Re: [qubes-users] How to log all the websites accessed by a VM

2016-07-28 Thread Steve Coleman
On 07/26/2016 06:25 PM, Franz wrote: On Tue, Jul 26, 2016 at 11:38 AM, Steve Coleman <steve.cole...@jhuapl.edu <mailto:steve.cole...@jhuapl.edu>> wrote: Another hack to avoid having to manually type in the addresses is done with the attached script. Its like Mareks soluti

Re: [qubes-users] How to log all the websites accessed by a VM

2016-07-26 Thread Steve Coleman
; On Mon, Jul 25, 2016 at 12:06:54PM -0300, Franz wrote: > > > On Mon, Jul 25, 2016 at 11:11 AM, Marek Marczykowski-Górecki < > > > marma...@invisiblethingslab.com <mailto:marma...@invisiblethingslab.com>> wrote: > > > > On Mon, Jul 25, 2

Re: [qubes-users] Installed software in template not running in appvm - cryptomator

2017-02-20 Thread Steve Coleman
On 02/19/2017 05:41 PM, dumbcyber wrote: On Friday, 17 February 2017 19:43:45 UTC-5, Unman wrote: On Fri, Feb 17, 2017 at 02:26:18AM -0800, dumbcyber wrote: I've installed Cryptomator in my Fedora-24 template vm and tested it - works fine. The install also installed some dependencies. When

Re: [qubes-users] How to manage shortcuts to applications in DispVM?

2017-02-20 Thread Steve Coleman
On 02/17/2017 03:02 PM, u+q...@bestemt.no wrote: How can I add or remove application shortcuts for the DispVM? I've had no problems managing these for TemplateVMs and AppVMs, but the DispVM lacks the "Add more shortcuts..." entry (in i3, anyways), and I haven't been able to locate the

Re: [qubes-users] flexlm license manager in AppVM

2017-02-28 Thread Steve Coleman
On 02/25/2017 04:07 PM, Stephan Marwedel wrote: Hi, I use a commercial simulation environment running on Debian. I installed the software in the Debian TemplateVM and it is running fine. However, when starting an AppVM based on that template I cannot use the simulation software because of the

Re: [qubes-users] Anonymizing hostname

2017-02-28 Thread Steve Coleman
On 02/27/2017 03:48 PM, Dominique St-Pierre Boucher wrote: Hello, I have setup the mac address change for qubes 3.2 with debian 9 as my sys-net. I am trying to figure out a way to randomize the hostname that is sent to the DHCP server. This is in an effort to minimize the risk of os

Re: [qubes-users] Installed software in template not running in appvm - cryptomator

2017-02-27 Thread Steve Coleman
On 02/23/2017 09:08 PM, dumbcyber wrote: On Monday, 20 February 2017 17:11:09 UTC-5, steve.coleman wrote: On 02/19/2017 05:41 PM, dumbcyber wrote: On Friday, 17 February 2017 19:43:45 UTC-5, Unman wrote: On Fri, Feb 17, 2017 at 02:26:18AM -0800, dumbcyber wrote: I've installed Cryptomator

Re: Request for test: Re: [qubes-users] Fedora 24?

2016-09-08 Thread Steve Coleman
everything seems to have smoothed out and is working properly as best as I can tell. My only outstanding issue is more 3.2 upgrade related, where my clock keeps getting set an hour ahead. Steve Coleman -- You received this message because you are subscribed to the Google Groups "qub

Re: [qubes-users] Are these needed by Qubes?

2016-09-19 Thread Steve Coleman
On 09/18/2016 11:03 PM, Drew White wrote: Are these packages (any there of) required by Qubes? Here is a quick hack to answer this kind of question. $ cat ./qubes_requires #!/bin/bash PACKAGES=`rpm -qa | grep -i qubes` REQUIRED=`repoquery --requires --recursive --resolve $PACKAGES 2>&1` for

Re: "What does "supported" mean"? was: Re: [qubes-users] Fedora 24 Template for Qubes 3.1?

2016-11-22 Thread Steve Coleman
I tried to upgrade a Qubes 3.1 system to use FC24 a while back, and dnf itself broke badly, stating something about not having a python "Goal", having something to do with the python module missing some feature or module. The template was therefor unusable, since it could not be maintained. I

Re: [qubes-users] Qubes Security Bulletin #27

2016-11-22 Thread Steve Coleman
I know the developers at ITL have their hands busy with this right issue right now, but I have a (long winded) curiosity question in hope to gain some context when you get a chance to think about it. I can see that in this particular potential exploit one might use a client vm's PCI device to

Re: [qubes-users] Problem copying something from the work VM to dom0

2016-12-28 Thread Steve Coleman
On 12/28/2016 11:35 AM, 5qvig7+72wbojzjmyk1fzj62f3msv2h6s8ffn8 via qubes-users wrote: Hello everyone; I'm trying to copy a file from my work VM to dom0, I followed the doc on this matter https://www.qubes-os.org/doc/copy-from-dom0/ So I used the following line, qvm-run --pass-io work 'cat

Re: [qubes-users] How much important is TPM?

2017-03-30 Thread Steve Coleman
Without a TPM you will be limited as to what you can do with any TCG Opal compliant self encrypting drives (SED), and for a laptop this is a very interesting feature to loose. Most all SSD's I know are Opal compliant and many laptop spinning drives are as well. Take a look at the rpm package

Re: [qubes-users] How much important is TPM?

2017-04-04 Thread Steve Coleman
On 04/04/2017 10:29 AM, taii...@gmx.com wrote: Opal is proprietary garbage, Actually its an open standard, not controlled by any government or corporation. One link I provided was to the standard which gets down to the data structure byte memory layout and data interchange requirements.

Re: [qubes-users] How much important is TPM?

2017-04-04 Thread Steve Coleman
On 04/04/2017 02:27 AM, Vít Šesták wrote: That sounds interesting. Well, I don't think Opal provides a better protection, but it comes with a potentially lower price. I'll try to compare level of protection, correct me if I am wrong: Ok, ;) Persistent malware installed from a running

Re: [qubes-users] sys-net stopped working after update

2017-03-02 Thread Steve Coleman
I ran into this and found my issue was the fedora-24-minimal did not have tinyproxy installed. On 02/28/2017 04:27 PM, Ray Brainer wrote: It starts. But there is no ip resolution. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To

Re: [qubes-users] How much important is TPM?

2017-04-03 Thread Steve Coleman
On 04/01/2017 07:31 AM, Vít Šesták wrote: The problem is: 1. The AEM is not perfect. Various vulnerabilities have been published and I am unsure what level of real protection (i.e., not just obscurity) can it provide. 2. AEM is not for free. When filtering only laptops with TXT+TPM, you have

Re: [qubes-users] dispvm savefile creation fails when .qubes-dispvm-customized

2017-07-31 Thread Steve Coleman
On 07/29/2017 08:59 AM, Connor Page wrote: qvm-create-default-dvm fedora-25 Try that to check if it fails. If not then starting dvms won't be a problem anymore. If it does then there's something wrong with your template. I use a heavily customized F25 template for dvms and it never fails, but

Re: [qubes-users] Anyone tried Anbox ('Android in a box') under Qubes

2017-07-18 Thread Steve Coleman
On 07/17/2017 03:21 AM, 'P R' via qubes-users wrote: Hello, I'm interested in running Android as HVM within Qubes. Has anyone trying to do so already with the code from the Anbox Project? https://anbox.io Just did, and it only supports Ubuntu, LinuxMint, neon, elementary at the moment. So

Re: [qubes-users] Printing and scanning with Qubes - a love story

2017-07-24 Thread Steve Coleman
On 07/22/2017 11:14 AM, js...@riseup.net wrote: I actually tried that for about an hour, couldn't get it to work and gave up on it. My printer has a network port too so I didn't need an adapter. I don't remember exactly what errors I was getting, but even after I managed to add the printer and

[qubes-users] dispvm savefile creation fails when .qubes-dispvm-customized

2017-07-28 Thread Steve Coleman
I have been having issues with my newly upgraded fedora-25 template for starting the newly re-created fedora-25-dvm. It appears to _not_ start anytime I have the ".qubes-dispvm-customized" link in the user directory. When removing the file it works fine in creating a savefile and running the

Re: [qubes-users] Options for securing /boot

2017-08-30 Thread Steve Coleman
On 08/30/2017 11:49 AM, wordswithn...@gmail.com wrote: On Tuesday, August 29, 2017 at 7:16:16 PM UTC-4, steve.coleman wrote: If your laptop contains an active TPM and a TCG Opal 2.0 compliant SED (SSD or spinning platter) drive, then you can create a range, install the bootstrap/OS, and then

[qubes-users] HCL - Dell Optiplex 990

2017-09-12 Thread Steve Coleman
-- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To

Re: [qubes-users] Re: Has anyone tried to activate SELINUX in Fedora 25?

2017-09-28 Thread Steve Coleman
gress off line preferably. While I agree with the qubes developers that don't see it as a big preventive measure, given that users all have sudo, I do however think that getting a first-warning upon their entry can be key to keeping the system safe to use. What you do after they have a foot

Re: [qubes-users] Re: Installer Bug - has not been fixed since I reported it in Qubes 2.0 installer.

2017-08-23 Thread Steve Coleman
On 08/22/2017 08:15 AM, jespernexojorgen...@gmail.com wrote: I guess the next step would be to see if VMWare will work with the graphical installer :) Qubes-OS is a HVM visualization system that works directly with the hardware, and its use under another virtualization system is likely to

Re: [qubes-users] Options for securing /boot

2017-08-29 Thread Steve Coleman
If your laptop contains an active TPM and a TCG Opal 2.0 compliant SED (SSD or spinning platter) drive, then you can create a range, install the bootstrap/OS, and then mark that range as read-only. After doing that *nothing* will be able to write to that area without the password unlocking

Re: [qubes-users] Where is Chrome once installed?

2017-12-04 Thread Steve Coleman
On 12/04/2017 03:00 PM, Ray Joseph wrote: How to do I get Chrome up? Take a look under /opt/google/chrome and it should be there, and thus visible in all the VM's based on that template you installed it in. You should have a google-chrome.desktop file in /usr/share/applications which will

Re: [qubes-users] Attempting to securely wipe drives, running into issue.

2017-12-19 Thread Steve Coleman
With the redirection pipe operators you may need to put \( \) around the command so that all commands in the pipe are running at elevated privs. On 12/19/2017 04:09 PM, David wrote: Nothing urgent, just stumped — if you've got free time to poke at a command, thank you in advance! I've

Re: [qubes-users] View traffic going from/to an appvm? or going through the sys-firewall?

2017-11-13 Thread Steve Coleman
On 11/11/2017 08:44 AM, Stumpy wrote: I posted earlier about trying to limit traffic on some appvms and got some helpful feedback about specific services but I am now thinking it would be most useful to just see traffic leaving a appvm and then adding rules based on that. problem is, i don't

Re: [qubes-users] What's the best way to share Firefox add-ons among VMs and have separate bookmarks and settings per VM?

2017-12-04 Thread Steve Coleman
If I understand your needs correctly, you can setup each VM/firefox to use the Firefox sync using the same firefox account, and then adjust the firefox account configuration to only sync the add-on's. Most people want bookmarks sync'ed, but then that is easily turned off in that account

[qubes-users] Fedora 28 just released

2018-05-01 Thread Steve Coleman
Needless to say that means an EOL for 25 is going to be announced fairly soon. Anyone manage to upgrade dom0 yet to test the waters? Would the next dom0 upgrade likely to be fc27 or fc28? thanks, Steve. -- You received this message because you are subscribed to the Google Groups

Re: [qubes-users] rc04

2018-01-09 Thread Steve Coleman
On 01/09/2018 02:11 AM, Tim W wrote: On Tuesday, January 9, 2018 at 1:16:10 AM UTC-5, Sven Semmler wrote: Great time to be using a AMD chipset as they are not effected. Just got back from a small seminar on the topic. All modern processors with speculative execution units are likely

Re: [qubes-users] How to play videos in qubes? says needs codec H.264, Mpeg-4 something

2018-01-17 Thread Steve Coleman
Use DNF to look for ffmpeg, and install that, if it is not already. Likely it is not installed. After that, if it still does not play, then start by telling us what app you are using to play the video. There are usually plugins that connect an app to the otherwise encumbered/licensed/patented

Re: [qubes-users] How to play videos in qubes? says needs codec H.264, Mpeg-4 something

2018-01-18 Thread Steve Coleman
which one it was in. You may find your answer here: https://gstreamer.freedesktop.org/documentation/plugins.html January 17, 2018 6:55 PM, "Steve Coleman" <steve.cole...@jhuapl.edu> wrote: Use DNF to look for ffmpeg, and install that, if it is not already. Likely it is not inst

Re: [qubes-users] live Distro

2018-01-11 Thread Steve Coleman
On 01/11/2018 01:35 PM, Unman wrote: I failed miserably to get anything running for 4.0-rc2, so that target has shifted now. I should be posting updated 3.2 images in the next few days. unman, Given your difficulty in getting 4.0-rc2 to run, what is the possibility of creating a DVD that

[qubes-users] 4.0-rc3: sys-net not getting updated template OS image?

2018-02-13 Thread Steve Coleman
I have a strange situation where my sys-net's software template "fedora-26-net" (variant of fedora-minimal) does not appear to be providing updated OS images. My sys-net is the only vm using this specific image. I have a necessary network service installed in the template "fedora-26-net"

Re: [qubes-users] 4.0-rc3: sys-net not getting updated template OS image?

2018-02-14 Thread Steve Coleman
On 02/13/18 14:54, awokd wrote: On Tue, February 13, 2018 6:32 pm, Steve Coleman wrote: I have a strange situation where my sys-net's software template "fedora-26-net" (variant of fedora-minimal) does not appear to be providing updated OS images. My sys-net is the only vm using thi

Re: [qubes-users] 4.0-rc3: sys-net not getting updated template OS image?

2018-02-14 Thread Steve Coleman
On 02/14/18 12:14, Rusty Bird wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 Steve Coleman: I have a strange situation where my sys-net's software template "fedora-26-net" (variant of fedora-minimal) does not appear to be providing updated OS images. My sys-net is the onl

Re: [qubes-users] Encrypt only part of SSD or How to encrypt after installation?

2018-08-03 Thread Steve Coleman
On 08/03/18 03:56, Daniil .Travnikov wrote: I installed Qubes 4.0 and in process of installation I created only /boot/efi 400MB / 240GB Even I set passphrase in some reason the '/' did not encrypted (maybe I did some mistake) and now I have non-encrypted 240Gb drive with Qubes OS.

Re: [qubes-users] Re: qubes-dom0-update borked laptop

2018-08-03 Thread Steve Coleman
On 08/03/18 12:46, jm wrote: /var/log/dnf.log tells me that this morning dom0 update Removed: kernel.x86_64 1000:4.9.35-20.pvops.qubes kernel-qubes-vm.x86_64 1000:4.9.35-20.pvops.qubes Installed: kernel.x86_64 1000:4.14.57-1.pvops.qubes kernel-qubes-vm.x86_64 1000:4.14.57-1.pvops.qubes

Re: [qubes-users] How do I install this Firewall HVM ?

2018-08-14 Thread Steve Coleman
On 08/14/18 13:40, Who Cares wrote: I am using qubes 4.0 and i am trying to install a firewall. Qubes comes with an integrated firewall in the sys-firewall VM. It uses managed iptables which provide the basic rules to protect the system, but also allow you to make adjustments as required

Re: [qubes-users] How do I install this Firewall HVM ?

2018-08-14 Thread Steve Coleman
On 08/14/18 16:43, Who Cares wrote: I´m trying to implement this Kerio-control system. I thought this would have been a nice combo of firewall and VPN. You might want to read up on the Qubes Proxy VPN setup and compare how that works with what KerioControl is expecting for its environment.

[qubes-users] R4.0 Error in org.qubes.DomainManager1 proxy.get()

2018-08-08 Thread Steve Coleman
I just did a dom0 update this morning and rebooted. Upon logging in the system attempted to start the Qube manager but appears to be having issues in connecting to dbus: python error stack trace line: 0, timeout_to_glib(timeout), None) func: get line no.: 47 file:

Re: [qubes-users] Shredding VM images

2018-08-20 Thread Steve Coleman
On 08/20/18 12:49, Chris Laprise wrote: On 08/20/2018 11:34 AM, tierl...@gmail.com wrote: What's the most convenient way to wipe these images? (I'm just talking about individual VM images) To clarify on your first question: Since encryption is protecting the storage pool that contains the

[qubes-users] Qubes 4.0 qemu device controller mptsas1068 not seen by ReactOS

2018-08-31 Thread Steve Coleman
I saw that a while back a Qubes discussion on qemu's disk controller vs Windows support, which if I recall correctly required a modification to the qemu device being passed to the HVM. It appears that Qubes HVM is currently passing "-device mptsas1068 -id=scsi0" which appears to not be seen by

Re: [qubes-users] Can't create Linux HVM

2018-09-04 Thread Steve Coleman
On 09/03/18 22:01, pc revival wrote: Hello all. I have been trying to install a version of Ubuntu Linux called Buscador and can't get past the partitioning utility. I boot the live iso and everything works fine but when I boot the installer I go through the user set up screen fine but the

Re: [qubes-users] How to play videos in qubes? says needs codec H.264, Mpeg-4 something

2018-01-16 Thread Steve Coleman
You may need to enable your /etc/yum.repos.d/rpmfusion-*.repos and search for it there. Here is what I get: > sudo dnf search h.264 Last metadata expiration check: 5:27:04 ago on Tue 16 Jan 2018 08:35:58 AM EST. = Description Matched:

Re: [qubes-users] No space left

2018-01-23 Thread Steve Coleman
On 01/23/2018 04:55 AM, beso wrote: Something is eating free space in my system. It step by step decreasing. I haven't found any good solution for that. This command should give you a clue as to where the space is going: $ sudo du -h / | sort -g | tail -100 Once you know where the space

Re: [qubes-users] help, trying to make custom launchers

2018-01-23 Thread Steve Coleman
On 01/22/2018 02:28 AM, pixel fairy wrote: qubes 4.0rc3 Id like to make custom launchers for two purposes 1. easily run apps from custom dispvms. using shell scripts for now. 2. make alternate launchers with different icons. for example, the twitter bird icon in a twitter app-vm. tried

Re: [qubes-users] Re: Security questions (templates and kde)

2018-03-06 Thread Steve Coleman
On 03/06/18 13:42, sevas wrote: I havent quite tackled the security through compartmentalization part yet. I have put some thought into it though, and after dividing my attack surface between functions (keyring, passwords, misc files, etc) I realized that each function has only one app to

Re: [qubes-users] Re: anyone else get hit by google's auto-deleting qubes users mail responses the moment they are send?

2018-03-12 Thread Steve Coleman
I would say that if somebody has such an email in their out box, and you know it was removed, then contact Google and resolve the issue rather than just complaining here. No offense meant by this, its just that you have exactly what they need to tack down the problem sitting in your outbox.

Re: [qubes-users] Re: anyone else get hit by google's auto-deleting qubes users mail responses the moment they are send?

2018-03-13 Thread Steve Coleman
On 03/13/18 07:27, Yuraeitha wrote: First, I'll apologize if I sound a bit grumpy today, it's not on you, and I hope you will remember that below, even though I strongly disagree with you, it's nonetheless nothing personal. No offense taken here. You have a right to be grumpy! Originally

Re: Qubes and Email/PIM (Was: Re: [qubes-users] Re: Security questions (templates and kde)

2018-03-08 Thread Steve Coleman
Glad to hear I'm not the only one paying attention to this particular attack surface. There is nothing like a wide open 24x7 automated attack surface to keep you up at nights wondering what web exploits will be discovered next by the hacker community. Even with layers of security well before

Re: [qubes-users] Re: Security questions (templates and kde)

2018-03-08 Thread Steve Coleman
On 03/07/18 15:05, sevas wrote: Cool. That gave me some ideas. Thanks for sharing your setup. So, another infosec question Im trying to figure out... Templates Vs AppVMs. I find that I separate my Templates based on two criteria. What I want to limit access to, and what I do or do not

Re: [qubes-users] Offtopic :: reasonable secure routers?

2018-04-12 Thread Steve Coleman
On 04/12/18 05:32, Jo wrote: My suggestion would be the Turris Omnia. Im using it myself in various cases and im very happy with it. I second this opinion. Its Open Source (OpenWrt), downloads its own patches to keep up with any security issues or exploits in the wild. Unless of course you

Re: [qubes-users] Offtopic :: reasonable secure routers?

2018-04-13 Thread Steve Coleman
On 04/12/18 19:56, taii...@gmx.com wrote: I can't believe peoples standards have fallen so far down that simply letting you run linux and publishing the board diagram is considered "open source hardware" https://doc.turris.cz/doc/_media/rtrom01-schema.pdf

Re: [qubes-users] Re: Qubes not boot from USB Stick

2018-04-18 Thread Steve Coleman
On 04/18/18 09:06, myblackcatisb...@gmail.com wrote: Ah sorry, you sure mean the dd mode. The program dd is a standard Unix utility /usr/bin/dd https://en.wikipedia.org/wiki/Dd_(Unix) -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To

Re: [qubes-users] Creating a systemd unit that runs when Dom0 user logs in (NOT merely when boot up completes)

2018-03-26 Thread Steve Coleman
On 03/24/18 14:20, daltong defourne wrote: Hello community! I need to achieve the following: A systemd unit that fires ONLY when user first logs in (not when bootup complete, so rc.local does not achieve what I want) And, related need, I want to be able to determine if a particular VM is

Re: [qubes-users] can't download qubes 4.0 how to raise 4.3gb download limit.

2018-03-23 Thread Steve Coleman
On 03/22/18 21:25, cooloutac wrote: Well Steve it worked. after formatting the usb to ext, changing ownership of it to user, and using a non disposable template browser. I was able to download the 4.4gb iso to it. Still not something the avg user would know how to do, but Qubes is no

Re: [qubes-users] Qubes HCL Diagnostic

2018-02-27 Thread Steve Coleman
On 02/27/18 10:24, Unman wrote: For 3.2 I have a Qubes Live that can be run from DVD/USB and generate HCL from that. http://www.qubes-3isec.org Is that perhaps: http://qubes.3isec.org/Live/ http://qubes.3isec.org/Live/Qubes.iso http://qubes.3isec.org/Live/QubesTor.iso With a '.' rather

Re: [qubes-users] Install Orientdb on Qubes

2018-04-26 Thread Steve Coleman
On 04/25/18 13:05, Barry Du Plessis wrote: I therefore offer this advise (probably not optimal, but at least it works for me): Why not: install the software in your template-vm configure the database to point to /usr/local/orientdb enable "qubes services" for the AppVM's you need it in?

[qubes-users] Qubes 4.0 on high(er) end workstations?

2018-10-15 Thread Steve Coleman
I had attempted to upgrade my HP machine at home to R4.0 a while back and ran into a VT-d related message about reassignable interrupts not being found, yet I do have the VT-d enabled in bios. I never had any indication while running R3.2, or before, that there was any issue with the VT-d

Re: [qubes-users] how to switch Background Dom0 Qubes 4.0

2018-10-15 Thread Steve Coleman
On 10/15/18 6:45 PM, English USA wrote: how can I change the screen background of the official Qubes OS 4.? Right click on the desktop and from the menu select "Desktop Settings" Please help me, I am new to the IT world. maybe someone knows how to copy in Qubes 4 directly to Dom0 or connect

Re: [qubes-users] Qubes menu failing. Come on guys

2018-11-09 Thread Steve Coleman
On 11/8/18 7:45 AM, unman wrote: On Wed, Nov 07, 2018 at 08:14:23PM -0800, Ryan Tate wrote: The latest is everything above and below the VMs is gone from the Qubes menu. The bottom of the menu where I'd go to shut down just says "No applications found." The top where I would go to find

Re: [qubes-users] Is it possible to install Qubes OS on another Internal Hard Drive partition?

2018-10-09 Thread Steve Coleman
On 10/8/18 4:42 PM, mirtilloaz...@gmail.com wrote: If so, how do you do it? The only reason I can think to do so would be to boot Qubes as an alternative OS, so I am guessing what you need is a multi-boot configuration. You can read about that here: Multibooting Qubes

[qubes-users] Intel ME Manufacturing Mode? (Lenovo)

2018-10-02 Thread Steve Coleman
Not just an Apple problem, as Lenovo was also mentioned in the article. Any Intel box could theoretically come this way. One way to look deep inside ME? Intel ME Manufacturing Mode: obscured dangers and their relationship to Apple MacBook vulnerability CVE-2018-4251

Re: [qubes-users] Installing: Missing features: IOMMU/VT-d/AMD-Vi, Interrupt Remapping

2019-01-02 Thread Steve Coleman
On 1/2/19 11:41 AM, LefC wrote: Τη Τετάρτη, 2 Ιανουαρίου 2019 - 5:06:31 μ.μ. UTC+2, ο χρήστης steve.coleman έγραψε: On 1/2/19 9:12 AM, LefC wrote: Hi, i'm trying to install Qubes for the first time, i am a total newb but eager to learn more about this interesting OS. So i attempted an

Re: [qubes-users] Fed-28 update error

2018-12-20 Thread Steve Coleman
On 12/19/18 6:39 PM, Andrew David Wong wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 12/19/18 4:34 AM, qubes-...@tutanota.com wrote: Hi, I updated the dom0 and after I tried to update the Fed-28 template. I get following error: [user@fedora-28 ~]$ sudo dnf update Last metadata

Re: [qubes-users] Q4.0 qvm-prefs kernel property vs the installed/latest kernel

2018-12-04 Thread Steve Coleman
On 11/22/18 8:00 PM, unman wrote: On Tue, Nov 20, 2018 at 01:03:43PM -0500, Steve Coleman wrote: I have two up to date fedora-26 templates, that have long since been upgraded to fc28, that are both apparently 'stuck' at kernel version 4.14.74-1. I apparently can not set either template

[qubes-users] Q4 qube-manager broke after dom0 software update yesterday

2018-12-04 Thread Steve Coleman
I was away for a week and dutifully did all my software updates upon returning. After updating Dom0 the qube-manager that was running started having problems, so I restarted it, but it then refused to run. RuntimeError: the PyQt4.QtCore and PyQt5.QtCore modules both wrap the QtObject class

Re: [qubes-users] Q4 qube-manager broke after dom0 software update yesterday (resolved)

2018-12-10 Thread Steve Coleman
On 12/6/18 1:11 PM, Steve Coleman wrote: On 12/6/18 11:38 AM, donoban wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 12/4/18 8:07 PM, Steve Coleman wrote: I was away for a week and dutifully did all my software updates upon returning. After updating Dom0 the qube-manager

Re: [qubes-users] Q4 qube-manager broke after dom0 software update yesterday

2018-12-06 Thread Steve Coleman
On 12/6/18 11:38 AM, donoban wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA256 On 12/4/18 8:07 PM, Steve Coleman wrote: I was away for a week and dutifully did all my software updates upon returning. After updating Dom0 the qube-manager that was running started having problems, so I

Re: [qubes-users] How can I remove the GUI when booting qubes

2018-11-20 Thread Steve Coleman
On 11/20/18 3:25 PM, pieter lems wrote: It doesn't seem to work unfortunately, it does display more information tho. Once Xen finishes booting then the OS itself needs to boot, and that grub boot entry probably needs the same 'quiet' key word removed. I believe this grub file is generated

[qubes-users] Q4.0 qvm-prefs kernel property vs the installed/latest kernel

2018-11-20 Thread Steve Coleman
I have two up to date fedora-26 templates, that have long since been upgraded to fc28, that are both apparently 'stuck' at kernel version 4.14.74-1. I apparently can not set either template to a newer kernel. There are a lot of customizations involved so I am hoping not to have to go back to

Re: [qubes-users] Installing: Missing features: IOMMU/VT-d/AMD-Vi, Interrupt Remapping

2019-01-02 Thread Steve Coleman
On 1/2/19 9:12 AM, LefC wrote: Hi, i'm trying to install Qubes for the first time, i am a total newb but eager to learn more about this interesting OS. So i attempted an installation to my old wiped laptop and got this message Missing features: IOMMU/VT-d/AMD-Vi, Interrupt Remapping And the

[qubes-users] Domain [*] has failed to start: Cannot execute qubesdb-daemon

2019-05-31 Thread Steve Coleman
After doing a reinstall and restore from backup of my Qubes 4.0 system, I have a number of AppVM's that do not want to start for some unknown reason. The frustrating thing is there are no AppVM or dom0 logs that give me any clue as to where to start chasing down the problem. I have grep'ed all

Re: [qubes-users] Domain [*] has failed to start: Cannot execute qubesdb-daemon

2019-06-03 Thread Steve Coleman
On 5/31/19 3:48 PM, Steve Coleman wrote: After doing a reinstall and restore from backup of my Qubes 4.0 system, I have a number of AppVM's that do not want to start for some unknown reason. The frustrating thing is there are no AppVM or dom0 logs that give me any clue as to where to start

Re: [qubes-users] Domain [*] has failed to start: Cannot execute qubesdb-daemon

2019-06-03 Thread Steve Coleman
On 6/3/19 2:17 PM, 'awokd' via qubes-users wrote: Steve Coleman wrote on 6/3/19 5:11 PM: So, it appears that just having that specific VM name will somehow prevent it from ever running. When the AppVM has any other name then it seems to work just fine. I just can't name any VM with the same

Re: [qubes-users] Full proper backup of Dom0 possible?

2019-06-11 Thread Steve Coleman
On 6/10/19 4:04 PM, Otto Kratik wrote: For both Template and AppVM's it's easy enough to backup and restore the entire thing as needed using the built-in tools from Qubes Manager, Qmenu or command line. Anything goes wrong, just restore a backup. But for dom0, all that seems to get backed up

Re: [qubes-users] Can't sudo in unman's qubes.3isec.org Ubuntu-14.04 template

2019-07-10 Thread Steve Coleman
On 7/10/19 2:02 AM, list.w...@gmail.com wrote: On Tuesday, 9 July 2019 12:31:23 UTC, steve.coleman wrote: On 7/9/19 7:25 AM, wrote: Hi, I installed a Ubuntu-14.04 minimal template from qubes.3isec.org using $ sudo dnf install qubes-template-stretch-minimal-4.0.1-201812230252.noarch.rpm and

Re: [qubes-users] Can't sudo in unman's qubes.3isec.org Ubuntu-14.04 template

2019-07-12 Thread Steve Coleman
On 7/11/19 9:36 PM, list.w...@gmail.com wrote: On Wednesday, 10 July 2019 17:13:42 UTC, steve.coleman wrote: On 7/10/19 2:02 AM, wrote: On Tuesday, 9 July 2019 12:31:23 UTC, steve.coleman wrote: On 7/9/19 7:25 AM, wrote: Hi, I installed a Ubuntu-14.04 minimal template from

Re: [qubes-users] Can't sudo in unman's qubes.3isec.org Ubuntu-14.04 template

2019-07-09 Thread Steve Coleman
On 7/9/19 7:25 AM, list.w...@gmail.com wrote: Hi, I installed a Ubuntu-14.04 minimal template from qubes.3isec.org using $ sudo dnf install qubes-template-stretch-minimal-4.0.1-201812230252.noarch.rpm and that works 'fabelhaft' (German for 'fabulously' :), but inside the running template I'm

Re: [qubes-users] Quick question please, need help!

2019-07-02 Thread Steve Coleman
On 6/21/19 6:37 PM, ljul8...@gmail.com wrote: I was told that if dom0 gets infected, everything in the laptop can be found and read. While this is a true statement, you then have to think about exactly what it would take for someone to do this given the Qubes logical architecture and the

Re: VS: [qubes-users] Re: Update: HCL - LENOVO Thinkpad P51 (20hjs0bx00) for R4.0

2019-07-02 Thread Steve Coleman
On 7/1/19 5:09 AM, Michael Andersson wrote: I am almost certainly about to buy https://smile.amazon.com/gp/product/B075TH6GBT/ , a ThinkPad P51 with an i7-7820HQ -- just like your machine above. I have been wanting a second Qubes system for home use, so I took a look at this laptop and

Re: [qubes-users] best and less expensive Lenovo think pad

2019-08-13 Thread Steve Coleman
On 8/13/19 6:28 AM, 799 wrote: Hello <27casanov...@gmail.com > schrieb am Di., https://github.com/one7two99/my-qubes/blob/master/docs/coreboot/README.md Let me know if you need any help. I do have a few questions for anyone experienced with the x230 Q1:

Re: [qubes-users] No network

2019-09-16 Thread Steve Coleman
On 2019-09-15 12:45, kegd...@gmail.com wrote: Networking is enabled by state file, and WiFi enabled by radio killswitch; enabled by state file. It se es no network ando manually adding a WiFi does not connect. Sys-net networkmanager[520] has a new ethernet device detected (vif2.0) but network

Re: [qubes-users] HCL - Purism Librem 15 v3 w/ TPM module

2019-09-16 Thread Steve Coleman
On 2019-09-15 02:38, Jeff Warner wrote: I am brand new to QubesOS and hope to be able to update this entry over time. I'm happy to start with this HCL report. The prospects look quite promising. Welcome to Qubes! Let us know if you have any questions -- You received this message because you

Re: [qubes-users] sys-net

2019-09-18 Thread Steve Coleman
On 2019-09-18 08:43, unman wrote: On Wed, Sep 18, 2019 at 02:04:53PM +0200, haaber wrote: today I had a look in logs of my router, and discovered that it logs my qubes machine as "sys-net". I did not change anything in my "out-of-the-box" sys-net, so I presume that the observed behaviour is

Re: [qubes-users] Receive-only email VM

2019-08-07 Thread Steve Coleman
On 8/2/19 1:24 PM, reddit@vfemail.net wrote: In Qubes, is it possible to set up a VM that can receive email, but not send information out, via email or otherwise? The motivation is: Many online accounts rely on an email address to reset passwords. However, the VM that handles inbound

Re: [qubes-users] Making a DispVM permanent

2019-09-23 Thread Steve Coleman
On 2019-09-21 07:27, tetrahedra via qubes-users wrote: Is there a way to turn currently-running DispVM instance into a regular permanent AppVM, which I can delete later? I'm not sure it this helps or not, but you could try pausing the dispvm and restart it when you need it. I don't know

Re: [qubes-users] QSB #053: TSX Asynchronous Abort speculative side channel (XSA-305)

2019-11-15 Thread Steve Coleman
On 2019-11-15 05:28, Chris Laprise wrote: On 11/15/19 3:01 AM, Andrew David Wong wrote: On 2019-11-14 8:50 AM, Chris Laprise wrote: One of the packages came down with an incorrect signature: *** ERROR while receiving updates: Error while verifing kernel-4.19.82-1.pvops.qubes.x86_64.rpm

Re: [qubes-users] Qubes OS 4.0.2-rc2 has been released!

2019-11-05 Thread Steve Coleman
On 2019-11-04 22:12, Andrew David Wong wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2019-11-04 6:05 AM, Anac wrote: Hi all, Is it just me or does the iso really not fit onto a regular DVD? I tried several burn programs - same result. The 4.8 GB iso doesn't fit onto a 4.7 GB DVD.

Re: [qubes-users] Days since last backup

2019-11-22 Thread Steve Coleman
On 2019-11-22 04:41, Bernhard wrote: > However, I am stuck on how to determine how many days it has actually been since the last backup. >>> >>> What you are looking for is this command: >>> >>> qvm-prefs --get $vm backup_timestamp > > Nice. In case of a "manual backup", can you also set the

Re: [qubes-users] Days since last backup

2019-11-21 Thread Steve Coleman
On 2019-11-20 22:12, tetrahedra via qubes-users wrote: > The built-in Qubes backup functionality is great but it's very easy to > forget to run a backup and end up going days (or weeks, or months...) > without it. > > However, I am stuck on how to determine how many days it has actually > been

Re: [qubes-users] unsupported hardware detected with the installation of qubes 4.0.1, and 4.0.2-rc2

2019-12-10 Thread Steve Coleman
On 2019-12-10 10:26, rickey wrote: Good morning Everyone, I have installed previously Qubes 3.2.1 on a Dell small form factor desktop pc, and lenovo x120e, and I was able to use them. When I tried to install the Qubes versions mentioned above on the same hardware, it is showing the message

Re: [qubes-users] Anyone tried Anbox ('Android in a box') under Qubes

2019-10-16 Thread Steve Coleman
On 2019-10-16 11:57, Jin-oh Kang wrote: Sorry I might be out of touch, but can't you just install Android directly on your HVM without a container? Anbox is meant to run Android *without* a hypervisor like Xen which is the whole point of using Qubes. Anbox does allow you to run Android under

Re: [qubes-users] Dell Optiplex 7060 Mini - Qubes 4.0.2-rc1

2019-10-23 Thread Steve Coleman
On 2019-10-22 16:58, Peter wrote: I've installed qubes on a dell desktop that has no PS2 support, and only one USB controller.  So it uses a USB keyboard & mouse.  During installation I saw no prompt for creating a sys-usb, which I understand is the default when you boot with a USB keyboard.

Re: [qubes-users] Lenovo Precision 7540 available without vPro OR with Intel ME Disabled

2019-11-26 Thread Steve Coleman
On 2019-11-26 16:05, Lambda wrote: Lenovo's 2019 laptop is currently on sale and their CPU selection[1] includes: - i7-9750H: no vPro, No Out-of-Band Systems Management - i7-9850H: vPro, Intel ME Disabled Strangely enough in Europe[2] they list it as: - i7-9750H: no vPro, No Out-of-Band Systems

Re: [qubes-users] Shutting down a VM when applications close

2019-11-27 Thread Steve Coleman
On 2019-11-27 07:52, tetrahedra via qubes-users wrote: DispVMs shut down automatically when the launched application closes. Is it possible to enable this for certain applications in certain AppVMs as well? For example I may not want my "resource-heavy-apps-vm" to keep running after

[qubes-users] fyi - System76 Will Ship 2 Linux Laptops w Coreboot

2019-10-10 Thread Steve Coleman
No need to even install your own coreboot, and risk bricking your brand new system. 1) Galago Pro is apparently already on the Qubes HCL 2) Darter Pro - not yet on the HCL Currently on preorder, so I doubt anyone has tried this one with Qubes yet (32 GB DDR4, Intel UHD Graphics,

  1   2   >