Hello, Jon deps <[email protected]> schrieb am Mi., 3. Juli 2019, 22:30:
> am curious if anyone actually does this , and how or would it make any > sense instead to use a static sys-firewall , if I > just have the default sys-firewall (which might be easier because > there would not be a need for the PCI setup ?each time) What would be the better choice regarding attack surface: disposable netvm+firewallvm vs. mirage-firewall? If I understand it right the mirage firewall has no/less option to be compromised. I am using the mirage fw and are only using a fedora-30-minimal based sys-firewall to get dom0-updates, which can't be done via the mirage firewall. But I'll also change this firewall to a static disposable FW. Question: Afaik the problem when using a static disposable sys-net VM is, that I need to enter my Wifi Credentials each time, as the VM will be unable to remember them. Is there any way tweaking this behaviour? 799 -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/CAJ3yz2vs1V9%2BwrF0frShC1_aaODcORDzFc9LQscx6Yzn-G79tg%40mail.gmail.com.
