I have troubles to set up a basic firewall under an AppVM running trough a proxyVM running OpenVPN inside.
When I click on the "Deny network access except" then add a global exception (like * http tcp), I can connect to the web, but this method doesn't work with my AppVM connected to the proxyVM-VPN :(
If someone knows how to set up a basic firewall to browse the web behind a VPN proxyVM and share how to do it, even if Qubes is already secured considering you can easily delete domains if they get compromised, that would be great !
Regards
Read up on the firewall docs on the Qubes site and the old Johanna blog.
So I'm going to install and configure a software called "Arpon" to prevent this kind of ARP attacks I didn't know before, because obviously when you use 1 VM just to browse the web you are kinda safe on Qubes, but when you want to test things as a newbie, then you got the evil experienced hackers joining the party... :D
Thanks a lot Andrew for your advice, I will try this double firewall set-up after reinstalling Qubes ! Even it is unlikely dom0 would have been compromised, as I said I am pretty sure 1 of this 2 VMs got hacked and I don't want to risk another intrusion :p