Commit Graph

83 Commits

Author SHA1 Message Date
Rami Hovi
223d7d8efe
added configuration for Debian/Exim4 2017-04-27 18:21:11 +03:00
Rami Hovi
4534561355
forgotten echo removed 2017-04-27 18:13:51 +03:00
Andrew David Wong
3ca3f1f1a6
Minor grammar fix 2017-04-02 21:01:17 -07:00
stubbybubby
a94bdbd27f Fixed a typo in first paragraph. 2017-04-02 10:19:38 -07:00
stubbybubby
66c32bc8d7 Small edits to vpn.md
A few new or revised sentences in the goal of accuracy. Also fixed some grammar issues and simplified some roundabout phrases.
2017-04-01 12:09:04 -07:00
Jean-Philippe Ouellet
68404375e9
Quality over quantity 2017-03-16 04:34:47 -04:00
ubestemt
7377cc3e56 Disable Keyboard symbols entry mode.
This line prevents rxvt from entering Keyboard symbols entry mode whenever ctrl+shift is pressed to interact with Qubes' clipboard.
2017-02-22 22:12:09 +00:00
Andrew David Wong
e4c7521049
Fix heading 2017-02-06 06:34:48 -08:00
Andrew David Wong
8835409c34
Wrap braces in raw tags to prevent parsing as liquid syntax 2017-02-06 06:26:23 -08:00
Andrew David Wong
649706880c
Fix list formatting 2017-02-06 06:23:39 -08:00
Andrew David Wong
7fd27976a6
Remove <U+FEFF> 2017-02-06 06:21:00 -08:00
Andrew David Wong
7d77c86340
Merge branch 'master' of https://github.com/john-david-r-smith/qubes-doc into john-david-r-smith-master 2017-02-06 06:16:35 -08:00
john-david-r-smith
8a226e51a2 use qubesctl --all state.highstate to apply states
use qubesctl --all state.highstate to apply states instead of qubesctl state.highstate
2017-02-06 12:42:23 +01:00
john-david-r-smith
034f748550 extended the salt documentation 2017-02-05 23:52:43 +01:00
Andrew David Wong
74f5e80b70
Include stanza provided by @hyperfekt
(Closes QubesOS/qubes-issues#2620)
2017-02-05 03:42:19 -08:00
Andrew David Wong
fa46feae1e
Revise for clarity, terminology, and orthography 2017-01-11 19:50:31 -08:00
unman
d95582f62b Add support for updates proxy in VPN doc
QubesOS/Qubes-issues#2383
2017-01-12 01:38:02 +00:00
Sascha Schneider
1640330eec [fix] configuration/salt.md:
Removes leading dash from qubes:type:template: because it only works without
2017-01-03 13:46:28 +01:00
Andrew David Wong
be0503dd0a
Clarify that second issue does not affect R3.2 or later 2017-01-02 14:19:44 -08:00
3n7r0p1
523963fdbe Fix broken link (typo) 2016-12-18 22:27:39 +00:00
Andrew David Wong
f8491fa658
Update notes on entering fullscreen mode via window manager 2016-12-17 07:48:20 -08:00
Andrew David Wong
915a1347c8
Remove deprecated section on UEFI boot 2016-11-02 21:34:27 -07:00
unman
7a79975415 Update managing-vm-kernel.md
Add reference to missing module
2016-10-16 01:10:26 +00:00
Andrew David Wong
de5e1d6e2b
Clarify purpose of OS-specific subsections 2016-10-14 20:18:02 -07:00
unman
0fe2ff2b45 Update resize-disk-image.md 2016-10-14 19:52:38 +00:00
Andrew David Wong
f32bf85689
Fix table of contents (QubesOS/qubes-issues#1941) 2016-09-24 13:12:37 -07:00
Andrew David Wong
fbbe139432
Fix code block and image
QubesOS/qubes-issues#2317
2016-09-17 02:49:39 -07:00
Andrew David Wong
77c6bf3689
Merge branch 'patch-4' of git://github.com/tasket/qubes-doc into tasket-patch-4 2016-09-16 14:08:08 -07:00
ttasket
abfdb29393 Update vpn.md
Elaborate note about NM, and fix paths in step 3.
2016-09-16 07:30:30 -04:00
ttasket
93f0211f61 Update vpn.md
* Scripts and text mention openvpn only in the context of examples.
* Firewall commands slightly tweaked: Important blocking rules move to top. Removed superfluous check for qvpn OUTPUT rule.
* Clarifications, especially mentioning that NM shouldn't be enabled for iptables/scripts option (this was causing DNS to fail for people who tried both NM and scripts).
* Tells the user when and what they should test (iptables/scripts).
* Change script order to enable testing flow.
* Added Usage and Troubleshooting sections.

https://github.com/QubesOS/qubes-issues/issues/2317
2016-09-15 08:14:54 -04:00
Marek Marczykowski-Górecki
437ea386d5
bind-dirs: move to customization, add to main index 2016-09-15 14:13:21 +02:00
Marek Marczykowski-Górecki
fcdfccf722
bind-dirs: adjust title 2016-09-15 14:11:56 +02:00
Marek Marczykowski-Górecki
9e8daab563
Add bind dirs documentation
Fixes QubesOS/qubes-issues#2315
2016-09-15 13:37:06 +02:00
Andrew David Wong
13e5ede490
Merge branch 'patch-2' of git://github.com/thomwiggers/qubes-doc into thomwiggers-patch-2 2016-08-05 16:16:14 -07:00
Marek Marczykowski-Górecki
704f95484a
Fix ToC in managing-vm-kernel 2016-08-04 12:54:56 +02:00
Thom Wiggers
99566ff769 Explicitly install required dependencies 2016-08-03 23:29:58 +02:00
clayton
602bcf9fe2 No content changes -- hard wrap excessively long Markdown lines only. 2016-07-21 14:59:06 +08:00
clayton
e259037ec3 more /rw/config/ script tweaks 2016-07-20 20:26:17 +08:00
Marek Marczykowski-Górecki
90c142db2c
Describe how to generate initramfs and build u2mfn on Debian VM 2016-07-20 13:06:56 +02:00
Marek Marczykowski-Górecki
edf1bf9879
Minor clarification for pvgrub instruction 2016-06-26 12:26:34 +02:00
Andrew David Wong
a0bee729e1
Clean up text and fix formatting (closes #162) 2016-06-06 02:39:39 -07:00
Andrew David Wong
9b2ce97fe8
Fix code block formatting (closes #161) 2016-06-06 02:31:37 -07:00
ttasket
fab1c3043c quotes 2016-06-05 02:57:51 -04:00
ttasket
9f512be79f fedora needs PATH assignment 2016-06-05 02:50:54 -04:00
ttasket
88b4097c23 Switch to 'su -' envs, quote vars, rm --dport 53
Thanks Marek!
2016-06-04 22:46:18 -04:00
ttasket
a09ec964ad Automatic; No manual coding of IP addresses.
This requires the user only to add a few lines to their ovpn config file, and copy a few scripts (verbatim). They do not have to figure out which IP addresses are appropriate and hard-code them--unless their VPN service is bereft of domain names. Even in that case, they can do it easily within the ovpn config file. This is much less error-prone and should work with a greater variety of services (large commercial services tend to change their IPs so using domain names and DHCP is preferable in that case).

Also converted firewall section (3) to one code block for much less cutting/pasting. Comments are still there as shell comments.

The only required template changes are adding openvpn itself and possibly disabling the default systemd service for it. Everything else should be there in /rw/config.

This doesn't include extra firewall protections against inadvertent net access from within the VPN VM. I'm thinking of proposing those additions in a separate edit.
2016-06-04 20:01:58 -04:00
john-david-r-smith
c6da0b0664 now using systemd to start openvpn 2016-05-26 09:02:52 +02:00
john-david-r-smith
a9ae590f6f removed unnecessary + dangerous iptables rule 2016-05-26 08:42:25 +02:00
john-david-r-smith
bed89b7eab fixed typo 2016-05-25 23:26:55 +02:00
john-david-r-smith
bccd9558b3 how to setup an openvpn connection using iptables 2016-05-25 22:55:27 +02:00