Hi all, new to qubes and forum posting so apologies for any stupidity or bad formatting.
I’ve got a fresh 4.3.0 install and decided to go down the salt route made possible by @unman for a mullvad gui install. However, mullvad never installed inside the template created.
I’ve tried to update template-mullvad but I get an SSL connection failed error:0A0003E8 when it tries to fetch the mullvad repository. I CAN install other tools from the main repositories with apt though.
I tried giving template-mullvad temporart direct internwt access using both sys-firewall and sys-net but neither made a difference.
Is this a known issue or does anyone have any advice how I can start troubleshooting? I’m at a bit of a loss now and getting a vpn sys-net up and running was the first priority.
This is a handshake error - that’s why the direct connection (generally
not advisable) shows the same result.
It’s likely something at the server side. Just to be clear, what are you
using for update qube? (Based on which template.)
I never presume to speak for the Qubes team.
When I comment in the Forum I speak for myself.
It looks lie an issue at the repository - the file it’s serving doesnt
match the one in the metadata - saved by the secure update process.
Try later, when the issue should be resolved.
I never presume to speak for the Qubes team.
When I comment in the Forum I speak for myself.
Many thanks for such a swift reply - I’ll give it a few hours and then try again. For what it’s worth I cant see the update qube listed in the qube manager, although it does look like everything important is using fedora-42-xfce.
Unfortunately nothing seems to have changed at this end. It’s still failing to fetch with error “0A0003E8:SSL routines::reason(1000) / Success [IP: 127.0.0.1 8002]”.
Any idea how I can start further troubleshooting? Happy to do my own homework, but have no idea where to start! I tried changing the mullvad apt source to http and that also failed unfortunately.
Imo, just make a new template based on default TemplateVM like fedora-43-xfce or Debian, dnf update, follow instructions from Mullvad website installation on Linux i.e.
dnf config-manager addrepo –from-repofile…
dnf install mullvad-vpn
Not sure if you’ve going for disposable, which I do, but after installation etc., you can just make an AppVM based on mullvad-template and make it disposable template, sign in, do your config there, allow LAN, copy /etc/mullvad-vpn/ folder to /rw/config/mullvad-vpn/, make a script inside /rw/config/rc.local to copy /rw/config/mullvad-vpn to /etc/mullvad-vpn on each qube boot
Make a new named disposable, for example sys-vpn based on mullvad-template and just launch it, set net qube to whatever you like, for example sys-firewall and provide network to other qubes
Here is good guide
There is nothing hard about it, you literally just install Mullvad in a new template, I’ve set it up multiple times and never had any problems with updates or anything, but I guess you might want to know what’s causing the problem and fix the issue, I guess