterhus (2): MINOR: systemd: Add SystemD's Protect*= options to the unit file MINOR: systemd: Add SystemD's SystemCallFilter option to the unit file contrib/systemd/haproxy.service.in | 3 +++ 1 file changed, 3 insertions(+) -- 2.16.2