Eric W. Biederman schrieb am Monday, den 24.01.2022 um 12:01: ... > >>> https://www.qubes-os.org/doc/firewall has information about enabling > >>> networking between qubes. ... > > nft flush ruleset ... > In particular "nft flush ruleset" was needed before any iptables changes > were reflected in the forwarding behavior.
Very interesting! I've a comparable setup in my qubes-firewall-user-script but since the fedora-34 template receive updates so frequently I've switched template for my sys-firewall to debian-11. For me this `nft flush ruleset` command wasn't necessary. I will try to switch my sys-firewall back to the fedora-34 to see if this will break things for me and if adding this command will fix it. Thank you for figuring this out. Best regards, Peter Funk -- Peter Funk ✉:Oldenburger Str.86, 27777 Ganderkesee, Germany; 📱:+49-179-640-8878 homeoffice ☎:+49-4222-950270 office ✉: ArtCom GmbH, Haferwende 2, D-28357 Bremen, Germany; ☎:+49-421-20419-0 -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/YfAEK%2BQ4zIUEgO5u%40work.