On 04/22/2018 02:10 PM, niepowie...@gmail.com wrote:

Also, if you run bitmask just in individual appVMs (instead of proxyVM,
which shares the connection with some number of appVMs) then in that
situation it probably won't need Qubes-specific rules to prevent leaks.


not true, bitmask in appVM's once VPN is disconnect allow clear and unencrypted 
traffic.

In this case you're following the usage and threat model that LEAP designed bitmask for. IOW, the appVM is like a regular Linux PC and the user must be mindful of the connection state.

--

Chris Laprise, tas...@posteo.net
https://github.com/tasket
https://twitter.com/ttaskett
PGP: BEE2 20C5 356E 764A 73EB  4AB3 1DC4 D106 F07F 1886

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/0b724372-99ed-e4bb-73bd-cf4e41ced5c9%40posteo.net.
For more options, visit https://groups.google.com/d/optout.

Reply via email to