Re: [qubes-users] X470 and IOMMU Groups...

2018-08-15 Thread Sphere
Surely you have checked that your boot sequence really starts at the HDD where 
you installed qubes right? I got a case where my bios completely could not 
recognize the drive where I installed my Qubes as bootable and had to do sum 
stuff in the Boot sector to make it work. The same may apply to you so yeah.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/4e87ae91-5829-41c6-9a9e-22c8f2be5226%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] X470 and IOMMU Groups...

2018-08-15 Thread Jean-Philippe Ouellet
On Wed, Aug 8, 2018 at 1:30 PM,  <3mp...@gmail.com> wrote:
> Hi everyone,
>
> actually I'm a happy Qubes 3.2 user on Intel platform for more than a year 
> now !
>
> I'm looking to upgrade my actual Skylake build with an AMD one with the new 
> Ryzen Pinnacle Ridge CPU (R7 2700) and installing Qubes 4.0 on the same 
> occasion. The Asrock X470 Taichi seems a really nice motherboard for it.
>
> I've found the IOMMU Groups of this motherboard on reddit : 
> https://www.reddit.com/r/VFIO/comments/8i8yqq/iommu_groups_for_asrock_taichi_x470/
>
> and it seems there's a big group 13 with LAN, USB and SATA controllers. I 
> wonder if the netVM and USB VM will actually be able to passthrough these 
> controllers if they are in the same IOMMU Group ?
>
> Any Ryzen / Qubes users can confirm this works OK or this is a no go ?
>
> Thanks for your help !

Not sure if also applicable to the X470, but I tried and was
unsuccessful at installing R4 on an Asrock X399 Taichi. I don't
remember all the details, but I think the installer got stuck in a
boot loop, never getting to GUI. YMMV.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/CABQWM_DbaR2s3Te99XHn%2BdH277ND%2Bwkej9B08NtGsGX8Awc9YA%40mail.gmail.com.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] X470 and IOMMU Groups...

2018-08-15 Thread 'awokd' via qubes-users
On Wed, August 15, 2018 4:22 am, taii...@gmx.com wrote:
> On 08/12/2018 03:36 PM, 'awokd' via qubes-users wrote:
>
>>
>> No experience with that exact configuration. You can often passthrough
>> devices individually even if they are in the same IOMMU group (older
>> versions of Xen had trouble).
>
> This is a bad recommendation security wise and I expect better from you.

Hi, Taiidan! The OP seemed to recognize it was ideal to have devices in
separate IOMMU groups, so I assumed he was familiar with the warnings in
https://www.qubes-os.org/doc/assigning-devices/#pci-passthrough-issues and
just wondering if it was technically possible.


-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/0446b3d2ce5074d9bca8c8f642bb1a9b.squirrel%40tt3j2x4k5ycaa5zt.onion.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] X470 and IOMMU Groups...

2018-08-15 Thread taii...@gmx.com
On 08/12/2018 03:36 PM, 'awokd' via qubes-users wrote:
> 
> No experience with that exact configuration. You can often passthrough
> devices individually even if they are in the same IOMMU group (older
> versions of Xen had trouble).

This is a bad recommendation security wise and I expect better from you.

:<

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/949f0171-5ed8-0d14-971e-a8b8e87ef4b1%40gmx.com.
For more options, visit https://groups.google.com/d/optout.


0xDF372A17.asc
Description: application/pgp-keys


Re: [qubes-users] X470 and IOMMU Groups...

2018-08-12 Thread 'awokd' via qubes-users
On Wed, August 8, 2018 5:30 pm, 3mp...@gmail.com wrote:
> Hi everyone,
>
>
> actually I'm a happy Qubes 3.2 user on Intel platform for more than a
> year now !
>
> I'm looking to upgrade my actual Skylake build with an AMD one with the
> new Ryzen Pinnacle Ridge CPU (R7 2700) and installing Qubes 4.0 on the
> same occasion. The Asrock X470 Taichi seems a really nice motherboard for
> it.
>
> I've found the IOMMU Groups of this motherboard on reddit :
> https://www.reddit.com/r/VFIO/comments/8i8yqq/iommu_groups_for_asrock_tai
> chi_x470/
>
> and it seems there's a big group 13 with LAN, USB and SATA controllers. I
> wonder if the netVM and USB VM will actually be able to passthrough these
> controllers if they are in the same IOMMU Group ?
>
> Any Ryzen / Qubes users can confirm this works OK or this is a no go ?

No experience with that exact configuration. You can often passthrough
devices individually even if they are in the same IOMMU group (older
versions of Xen had trouble). Suggest buying from some place with a good
return policy.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/15dd6bb74a6681422c487310cbede169.squirrel%40tt3j2x4k5ycaa5zt.onion.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] X470 and IOMMU Groups...

2018-08-08 Thread taii...@gmx.com
I would instead consider the purchase of an owner controlled KCMA-D8 or
KGPE-D16 motherboard which you can install libre board+bmc firmware on.

They support qubes 4.0 very well and all devices have their own IOMMU group.

They are a much better choice than a proprietary firmware PSP laden
non-owner controlled new intel/amd system and are the last and best
owner controlled x86 motherboards...now the only new performance CPU
arch that is owner controlled is POWER such as the TALOS 2 system which
currently doesn't have a xen port although it supports other virts such
as KVM/QEMU.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/03915a86-7cbe-344e-05eb-909bad715f90%40gmx.com.
For more options, visit https://groups.google.com/d/optout.


[qubes-users] X470 and IOMMU Groups...

2018-08-08 Thread 3mptyy
Hi everyone,

actually I'm a happy Qubes 3.2 user on Intel platform for more than a year now !

I'm looking to upgrade my actual Skylake build with an AMD one with the new 
Ryzen Pinnacle Ridge CPU (R7 2700) and installing Qubes 4.0 on the same 
occasion. The Asrock X470 Taichi seems a really nice motherboard for it.

I've found the IOMMU Groups of this motherboard on reddit : 
https://www.reddit.com/r/VFIO/comments/8i8yqq/iommu_groups_for_asrock_taichi_x470/

and it seems there's a big group 13 with LAN, USB and SATA controllers. I 
wonder if the netVM and USB VM will actually be able to passthrough these 
controllers if they are in the same IOMMU Group ?

Any Ryzen / Qubes users can confirm this works OK or this is a no go ?

Thanks for your help !

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/c359faec-ee8a-4709-9c2d-43f77445e647%40googlegroups.com.
For more options, visit https://groups.google.com/d/optout.