Re: [qubes-users] Re: BIOS Security Settings?

2016-12-18 Thread taii...@gmx.com
On 12/18/2016 02:27 PM, Nicklaus McClendon wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 12/18/2016 01:26 PM, Grzesiek Chodzicki wrote: W dniu niedziela, 18 grudnia 2016 17:15:59 UTC+1 użytkownik '0194358'019438'0194328'01943 napisał: Hello, does a BIOS password (against BIOS cha

Re: [qubes-devel] Re: [qubes-users] Qubes using Cloudflare - Why?

2016-12-18 Thread taii...@gmx.com
On 12/17/2016 10:52 PM, Andrew David Wong wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2016-12-17 18:33, taii...@gmx.com wrote: How come you guys use cloudflare? The main reasons are: 1. A core tenet of the Qubes philosophy is "Distrust the infrastructure,"

Re: [qubes-users] Re: BIOS Security Settings?

2016-12-18 Thread taii...@gmx.com
On 12/18/2016 03:29 PM, Nicklaus McClendon wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 12/18/2016 03:17 PM, taii...@gmx.com wrote: Some laptops such as dell latitudes/precisions have a "master recovery password" that is generated from the current serial number of the

Re: [qubes-users] Qubes refuses to boot

2016-12-18 Thread taii...@gmx.com
On 12/18/2016 07:32 PM, Chris Laprise wrote: On 12/18/2016 05:15 PM, iReallyWantQubesToWork wrote: I burned the Qubes ISO to a USB (using Rufus) and completed the installation without any problems, except that Qubes refuses to boot on the installed drive. I installed it onto my external HDD an

Re: [qubes-users] Re: Screensavers : Qubes Questions!

2016-12-18 Thread taii...@gmx.com
As a tip if you desire to attempt gpu passthrough do not buy an NVIDIA card as they like to introduce driver "bugs" that make it difficult to try and entice you to buy a quadro. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe fro

Re: [qubes-users] If I uninstall/reinstall a templatevm, will that mess up the files/filesystem of the appvm?

2016-12-19 Thread taii...@gmx.com
On 12/19/2016 05:28 PM, 'digitaldijjn' via qubes-users wrote: Probably a dumb question but I figured I would clarify before I uninstall/reinstall to free space, since last I checked you can't really delete stuff out of template vms It will not, the files will stay as they are although the appv

Re: [qubes-users] Re: Screensavers : Qubes Questions!

2016-12-19 Thread taii...@gmx.com
, is this a GPU only thing, or have there been cases of "bugs" on other forms of hardware as well, such as a CPU? Thank you, - Mike Mez On Mon, Dec 19, 2016 at 12:17 AM, taii...@gmx.com wrote: As a tip if you desire to attempt gpu passthrough do not buy an NVIDIA card as they like to i

Re: [qubes-users] Re: Screensavers : Qubes Questions!

2016-12-20 Thread taii...@gmx.com
On 12/20/2016 04:04 AM, Andrew David Wong wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2016-12-19 16:29, Mike Mez wrote: Wow! I wasn't actually expecting my "dream" scenario to be so possibly ... probably ... maybe in fact viable. I understand that since the main focus in Qubes ea

Re: [qubes-users] Re: Screensavers : Qubes Questions!

2016-12-20 Thread taii...@gmx.com
I would get the radeon definitely, AMD is more foss/linux friendly than NVIDIA as well. Things to get: a kgpe-d16, the best available g34 socket 16 core opteron 62xx CPU in your price range off ebay (such as 6284SE, 6282SE or 6276) and 32GB DDR3 ECC RDIMM RAM (I would go with 4, 8gb sticks for

Re: [qubes-users] Qubes refuses to boot

2016-12-22 Thread taii...@gmx.com
On 12/23/2016 12:42 AM, QubesPls wrote: On Wednesday, December 21, 2016 at 10:54:03 PM UTC-5, raah...@gmail.com maybe a silly question but can you boot another os from usb drive? Yes, I can boot other linux distros like Debian and Mint perfectly fine from my USB. Qubes installed to my externa

Re: [qubes-users] New Lenovo laptops: X1 (4th Gen), T460/p, and T560

2016-12-26 Thread taii...@gmx.com
Lenovo is a shitty company if you care about security, they have stuck irremovable rootkits their BIOS 4 separate times and they are partially owned by the PRC government. Not to mention how they've ruined the thinkpad line and made it just another consumer level laptop. I wouldn't buy from th

Re: [qubes-users] Qubes OS Live

2016-12-26 Thread taii...@gmx.com
On 12/26/2016 07:32 AM, niely.b0y...@gmail.com wrote: Hi This page [https://www.qubes-os.org/doc/live-usb/] says that Qubes OS Live is still in Beta-version. I'm wondering if this is than safe to use. Will I have the same security-benefits if I use the Live-version than when I use the normal

Re: [qubes-users] Re: Is Fedora Really A Good Choice For QubeOS?

2016-12-27 Thread taii...@gmx.com
On 12/26/2016 08:30 PM, Drew White wrote: On Thursday, 3 October 2013 08:52:22 UTC+10, Mailbe User wrote: I think the hardest problem here is people putting aside their distro war differences. Here I see Joanna mention this; 'it should have the latest Desktop Environment and Xorg drivers to

Re: [qubes-users] Anyone bought a Dell laptop recently that works with V4

2018-11-29 Thread taii...@gmx.com
IMO buy a W520 and install a quad core ivy bridge CPU - 32GB RAM and you can use open source and open cpu/ram hw init coreboot[1] firmware and also me cleaner to nerf the ME. (disabling ME is impossible) It is easy to find components to refurb it yourself with a new battery/keyboard/palmrest/lid e

Re: [qubes-users] Possible to fix? Qubes (4.0 and earlier) freezes on sleep on a System76 Oryx Pro laptop

2018-12-02 Thread taii...@gmx.com
On 12/01/2018 08:16 PM, Chris Laprise wrote: > On 12/01/2018 05:52 PM, Bryan Beus wrote: >> There's good news. It appears to be a brightness display problem only. >> >> First thing I tried was to leave a youtube video playing before suspend. >> >> When I awoke, the screen remained dark, but the you

Re: [qubes-users] How many gigabytes of memory is required for G505s?

2018-12-06 Thread taii...@gmx.com
On 12/05/2018 06:19 PM, '我' via qubes-users wrote: > Hello. > > When reading this list I thought G505s A10 is the best laptop for Qubes. > So I'd like to purchase it, but I am wondering how many memory to put in. > > Could you give me some advice? > 2x8GB DDR3 1600mhz SODIMM's so 16GB and yes

Re: [qubes-users] Qubes with newer hardware and error messages still safe enough?

2018-12-12 Thread taii...@gmx.com
On 12/12/2018 03:56 PM, stefanneuhaus2...@gmail.com wrote: > New to Qubes with basic Linux knowledge i installed successfully a desktop > system with follwing configuration: > > Qubes 4.0, CPU Ryzen 5 2400G, MB ASRock B450 Pro4, GPU Radeon R7 370, 32 GB > RAM > > I can update templates and inst

Re: [qubes-users] Qubes with newer hardware and error messages still safe enough?

2018-12-13 Thread taii...@gmx.com
On 12/12/2018 09:11 PM, Sphere wrote: > On Thursday, December 13, 2018 at 9:59:27 AM UTC+8, tai...@gmx.com wrote: >> On 12/12/2018 03:56 PM wrote: >>> New to Qubes with basic Linux knowledge i installed successfully a desktop >>> system with follwing configuration: >>> >>> Qubes 4.0, CPU Ryzen 5 2

Re: [qubes-users] Qubes with newer hardware and error messages still safe enough?

2018-12-14 Thread taii...@gmx.com
On 12/14/2018 03:42 PM, Achim Patzner wrote: > On 20181213 at 19:20 -0800 Sphere wrote: >> If only I could establish my own CPU production company I would definitely >> support libre hardware/libreboot/coreboot and such but sadly we are in a >> world with high demands to processing and stuff and

Re: [qubes-users] HCL - Purism Librem 15 v4

2019-02-25 Thread taii...@gmx.com
Nice ad. When will you guys finally admit that you aren't selling owner controlled computers and change the name "librem" since they aren't at all libre? -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop rec

Re: [qubes-users] Re: Best ideal laptop for Qubes?

2019-02-25 Thread taii...@gmx.com
Get a G505S and install coreboot. no me/psp, 16gb ram max, open cpu/ram init etc. good choice. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubs

Re: [qubes-users] why mail-list?

2019-02-25 Thread taii...@gmx.com
If you are not smart enough to use a mailinglist you are not smart enough to use linux. Catering to the lowest common denominator is an impossible task that shouldn't be tried as it always comes at the expense of everyone else. ML's are the most secure and best method of communication even better

Re: [qubes-users] g505s BIOS settings for installing 4.0.1

2019-02-25 Thread taii...@gmx.com
On 01/10/2019 10:27 AM, cyber.citi...@tutanota.com wrote: > Hello everyone, > > I'd like to install Qubes 4.0.1 on a g505s, but the installation routine is > telling me that IOMMU/Vt-d/AMD-Vi, and Interrupt Remapping are not available. > I've tried every possible combination of BIOS settings I c

Re: [qubes-users] Re: How risky is GPU pass-through?

2019-02-25 Thread taii...@gmx.com
One of the reasons I hate the qubes mailinglist is because of the large amount of people here who claim to be experts while being absolutely clueless. I max out new games in a VM on my libre firmware piledriver opteron IOMMU-GFX setup. I would say the performance is almost native and that I don't

Re: [qubes-users] coreboot on modern hardware?

2019-04-08 Thread taii...@gmx.com
System seventysuck, pur.idiots etc are LYING about having "open source firmware" System seventysuck also lies about having "made in usa" hardware literally all they did was make a metal case here and somehow a metal box equals a computer in their world. Their "coreboot" is nothing more than a wra

Re: [qubes-users] i9-9980XE or i9-7980XE on Gigabyte X299 DESIGNARE EX or AMD 2990WX TR on Gigabyte X399 DESIGNARE EX?

2019-04-08 Thread taii...@gmx.com
On 03/15/2019 07:11 PM, jrsmi...@gmail.com wrote: > There's nothing even close to these on the HCL, but would like to know if > anyone has attempted either of these with 4.0.1 and succeeded. These are > essentially the same base hardware as given in the BoM for the recently > announced System76

Re: [qubes-users] Could Qubes Installation Configuration Be More User Friendly?

2019-04-08 Thread taii...@gmx.com
On 03/05/2019 03:22 PM, cooloutac wrote: > I agree with Chris its more a compatibility issue then an installation issue. > > You really have to research the machine on linux before using it in Qubes. > And have to make sure the bios has the nescessary options before purchase, > which is one of

Re: [qubes-users] Responding to the Whonix trolls...

2019-04-08 Thread taii...@gmx.com
On 03/01/2019 09:21 PM, unman wrote: > On Fri, Mar 01, 2019 at 07:27:08PM +, Achim Patzner wrote: >> On 28.02.2019 15:10:21, "unman" wrote: >> >> >>> On Thu, Feb 28, 2019 at 11:03:12AM +0100, Achim Patzner wrote: On 20190227 at 22:30 -0800 cooloutac wrote: Whenever I accidenta

Re: [qubes-users] Re: How risky is GPU pass-through?

2019-04-08 Thread taii...@gmx.com
On 02/25/2019 04:02 PM, John Mitchell wrote: > If I may ask what OS do you use for the host? > Devuan, it is debian without systemd. I compile most of the related packages though like libvirtd, qemu etc cause the ones from the distro are way too outdated to support what I need. You should get a

Re: [qubes-users] Re: PS/2 Keyboard and Mouse via USB?

2019-04-08 Thread taii...@gmx.com
I have stated this many times before. The PS/2 thing is from 2011 which is 8 years ago and applies to systems without more than one USB controller. Using PS/2 sends your keystrokes out on the ground wire. It is far better to purchase a motherboard with a second USB controller with separate IOMMU

Re: [qubes-users] GPU vs NIC: firmware security

2019-04-27 Thread taii...@gmx.com
On 04/15/2019 12:28 AM, demioben...@gmail.com wrote: > My laptop (Lenovo P51) works fantastically with QubesOS. > > It has two GPUs: Intel integrated graphics and a discrete NVIDIA card. For > gaming, I am interested in pass-through of one (NOT both) to a VM. Impossible. Optimus works via muxin

Re: [qubes-users] Help with hardware

2019-04-27 Thread taii...@gmx.com
On 04/27/2019 05:08 AM, 'mathab' via qubes-users wrote: > Also I am considering buying a laptop is there any laptop that is under 300 > euro (can be used) that will run this os? > Where I live there is a lot of used thinkpads. I would get a g505s or a T430 (and install a T420 keyboard if you hate

Re: [qubes-users] Re: How risky is GPU pass-through?

2019-04-27 Thread taii...@gmx.com
On 04/09/2019 08:53 AM, unman wrote: > On Mon, Apr 08, 2019 at 02:32:04PM -0400, taii...@gmx.com wrote: >> On 02/25/2019 04:02 PM, John Mitchell wrote: >>> If I may ask what OS do you use for the host? >>> >> >> Devuan, it is debian without systemd. >&

Re: [qubes-users] Help with a good laptop!

2019-05-07 Thread taii...@gmx.com
Just get a T430 and replace the various you facing components like the keyboard, armrest, cover etc so it looks new. This is guaranteed to work and is easy to upgrade. If you want you can later install coreboot/mecleaner (I don't think he really wants to do coreboot etc and its best not to dry up

Re: [qubes-users] Re: off topic - invite codes to 'riseup'

2019-05-07 Thread taii...@gmx.com
I can't believe how many people these days think that: * Elite staff (for maximum security) very expensive * Lawyers (privacy focused right? well you gotta have those for that) * Servers and electricity to run them * Bandwidth Are all free, and that thus the email should be free and that they shou

Re: [qubes-users] X230 vs Purism - real world attack probability

2019-05-25 Thread taii...@gmx.com
On 05/21/2019 09:52 AM, scurge1tl wrote: > I have a question related to the decision about what laptop is the > better option for Qubes usage, from the security point of view, in the > real world. > > The question is related to the IME on Intel, PSP on AMD and other > Hardware holes. I took these

Re: [qubes-users] How do I load firmware-atheros into Qubes 4.0 R5?

2018-03-29 Thread taii...@gmx.com
On 03/29/2018 02:52 PM, 799 wrote: > Maybe users buy a Purism laptop and next time they buy something even more > free ... That's still great. My issue is with purisms incredibly dishonest marketing, their pressure campaigns on the FSF, their insulting of their competitors - not their existence in

Re: [qubes-users] Re: Cannot load R4.0 installer: "Not asking for VNC because we don't have a network"; " X startup failed[Xorg:12xx]."

2018-03-29 Thread taii...@gmx.com
kexec in to the qubes/xen kernel from something that works with the nvidia card commented out via vfio-pci as if you were going to assign it to a vm. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receivin

Re: [qubes-users] Qubes 4 does not see my RAID 5 disk but 3.2 does

2018-03-30 Thread taii...@gmx.com
Curious are you using real hardware RAID via a PCI-e card or on-motherboard module (eg: SAS2008) or the SoftRAID option presented via a BIOS option ROM? -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop recei

Re: [qubes-users] Re: Lenovo G505S Coreboot

2018-04-01 Thread taii...@gmx.com
FYI the microcode update is mandatory no matter what OS you are running otherwise I could literally root your computer with a few commands due to the NMI exploit on piledriver CPU's and of course the IOMMU wouldn't work either so no DMA protection. -- You received this message because you are sub

[qubes-users] Does 4.0 let you restore your VM backups from 3.2?

2018-04-01 Thread taii...@gmx.com
^title Thanks -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegr

Re: [qubes-users] How do I load firmware-atheros into Qubes 4.0 R5?

2018-04-01 Thread taii...@gmx.com
I am more than happy to help the next time you are in the market for a computer :] it is a damn shame how dishonest purism isbut there are still some honest companies out there selling real libre products. Btw the debian template is not as secure due to their silly position on starting unconfi

Re: [qubes-users] How do I load firmware-atheros into Qubes 4.0 R5?

2018-04-01 Thread taii...@gmx.com
On 03/30/2018 09:24 AM, Holger Levsen wrote: > On Thu, Mar 29, 2018 at 03:38:34PM -0400, taii...@gmx.com wrote: >> My issue is with purisms incredibly dishonest marketing, their pressure >> campaigns on the FSF, their insulting of their competitors - not their >> existe

Re: [qubes-users] unexpected system restart

2018-04-02 Thread taii...@gmx.com
The same thing happens to me and I don't understand why nor are there any errors in the logs - other times I will be kicked to the login screen and when I log back in the window managing is broken. -- You received this message because you are subscribed to the Google Groups "qubes-users" group.

Re: [qubes-users] Options for securing /boot

2018-04-02 Thread taii...@gmx.com
On 09/08/2017 07:12 AM, Leo Gaspard wrote: > Just a datapoint: secure boot is *not* microsoft-controlled (unless you > assume the manufacturer put in some kind of backdoor, in which case > you're screwed anyway). Yes it is microsoft controlled, they're the ones who made the standard and convenient

Re: [qubes-users] Whats the deal with kernels?

2018-04-03 Thread taii...@gmx.com
On 04/02/2018 10:25 PM, sevas wrote: > -how to use the gen-config file. gen config as in general, most of the options enabled for a general PC. > -whats the difference between the config-base, config-qubes and > config-qubes-minimal? (well the minimal part is obvious) Base for a regular kernel, qu

Re: [qubes-users] Options for securing /boot

2018-04-03 Thread taii...@gmx.com
On 04/02/2018 09:32 PM, cooloutac wrote: > On Monday, April 2, 2018 at 3:43:50 PM UTC-4, tai...@gmx.com wrote: >> On 09/08/2017 07:12 AM, Leo Gaspard wrote: >> >>> Just a datapoint: secure boot is *not* microsoft-controlled (unless you >>> assume the manufacturer put in some kind of backdoor, in w

Re: [qubes-users] Re: desktop recommendations?

2018-04-05 Thread taii...@gmx.com
On 04/04/2018 10:59 PM, Drew White wrote: > I can't say anything about Qubes 4 because their restrictions on it require > the latest CPUs and all (apparently) with certain technology that pre-2017 > CPUs don't have. (Or so I read). 2017? what? where did you read that? (I have a good idea where..

Re: [qubes-users] Re: Cloudflare DNS-over-HTTPS in Qubes?

2018-04-05 Thread taii...@gmx.com
Wow people are actually falling for cloudflares "privacy respecting" bullshit from a service that uses for example browser fingerprinting on every computer that it serves and blacklists sites based on how the CEO is feeling that morning. They are a front for an intelligence agency - cloudflare is

Re: [qubes-users] Guide on installing Qubes and Coreboot with encrypted boot on thinkpads

2018-04-06 Thread taii...@gmx.com
On 04/06/2018 05:22 AM, 799 wrote: > It seems to me that if I run Coreboot with grub + encrypted boot, there is > no need to run anti evil maid, as the boot partition can't be messed with. Assuming you set the write-lock on the flash descriptor and have a physical anti-tamper sticker on the case s

Re: [qubes-users] Re: Cloudflare DNS-over-HTTPS in Qubes?

2018-04-07 Thread taii...@gmx.com
On 04/05/2018 04:54 PM, 799 wrote: > Hello, > > > On 5 April 2018 at 22:38, taii...@gmx.com wrote: > >> Wow people are actually falling for cloudflares "privacy respecting" >> bullshit from a service that uses for example browser fingerprinting on >> e

Re: [qubes-users] Q4 Laptops...

2018-04-10 Thread taii...@gmx.com
What you ask for is impossible, it simply isn't made - no one has a laptop with 64GB RAM and 12 threads let alone one that is old enough to not have UEFI. The best you will get is a W520 or W530 where you can install coreboot (open hw init + nerfed ME) and have 32GB RAM. Purism is not libre - thei

Re: [qubes-users] Q4 Laptops...

2018-04-11 Thread taii...@gmx.com
On 04/11/2018 03:14 AM, Drew White wrote: > On Wednesday, 11 April 2018 16:55:48 UTC+10, tai...@gmx.com wrote: >> What you ask for is impossible, it simply isn't made - no one has a >> laptop with 64GB RAM and 12 threads let alone one that is old enough to >> not have UEFI. > I know that they exi

Re: [qubes-users] Q4 Laptops...

2018-04-11 Thread taii...@gmx.com
On 04/11/2018 03:19 AM, Drew White wrote: > On Wednesday, 11 April 2018 16:55:48 UTC+10, tai...@gmx.com wrote: >> The best you will get is a W520 or W530 where you can install coreboot >> (open hw init + nerfed ME) and have 32GB RAM. > > FYI, I'm happy to see you went with Lenovo. > Best End User

Re: [qubes-users] X230 won't boot into Qubes after installing 4.0

2018-04-11 Thread taii...@gmx.com
On 04/11/2018 08:57 AM, berto0...@gmail.com wrote: > Hi 799, > > just to be clear, my only intention was to help fellow newbie Andreas not to > jump on your attempt to help. >> I am using Coreboot with SeaBIOS as Payload and everything works supernice >> and like the best Laptop I have ever

Re: [qubes-users] Another thread on Qubes 4 machines....

2018-04-11 Thread taii...@gmx.com
On 04/11/2018 01:21 PM, Andrew B wrote: > Sorry to beat a dead horse. I am sure folks here are sick of answering > hardware questions. > > So I understand the dev team currently seems to like the Lenovo Thinkpad X1 > Carbon 5th gen. I assume best to get with 16GB RAM (max) and an SSD. I assume

Re: [qubes-users] Q4 Laptops...

2018-04-12 Thread taii...@gmx.com
On 04/12/2018 08:49 AM, cooloutac wrote: > In my case I found uefi mode works better for Qubes. For example using > legacy bios mode i have many wake from sleep problems, such as usb mouse in > sys-usb not working after sleep. system becoming unresponsive. > > Booting in uefi mode I dont' ha

Re: [qubes-users] Offtopic :: reasonable secure routers?

2018-04-12 Thread taii...@gmx.com
On 04/12/2018 09:21 AM, Steve Coleman wrote: > On 04/12/18 05:32, Jo wrote: >> My suggestion would be the Turris Omnia. Im using it myself in >> various cases and im very happy with it. > > I second this opinion. Its Open Source (OpenWrt), downloads its own > patches to keep up with any security i

Re: [qubes-users] Keyboard not working: How to make the buying decision?

2018-04-13 Thread taii...@gmx.com
On 04/13/2018 03:01 PM, 00010age...@gmail.com wrote: > Is there a way to know which keyboards are incompatible with QubesOS? > > Or do we just need to keep on buying keyboards until one works? You need to enable the keyboard sys-usb forwarding permission in qubes settings files, there is a guide

Re: [qubes-users] Guide on installing Qubes and Coreboot with encrypted boot on thinkpads

2018-04-13 Thread taii...@gmx.com
Hey guys you don't need a VGA ROM for the integrated graphics - they use coreboot native init. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubsc

Re: [qubes-users] Re: Lenovo G505S Coreboot

2018-04-30 Thread taii...@gmx.com
On 04/30/2018 08:49 PM, Andrew B wrote: > OK, just to clarify, if I am to build the coreboot image, I need to do that > on the G505s by say running Debian or Ubuntu (presumably could use a Live > disc/USB) or similar and building the image as shown here? > https://www.coreboot.org/Board:lenovo/g

Re: [qubes-users] AMD? threadripper / ryzen?

2018-04-30 Thread taii...@gmx.com
On 04/30/2018 08:09 PM, pixel fairy wrote: > ready to ditch intel on desktop (and maybe laptop if anyone has a good > recommendation) > > my understanding is that some amd lines dont have PSP or any such equivalent > to intelME or AMT. The older stuff like socket g34 and c32. > about to jump do

Re: [qubes-users] Re: Qubes Os4 very slowly comparing to Qubes 3.2

2018-04-30 Thread taii...@gmx.com
On 04/30/2018 04:54 PM, cooloutac wrote: > On Monday, April 30, 2018 at 3:10:30 PM UTC-4, frkl...@gmail.com wrote: >> That could be a good idea John! >> >> I have only one problem. I can not disable Speedstep in the Bios- Uefi >> because there is no Speedstep configuration. >> >> Does anyone kn

Re: [qubes-users] Well supported laptops with 64GB system memory?

2018-05-04 Thread taii...@gmx.com
There are no laptops with that much memory let alone one that isn't full of firmware problems your best choice is the W520 (with an ivy bridge cpu) which has open hardware init coreboot with a nerfable ME and 32GB MAX RAM. -- You received this message because you are subscribed to the Google Grou

Re: [qubes-users] No Qubes 4 without VT-x?

2018-05-12 Thread taii...@gmx.com
On 05/07/2018 02:56 PM, evo wrote: > Hello! > > Do i understand it correctly, that there is no sense to try Qubes 4.0 > without having VT-x? > > On my Thinkpad W530 I just have VT-d but no VT-x. > > There will be Qubes 3.2.1 for just VT-d machines, isn't it? Your laptop has both you need to either

Re: [qubes-users] 2 Xeon Gold vs i9 for Qubes-OS?

2018-05-12 Thread taii...@gmx.com
On 05/11/2018 04:30 AM, olegden...@gmail.com wrote: > What will be better for Qubes-OS - i9 or Xeon Gold? Does it support two cpu > based system? Thanks. > I wouldn't waste your money on new spyware filled intel junk. I suggest instead purchasing a KGPE-D16 or KCMA-D8 board With the D16 you have

[qubes-users] Qubes 4.0 won't boot via coreboot grub rescue

2018-05-14 Thread taii...@gmx.com
I try the usual syslinux_configfile but I get an "out of memory" error how am I to do this? ideas? -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+uns

Re: [qubes-users] Ram Limit

2018-05-15 Thread taii...@gmx.com
On 05/15/2018 11:07 AM, Thomas Druilhe wrote: > Hi, > > We are using Qube-os 3.2 and sometimes we got a problem with RAM usage. Corporate user? > We set up minimum limit at 400Mo but sometimes RAM drop to 320 Mo causing > crash of the application. > > How the amount of RAM can be under the limit

Re: [qubes-users] Qubes 4.0 won't boot via coreboot grub rescue

2018-05-15 Thread taii...@gmx.com
On 05/14/2018 06:25 PM, awokd wrote: > On Mon, May 14, 2018 8:58 pm, taii...@gmx.com wrote: >> I try the usual syslinux_configfile but I get an "out of memory" error >> how am I to do this? ideas? > Can you step through what you are trying to do and where the e

Re: [qubes-users] Re: Desperately want Qubes, but can't install on Asus Sabertooth x79

2018-05-16 Thread taii...@gmx.com
On 05/16/2018 03:35 PM, Mindus Amitiel Debsin wrote: > OK, I got Qubes installed and it seems to be working fine. It's not on my > primary SSD drive, but it is working fine on an external SATA drive I > connected. I had to do a UTC time fix to make Whonix work, but I did and now > it works. > >

Re: [qubes-users] Re: Critical PGP bugs. Do they possibly affect Split-GPG in Qubes?

2018-05-16 Thread taii...@gmx.com
On 05/15/2018 01:22 AM, john wrote: > On 05/14/18 14:58, Ángel wrote: >> This paper is most interesting for the discovery of multiple ways email >> client leak information on visualization. >> (not clearly stated in the paper: some of them are already fixed, while >> in other cases the developers

Re: [qubes-users] Ram Limit

2018-05-18 Thread taii...@gmx.com
On 05/15/2018 11:01 PM, awokd wrote: > I think Thomas is saying he's setting a minimum of 400MB but sees the VM > dropping to 320MB and crashing. Your solution of setting a fixed memory > size and disabling memory balancing on the VM should also work in that > case! Oh no I don't mean that :[ suc

Re: [qubes-users] Re: Lenovo G505S Coreboot

2018-05-21 Thread taii...@gmx.com
*ML thread reply* Hey guys you can install the latest microcode now from linux-firmware, no NDA or w/e I believe this is the latest version. See my thread on the coreboot ML for more info. Remember folks the G505S has a piledriver cpu and thus it NEEDS a microcode update to have IOMMU (and thus wo

Re: [qubes-users] Re: What CPU are you running for Q 4.0?

2018-05-22 Thread taii...@gmx.com
I would suggest a pre-PSP AMD 16 core 6386SE on a KGPE-D16 board running coreboot-libre or libreboot - 100% open source firmware with no blobs, the D16 and D8 also have cool stuff like OpenBMC, IOMMU-GFX etc. An 8 core 6328 is also a good fast choice. The D16 supports max 2x16 cores, so 32 cores an

Re: [qubes-users] Re: What CPU are you running for Q 4.0?

2018-05-22 Thread taii...@gmx.com
Generally NVIDIA hates linux so it would be a good idea to purchase an AMD card instead in the future to avoid problems... NVIDIA artificially hobbles IOMMU-GFX on their geforce products by adding bugs to their drivers and they have ruined the nouveau project in a variety of ways. -- You receive

Re: [qubes-users] When 4.1? I want Heads - issue #3388 + Rowhammer?

2018-08-08 Thread taii...@gmx.com
On 08/08/2018 02:18 PM, Andreas Moreiro wrote: > github.com/QubesOS/qubes-issues/issues/3388 > I hope you guys will fix the issue in 4.1. I would do it myself, but don't > have experience. > > Has there been any talk of Qubes and the older Rowhammer attack? > Becase Xen is probably vulnerable: "X

Re: [qubes-users] X470 and IOMMU Groups...

2018-08-08 Thread taii...@gmx.com
I would instead consider the purchase of an owner controlled KCMA-D8 or KGPE-D16 motherboard which you can install libre board+bmc firmware on. They support qubes 4.0 very well and all devices have their own IOMMU group. They are a much better choice than a proprietary firmware PSP laden non-owne

Re: [qubes-users] X470 and IOMMU Groups...

2018-08-15 Thread taii...@gmx.com
On 08/12/2018 03:36 PM, 'awokd' via qubes-users wrote: > > No experience with that exact configuration. You can often passthrough > devices individually even if they are in the same IOMMU group (older > versions of Xen had trouble). This is a bad recommendation security wise and I expect better f

Re: [qubes-users] MSI-x support in domU

2018-08-15 Thread taii...@gmx.com
On 08/07/2018 06:41 PM, perme...@gmail.com wrote: > Q: if a domU kernel enables VF devices in a mapped PF device instance, will > the dom0 kernel discover the VF devices? IE: what is the mechanism whereby a > kernel discovers the need for a bus-walk? > This has to work correctly for Xen, no? W

Re: [qubes-users] Re: X470 and IOMMU Groups...

2018-08-16 Thread taii...@gmx.com
On 08/16/2018 07:47 AM, Marcus Linsner wrote: >> >> I've observed that Qubes installation rarely ever succeeds on X370 >> motherboards so I believe the same case applies to X470 motherboards with a >> higher chance of failure since it is newer. The reason for this I believe is >> because these h

Re: [qubes-users] Re: X470 and IOMMU Groups...

2018-08-16 Thread taii...@gmx.com
On 08/16/2018 10:18 AM, FaB wrote: >> Hi, Taiidan! The OP seemed to recognize it was ideal to have devices in >> >>> separate IOMMU groups, so I assumed he was familiar with the warnings in >>> https://www.qubes-os.org/doc/assigning-devices/#pci-passthrough-issues and >>> just wondering if it

Re: [qubes-users] Re: Incredible HD thrashing on 4.0

2018-08-17 Thread taii...@gmx.com
On a NUMA system it could also be swapping pages from an efficient node to a less efficient distant node. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-us

Re: [qubes-users] New Foreshadow exploits CPU bug

2018-08-20 Thread taii...@gmx.com
SGX is another ME service slash intel marketing gimmick invented for DRM not security. If the person who purchased the computer can't examine the VM's running on it then they are not owning it simply licensing it which is why SGX is a bad technology and people shouldn't buy x86. -- You received

Re: [qubes-users] Qubes 4.0 SSD Encryption

2018-08-23 Thread taii...@gmx.com
On 08/23/2018 01:35 PM, brendan.h...@gmail.com wrote: > On Thursday, August 23, 2018 at 10:30:17 AM UTC-4, Jonathan Seefelder wrote: >> If you keep wear-leveling in mind, and encrypt the ssd before you fill >> it with sensitive data, id suggest an ssd. Ideally, you should encrypt >> /boot also. >

Re: [qubes-users] Re: Best Laptop for Qubes 4+ and Heads

2018-08-23 Thread taii...@gmx.com
On 08/20/2018 01:21 PM, stallmanro...@gmail.com wrote: > > ME disabled (works!) It is a nice laptop and I recommend it sometimes BUT: As someone with your screen-name I would hope you know that it is impossible to disable ME. In your case the BUP module still runs along with any mask roms - mor

Re: [qubes-users] how to forward webcam to a VM?

2018-08-23 Thread taii...@gmx.com
On 08/17/2018 05:08 PM, 'awokd' via qubes-users wrote: > On Fri, August 17, 2018 12:54 pm, Aliaksandr Kavaliou wrote: >> >> Hey Guys! >> after some time i installed Qubes 4.0 and here the usb-proxy goes over the >> grafic icon. But i still can not run my webcam Logitech C920. I attach it >> to the

Re: [qubes-users] Qubes 4.0 SSD Encryption

2018-08-25 Thread taii...@gmx.com
On 08/24/2018 11:44 AM, brendan.h...@gmail.com wrote: > > And if your OPAL drive is backdoored by the manufacturer for a government, > your drive is backdoored whether you're using OPAL or not and depending on > what you wanted > to keep private, you're already screwed. Wrong - if you have an I

Re: [qubes-users] Re: USB Printer

2018-08-30 Thread taii...@gmx.com
For future reference I suggest to all to obtain a network printer that supports open command languages for printing such as PS/PCL so that you don't need to rely on USB junk that requires non-free firmware and or will eventually break due to no driver updates for new distros. -- You received this

Re: [qubes-users] Researchers Detail Two New Attacks on TPM Chips

2018-08-30 Thread taii...@gmx.com
No surprise there - TPM's are a proprietary "security" gimmick probably invented for DRM. One doesn't really need them if you use coreboot with an embedded kernel or with grub and kernel code signing and of course write-lock the flash chip. Raptor Engineering/Raptor Computing System's FlexVER is

Re: [qubes-users] QSB #43: L1 Terminal Fault speculative side channel (XSA-273)

2018-09-02 Thread taii...@gmx.com
Yet another reason to port qubes to POWER - the last owner controlled performance CPU arch. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr..

Re: [qubes-users] Qubes V4 and Windows7-hardware

2018-09-05 Thread taii...@gmx.com
On 09/04/2018 11:20 AM, josefh.maier via qubes-users wrote: > Hello forum. > Actual Intel CPU's do not anymore support Windows 7 and Qubes 4 does > require modern hardware... Thats a myth created by microsoft to force people to buy windows 10 no matter if they want it or not. It is an artificial

Re: [qubes-users] Re: cpu

2018-09-05 Thread taii...@gmx.com
On 09/04/2018 04:24 PM, Roy Bernat wrote: > On Monday, 3 September 2018 13:13:23 UTC-4, Foppe de Haan wrote: >> I'm afraid so, yeah. > > Thank you for your answer . > > i am already 1.5 year with qubes and always hope to better performance . > > i dont know how i will move to other system bu

Re: [qubes-users] Re: Best Laptop for Qubes 4+ and Heads

2018-09-05 Thread taii...@gmx.com
> So, idea - gpu passthrouth to hvm ?! unsuccessful You can't pass a primary GPU. > > I have 16GB ram - Xentop says 15GB are used > > 11 domains: 2 running, 9 blocked, 0 paused. > > Mem 16696288k total, 15389884k used, 1306404k free. > > which is quite enough, but hvm maybe eat more ram. R

Re: [qubes-users] Intel Releases New BSD-Licensed Open-Source Firmware Implementation

2018-09-14 Thread taii...@gmx.com
On 09/14/2018 03:01 PM, David Schissler wrote: > https://www.phoronix.com/scan.php?page=news_item&px=Intel-Slimbootloader > > This could be an improvement if someone takes the firmware and deletes tons > of unnecessary stuff. Hopefully this will be rolled out over many lines. > It is nothing n

Re: [qubes-users] HCL - Purism Librem 13 v2

2018-09-14 Thread taii...@gmx.com
Everyone please be aware that purism's marketing is dishonest. Their products do not have open source firmware[1] and the ME is not disabled (the kernel still runs along with mask roms and the me hw init code) Intel chips or any new x86 for that matter do NOT respect your privacy! [1]Their coreb

Re: [qubes-users] Intel Releases New BSD-Licensed Open-Source Firmware Implementation

2018-09-14 Thread taii...@gmx.com
On 09/14/2018 06:20 PM, taii...@gmx.com wrote: > On 09/14/2018 03:01 PM, David Schissler wrote: >> https://www.phoronix.com/scan.php?page=news_item&px=Intel-Slimbootloader >> >> This could be an improvement if someone takes the firmware and deletes tons >> of unn

Re: [qubes-users] Gaming with qubes

2018-09-14 Thread taii...@gmx.com
On 09/14/2018 01:34 PM, card...@cypher.fi wrote: > Hey. > I recently built new pc with Asus PRIME Z370-P, i7-8700k and gtx 1060. I care > about privacy and security If you really do next time don't buy a blobbed and ME'ed PC along with a graphics card from the anti-freedom nvidia that actively p

Re: [qubes-users] Time for Laptop Upgrade

2018-09-16 Thread taii...@gmx.com
If you want a laptop get a W520 and install coreboot along with the best available ivybridge CPU plus 32gb ram. You can nerf the me but of course it is not equivilant to actually disabling it which is 100% impossible despite what some might say. If you want a libre desktop or workstation selectio

Re: [qubes-users] HCL - Purism Librem 13 v2

2018-09-17 Thread taii...@gmx.com
On 09/16/2018 02:51 AM, 'awokd' via qubes-users wrote: > On Sat, September 15, 2018 10:30 am, qubes-...@tutanota.com wrote: >> Hi, during my email conversation with the Todd Weaver That liar comes out of nowhere with his super slick marketing and sets the computing freedom movement back 10 years.

Re: [qubes-users] Gaming with qubes

2018-09-17 Thread taii...@gmx.com
On 09/15/2018 12:01 AM, David Schissler wrote: > > What is IOMMU-GFX? I can't find any references to the GFX part. > IOMMU for Graphics, it is much more complex to assign a graphics device than a regular device such as a NIC, HBA, etc. -- You received this message because you are subscribed t

<    1   2   3   4   5   >