Update firewall.md

This commit is contained in:
awokd 2018-02-02 15:15:06 +00:00 committed by GitHub
parent 6a631651d6
commit 646aa7d5f5
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -374,12 +374,11 @@ Where to put firewall rules (R4.0)
--------------------------- ---------------------------
Implicit in the above example [scripts](/doc/config-files/), but worth Implicit in the above example [scripts](/doc/config-files/), but worth
calling attention to: for all qubes *except* NetVMs, iptables commands calling attention to: for all qubes *except* AppVMs supplying networking,
should be added to the `/rw/config/rc.local` script. For NetVMs iptables commands should be added to the `/rw/config/rc.local` script. For
(`sys-firewall` inclusive), iptables commands should be added to AppVMs supplying networking (`sys-firewall` inclusive),
`/rw/config/qubes-firewall-user-script`. This is because a NetVM is iptables commands should be added to
constantly adjusting its firewall, and therefore initial settings from `/rw/config/qubes-firewall-user-script`.
`rc.local` do not persist.
Where to put firewall rules (R3.2) Where to put firewall rules (R3.2)
--------------------------- ---------------------------