On Thu, Aug 23, 2018 at 5:08 PM, taii...@gmx.com <taii...@gmx.com> wrote:

> On 08/20/2018 01:21 PM, stallmanro...@gmail.com wrote:
> >
> > ME disabled (works!)
>
> It is a nice laptop and I recommend it sometimes BUT:
>
> As someone with your screen-name I would hope you know that it is
> impossible to disable ME.
>
> In your case the BUP module still runs along with any mask roms - more
> than enough to add a backdoor to your machine.
>
> Of course in terms of laptops it is still better than newer intel stuff
> like the skylake puri-craptops where the bup AND the kernel run on their
> "disabled" ME - they changed the definition of disabled just like they
> did with the definition of "open firmware" :[
>
> The best and most free laptop is the lenovo G505S of which there is a
> thriving little coreboot-qubes4 community thanks to me telling many
> people to get it :D
>
> G505S:
> * pre-PSP AMD quad core cpu (the A10 model - the others suck)
> * coreboot with open cpu/ram init (unlike the blobbed puri-craptop hw
> init via the intel fsp binary blob)
> * IOMMU that works with qubes 4.0 (Must apply latest microcode updates
> or qubes wont work)
> Blob status: video+EC but people are apparently working on freeing them
> and the IOMMU protects you from any DMA issues.
>
>
Thanks! Is there somewhere a tutorial to do all that?


> In terms of other laptops the X230t (with better *20 series non chiclet
> keyboard) I recommend if someone wants a tablet and the W520 if someone
> wants a mobile workstation with 32GB RAM - both are of course a much
> better choice than a puri-craptop as they have open source hardware init
> via coreboot and the ME can be nerfed.
>
>
> >
> > 2. Tomu support (30$ ) (works fine!)
> > https://www.crowdsupply.com/sutajio-kosagi/tomu
> >
> > porting gnuk to tomu (opensource analog yubikey, needed to use heads)
> >
> > https://github.com/osresearch/heads-wiki/blob/master/GPG.md
> >
> > Dev: https://github.com/aze00/gnuk/tree/efm32
> > PR: https://github.com/im-tomu/tomu-samples/pull/35
> > Issue: https://github.com/im-tomu/tomu-samples/issues/4
> >
> > Alternative - Nitrokey
> > https://shop.nitrokey.com/shop/product/nitrokey-start-6 (based on gnuk)
> >
> > 3. https://inversepath.com/usbarmory nice compatibility (works without
> any issues)
> >
> > 4. for good work you need a bundle i7 2gen, 16 RAM and good SSD disk ( I
> completely lack 256 gigabytes )
> >
> > main templates :
> > archlinux
> > artful
> > bionic
> > centos-7
> > debian-9
> > dev (buster)
> > fedora-28
> > kali-rolling
> > void-template
> > whonix-ws-14
> > whonix-gw-14
> >
> > works fine and easy build from https://github.com/QubesOS/qubes-builder
> >
> > + 8-10 services (vpn,tor,wireguard etc)
> > + 3-4 disp vm's (internet browsing)
> > + 8+10 domains
> >
> > Total disk usage : 20.4%
> > lvm : 36.2%  77.4GB/213.8GB
> >
> > So, 256GB is enough.
> >
> > 5. You can use it like tablet ;)
> >
> > https://github.com/martin-ueding/thinkpad-scripts
> >
> > rotate/touchscreen works great and works on every VM machine.
>
> Nice! glad that still works
>
> Did you install coreboot?
>
> >
> > 6. TPM ownership/reset (work!)
> >
> > 7. 10 open vms
> >
> > temp 52
> > fan 3496 rpm
> >
> > 8. +3G modem or raspberry pi features
>
> The RPI is not an open source firmware device FYI and I recommend
> instead purchasing a beagleboard or novena.
>
> --
> You received this message because you are subscribed to the Google Groups
> "qubes-users" group.
> To unsubscribe from this group and stop receiving emails from it, send an
> email to qubes-users+unsubscr...@googlegroups.com.
> To post to this group, send email to qubes-users@googlegroups.com.
> To view this discussion on the web visit https://groups.google.com/d/
> msgid/qubes-users/b13a5dc1-e446-888c-4d96-1e62abdf7e0b%40gmx.com.
> For more options, visit https://groups.google.com/d/optout.
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/CAPzH-qDk8qxaSSQQT3DW1F-MVaxk-60i9pHCNCMRtiL8fLpMpw%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.

Reply via email to