[qubes-users] Re: qubes build system is fragile

2021-09-02 Thread ludwig...@gmail.com
build/src/qubes-builder'
make: *** [Makefile:267: vmm-xen-dom0] Error 1
"

So it can not link for some dependencies in xen..
This should be "stable code", at least it should compile :-(

Any thoughts about it?

Regards,


Ludwig
On Thursday, September 2, 2021 at 3:23:24 PM UTC+2 ludwig...@gmail.com 
wrote:

> Hi all, 
>
> has someone a VM of a 100% working qubes-build system?
> I am trying to get qubes-build running on 
>
> -qubes machine, here I have dedicated 8 cores of my workstation
> -stand alone machine with fc33,  48 cores of Xeon(R) CPU E5-2697 v2 @ 
> 2.70GHz
> with 128GB RAM in both cases I dont have success.
>
> Also there is a "mount problem" that make remount does not solve as 
> advertised
> in the error message.
> One needs to disable selinux completely then this works, which I found 
> after some 
> web search...
>
> And now on both machines it stops with a problem in libvirt.
>
> "
> Now it spits an error:
> [sudo] password for build: 
> -> Building core-libvirt (libvirt.spec) for fc33 dom0 (logfile: 
> build-logs/core-libvirt-dom0-fc33.log)
> --> build failed!
> make[2]: Entering directory '/home/build/src/qubes-builder'
> /home/build/src/qubes-builder/qubes-src/builder-rpm//update-local-repo.sh 
> fc33
> sudo BACKEND_VMM=xen  dnf 
> --installroot=/home/build/src/qubes-builder/chroot-dom0-fc33 
> --installroot=/home/build/src/qubes-builder/chroot-dom0-fc33 --refresh -y 
> update
> Qubes OS Builder Repository 2.9 MB/s | 3.0 kB 
> 00:00
> Qubes OS Builder Repository 456 kB/s |  22 kB 
> 00:00
> Fedora 33 - x86_64  235 kB/s |  26 kB 
> 00:00
> Fedora 33 openh264 (From Cisco) - x86_64 12 kB/s | 989  B 
> 00:00
> Fedora 33 - x86_64 - Updates109 kB/s |  10 kB 
> 00:00
> Fedora 33 - x86_64 - Updates1.8 MB/s | 2.9 MB 
> 00:01
> Dependencies resolved.
> Nothing to do.
> Complete!
> sudo BACKEND_VMM=xen  chroot 
> /home/build/src/qubes-builder/chroot-dom0-fc33 su -c 'rpmspec -P --define 
> "debug_package %{nil}" --define "fedora 33" --define "dist .fc33" --define 
> "fedora 33" --define "dist .fc33" 
> /home/user/qubes-src/core-libvirt/libvirt.spec > 
> /home/user/qubes-src/core-libvirt/libvirt.spec.parsed' - user
> cat: version: No such file or directory
> error: line 275: Empty tag: Version:
> make[2]: *** 
> [/home/build/src/qubes-builder/qubes-src/builder-rpm/Makefile-legacy.rpmbuilder:51:
>  
> dist-build-dep.spec] Error 1
> make[2]: Leaving directory '/home/build/src/qubes-builder'
> make[1]: *** [Makefile.generic:191: packages] Error 1
> make[1]: Leaving directory '/home/build/src/qubes-builder'
> make: *** [Makefile:267: core-libvirt-dom0] Error 1
>
>
>
>
> "
>
>
> As the core developers are having a working build system, it would be 
> nice, if
> they could just share the complete VM so it easy to just use it. No more 
> brushing
> of big animals with dirty furs.
>
> Anyone who just has a working qubes builder and who is willing to share it,
> so I can run it with qemu, virtualbox or something else?
> I just want to change 10 lines of Xen code and I find my self brusing fury 
> animals for more than a week (not the main work, but it is a waste of time, 
> the fragile qubes build system)
>
> Thanks and best Regards,
>
> Ludwig
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/0380aa16-c3f2-4e1f-984a-0bc79e42c1e6n%40googlegroups.com.


[qubes-users] qubes build system is fragile

2021-09-02 Thread ludwig...@gmail.com
Hi all, 

has someone a VM of a 100% working qubes-build system?
I am trying to get qubes-build running on 

-qubes machine, here I have dedicated 8 cores of my workstation
-stand alone machine with fc33,  48 cores of Xeon(R) CPU E5-2697 v2 @ 
2.70GHz
with 128GB RAM in both cases I dont have success.

Also there is a "mount problem" that make remount does not solve as 
advertised
in the error message.
One needs to disable selinux completely then this works, which I found 
after some 
web search...

And now on both machines it stops with a problem in libvirt.

"
Now it spits an error:
[sudo] password for build: 
-> Building core-libvirt (libvirt.spec) for fc33 dom0 (logfile: 
build-logs/core-libvirt-dom0-fc33.log)
--> build failed!
make[2]: Entering directory '/home/build/src/qubes-builder'
/home/build/src/qubes-builder/qubes-src/builder-rpm//update-local-repo.sh 
fc33
sudo BACKEND_VMM=xen  dnf 
--installroot=/home/build/src/qubes-builder/chroot-dom0-fc33 
--installroot=/home/build/src/qubes-builder/chroot-dom0-fc33 --refresh -y 
update
Qubes OS Builder Repository 2.9 MB/s | 3.0 kB 
00:00
Qubes OS Builder Repository 456 kB/s |  22 kB 
00:00
Fedora 33 - x86_64  235 kB/s |  26 kB 
00:00
Fedora 33 openh264 (From Cisco) - x86_64 12 kB/s | 989  B 
00:00
Fedora 33 - x86_64 - Updates109 kB/s |  10 kB 
00:00
Fedora 33 - x86_64 - Updates1.8 MB/s | 2.9 MB 
00:01
Dependencies resolved.
Nothing to do.
Complete!
sudo BACKEND_VMM=xen  chroot /home/build/src/qubes-builder/chroot-dom0-fc33 
su -c 'rpmspec -P --define "debug_package %{nil}" --define "fedora 33" 
--define "dist .fc33" --define "fedora 33" --define "dist .fc33" 
/home/user/qubes-src/core-libvirt/libvirt.spec > 
/home/user/qubes-src/core-libvirt/libvirt.spec.parsed' - user
cat: version: No such file or directory
error: line 275: Empty tag: Version:
make[2]: *** 
[/home/build/src/qubes-builder/qubes-src/builder-rpm/Makefile-legacy.rpmbuilder:51:
 
dist-build-dep.spec] Error 1
make[2]: Leaving directory '/home/build/src/qubes-builder'
make[1]: *** [Makefile.generic:191: packages] Error 1
make[1]: Leaving directory '/home/build/src/qubes-builder'
make: *** [Makefile:267: core-libvirt-dom0] Error 1




"


As the core developers are having a working build system, it would be nice, 
if
they could just share the complete VM so it easy to just use it. No more 
brushing
of big animals with dirty furs.

Anyone who just has a working qubes builder and who is willing to share it,
so I can run it with qemu, virtualbox or something else?
I just want to change 10 lines of Xen code and I find my self brusing fury 
animals for more than a week (not the main work, but it is a waste of time, 
the fragile qubes build system)

Thanks and best Regards,

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/2fbe89f0-ec04-4c20-930b-812d302344e4n%40googlegroups.com.
# vim: ft=make ts=4 sw=4

# Ready to use config for full build of the latest development version Qubes OS 
(aka "master").

GIT_BASEURL ?= https://github.com
GIT_PREFIX ?= QubesOS/qubes-
NO_SIGN ?= 1

BACKEND_VMM=xen

DIST_DOM0 ?= fc33
DISTS_VM ?= fc33 buster

MGMT_COMPONENTS = \
mgmt-salt \
mgmt-salt-base \
mgmt-salt-base-topd \
mgmt-salt-base-config \
mgmt-salt-dom0-qvm \
mgmt-salt-dom0-virtual-machines \
mgmt-salt-dom0-update

COMPONENTS ?= \
vmm-xen \
core-libvirt \
core-vchan-xen \
core-qubesdb \
core-qrexec \
linux-utils \
python-cffi \
python-xcffib \
python-objgraph \
python-hid \
python-u2flib-host \
python-qasync \
python-panflute \
rpm-oxide \
core-admin \
core-admin-client \
core-admin-addon-whonix \
core-admin-linux \
core-agent-linux \
intel-microcode \
linux-firmware \
linux-kernel \
artwork \
grub2 \
grub2-theme \
gui-common \
gui-daemon \
gui-agent-linux \
gui-agent-xen-hvm-stubdom \
seabios \
vmm-xen-stubdom-legacy \
vmm-xen-stubdom-linux \
app-linux-split-gpg \
app-thunderbird \
app-linux-pdf-converter \
app-linux-img-converter \
app-linux-input-proxy \
app-linux-usb-proxy \
app-linux-snapd-helper \
app-shutdown-idle \
app-yubikey \
app-u2f \
screenshot-helper \
$(MGMT_COMPONENTS) \
infrastructure \
repo-templates \
meta-packages \
manager \
desktop-linux-common \
desktop-linux-kde \
desktop-linux-xfce4 \
desktop-linux-xfce4-xfwm4 \
desktop-linux-i3 \
desktop-linux-i3-settings-qubes \
desktop-linux-awesome \

[qubes-users] building cubes how to include custom patches

2021-09-02 Thread ludwig...@gmail.com
Hi all, 
I would like to patch some sources of xen and would like to know how
to introduce the patches into the build system.

Regards,

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/8f585861-a8cd-4bf1-b1eb-9f42d24f6e78n%40googlegroups.com.


[qubes-users] Re: HCL - Thinkpad x220, Qubes 4.1 + Heads firmware

2021-09-02 Thread ludwig...@gmail.com
Hi Jolly, could you please give a complete manual on this setup?
How to make the heads firmware, how to flash it (ME will stop you from 
using flashrom -p internal).
Some SPI programming experiments with raspi-pi were not successfull at 
least for me. It seems
that the unpowered chipset of the computer pulls the data to ground and 
eats 3.3V so the programmer
has no power to live.

A complete tutorial to set this up would be cool. And if you make a video, 
better than nothing.

Thanks in advance

Ludwig

On Friday, August 20, 2021 at 5:13:40 PM UTC+2 jolly@tuta.io wrote:

>
> Thanks for the work you've done!
> P.S. x220 will never die :)
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/fc2fb12b-3161-4a42-8750-8429bf431ca8n%40googlegroups.com.


[qubes-users] qubes-builder fails rpmlock permission denied

2021-08-24 Thread ludwig...@gmail.com
Hi all, I try to roll my own variant of an qubes install cd and it does not 
work to build with system.
It is stable and should work somehow, others did also build qubes.

The machine runs FC33 on bare metal with newest updates

-> Preparing fc33 build environment
-> Initializing RPM database...
error: can't create transaction lock on 
/home/build/src/qubes-builder/chroot-dom0-fc33/var/lib/rpm/.rpm.lock 
(Permission denied)
make[1]: *** 
[/home/build/src/qubes-builder/qubes-src/builder-rpm/Makefile-legacy.rpmbuilder:37:
 
/home/build/src/qubes-builder/chroot-dom0-fc33/home/user/.prepared_base] 
Error 1

Any ideas?

Cheers,

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/6115ab8b-04c1-4f91-af84-f41288438bd5n%40googlegroups.com.


[qubes-users] qubes-os // stand-alone reactos fails

2020-12-13 Thread ludwig...@gmail.com
Hi I am trying to install reactos 0.4.13 as stand alone with 16G system and 
16g private.
I know, way too much.
Reactos fails with blue screen and red print: "Setup could not find a 
harddisk"
Enter = Reboot computer.

So why there is no harddisk in the vm?
Is there an editor to configure more options to the vm? So I would like
to see if the devices are there.

BTW: If someone could contribute a reactos template with common
tools like peazip and sumatrapdf it would be nice for all to play with some
old windows stuff.

Regards

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/0f9d5f99-b470-425f-a65a-8396f034a23en%40googlegroups.com.


[qubes-users] Re: HCL - DELL Precission M6800 A26

2020-12-13 Thread ludwig...@gmail.com
A26 BIOS?! 
Are you sure? A16 is more plausible.

Cheers,

Ludwig


On Thursday, December 10, 2020 at 2:29:37 PM UTC Sergey Bezugliy wrote:

>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/ecd26d2a-fea0-4ed8-be65-65db74f47fden%40googlegroups.com.


[qubes-users] recording qubes-sessions e.g. videos

2020-10-15 Thread ludwig...@gmail.com
Hi all, I found a script to record cubes sessions, e.g. videos on 
webbrowsers.
The problem is that it does not record the sound!
The media vm is based on debian10 template with a lot of stuff installed in 
my case.

Any Idea to solve this? Here is the script that I collected from github.
The printf is for debugging.


user@media:~$ cat record_screen.sh 
#!/bin/bash
#pass in alsa or pulse to record from sound device
IFS=$
#omit the top pixels to hide tabs and address bar
FIREFOX_Y_BUFFER=94
FIREFOX_X_BUFFER=2
if [[ ${1} =~ alsa ]] ; then
sound="-f alsa -ac 2 -i hw:0"
printf "alsa sound"
fi
if [[ ${1} =~ pulse ]] ; then
sound="-f pulse -ac 2 -i default"
printf "pulse sound"
fi
echo $sound
output=`xwininfo`
width=`echo $output | grep Width: | awk '{print $2}'`
height=`echo $output | grep Height: | awk '{print $2}'`
topleftX=`echo $output | grep "Absolute upper-left X:" | awk '{print $4}'`
topleftY=`echo $output | grep "Absolute upper-left Y:" | awk '{print $4}'`
winid=`echo $output | grep "Window id:" | awk '{print $4}'`
window=`xprop -id $winid WM_CLASS`
window=${window##*WM_CLASS(STRING) = }
window=${window##*, }
window=${window//\"}
window=`echo $window | sed 's/:/_/g'`
if [[ ${window} =~ Firefox ]] || [[ ${window} =~ Icecat ]] ; then
topleftY=$(( ${topleftY} + ${FIREFOX_Y_BUFFER} ))
topleftX=$(( ${topleftX} + ${FIREFOX_X_BUFFER} ))
width=$(( ${width} - ${FIREFOX_X_BUFFER} ))
height=$(( ${height} - ${FIREFOX_Y_BUFFER} ))
fi
ffmpeg -video_size ${width}x${height} -framerate 25 -f x11grab -i 
:0.0+${topleftX},${topleftY} ${sound} ${window}.mp4


-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/964c8c1a-3493-43f9-9fe0-ee334ba2543en%40googlegroups.com.


[qubes-users] qubes template centos-8 can not update: dependency-hell broken!

2020-10-15 Thread ludwig...@gmail.com
Hi the dependency hell of cubes-8 is broken because of special qubes tools 
demanding 
a package that was renamed, I guess.


bash-4.4# dnf update
Last metadata expiration check: 2:08:46 ago on Thu 15 Oct 2020 12:27:13 PM 
UTC.
Error: 
 Problem: cannot install the best update candidate for package 
qubes-gui-agent-4.0.29-1.centos8.x86_64
  - nothing provides python38-xcffib needed by 
qubes-gui-agent-4.0.30-1.centos8.x86_64
(try to add '--skip-broken' to skip uninstallable packages or '--nobest' to 
use not only best candidate packages)
bash-4.4# 
bash-4.4# dnf update
Last metadata expiration check: 2:08:46 ago on Thu 15 Oct 2020 12:27:13 PM 
UTC.
Error: 
 Problem: cannot install the best update candidate for package 
qubes-gui-agent-4.0.29-1.centos8.x86_64
  - nothing provides python38-xcffib needed by 
qubes-gui-agent-4.0.30-1.centos8.x86_64
(try to add '--skip-broken' to skip uninstallable packages or '--nobest' to 
use not only best candidate packages)
bash-4.4# 
bash-4.4# dnf install python3-xcffib.noarch
Last metadata expiration check: 2:09:44 ago on Thu 15 Oct 2020 12:27:13 PM 
UTC.
Package python3-xcffib-0.9.0-1.el8.noarch is already installed.
Dependencies resolved.
Nothing to do.
Complete!
bash-4.4# 


So python3-xcffib-0.9.0-1.el8.noarch is there and sufficient, as I guess, 
but the python38-xcffib is needed by 
qubes-gui-agent-4.0.30-1.centos8.x86_64!
So why cant it go with python3-xcffib!!?

Any Idea to solve this?

Cheers

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/07fba52c-8ad8-4cfb-bb6a-511133fb89fcn%40googlegroups.com.


Re: [qubes-users] Re: wired problems with 4 screens and 2 graphics boards: ps/2 mouse and kbd lock up, machine still running, but not usable. //machine locked up

2020-07-29 Thread ludwig...@gmail.com
Now the machine locked up after 2 days of operation. The Clock in the 
display manager run,
but it was not controllable using the ps/2 keyboard-mouse.
Here the Graphics board was exchanged to be a 4 DP port AMD card with CGN 
core.
This is erratic! Also the fact that the net-vm terminated 2 times before.  
Anyone who had such experiences with qubes?
What about resilience of qubes against ip based attacks?

Cheers,

Ludwig

On Tuesday, July 28, 2020 at 1:46:08 PM UTC ludwig...@gmail.com wrote:

> Yes this is a pain, and should be changed.
> Also it would be nice to download a config  file and to apply it system 
> wide,
> as this unlike the old xorg.conf with mode lines and stuff like that,
> is just per user and just for the window manager as I see.
> Compare the log in screen and you see.
>
> So it would be nice to have an editable config file and the possibility to
> set a system wide default config.
> At least a desktop with tradefloor like monitor stands does not need any
> reconfiguration for the screens if everything is set up smoothly.
>
>
> Learned lesson: go the extra mile to buy a decent graphics board and dont 
> trust
> X11 to span its desktop between two or more graphics boards, which it 
> theoretically
> can do.
> Not enough people debugging ist, I am sure.
>
> Cheers,
>
>
> Ludwig
>
> On Tuesday, July 28, 2020 at 9:37:15 AM UTC Qubes wrote:
>
>> On 7/28/20 10:27 AM, ludwig...@gmail.com wrote: 
>> > Also it is funny to mention that the display application hates 4 
>> screens. 
>> > So one has to start with mirrored screens and two screens disabled, 
>> > and then arrange the screens in the field as 
>> > 3 4 
>> > 1 2 
>> > Then disable mirroring and enable monitor3, say applay, and then enable 
>> > monitor 4 
>> > and rearrange the displays on the field. 
>> > 
>> > But finally it worked out well. 
>> I experience more or less the same when I disconnect and reconnect my 
>> monitors. I have 3. When ever I reconnect them I have to play around 
>> with enabling them in different order to get them all working. I cannot 
>> enable all of them at once. If I do that one of the monitors usually go 
>> blank but when I move my mouse pointer, or drag a window, onto that 
>> monitor the monitor displays black and white colored lines from top to 
>> bottom. Then I must first disable this monitor and rearrange the layout 
>> then enable this monitor again and again rearrange the layout. Finally I 
>> can get all 3 working but it is not a simple click to enable and that is 
>> that. 
>>
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/48de388d-ff2b-40a7-ab6f-c2f5a2f4111dn%40googlegroups.com.


[qubes-users] Re: External Fully Encrypted SSD Drive. What do you think?

2020-07-28 Thread ludwig...@gmail.com
"*Hardware Encrypted Drive do you know which has more speed capacity"*

*can you trust the drive?*

*What if it saves a spare set of encryption keys somewhere in its flash for 
the "lawful investigator" to find?*
*So do "hardware assisted crypto" only in addition to your crypto you trust 
in, which is open source crypto which has*
*been reviewed and reached a state of maturity.*



On Tuesday, July 28, 2020 at 11:09:39 AM UTC load...@gmail.com wrote:

>
> Hi everyone,
>
> I am thinking now to buy a Macbook Pro 16' and use this laptop in 2 
> different ways:
>
> 1. *Mac OS* for non-working tasks on internal drive.
> 2. *Qubes OS* for all working process on external encrypted drive.
>
>
> So for External Encrypted Drive I chose:
> https://istorage-uk.com/product/diskashur2/
>
> *One of the important tech specs is SSD Speed:*
> 361MB/s *Read*
> 358MB/s *Write*
>
>
>
>
> *So I have 2 questions:*
>
> *1. Is this enough for comfort using Qubes OS with this speed of SSD?2. 
> What kind of Hardware Encrypted Drive do you know which has more speed 
> capacity?*
>
>
> P.S.
> I know that most of you could tell me that this is not very smart to do 
> this way, but I have my own reasons why I need external and encrypted 
> drive. When I will finish this setup I will write full guide how I am using 
> Qubes OS and hope it would helps someone to understand which way to use is 
> better for each one.
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/3f00470b-2866-4ec5-a73f-93a2a314fb53n%40googlegroups.com.


Re: [qubes-users] Re: wired problems with 4 screens and 2 graphics boards: ps/2 mouse and kbd lock up, machine still running, but not usable. //solved by having one 4 dp graphics board by amd with cgn

2020-07-28 Thread ludwig...@gmail.com
Yes this is a pain, and should be changed.
Also it would be nice to download a config  file and to apply it system 
wide,
as this unlike the old xorg.conf with mode lines and stuff like that,
is just per user and just for the window manager as I see.
Compare the log in screen and you see.

So it would be nice to have an editable config file and the possibility to
set a system wide default config.
At least a desktop with tradefloor like monitor stands does not need any
reconfiguration for the screens if everything is set up smoothly.


Learned lesson: go the extra mile to buy a decent graphics board and dont 
trust
X11 to span its desktop between two or more graphics boards, which it 
theoretically
can do.
Not enough people debugging ist, I am sure.

Cheers,


Ludwig

On Tuesday, July 28, 2020 at 9:37:15 AM UTC Qubes wrote:

> On 7/28/20 10:27 AM, ludwig...@gmail.com wrote:
> > Also it is funny to mention that the display application hates 4 screens.
> > So one has to start with mirrored screens and two screens disabled,
> > and then arrange the screens in the field as
> > 3 4
> > 1 2
> > Then disable mirroring and enable monitor3, say applay, and then enable
> > monitor 4
> > and rearrange the displays on the field.
> > 
> > But finally it worked out well.
> I experience more or less the same when I disconnect and reconnect my 
> monitors. I have 3. When ever I reconnect them I have to play around 
> with enabling them in different order to get them all working. I cannot 
> enable all of them at once. If I do that one of the monitors usually go 
> blank but when I move my mouse pointer, or drag a window, onto that 
> monitor the monitor displays black and white colored lines from top to 
> bottom. Then I must first disable this monitor and rearrange the layout 
> then enable this monitor again and again rearrange the layout. Finally I 
> can get all 3 working but it is not a simple click to enable and that is 
> that.
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/f4b8b640-8eec-480a-bba2-f347446ab3afn%40googlegroups.com.


[qubes-users] Re: wired problems with 4 screens and 2 graphics boards: ps/2 mouse and kbd lock up, machine still running, but not usable. //solved by having one 4 dp graphics board by amd with cgn2

2020-07-28 Thread ludwig...@gmail.com
Hi, I now have 25 hours uptime,
here once my net vm suddenly stopped and had to be restarted.
Also it helped to unplug the machine from the network for a 
second as I experienced some lag in the processing.
Wired!
So the fire pro card with 4 display port connectors helped a lot.
The card has a cgn2 core with 28nm, so it is not that modern but
more than sufficient for looking at shells.
Also it is funny to mention that the display application hates 4 screens.
So one has to start with mirrored screens and two screens disabled,
and then arrange the screens in the field as
3 4
1 2
Then disable mirroring and enable monitor3, say applay, and then enable 
monitor 4 
and rearrange the displays on the field.

But finally it worked out well.

So there is the network vm left to be investigated.

Cheers,

Ludwig

On Monday, July 27, 2020 at 10:09:16 AM UTC ludwig...@gmail.com wrote:

>
>
> On Sunday, July 19, 2020 at 5:39:14 PM UTC, ludwig jaffe wrote:
>>
>> wired problems with 4 screens and 2 graphics boards: ps/2 mouse and kbd 
>> lock up, machine still running, but not usable.
>>
>>
>> I have this machine:
>>
>>  qubes-hcl-report 
>> Qubes release 4.0 (R4.0)
>>
>> Brand:Dell Inc.
>> Model:Precision WorkStation T7500  
>> BIOS:A17
>>
>> Xen:4.8.5-19.fc25
>> Kernel:4.19.128-1
>>
>> RAM:98301 Mb
>>
>> CPU:
>>   Intel(R) Xeon(R) CPU   L5638  @ 2.00GHz
>> Chipset:
>>   Intel Corporation 5520 I/O Hub to ESI Port [8086:3406] (rev 22)
>> VGA:
>>   Advanced Micro Devices, Inc. [AMD/ATI] Cedar [Radeon HD 7350/8350 / R5 
>> 220] [1002:68fa] (prog-if 00 [VGA controller])
>>   Advanced Micro Devices, Inc. [AMD/ATI] Cedar [Radeon HD 7350/8350 / R5 
>> 220] [1002:68fa] (prog-if 00 [VGA controller])
>>
>> Net:
>>   Intel Corporation 82546EB Gigabit Ethernet Controller (rev 01)
>>   Intel Corporation 82546EB Gigabit Ethernet Controller (rev 01)
>>   Intel Corporation 82546EB Gigabit Ethernet Controller (rev 01)
>>   Intel Corporation 82546EB Gigabit Ethernet Controller (rev 01)
>>   Broadcom Limited NetXtreme BCM5761 Gigabit Ethernet PCIe (rev 10)
>>
>> SCSI:
>>   Samsung SSD 860  Rev: 1B6Q
>>   DVD+-RW DH-16ABS Rev: PD11
>>
>> HVM:Active
>> I/O MMU:Active
>> HAP/SLAT:Yes
>> TPM:Device present
>> Remapping:yes
>>
>> Qubes HCL Files are copied to: 'dom0'
>> 
>> Qubes-HCL-Dell_Inc_-Precision_WorkStation_T7500__-20200719-172829.yml- 
>> HCL Info
>>
>> ///
>> lspci
>> 00:00.0 Host bridge: Intel Corporation 5520 I/O Hub to ESI Port (rev 22)
>> 00:01.0 PCI bridge: Intel Corporation 5520/5500/X58 I/O Hub PCI Express 
>> Root Port 1 (rev 22)
>> 00:03.0 PCI bridge: Intel Corporation 5520/5500/X58 I/O Hub PCI Express 
>> Root Port 3 (rev 22)
>> 00:07.0 PCI bridge: Intel Corporation 5520/5500/X58 I/O Hub PCI Express 
>> Root Port 7 (rev 22)
>> 00:14.0 PIC: Intel Corporation 7500/5520/5500/X58 I/O Hub System 
>> Management Registers (rev 22)
>> 00:14.1 PIC: Intel Corporation 7500/5520/5500/X58 I/O Hub GPIO and 
>> Scratch Pad Registers (rev 22)
>> 00:14.2 PIC: Intel Corporation 7500/5520/5500/X58 I/O Hub Control Status 
>> and RAS Registers (rev 22)
>> 00:1a.0 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #4
>> 00:1a.1 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #5
>> 00:1a.2 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #6
>> 00:1a.7 USB controller: Intel Corporation 82801JI (ICH10 Family) USB2 
>> EHCI Controller #2
>> 00:1b.0 Audio device: Intel Corporation 82801JI (ICH10 Family) HD Audio 
>> Controller
>> 00:1c.0 PCI bridge: Intel Corporation 82801JI (ICH10 Family) PCI Express 
>> Root Port 1
>> 00:1c.5 PCI bridge: Intel Corporation 82801JI (ICH10 Family) PCI Express 
>> Root Port 6
>> 00:1d.0 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #1
>> 00:1d.1 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #2
>> 00:1d.2 USB controller: Intel Corporation 82801JI (ICH10 Family) USB UHCI 
>> Controller #3
>> 00:1d.7 USB controller: Intel Corporation 82801JI (ICH10 Family) USB2 
>> EHCI Controller #1
>> 00:1e.0 PCI bridge: Intel Corporation 82801 PCI Bridge (rev 90)
>> 00:1f.0 ISA bridge: Intel Corporation 82801JIR (ICH10R) LPC Interface 
>> Controller
>> 00:1f.2 SATA controller: Intel Corporation 82801JI (ICH10 Family) SATA 
>> 

[qubes-users] Re: XScreensaver randomly popping up

2020-07-27 Thread ludwig...@gmail.com
Hi I had/had the problem with qubes 3.2, which is very annoying.
Funny thing: you can trick xscreensaver by switching the desktop 
if you have multiple desktops, which leads to odd/funny user
experience of locked screen, that shows desktop and is usable,
if you force it to redraw windows by moving windows and the like

Does ist feel the same?

On Monday, July 27, 2020 at 2:27:03 AM UTC fiftyfour...@gmail.com wrote:

> Also, since I started a thread, I also want to ask whether SHA1 or other 
> deprecated algorithms are used in the PGP verification of dom0 and domu 
> updates. This is somewhat related to my original question.
>
>
> https://arstechnica.com/information-technology/2020/01/pgp-keys-software-security-and-much-more-threatened-by-new-sha1-exploit/
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/4b0df715-8cb1-4c2d-8985-1fa4129edc3an%40googlegroups.com.


[qubes-users] Re: Bullseye and Kali templates // MANY THANKS!

2020-07-27 Thread ludwig...@gmail.com
MANY THANKS!

On Wednesday, July 22, 2020 at 4:49:39 PM UTC unman wrote:

> Hello All,
>
> I've uploaded new builds of the bullseye and Kali templates to
> https://qubes.3isec.org/Templates for any one who is interested.
>
> These packages are signed with my Qubes Signing key - you can find this
> on keyservers, in this list, and at GitHub. Verify the key, and then check
> the signature on the template package.
>
> If you are satisfied, copy the package in to dom0, and then install it
> with `dnf install`.
>
> The Kali template has all the packages of a standard Kali install,except
> for amass and cherrytree which are currently broken. (Problems of using
> a rolling distro based on a testing Debian - things will just break.)
> Otherwise all your favourite tools are there.
>
> As always, any one can dig in and examine the packages - comments always
> welcome.
>
> unman
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/9e309b4f-966a-4131-b10f-3af7eaef2133n%40googlegroups.com.


[qubes-users] Re: qubes template centos-8? 693M Updates

2020-07-27 Thread ludwig...@gmail.com

Hi all, 
regarding templates. Is it possible to have rolling updates with the 
templates, so all the users downloading templates
dont need to update them.
So once a week an update for the templetes would be nice. I am sure this 
can be automated.

Installing the updates at the source of the templates scales better 
compared to everyone installing updates.


Cheers,

Ludwig

On Monday, July 27, 2020 at 1:08:36 PM UTC ludwig...@gmail.com wrote:

>
> Hi all, I tried to download a centos8-template, but it seems to be 
> unavailable.
>
> xxx@dom0 ~]$ sudo qubes-dom0-update --enablerepo=qubes-templates-community 
> qubes-template-centos-8
> Using xxx-vm as UpdateVM to download updates for Dom0; this may take some 
> time...
> Fedora 25 - x86_64 - Updates2.3 MB/s |  24 MB 
> 00:10
> Fedora 25 - x86_64  2.4 MB/s |  50 MB 
> 00:21
> Qubes Dom0 Repository (updates) 2.1 MB/s |  19 MB 
> 00:09
> determining the fastest mirror (15 hosts).. done.--  B/s |   0  B 
> --:-- ETA
> Qubes Templates repository  4.1 kB/s |  17 kB 
> 00:03
> Qubes Community Templates repository 13 kB/s | 5.7 kB 
> 00:00
> Last metadata expiration check: 0:00:01 ago on Mon Jul 27 13:04:40 2020.
> No match for argument: qubes-template-centos-8
> Error: Unable to find a match: qubes-template-centos-8
> [xxx@dom0 ~]$ 
> Any thoughts?
>
> Cheers,
>
> Ludwig
>
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/2297fa2f-58ca-4c3b-9866-4399afd450e6n%40googlegroups.com.


[qubes-users] Re: qubes template centos-8?

2020-07-27 Thread ludwig...@gmail.com
Thanks! now it works!


On Monday, July 27, 2020 at 1:08:36 PM UTC ludwig...@gmail.com wrote:

>
> Hi all, I tried to download a centos8-template, but it seems to be 
> unavailable.
>
> xxx@dom0 ~]$ sudo qubes-dom0-update --enablerepo=qubes-templates-community 
> qubes-template-centos-8
> Using xxx-vm as UpdateVM to download updates for Dom0; this may take some 
> time...
> Fedora 25 - x86_64 - Updates2.3 MB/s |  24 MB 
> 00:10
> Fedora 25 - x86_64  2.4 MB/s |  50 MB 
> 00:21
> Qubes Dom0 Repository (updates) 2.1 MB/s |  19 MB 
> 00:09
> determining the fastest mirror (15 hosts).. done.--  B/s |   0  B 
> --:-- ETA
> Qubes Templates repository  4.1 kB/s |  17 kB 
> 00:03
> Qubes Community Templates repository 13 kB/s | 5.7 kB 
> 00:00
> Last metadata expiration check: 0:00:01 ago on Mon Jul 27 13:04:40 2020.
> No match for argument: qubes-template-centos-8
> Error: Unable to find a match: qubes-template-centos-8
> [xxx@dom0 ~]$ 
> Any thoughts?
>
> Cheers,
>
> Ludwig
>
>

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/9bfb5c4a-8225-4b20-a15b-f147689e2cd9n%40googlegroups.com.


[qubes-users] qubes template centos-8?

2020-07-27 Thread ludwig...@gmail.com

Hi all, I tried to download a centos8-template, but it seems to be 
unavailable.

xxx@dom0 ~]$ sudo qubes-dom0-update --enablerepo=qubes-templates-community 
qubes-template-centos-8
Using xxx-vm as UpdateVM to download updates for Dom0; this may take some 
time...
Fedora 25 - x86_64 - Updates2.3 MB/s |  24 MB 
00:10
Fedora 25 - x86_64  2.4 MB/s |  50 MB 
00:21
Qubes Dom0 Repository (updates) 2.1 MB/s |  19 MB 
00:09
determining the fastest mirror (15 hosts).. done.--  B/s |   0  B --:-- 
ETA
Qubes Templates repository  4.1 kB/s |  17 kB 
00:03
Qubes Community Templates repository 13 kB/s | 5.7 kB 
00:00
Last metadata expiration check: 0:00:01 ago on Mon Jul 27 13:04:40 2020.
No match for argument: qubes-template-centos-8
Error: Unable to find a match: qubes-template-centos-8
[xxx@dom0 ~]$ 
Any thoughts?

Cheers,

Ludwig

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/7faf5e90-b62c-4909-8b69-5a326b715c51n%40googlegroups.com.


[qubes-users] Dell T7500 and the hunt for the Intel ME Spy-Engine. // ME-Code not found in BIOS update. So where it is?

2020-07-27 Thread ludwig...@gmail.com


Hi all

If you want to play with the bios images, you can download them at 
dell dot com
with your service tag number of the box.
-
So to get the real romfile, the file that is written to the flash,
in order to do some research with it, call

wine T7500A18.exe /writeromfile

which will write  T7500A18.rom.
and wants you to click a message with OK-button.

So looking for intel-me code:
you might want to use:
https://github.com/corna/me_cleaner 


If you call

python me_cleaner.py T7500A18.rom
it says:

Unknown image

---
So there might still be me code me_cleaner does not know, or the bios
is ME_free.
--
Or is the bios update just a delta-update, and the ME-firmware is still 
there, not 
beeing modified.

--
I tried with A13 to A18 and me_cleaner did not find me_code, as it
reported "Unknown image".
---

Any thoughts where the ME-firmware could be hidden, or to make sure,
that the T7500 is really ME-free, as it seems to be?

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/700c8d05-8e15-4e68-bf65-5248a61d0a63n%40googlegroups.com.