[qubes-users] Re: HCL - MSI Bravo 17

2021-04-29 Thread ydirson
> The two big issues in this report (aside for the need to modify the
> config in
> the install media, which is not obviously transposable to 4.1
> snapshots) are
> the lack of detection of TPM and SLAT.  Will be happy to help with
> these.

Another issue is that the default 5.4 kernel does not support VFIO on
this hardware.  So I installed kernel-latest, and that one just fails
to boot: I successively get:
- Xen startup logs
- some Linux services starting, with "Failed to start Setup virtual
  console" as first line of this screen, and a couple of lines until
  "starting dracut initqueue hook" and "starting Show PLymouth boot screen"
  (order may vary)
- after a couple of seconds, the laptop reboots

EFI boot not providing a menu means booting from USB is the only way to
recover from such an issue, right ?

Alas, rescue mode breaks for me with 
https://github.com/QubesOS/qubes-issues/issues/5609,
whether I try to boot with 4.0.4 or with 4.1-20210422.

What options do I have to recover ?


Then, is there a way with qubes-dom0-update to get intermediate kernel versions
to check when is started to break ?

Best regards,
-- 
Yann

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/606270673.634114217.1619709094781.JavaMail.root%40zimbra39-e7.


[qubes-users] HCL - Lenovo ThinkPad W541 (I7-4940MX)

2021-04-29 Thread A Luciani
 Installation instructions

   1. Use ISO Qubes-4.0.4-x86_64.iso
   2. When booting to install, select “Install Qubes OS"
   3. Finish installation and boot into OS.

<https://qubes-os.discourse.group/t/qubes-users-hcl-thinkpad-l540-i5-4300m/3741#remarks-2>
Remarks

The important things work:

   - Fedora 32/33
   - Debian 10
   - Whonix
   - Ethernet (on the laptop and on the docking station)
   - Wifi
   - Microphone
   - Bluetooth

One thing : USB work only if you select “DISABLE” in BIOS option “USB 3.0”
("auto" and "enable" won’t work)
Anti-Evil-Maid doesn't work even if I follow the github instructions ...
(failed to seal and unseal secrets)

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/CANRmXeofaC1AFXP%2BzE8ynL1-mrOzxcekTM%2BEg0Zc9GE1AEvcEw%40mail.gmail.com.


Qubes-HCL-LENOVO-20EGS11L00-20210429-164139.yml
Description: Binary data


Re: [qubes-users] HCL - Lenovo 80Q7

2021-04-29 Thread Sven Semmler

Hi Johnathon,

thank you for your HCL report! It is now part of this pull request: 
https://github.com/QubesOS/qubes-hcl/pull/60


... and will be visible on the website soon.

/Sven

--
 public key: https://www.svensemmler.org/0x8F541FB6.asc
fingerprint: D7CA F2DB 658D 89BC 08D6 A7AA DA6E 167B 8F54 1FB6


--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/af4932ad-0b4e-202d-f15d-efa5ba04c66a%40SvenSemmler.org.


OpenPGP_signature
Description: OpenPGP digital signature


Re: [qubes-users] HCL - Thinkpad L540 (i5-4300M)

2021-04-29 Thread Sven Semmler

On 4/22/21 4:38 PM, A Luciani wrote:

sys-usb don't work, i'm currently trying to see why, maybe i have to
check something in the BIOS because the VM will boot if there is no 
PCI (USB) device in "device" option.


Thank you for your HCL report, it is not part of this pull request:
https://github.com/QubesOS/qubes-hcl/pull/60
... and will be visible on the website soon!

I marked it as "works" confident that the sys-usb issue can be sorted 
out. In case you haven't already, I recommend checking for this:


https://www.qubes-os.org/doc/usb-troubleshooting/

In particular --option no-strict-reset=true

/Sven

--
 public key: https://www.svensemmler.org/0x8F541FB6.asc
fingerprint: D7CA F2DB 658D 89BC 08D6 A7AA DA6E 167B 8F54 1FB6

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/874bd75c-47d5-e7bb-44a7-b1e13bd65be9%40SvenSemmler.org.


OpenPGP_signature
Description: OpenPGP digital signature


Re: [qubes-users] HCL - MSI Bravo 17

2021-04-29 Thread Sven Semmler

Hi Yann,

you did an excellent job preparing your HCL report. The edits I've made 
where for consistencies sake with all the other HCL reports and I 
shortened you remarks to what has to be done.


Feel free to reply to this thread with more details if you like. I will 
be linked from your report which is now part of this pull request:


https://github.com/QubesOS/qubes-hcl/pull/60

... and will be visible on the website soon!

/Sven

--
 public key: https://www.svensemmler.org/0x8F541FB6.asc
fingerprint: D7CA F2DB 658D 89BC 08D6 A7AA DA6E 167B 8F54 1FB6

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/2fda986d-0946-8f8d-8886-9ff255236a01%40SvenSemmler.org.


OpenPGP_signature
Description: OpenPGP digital signature


[qubes-users] Support Issue

2021-04-29 Thread 'Ride4life223' via qubes-users
This is a support notice for Lenovo Legion 5 I5IMH05H
Unable to install Qubes OS R4.0.4 using live USB iso. Freezes halfway through 
the boot process does not make it to install start screen.

Sent with [ProtonMail](https://protonmail.com) Secure Email.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/8wE7RM1Ci8ja6zRKctZ4JkT_McRhBPRlHZgy7pnAIlkEBC2YxybUJ3tzxf8BJkW5e6yGVt5hglmXEJmxmUMhlojBeLHnB7Gxt3bzuFdDZvE%3D%40protonmail.com.


Re: [qubes-users] HCL - Lenovo ThinkPad W541 (I7-4940MX)

2021-04-29 Thread Sven Semmler

Hi A Luciani,

thank you for this additional HCL report which is now part of the same 
pull request:


https://github.com/QubesOS/qubes-hcl/pull/60

... and will be visible on the website soon!

/Sven

--
 public key: https://www.svensemmler.org/0x8F541FB6.asc
fingerprint: D7CA F2DB 658D 89BC 08D6 A7AA DA6E 167B 8F54 1FB6

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/f64ca7df-a9ad-4be6-5eba-78bbc2cbb4b5%40SvenSemmler.org.


OpenPGP_signature
Description: OpenPGP digital signature


[qubes-users] Fedora 32 approaching EOL

2021-04-29 Thread Andrew David Wong

Dear Qubes Community,

Fedora 32 is scheduled to reach EOL (end-of-life [1]) on 2021-05-25.

We strongly recommend that all Qubes users upgrade [2] their Fedora
32 TemplateVMs and StandaloneVMs to Fedora 33 before Fedora 32 reaches
EOL.

We provide a fresh Fedora 33 TemplateVM package through the official
Qubes repositories, which you can install in dom0 by following the
standard installation instructions [3]. Alternatively, we also provide
step-by-step instructions for performing an in-place upgrade [4] of an
existing Fedora TemplateVM. After upgrading your TemplateVMs, please
remember to switch all qubes that were using the old template to use
the new one [5].

For a complete list of TemplateVM versions supported for your specific
version of Qubes, see Supported TemplateVM Versions [6].

Please note that no user action is required regarding the OS version in
dom0. For details, please see our note on dom0 and EOL [7].

[1] https://fedoraproject.org/wiki/End_of_life
[2] https://www.qubes-os.org/doc/templates/fedora/#upgrading
[3] https://www.qubes-os.org/doc/templates/fedora/#installing
[4] https://www.qubes-os.org/doc/template/fedora/upgrade/
[5] https://www.qubes-os.org/doc/supported-versions/#templatevms
[6] https://www.qubes-os.org/doc/templates/#switching
[7] https://www.qubes-os.org/doc/supported-versions/#note-on-dom0-and-eol

This announcement is also available on the Qubes website:
https://www.qubes-os.org/news/2021/04/29/fedora-32-approaching-eol/

--
Andrew David Wong (Axon)
Community Manager, Qubes OS
https://www.qubes-os.org

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/693f7ce1-1074-a4bb-a053-82edcc34684c%40qubes-os.org.


OpenPGP_signature
Description: OpenPGP digital signature


[qubes-users] HCL - MSI Bravo 17

2021-04-29 Thread ydirson
Hello,

Did my best to replace generated FIXME's with accurate info, just tell me if
the level of information is inadequate.

The two big issues in this report (aside for the need to modify the config in 
the install media, which is not obviously transposable to 4.1 snapshots) are
the lack of detection of TPM and SLAT.  Will be happy to help with these.

Best regards,
-- 
Yann

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/905610205.632609916.1619685795971.JavaMail.root%40zimbra39-e7.
---
layout:
  'hcl'
type:
  'notebook'
hvm:
  'yes'
iommu:
  'yes'
slat:
  ''
tpm:
  'unknown'
remap:
  'yes'
brand: |
  Micro-Star International Co., Ltd.
model: |
  Bravo 17 A4DDK
bios: |
  E17FKAMS.117
cpu: |
  AMD Ryzen 7 4800H with Radeon Graphics
cpu-short: |
  AMD 4800H
chipset: |
  Advanced Micro Devices, Inc. [AMD] Device [1022:1630]
chipset-short: |
  AMD Renoir Root Complex
gpu: |
  Advanced Micro Devices, Inc. [AMD/ATI] Device [1002:7340] (rev c1)
  Advanced Micro Devices, Inc. [AMD/ATI] Device [1002:1636] (rev c6) (prog-if 00 [VGA controller])
gpu-short: |
  AMD Renoir
  AMD Radeon RX 5500M
network: |
  Intel Corporation Device 2723 (rev 1a)
  Realtek Semiconductor Co., Ltd. RTL8111/8168/8411 PCI Express Gigabit Ethernet Controller (rev 15)
memory: |
  15771
scsi: |

usb: |
  2
versions:

- works:
'yes'
  qubes: |
R4.0
  xen: |
4.8.5-30.fc25
  kernel: |
5.4.107-1
  remark: |
Had to comment out the noexitatboot and mabps on install media.  TPM2.0 is enabled in BIOS though not seen by Qubes.
Qubes cannot report on SLAT availability, though it has to be there.
  credit: |
Yann Dirson 

---



[qubes-users] How do I install trezor-bridge on a Qubes system without a sys-usb qube e

2021-04-29 Thread 'Joanna Anders' via qubes-users

I'm trying to make Trezor Model T work on my Qubes system installed on a 
ssd *usb drive* according to this guide https://wiki.trezor.io/Qubes_OS . 
So by default the *sys-usb qube is disabled*. If I try to enable it my 
whole system turns unusable.

Should I edit the *sys-net* qube instead of nonexistent *sys-usb* ?

*in sys-usb:* 

* sudo vim /usr/local/etc/qubes-rpc/trezord-service * 

*add this line: *

* socat - TCP:localhost:21325* 

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/41fc9a76-7921-4bc1-ac9b-6e931d6fd69fn%40googlegroups.com.