On Thu, Aug 23, 2018 at 5:08 PM, taii...@gmx.com <taii...@gmx.com> wrote:
> On 08/20/2018 01:21 PM, stallmanro...@gmail.com wrote: > > > > ME disabled (works!) > > It is a nice laptop and I recommend it sometimes BUT: > > As someone with your screen-name I would hope you know that it is > impossible to disable ME. > > In your case the BUP module still runs along with any mask roms - more > than enough to add a backdoor to your machine. > > Of course in terms of laptops it is still better than newer intel stuff > like the skylake puri-craptops where the bup AND the kernel run on their > "disabled" ME - they changed the definition of disabled just like they > did with the definition of "open firmware" :[ > > The best and most free laptop is the lenovo G505S of which there is a > thriving little coreboot-qubes4 community thanks to me telling many > people to get it :D > > G505S: > * pre-PSP AMD quad core cpu (the A10 model - the others suck) > * coreboot with open cpu/ram init (unlike the blobbed puri-craptop hw > init via the intel fsp binary blob) > * IOMMU that works with qubes 4.0 (Must apply latest microcode updates > or qubes wont work) > Blob status: video+EC but people are apparently working on freeing them > and the IOMMU protects you from any DMA issues. > > Thanks! Is there somewhere a tutorial to do all that? > In terms of other laptops the X230t (with better *20 series non chiclet > keyboard) I recommend if someone wants a tablet and the W520 if someone > wants a mobile workstation with 32GB RAM - both are of course a much > better choice than a puri-craptop as they have open source hardware init > via coreboot and the ME can be nerfed. > > > > > > 2. Tomu support (30$ ) (works fine!) > > https://www.crowdsupply.com/sutajio-kosagi/tomu > > > > porting gnuk to tomu (opensource analog yubikey, needed to use heads) > > > > https://github.com/osresearch/heads-wiki/blob/master/GPG.md > > > > Dev: https://github.com/aze00/gnuk/tree/efm32 > > PR: https://github.com/im-tomu/tomu-samples/pull/35 > > Issue: https://github.com/im-tomu/tomu-samples/issues/4 > > > > Alternative - Nitrokey > > https://shop.nitrokey.com/shop/product/nitrokey-start-6 (based on gnuk) > > > > 3. https://inversepath.com/usbarmory nice compatibility (works without > any issues) > > > > 4. for good work you need a bundle i7 2gen, 16 RAM and good SSD disk ( I > completely lack 256 gigabytes ) > > > > main templates : > > archlinux > > artful > > bionic > > centos-7 > > debian-9 > > dev (buster) > > fedora-28 > > kali-rolling > > void-template > > whonix-ws-14 > > whonix-gw-14 > > > > works fine and easy build from https://github.com/QubesOS/qubes-builder > > > > + 8-10 services (vpn,tor,wireguard etc) > > + 3-4 disp vm's (internet browsing) > > + 8+10 domains > > > > Total disk usage : 20.4% > > lvm : 36.2% 77.4GB/213.8GB > > > > So, 256GB is enough. > > > > 5. You can use it like tablet ;) > > > > https://github.com/martin-ueding/thinkpad-scripts > > > > rotate/touchscreen works great and works on every VM machine. > > Nice! glad that still works > > Did you install coreboot? > > > > > 6. TPM ownership/reset (work!) > > > > 7. 10 open vms > > > > temp 52 > > fan 3496 rpm > > > > 8. +3G modem or raspberry pi features > > The RPI is not an open source firmware device FYI and I recommend > instead purchasing a beagleboard or novena. > > -- > You received this message because you are subscribed to the Google Groups > "qubes-users" group. > To unsubscribe from this group and stop receiving emails from it, send an > email to qubes-users+unsubscr...@googlegroups.com. > To post to this group, send email to qubes-users@googlegroups.com. > To view this discussion on the web visit https://groups.google.com/d/ > msgid/qubes-users/b13a5dc1-e446-888c-4d96-1e62abdf7e0b%40gmx.com. > For more options, visit https://groups.google.com/d/optout. > -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/CAPzH-qDk8qxaSSQQT3DW1F-MVaxk-60i9pHCNCMRtiL8fLpMpw%40mail.gmail.com. For more options, visit https://groups.google.com/d/optout.