81806796ca
Introduce proxy service, which allow only http(s) traffic to yum repos. The filter rules are based on URL regexp, so it isn't full-featured content inspection and can be easy bypassed, but should be enough to prevent some erroneus user actions (like clicking on invalid link). It is set up to intercept connections to 10.137.255.254:8082, so VM can connect to this IP regardless of VM in which proxy is running. By default it is started in every NetVM, but this can be changed using qvm-service or qubes-manager (as always). |
||
---|---|---|
.. | ||
30-qubes_external_ip | ||
filter-qubes-yum | ||
iptables | ||
network-manager-prepare-conf-dir | ||
qubes_firewall | ||
qubes_fix_nm_conf.sh | ||
qubes_netwatcher | ||
qubes_network.rules | ||
qubes_nmhook | ||
qubes_setup_dnat_to_ns | ||
qubes.repo | ||
setup_ip | ||
tinyproxy-qubes-yum.conf | ||
vif-route-qubes |