0caa7fcf75
Stop IP forwarding when stopping qubes-network service (which initially enables it). This makes ordering against qubes-firewall safe - firewall is applied before allowing IP forward and then is removed when IP forward is already disabled. Fixes QubesOS/qubes-issues#5599
23 lines
789 B
Plaintext
23 lines
789 B
Plaintext
etc/dhclient.d/qubes-setup-dnat-to-ns.sh
|
|
etc/qubes-rpc/qubes.UpdatesProxy
|
|
etc/qubes/ip6tables.rules
|
|
etc/qubes/ip6tables-enabled.rules
|
|
etc/qubes/iptables.rules
|
|
etc/tinyproxy/tinyproxy-updates.conf
|
|
etc/tinyproxy/updates-blacklist
|
|
etc/udev/rules.d/99-qubes-network.rules
|
|
etc/xen/scripts/vif-qubes-nat.sh
|
|
etc/xen/scripts/vif-route-qubes
|
|
lib/systemd/system/qubes-firewall.service
|
|
lib/systemd/system/qubes-iptables.service
|
|
lib/systemd/system/qubes-network.service
|
|
lib/systemd/system/qubes-updates-proxy.service
|
|
usr/lib/qubes/init/network-proxy-setup.sh
|
|
usr/lib/qubes/init/network-proxy-stop.sh
|
|
usr/lib/qubes/init/qubes-iptables
|
|
usr/lib/qubes/iptables-updates-proxy
|
|
usr/lib/qubes/qubes-setup-dnat-to-ns
|
|
usr/lib/qubes/setup-ip
|
|
usr/lib/tmpfiles.d/qubes-core-agent-linux.conf
|
|
usr/bin/qubes-firewall
|