So I’m following PrivSec’s guide on how to install and set up the MullvadVPN app on Qubes (as opposed to using a config file as normal) but I decided to try and set up a Mirage firewall first, as recommended at the end of the guide.
I managed to follow the firewall guide to the letter but I got confused at the last part about the disposable FirewallVM. Basically, should I still use sys-firewall or sys-net as the FirewallVM’s net qube or…?
And also, the Mullvad guide says I should install the app on a Fedora Gnome template. So I searched the template manager and couldn’t find a Gnome template of any kind, not even among the community or testing templates. So where do I go from here?
Thanks but the reason I’m also trying to install Mirage Firewall is that the VPN guide says it or other apps may interfere with its firewall handling. Should I worry about anything like it with your guide?
That guide is quite old.
The gnome templates are the base named ones - so fedora-42 is gnome based,
whereas fedora-42-xfce is tuned for Xfce.
If I remember right, the suggestion is :
qubes->mirage-firewall->MullvadVPN->sys-firewall->sys-net
In my experience Mullvad does not interfere with Qubes firewalling, but
mirage fw adds little load so you can use it if you want. I’m not sure what
the sys-firewall is doing, unless you have other Qubes not running
via Mullvad. If you dont it is redundant.
I never presume to speak for the Qubes team.
When I comment in the Forum I speak for myself.