[qubes-devel] Re: Port Forward using iptables broken?

2018-02-28 Thread Alex Dubois
On Sunday, 11 February 2018 03:06:02 UTC, joev...@gmail.com wrote: > Using socat (great for tcp only connections) > https://gist.github.com/Joeviocoe/90ec9fd9a0769b4671a8ae9c87584187 > > If udp is needed > https://gist.github.com/Joeviocoe/6c4dc0c283f6d6c5b1a3f5af8793292b I've submitted a doc up

Re: [qubes-devel] Re: Port Forward using iptables broken?

2018-02-25 Thread Alex Dubois
On Saturday, 10 February 2018 21:45:30 UTC, Marek Marczykowski-Górecki wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA256 > > On Fri, Feb 09, 2018 at 04:12:57PM -0800, joev...@gmail.com wrote: > > On Friday, 9 February 2018 19:02:09 UTC-5, Alex Dubois wrote: > > > On Friday, 9 February 2

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-25 Thread Alex Dubois
On Saturday, 10 February 2018 00:13:00 UTC, joev...@gmail.com wrote: > On Friday, 9 February 2018 19:02:09 UTC-5, Alex Dubois wrote: > > On Friday, 9 February 2018 23:59:52 UTC, Alex Dubois wrote: > > > On Friday, 9 February 2018 16:36:14 UTC, joev...@gmail.com wrote: > > > > Yes, thanks for po

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-10 Thread joeviocoe
Using socat (great for tcp only connections) https://gist.github.com/Joeviocoe/90ec9fd9a0769b4671a8ae9c87584187 If udp is needed https://gist.github.com/Joeviocoe/6c4dc0c283f6d6c5b1a3f5af8793292b -- You received this message because you are subscribed to the Google Groups "qubes-devel" group. T

Re: [qubes-devel] Re: Port Forward using iptables broken?

2018-02-10 Thread Marek Marczykowski-Górecki
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On Fri, Feb 09, 2018 at 04:12:57PM -0800, joevio...@gmail.com wrote: > On Friday, 9 February 2018 19:02:09 UTC-5, Alex Dubois wrote: > > On Friday, 9 February 2018 23:59:52 UTC, Alex Dubois wrote: > > > On Friday, 9 February 2018 16:36:14 UTC, joev

Re: [qubes-devel] Re: Port Forward using iptables broken?

2018-02-10 Thread Alex Dubois
Sent from my mobile phone. > On 10 Feb 2018, at 03:44, joevio...@gmail.com wrote: > >> On Friday, 9 February 2018 03:44:13 UTC-5, awokd wrote: >>> On Fri, February 9, 2018 7:33 am, bowabos wrote: On Friday, 9 February 2018 06:50:05 UTC, joev...@gmail.com wrote: Fedora template

Re: [qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread joeviocoe
On Friday, 9 February 2018 03:44:13 UTC-5, awokd wrote: > On Fri, February 9, 2018 7:33 am, bowabos wrote: > > On Friday, 9 February 2018 06:50:05 UTC, joev...@gmail.com wrote: > > > >> Fedora templates have a weird issue where the packet counter on the > >> sys-net nat FORWARD chain does not inc

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread joeviocoe
https://github.com/QubesOS/qubes-issues/issues/3556 > An idea: Debian don't have nftables installed by default, so > qubes-firewal fallback to iptables. But not on Fedora - there nftables > is used. This applies to both sys-net and sys-firewall. > > A quick test: > > 1. List rules: > > nft

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread joeviocoe
On Friday, 9 February 2018 19:02:09 UTC-5, Alex Dubois wrote: > On Friday, 9 February 2018 23:59:52 UTC, Alex Dubois wrote: > > On Friday, 9 February 2018 16:36:14 UTC, joev...@gmail.com wrote: > > > Yes, thanks for pointing out the typos. They are only mistakes in this > > > post. I use a sc

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread bowabos
On Friday, 9 February 2018 23:59:52 UTC, Alex Dubois wrote: > On Friday, 9 February 2018 16:36:14 UTC, joev...@gmail.com wrote: > > Yes, thanks for pointing out the typos. They are only mistakes in this > > post. I use a script running in dom0 to generate pretty much everything. > > The same

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread bowabos
On Friday, 9 February 2018 16:36:14 UTC, joev...@gmail.com wrote: > Yes, thanks for pointing out the typos. They are only mistakes in this post. > I use a script running in dom0 to generate pretty much everything. The same > script works when debian-8 is used. The interface is different depe

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread joeviocoe
Yes, thanks for pointing out the typos. They are only mistakes in this post. I use a script running in dom0 to generate pretty much everything. The same script works when debian-8 is used. The interface is different depending on the template -- You received this message because you are sub

Re: [qubes-devel] Re: Port Forward using iptables broken?

2018-02-09 Thread 'awokd' via qubes-devel
On Fri, February 9, 2018 7:33 am, bowa...@gmail.com wrote: > On Friday, 9 February 2018 06:50:05 UTC, joev...@gmail.com wrote: > >> Fedora templates have a weird issue where the packet counter on the >> sys-net nat FORWARD chain does not increment. The PREROUTING chain does >> increment. I saw th

[qubes-devel] Re: Port Forward using iptables broken?

2018-02-08 Thread bowabos
On Friday, 9 February 2018 06:50:05 UTC, joev...@gmail.com wrote: > Fedora templates have a weird issue where the packet counter on the sys-net > nat FORWARD chain does not increment. The PREROUTING chain does increment. > > The commands work, my configuration is correct, as it was working on R3