Plus: - dedicated chain for DNAT to nameservers - prevent intervm networking. Can be conveniently overriden in necessary cases by inserting ACCEPT clauses (per VM, probably) at the top of FORWARD |
||
|---|---|---|
| .. | ||
| iptables | ||
| qubes_nmhook | ||
| qubes_serial_login | ||
| qubes_setup_dnat_to_ns | ||
| serial.conf | ||