QubesOS / qubes-issues

The Qubes OS Project issue tracker
https://www.qubes-os.org/doc/issue-tracking/
535 stars 47 forks source link

Qubes Server Formulas #5051

Open fepitre opened 5 years ago

fepitre commented 5 years ago

I'm currently working on Qubes Server Formulas for providing a server example configuration like:

                            .-------------.                                .---------------.
                            | wan-sys-net |                                | admin-sys-net |
                            '------.------'                                '-------.-------'
                                   |                                               |
                         .---------'--------.                            .---------|----------.
                         | wan-sys-firewall |                            | admin-sys-firewall |
                         '---------.--------'                            '---------.----------'
                                   |                                               |
                         .------------------.                              .-------'-------.
                         | dmz-sys-firewall |                              | admin-openvpn |
                         '-.-------.------.-'                              '-------.-------'
                           |        \      \    .--------.                         |
                           '         \      '---- dmz-ns |                  .------'-----.
                          /           '         '--------'                  | admin-mgmt |
    .------------------. /     .------'------.                              '------------'
    | lan-sys-firewall |'      | dmz-sys-net |
    '---.------------.-'       '-------------'
       /      |       \
.-----'----.  |   .----'---.
| lan-dhcp |  |   | lan-ns |
'----------'  |   '--------'
              |
       .------'------.
       | lan-sys-net |
       '-------------'

It intends to provide sufficient built-in Qubes materials for bringing Qubes to the edge of server environments. In the case of the example provided above, each 'sys-net' can be with physical nic, bridged nic, routed nic from another specific VM having for example a bond interface or multiples VLANs networks.

Here is the a list of tasks related to this work:

AndreasKieling commented 5 years ago

Stupid app doesnt let me watch here, delete post if spammy. subscribe