My firewallvm which has sys-whonix (whonix gateway) as its netvm, any appvm that connect to firewallvm will not get internet connection but sys-whonix to appvm works.
My setup is like this;
A. Appvm won’t get internet connection with this arrangement
netvm (sys-net) -> firewallvm1 (sys-fw) -> sys-whonix -> firewallvm2 (sys-fw) -> appvm (whonix)
B. Appvm gets internet with this connection
netvm (sys-net) -> firewallvm1 (sys-fw) -> sys-whonix -> appvm (whonix)
So my problem is with A.
Is it possible to get internet with A or not?
If A is possible, please recommend a firewall rule to strictly enforce all traffic through the firewallvm1 & 2 to destination appvm.
NB: I haven’t setup any firewall rule. Just with default settings after creating firewallvm base on minimal template.