sandboxing: Use systemd DynamicUser= support
It might be possible to use systemd’s DynamicUser=
support in data/accounts-daemon.service.in
to avoid the need for packagers to create a permanent user for accounts-service. Our use of StateDirectory=
(see !22 (merged)) should mean that state is preserved between reinitialisations of the dynamic user (thanks, systemd).