mirror of
https://github.com/PrivSec-dev/privsec.dev.git
synced 2024-12-25 07:19:36 -05:00
Add dnat-to-ns-boot.service for IVPN (#305)
This commit is contained in:
parent
6e98b40914
commit
d032b11dbd
@ -59,6 +59,22 @@ Unit=dnat-to-ns.service
|
||||
WantedBy=multi-user.target
|
||||
```
|
||||
|
||||
- `/etc/systemd/system/dnat-to-ns-boot.service`
|
||||
|
||||
```
|
||||
[Unit]
|
||||
Description=Run /usr/lib/qubes/qubes-setup-dnat-to-ns
|
||||
StartLimitIntervalSec=0
|
||||
|
||||
[Service]
|
||||
Type=oneshot
|
||||
ExecStart=sleep 10
|
||||
ExecStart=/usr/lib/qubes/qubes-setup-dnat-to-ns
|
||||
|
||||
[Install]
|
||||
WantedBy=multi-user.target
|
||||
```
|
||||
|
||||
Create `/etc/systemd/system/systemd-resolved.conf.d/override.conf` to disable rate limiting on systemd-resolved restarting:
|
||||
|
||||
```
|
||||
@ -66,10 +82,11 @@ Create `/etc/systemd/system/systemd-resolved.conf.d/override.conf` to disable ra
|
||||
StartLimitIntervalSec=0
|
||||
```
|
||||
|
||||
Next, enable the systemd path:
|
||||
Next, enable the systemd path and service to run at boot:
|
||||
|
||||
```bash
|
||||
sudo systemctl enable dnat-to-ns.path
|
||||
sudo systemctl enable dnat-to-ns-boot.service
|
||||
```
|
||||
|
||||
Finally, shut down the TemplateVM:
|
||||
|
Loading…
Reference in New Issue
Block a user