For clarify: On 02/03/2018 01:10 PM, David Hobach wrote: >> - open in dom0: /usr/lib/systemd/system/qubes-reload-firewall@.timer >> and add "OnUnitActiveSec=1m" on the end of file. >> >> >> - Reload systemd config -> "systemctl daemon-reload" and try to test >> again. > > Doesn't changing the config and reloading all services with changed > config just reload the firewall service?
Probably not, "systemctl daeemon-reload" just reloads the configuration of the units, I think it doesn't reload any service. > Then of course the iptables rules are re-generated taking the expired > timer into account. So basically you're just doing a manual reload > because the automatic didn't trigger or work when it should have? > I am not doing a manual reload of the service, I am changing the behavior of qubes-reload-firewall@.timer because without my modification it does not work as expected. It fires only once and if the full access is not expired it will not check again. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/7f5bad57-fb23-866c-24fe-18ed69193e9c%40riseup.net. For more options, visit https://groups.google.com/d/optout.
signature.asc
Description: OpenPGP digital signature