integrate whonix-firewall-plugin.sh into whonix-gw-firewall

Information

ID: 395
PHID: PHID-TASK-3w5d42fz5y3omduoxrzd
Author: Patrick
Status at Migration Time: resolved
Priority at Migration Time: Normal

Description

During cleanup / refactoring of the qubes-whonix package, I was wondering…

For #Whonix_12, I intent to move
https://github.com/adrelanos/qubes-whonix/blob/master/usr/lib/qubes-whonix/init/whonix-firewall-plugin.sh
directly into
https://github.com/Whonix/whonix-gw-firewall/blob/master/usr/bin/whonix_firewall

Is there any reason against that?

Then the GATEWAY_IPv4_DROP_INVALID_INCOMING_PACKAGES_POST_HOOK (https://github.com/adrelanos/qubes-whonix/blob/master/etc/whonix_firewall.d/40_qubes) could be deprecated.

I would find that easier to grasp and maintain. From perspective of upgrading packages, time required for that, nothing would change.

@nrgaway

Comments


nrgaway

2015-08-12 08:50:16 UTC


Patrick

2015-08-12 13:45:22 UTC