rustybird / corridor

Tor traffic whitelisting gateway
ISC License
68 stars 6 forks source link

Qubes support #17

Closed adrelanos closed 8 years ago

adrelanos commented 8 years ago

Is Qubes (Qubes ProxyVMs) officially supported? Tested by you?

If you/no, let's please add this to corridor's readme.

There are some things in Qubes that may interfere with firewall rules:

Related:

rustybird commented 8 years ago

Is Qubes (Qubes ProxyVMs) officially supported? Tested by you?

No, not at all. That's why it's not in master yet

rustybird commented 8 years ago

I've pushed some more orderings to the qubes branch and tested them a little (on Fedora 23). ProxyVM startup seems to work correctly.

Unfortunately, as soon as you connect a client VM to the corridor VM, the filter rules get clobbered. Pretty sure that's https://github.com/QubesOS/qubes-issues/issues/1555

adrelanos commented 8 years ago

Why not deactivate all Qubes firewall stuff and only let corridor work?

rustybird commented 8 years ago

Why not deactivate all Qubes firewall stuff and only let corridor work?

Yes... :)