In trying to adapt VPN scripts to Qubes R4.0 I've found the qubes-firewall-user-script has been renamed to qubes-ip-change-hook and it no longer seems to run every time qubes-firewall is restarted. Causing IP changes when starting/stopping dependant appVMs (and adding firewall rules in settings GUI) also appears to trigger neither the script nor the familiar FORWARD re-building process.

The new behavior doesn't seem to be documented yet, so I have two questions:

1. Is there any erase-and-rebuild process remaining in R4 for the FORWARD chain?

2. What is the recommended way to modify iptables before forwarding is enabled at startup, and subsequently during normal runtime?

Thanks!

--

Chris Laprise, tas...@posteo.net
https://github.com/tasket
https://twitter.com/ttaskett
PGP: BEE2 20C5 356E 764A 73EB  4AB3 1DC4 D106 F07F 1886

--
You received this message because you are subscribed to the Google Groups 
"qubes-devel" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-devel+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-devel@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-devel/74e0fc72-6521-888c-aa6f-7da004003fe1%40posteo.net.
For more options, visit https://groups.google.com/d/optout.

Reply via email to