Mirage-firewall as sys-net (not sys-firewall) replacement

Would it work? Any disadvantages for a wired connection?

How would you make it provide driver support for the hardware?

That’s one question. When would I need it and when it is already there?

Yes that’s a very big issue :frowning:

That would require a huge amount of code writing/adaptation and as well maintenance to deal with hardware compatibility (even if we can take drivers from BSD or Linux, it’s hard to manage the memory from Ocaml runtime and in the same time the C heap, cf. various issues about memory in recent qubes-mirage-firewall repository).

1 Like