{ ... }: { # Swing Music: self-hosted local music server. Built separately and placed # in the user's home; this unit just turns it into a managed session service. systemd.user.services.swingmusic = { description = "Swing Music Local Server"; wantedBy = [ "graphical-session.target" ]; after = [ "graphical-session.target" ]; serviceConfig = { ExecStart = "/home/seraphim/.swingmusic/swingmusic"; Restart = "on-failure"; WorkingDirectory = "/home/seraphim"; NoNewPrivileges = true; PrivateTmp = true; ProtectSystem = "strict"; ProtectHome = "false"; RestrictAddressFamilies = [ "AF_INET" "AF_INET6" ]; }; }; }