[qubes-users] Xen cannot find Dom0 kernel

2019-05-13 Thread Demi Obenour
On my system, Xen cannot find the dom0 kernel. The happened after a kernel-latest upgrade, possibly due to a missing initramfs. Is there a way to recover without live media? Ideally, Xen would prompt the user for a dom0 kernel entry, but it doesn’t. Also, once I have recovered, how can I keep

[qubes-users] vchan doesn’t work on recent mainline kernels

2019-03-13 Thread Demi Obenour
I built a Linux kernel from Linus’s git master, with a slight modification (u2mfn module moved in-tree). The resulting kernel does not work with Qubes: libvchan gets -EINVAL from mmap(). Any suggestions? -- You received this message because you are subscribed to the Google Groups

[qubes-users] Smart cards, split GPG, and timing attacks

2019-01-07 Thread Demi Obenour
Looking through the GPG CVE list, it appears that GPG has a fantastic security record. This seems to jus Most of the recent vulnerabilities have been side-channel attacks. Is it useful to use split-GPG with a hardware token to prevent side-channel attacks? Also, is it best to use one signing

[qubes-users] Identifying Thunderbolt devices

2018-09-23 Thread Demi Obenour
How do I identify Thunderbolt devices in lspci? I would like to pass my Thunderbolt adapter through to another device. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an

[qubes-users] Discord voice doesn't work

2018-09-22 Thread Demi Obenour
In an AppVM, Discord voice chat doesn't work. The firewall settings should allow all outbound connections. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to

[qubes-users] Undoing an errant qubes-dom0-upgate

2018-02-18 Thread Demi Obenour
I ran qubes-dom0-upgate with the testing repo enabled, which broke my system. How do I recover? -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to

[qubes-users] Firewall rules for Thunderbird and Gmail

2018-02-12 Thread Demi Obenour
What websites and ports do I need to whitelist if I want to enable use Thunderbird with GMail and Google Calendar? I am using the Google Calendar add-on. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop

Re: [qubes-users] Clobbered FirewallVM — how can I get the firewall running again?

2018-02-04 Thread Demi Obenour
On 02/04/18 14:15, donoban wrote: On 02/04/2018 08:05 PM, demioben...@gmail.com wrote: My FirewallVM doesn’t seem to be running the Firewall service. How can I set that up? Could you paste "systemctl status qubes-firewall" on it? If it's unload or dead try start/restart it. It is

Re: [qubes-users] GPU?

2018-01-20 Thread Demi Obenour
Another thought I had was to do binary translation of GPU instructions and/or Software Fault Isolation a la NaCl. On Jan 20, 2018 10:29 AM, "Vít Šesták" < groups-no-private-mail--contact-me-at--contact.v6ak@v6ak.com> wrote: > When Qubes gets a separate GUIVM, the risks of GUI virtualization

Re: [qubes-users] GPU?

2018-01-19 Thread Demi Obenour
I think that Qubes needs 3 things to really take off: 1. It Just Works. Even on new systems with new hardware. That means an up-to-date kernel and drivers. Probably not an LTS. It also means getting UEFI to work out of the box — it doesn't for me. That also means recent installers that are