# DeviceAllow=/dev/net/tun rw
# ian: added just these lines from upstream
-ExecStartPre=+/a/bin/nnnat/systemd-nnnat start %i
+ExecStartPre=+/a/bin/nnnat/newns start %i
ExecStartPre=+/sbin/iptables-restore /a/bin/transmission-firewall/netns.rules
-ExecStopPost=+/a/bin/nnnat/systemd-nnnat stop %i
+ExecStopPost=+/a/bin/nnnat/newns stop %i
PrivateNetwork=true