Skip to content

Commit

Permalink
Merge branch 'unman-patch-1' (QubesOS/qubes-issues#1570)
Browse files Browse the repository at this point in the history
  • Loading branch information
Andrew David Wong committed Jan 2, 2019
2 parents 77fda48 + e17c31d commit 04e38bc
Showing 1 changed file with 2 additions and 1 deletion.
3 changes: 2 additions & 1 deletion security/firewall.md
Original file line number Diff line number Diff line change
Expand Up @@ -48,9 +48,10 @@ in that VM's directory in dom0:

/var/lib/qubes/appvms/<vm-name>/firewall.xml

Please note that there is a 3 kB limit to the size of the `iptables` script.
Please note that there is a 3 kB limit to the size of the `iptables` script in Qubes versions before R4.0.
This equates to somewhere between 35 and 39 rules.
If this limit is exceeded, the qube will not start.
The limit was removed in R4.0.

It is possible to work around this limit by enforcing the rules on the qube itself
by putting appropriate rules in `/rw/config`.
Expand Down

0 comments on commit 04e38bc

Please sign in to comment.