Whonix-Gateway broken after last upgrade on Qubes R4.1 (deprecated Qubes release)

Context: Qubes 4.1 with whonix 17 templates. Issue is whonix specific.

Trigger: after upgrading whonix templates (yesterday), prior upgrade was 5th of May.

Symptom: VMs connected to sys-whonix have NO internet access. (debian, hvm, anon-whonix, all). Happened right after the whonix template upgrades. sys-whonix is connected to Tor, circuits are fine, templates can apt-get update without issues…

What I tried:

  1. created a new sys-whonix. same problem: tor is connected but vms connected to this new gateway have no internet access:
[workstation user ~]% curl 1.1.1.1
curl: (7) Failed to connect to 1.1.1.1 port 80 after 0 ms: Couldn't connect to server
zsh: exit 7     curl 1.1.1.1
  1. revert packages? no versions besides latest available in repostory! checked with sudo apt-cache policy <package> . There are no cached packages in the system I could revert to.
  2. I have no backups to go back to… lesson learned.

I’M LEFT WITH NO INTERNET ACCESS!!! HELP

Not possible.

I have proof the upgrade is breaking the gateway template.

  1. I’ve downloaded again whonix gateway 17 template in dom0, and set it as template for sys-whonix. Sys-whonix works with this outdated template.
  2. I clone this outdated template, upgraded it, and set it as template for sys-whonix. BROKEN. Nothing connected to it has internet connection.

It is proven to be an issue caused by the upgrade.
I don’t know why other people are not reporting this issue… if for some mysterious reason it’s only affecting me , I imagine the whonix team will have to ignore it…

OMG