On 08/14/2018 02:22 PM, Steve Coleman wrote:
On 08/14/18 13:40, Who Cares wrote:

I am using qubes 4.0 and i am trying to install a firewall.

Qubes comes with an integrated firewall in the sys-firewall VM. It uses managed iptables which provide the basic rules to protect the system, but also allow you to make adjustments as required for your unique situation.

So, I'm not sure why you think you need to add yet another firewall

The architecture is generally

YourVM -> sys-firewall -> sys-net -> LAN Network

You get this setup right out of the box, with no configuration required.

Perhaps you could explain better what you are trying to accomplish?


I hope anyone would spend some time helping me with this project of mine.

At the end it is one PC where is installed qubes. This one is a local-server
This PC got 2 LAN devices i could attach separately.
I want 2 routes.

Route 1: Net-VM(LAN 1) --> firewall-VM(Kerio-Control with VPN)
Route 2: Windows-Server HVM with a specific Programm.(attached LAN 2)

Scenario 1: Local Network Windows PC working with a Programm wich need this Windows Server Programm Service

Scenario 2: A dude located in Timbuktu(or whatever) want to work on the same local Network using the kerio-control VPN and his Windows device needs to communicate with the windows Server.

Any thougts about this ?

If you can find out which VPN protocol this kerio-control is using, then you may be able to do this better with native Qubes tools.

Their VPN protocol appears to be IPsec (which isn't great BTW); you could start with a Linux IPsec tutorial in a proxyVM to see if you can connect to this other person.

--

Chris Laprise, tas...@posteo.net
https://github.com/tasket
https://twitter.com/ttaskett
PGP: BEE2 20C5 356E 764A 73EB  4AB3 1DC4 D106 F07F 1886

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/b06c427a-1775-4f7d-c147-8220bd755254%40posteo.net.
For more options, visit https://groups.google.com/d/optout.

Reply via email to