We see much correspondence in these forums about installing a VPN within
Qubes. Surely, the most secure place for VPN is to install on a Router?
I say these things after reading the following paper [
https://cryptome.org/2013/12/Full-Disclosure.pdf ] in which a group of
hackers demonstrate that the majority of routers (in-particular those
provided by ISP's] have backdoors to government agencies. These
adversary's are able attack our LAN and its devices; including the
ability to intercept VPN and Tor traffic.
The solution they say is to isolate these rogue routers in the
Militarized Zone by creating a DMZ [demilitarized zone]. Achieved by
installing a 2nd router [flashed with open source firmware such as
OPenWRT]. It is here, on the router, that we should enable and run
OpenVPN.
Thoughts on this paper and it's conclusions are welcomed
--
You received this message because you are subscribed to the Google Groups
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To post to this group, send email to [email protected].
To view this discussion on the web visit
https://groups.google.com/d/msgid/qubes-users/e3ee094772aaa25ea619a5b6cc81c0db%40riseup.net.
For more options, visit https://groups.google.com/d/optout.