Re: [qubes-users] Q4 Laptops...

2018-04-15 Thread Thierry Laurion
To Taiidan and all others complaining about Purism lies and consumer being misled. I keep reading stuff about purism lying about deactivating/disabling ME being impossible, lying about the future of Intel removing ME, etc. I think THIS is misleading. First, its me_cleaner job to do the cleaning.

Re: [qubes-users] Q4 Laptops...

2018-04-15 Thread Thierry Laurion
"Their objective is good." Talking about Purism here, not Intel :) Le dim. 15 avr. 2018 08:52, Thierry Laurion a écrit : > To Taiidan and all others complaining about Purism lies and consumer being > misled. > > I keep reading stuff about purism lying about

[qubes-users] 4.0 not updating dom0 nor fedora?

2018-04-15 Thread Stumpy
One small caveat, whonix-ws updated, everything else says there are no updates? While this is possible I am thinking its unlikely? I tried to update dom0 from the terminal sudo qubes-dom0-update and got /usr/lib/qubes/qubes-rpc-multiplexer: 14:

Re: [qubes-users] The best compromise for a Laptop (Balance security with reality of implementation)?

2018-04-15 Thread 'awokd' via qubes-users
On Sun, April 15, 2018 11:01 pm, vel...@tutamail.com wrote: > I am exploring the best Qubes laptop based on the following criteria: > > > 1) Secure/Privacy > 2) Usability and maintenance for the layman in need of security > 3) Price > 4) New laptop I wrote a selection guide here:

[qubes-users] The best compromise for a Laptop (Balance security with reality of implementation)?

2018-04-15 Thread velcro
I am exploring the best Qubes laptop based on the following criteria: 1) Secure/Privacy 2) Usability and maintenance for the layman in need of security 3) Price 4) New laptop Based on my research the most secure would be: Older laptops: G505 x220 T420 W520/W530 Pro: -price/value -Coreboot

Re: [qubes-users] Qubes VM Hardening v0.8.2 Released!

2018-04-15 Thread 'awokd' via qubes-users
On Sun, April 15, 2018 8:41 pm, Chris Laprise wrote: > On 04/15/2018 04:05 PM, Chris Laprise wrote: > >> On 04/15/2018 03:51 PM, Chris Laprise wrote: >> >>> Project link: https://github.com/tasket/Qubes-VM-hardening >>> >> >> TL;dr : This closes the obvious loopholes that malware can use in Qubes

Re: [qubes-users] Errors on booting 4.0 and time is off? Otherwise working great!

2018-04-15 Thread 'awokd' via qubes-users
On Sun, April 15, 2018 10:24 pm, vel...@tutamail.com wrote: > I am getting ACPI errors when I boot, everything works, or at least I > haven't seen a functionaility issue. I see some as well, with no obvious impact. > Not sure this is related but my time is off by 5 hours in Qubes. My BIOS > time

[qubes-users] Errors on booting 4.0 and time is off? Otherwise working great!

2018-04-15 Thread velcro
I am getting ACPI errors when I boot, everything works, or at least I haven't seen a functionaility issue. I am however concerned and trying to understand implications from a functonal and security perspective. The errors are: [ 1.] ACPI Error: [\_PR_.CPU0._CST] Namespace lookup

Re: [qubes-users] How can I build a domU kernel module?

2018-04-15 Thread 'awokd' via qubes-users
On Sun, April 15, 2018 6:36 pm, Demi M. Obenour wrote: > How can I build a kernel module for an AppVM?  I would like to write > some simple kernel modules, but I cannot figure out how to build them.  I > get: > > > make[1]: *** No rule to make target 'tools/objtool/objtool', needed by >

Re: [qubes-users] [Qubes 4.0] - How to adjust the disk storage space for Windows 7 HVM?

2018-04-15 Thread 'awokd' via qubes-users
On Sun, April 15, 2018 5:41 pm, lso...@gmail.com wrote: > On Wednesday, April 11, 2018 at 4:44:11 AM UTC-7, awokd wrote: > >> On Wed, April 11, 2018 12:25 am, lsofxp via qubes-users wrote: >> >>> On Tue, Apr 10, 2018 at 7:24 AM, 'awokd' via qubes-users >>> >> > Did you increase "system max

[qubes-users] Re: Shaving N seconds off VM startup

2018-04-15 Thread john
On 04/13/18 07:19, Chris Laprise wrote: I've done some experimenting to get my Debian VMs to boot faster. So far I've reduced the start time significantly by disabling these services in the template: apt-daily.service apt-daily.timer apt-daily-upgrade.service apt-daily-upgrade.timer pppd-dns

Re: [qubes-users] Qubes VM Hardening v0.8.2 Released!

2018-04-15 Thread Chris Laprise
On 04/15/2018 04:05 PM, Chris Laprise wrote: On 04/15/2018 03:51 PM, Chris Laprise wrote: Project link: https://github.com/tasket/Qubes-VM-hardening TL;dr : This closes the obvious loopholes that malware can use in Qubes AppVMs to escalate privileges, _impersonate_ real apps (to steal

Re: [qubes-users] Qubes VM Hardening v0.8.2 Released!

2018-04-15 Thread Stumpy
On 2018-04-16 01:05, Chris Laprise wrote: On 04/15/2018 03:51 PM, Chris Laprise wrote: Project link: https://github.com/tasket/Qubes-VM-hardening TL;dr : This closes the obvious loopholes that malware can use in Qubes AppVMs to escalate privileges, impersonal real apps (to steal credentials),

Re: [qubes-users] Qubes VM Hardening v0.8.2 Released!

2018-04-15 Thread Chris Laprise
On 04/15/2018 03:51 PM, Chris Laprise wrote: Project link: https://github.com/tasket/Qubes-VM-hardening TL;dr : This closes the obvious loopholes that malware can use in Qubes AppVMs to escalate privileges, impersonal real apps (to steal credentials), and persist after shutdown/restart.

[qubes-users] Qubes VM Hardening v0.8.2 Released!

2018-04-15 Thread Chris Laprise
Leverage Qubes template non-persistence to fend off malware. Lock-down, quarantine and check contents of /rw private storage that affect the VM execution environment. vm-boot-protect.service: * Acts at VM startup before private volume /rw mounts * User: Protect /home desktop & shell

[qubes-users] USB Device Question

2018-04-15 Thread Stuart Perkins
I have the following setup: Qubes 3.2, xfce4 interface sys-usb I want to be able to connect my Android phone to a vm and rsync its contents. I can connect the phone and "qvm-usb -a" it to the VM, and it appears available under the File Manager application as "mtp://[usb:002,004]/" but I

[qubes-users] How can I build a domU kernel module?

2018-04-15 Thread Demi M. Obenour
How can I build a kernel module for an AppVM?  I would like to write some simple kernel modules, but I cannot figure out how to build them.  I get: make[1]: *** No rule to make target 'tools/objtool/objtool', needed by '/home/user/kernel/wierd.o'.  Stop. make: *** [Makefile:1507:

Re: [qubes-users] [Qubes 4.0] - How to adjust the disk storage space for Windows 7 HVM?

2018-04-15 Thread lsofxp
On Wednesday, April 11, 2018 at 4:44:11 AM UTC-7, awokd wrote: > On Wed, April 11, 2018 12:25 am, lsofxp via qubes-users wrote: > > On Tue, Apr 10, 2018 at 7:24 AM, 'awokd' via qubes-users > > >>> Did you increase "system max storage size" while the VM was off? Do > >>> that, then look in Disk

Re: [qubes-users] how to transfer 3.2 vpn vm to 4.0?

2018-04-15 Thread Stumpy
On 2018-04-15 10:07, Chris Laprise wrote: On 04/14/2018 10:03 PM, Stumpy wrote: I had a really hard time getting a vpnvm to work in 3.2 but finally got it and it more or less ran great for months. In one of the 4 RCs (3 I think) I was able to restore that vpnvm to 4.0 rc3. Now I can't seem to

[qubes-users] Re: Thinkpad X230T trackpoint and trackpoint buttons did not work on fresh Qubes R4.0

2018-04-15 Thread Taha Ahmed
On Sunday, April 15, 2018 at 3:25:24 PM UTC+2, Taha Ahmed wrote: > Just in case this might benefit someone else. > > The installation of Qubes OS proceeded without any hiccups, and the > Trackpoint along with its hardware buttons actually worked during the > installation. > > But when Qubes OS

[qubes-users] Thinkpad X230T trackpoint and trackpoint buttons did not work on fresh Qubes R4.0

2018-04-15 Thread Taha Ahmed
Just in case this might benefit someone else. The installation of Qubes OS proceeded without any hiccups, and the Trackpoint along with its hardware buttons actually worked during the installation. But when Qubes OS itself started, the Trackpoint and its hardware buttons did not respond. The

Re: [qubes-users] Unable to resize VM Template disk size

2018-04-15 Thread chipperh61
On Saturday, April 14, 2018 at 8:33:22 PM UTC-4, awokd wrote: > On Sat, April 14, 2018 10:12 pm, chipperXXX wrote: > > Hello, > > I am fairly new to QUBES, as I have only just installed QUBES 4.0 and have > > been learning the OS. I initally installed QUBES 3.x (last RC), and > > immediately

Re: [qubes-users] WWAN/LTE Card stopped working

2018-04-15 Thread 'awokd' via qubes-users
On Sat, April 14, 2018 7:57 am, 799 wrote: > Hello, > > > I have applied Updates to my Templates and also flashed Coreboot ony > X230. > I haven't used my internal WWAN Card for a while as I was using WiFi. > The WWAN Card was working before (default template/Stock ROM) without a > problem, now it