Qubes OS is an operating system based on the Xen virtualization technology, which provides security through isolation between different user environments. User environments can run various operating systems including Linux and Microsoft Windows.
Questions tagged [qubes-os]
12 questions
17
votes
2 answers
Is Qubes OS more secure than running a set of activity related VMs?
I'd like to skip the argument about Linux being more secure than Windows, and purely focus on the security boundaries between Host OS and VMs.
Is Qubes OS theoretically more secure than say - Windows 10 running a few isolated activity related VMs…
mumbles
- 380
- 1
- 2
- 12
4
votes
1 answer
Does full disk encryption offer mitigation in the case of the firmware of an SSD being compromised?
Suppose the firmware of an SSD or HDD has been compromised by rogue actors either through "interdiction" (interception) or via the internet. They are able to exfiltrate data and conduct surveillance at will without my knowledge.
Can I mitigate the…
ssdhddinfected
- 139
- 8
3
votes
1 answer
Networking in Qubes OS
I've started recently to use Qubes OS and I want to set up a virtual IDS and IPS in separate VMs, but I can't figure out how the communications between different VMs works here.
Each VM should be isolated and all the connections handled by a…
JumpAlways
- 131
- 1
- 3
2
votes
2 answers
Should I wait until Spectre and Meltdown is fixed in hardware?
I have a Laptop that needs replacing due to age.
I will be using this laptop for desktop use, including Office Apps, Development, Running VMs & Web Browsing. I will be using separation using Qubes/Xen, KVM or Virtualbox. Note: Laptop won't be…
BerryResponsible
- 21
- 1
1
vote
0 answers
How to encrypt and hide a GNU/Linux operating system and create a decoy system?
My goal is to be protected against key disclosure laws and possible extortion. I know dm-crypt can be used to perform full disk encryption for GNU/Linux distros. However, it is not enough. I want to be able to hide an operating system in an…
Curiosus Hominem
- 11
- 1
1
vote
0 answers
Metasploit always asks me to create MSF web service account
I run QubesOS on my laptop and created a StandaloneVM based on debian-10 template.
I installed metasploit and created a database for the MSF web service and I was given a token for the API.
I rebooted my laptop and then when I type msfconsole again…
Quidam Ibidem
- 11
- 2
1
vote
2 answers
Alternative to Qubes OS network domain for a server
I know that Qubes Os is not suitable for a server use, but some of its features are quite interesting for that. In fact, all the network drivers are contained in a VM that run a different Linux based system and the connections from the "main OS" to…
Ben W
- 13
- 1
- 4
1
vote
1 answer
Qubes OS or TENS for security? Is Qubes a good idea for a total beginner?
What would be the most appropriate to use for as much security as possible? TENS looks very simple and straightforward, which is why I like it. However I have barely seen anyone suggesting it, I suppose they don't trust its devs (USAF Research Lab).…
whatostouse
- 11
- 2
1
vote
0 answers
Security through virtualization: does Ryzen support Rapid Virtualization Indexing (RVI), aka Second Level Address Translation (SLAT)?
RVI is required by Windows Hyper-V...
RVI will be required by QubeOS 4...
Lots of info about the new RYZEN CPU Series but as far as I know, no news about RVI support ? So, any source to point at about this ?
[EDIT] my question is only about RVI
FredericMARTIN
- 581
- 3
- 8
0
votes
0 answers
When using gpg2 to verify Qubes, the pub is different
I'm trying to verify the fingerprint of the Qubes Master signing Key (QMSK) however, I've run into some inconsistent output.
For example:
Qubes Os website & web of trust shows after executing the following command:
Gpg --fingerprint keyid
The…
Securitron
- 1
- 1
0
votes
2 answers
Would Qubes still be secure on an untrusted machine?
If you can't trust your own computer, would installing Qubes on it do any good? Or is it already too late if your machine might be infected?
jinkiesgort
- 3
- 1
0
votes
1 answer
Qubes and DOM0 being Fedora 25?
Is it safe to run an unmaintained version of Fedora in dom0? Fedora 25 went EOL on December 12th, 2017. Qubes is currently based on Fedora 25. From the Qubes FAQ,
Dom0 is isolated from domUs. DomUs can access only a few interfaces, such as Xen,…
Evan Carroll
- 2,325
- 4
- 22
- 29