core-agent-linux/network
Marek Marczykowski-Górecki c8213ea55a
network: properly handle DNS addresses in vif-qubes-nat.sh
Core3 no longer reuse netvm own IP for primary DNS. At the same time,
disable dropping traffic to netvm itself because it breaks DNS (as one
of blocked things). This allows VM to learn real netvm IP, but:
 - this mechanism is not intended to avoid detection from already
 compromised VM, only about unintentional leaks
 - this can be prevented using vif-qubes-nat.sh on the netvm itself (so
 it will also have hidden its own IP)

QubesOS/qubes-issues#1143
2016-11-01 00:22:08 +01:00
..
00notify-hook Improved upgrade notifications sent to QVMM. 2015-11-11 15:45:00 +00:00
30-qubes-external-ip remove 'bashisms' or explicit use bash 2015-02-05 05:42:08 +01:00
80-qubes.conf install iptables/forwarding for debian 2014-09-29 05:25:14 +02:00
ip6tables network: rewrite qubes-firewall daemon 2016-09-12 05:22:53 +02:00
iptables network: rewrite qubes-firewall daemon 2016-09-12 05:22:53 +02:00
iptables-updates-proxy remove 'bashisms' or explicit use bash 2015-02-05 05:42:08 +01:00
network-manager-prepare-conf-dir Revert "network: use drop-ins for NetworkManager configuration (#1176)" 2015-11-28 17:43:15 +01:00
qubes-fix-nm-conf.sh Revert "network: use drop-ins for NetworkManager configuration (#1176)" 2015-11-28 17:43:15 +01:00
qubes-iptables removed trailing spaces 2015-10-15 04:34:55 +02:00
qubes-nmhook updates-proxy: restart on network configuration change to reload DNS 2015-12-19 18:44:32 +01:00
qubes-setup-dnat-to-ns network: forward TCP DNS queries 2015-10-12 01:28:05 +02:00
setup-ip network: reload NM connection after setting it up 2016-08-02 02:08:36 +02:00
show-hide-nm-applet.desktop Fix show-hide-nm-applet.desktop - use OnlyShowIn=X-QUBES 2015-09-03 00:43:54 +02:00
show-hide-nm-applet.sh Use 'type' instead of 'which' to prevent unnecessary dependency 2015-10-10 16:23:46 +02:00
tinyproxy-updates.conf updates-proxy: explicitly block connection looping back to the proxy IP 2015-12-04 14:57:07 +01:00
udev-qubes-network.rules network: run setup-ip only on xen frontend interfaces 2016-03-29 12:30:26 +02:00
update-proxy-configs Merge remote-tracking branch 'origin/pr/77' 2016-07-13 22:25:26 +02:00
updates-blacklist updates-proxy: explicitly block connection looping back to the proxy IP 2015-12-04 14:57:07 +01:00
vif-qubes-nat.sh network: properly handle DNS addresses in vif-qubes-nat.sh 2016-11-01 00:22:08 +01:00
vif-route-qubes network: properly handle DNS addresses in vif-qubes-nat.sh 2016-11-01 00:22:08 +01:00