Re: [qubes-users] Intel ME Backdoor, called Odin's Eye

2018-01-07 Thread anac



On 01/08/2018 03:27 AM, Ivan Ivanov wrote:

perhaps the only thing we could do is to stockpile those
few computer models that are both coreboot (or libreboot)
supported and without Intel ME / AMD PSP


Any hints on which models come into consideration?

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/a17865f5-f98a-6638-5787-66b897424e8b%40rbox.co.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] Re: ANN: Testing new VPN code for Qubes

2018-09-13 Thread Anac




On 09/14/2018 12:13 AM, 22...@tutamail.com wrote:

Unfortunately I have been under constant attack and a target and the only 
solution I see is a fresh rebuild or new computer unless you have another idea?



You said that Tor was running. When combining Tor with VPN, the VPN's 
connection type should be TCP, not UDP. Did you check that?


--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/f9b9defd-b9b7-3484-19b2-84524feec988%40rbox.co.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] Re: ANN: Testing new VPN code for Qubes

2018-09-14 Thread Anac



On 09/15/2018 05:07 AM, 22...@tutamail.com wrote:

Thanks Chris...I understand now. I just tried it again and below are my logs, while I 
don't get the "Operation not permitted (code=1)" error I still get the TLS 
error

Fri Sep 14 16:55:06 2018 library versions: OpenSSL 1.0.2l  25 May 2017, LZO 2.08
Enter Auth Username: My username
Enter Auth Password: **
Fri Sep 14 16:55:35 2018 TCP/UDP: Preserving recently used remote address: 
[AF_INET]208.X.x.x ; port xx
Fri Sep 14 16:55:35 2018 Socket Buffers: R=[212992->212992] S=[212992->212992]
Fri Sep 14 16:55:35 2018 UDP link local: (not bound)
Fri Sep 14 16:55:35 2018 UDP link remote: [AF_INET]208.x.x.x: port xx
Fri Sep 14 16:56:36 2018 TLS Error: TLS key negotiation failed to occur within 
60 seconds (check your network connectivity)
Fri Sep 14 16:56:36 2018 TLS Error: TLS handshake failed
Fri Sep 14 16:56:36 2018 SIGUSR1[soft,tls-error] received, process restarting
Fri Sep 14 16:56:36 2018 Restart pause, 5 second(s)

Looks like the connection type is still set as UDP in your OpenVPN 
configuration file (.ovpn or .conf). Did you try to set it to TCP and 
according ports?


--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/aab36350-bd17-8322-a4ea-6a3f603df7a4%40rbox.co.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] HCL - Purism Librem 13 v2

2018-11-17 Thread Anac

On 11/15/18 4:47 PM, Thierry Laurion wrote:
I would strongly advise digging into the skulls project anyone 
interested in flashing coreboot into their x230 themselves : 
https://github.com/merge/skulls/blob/master/README.md


Hi,
They suggest updating the original BIOS before flashing Skull. But what 
if an older Coreboot has been flashed already? The newest Lenovo BIOS 
for the X230 dates from June 2018, which is definitely newer than the 
Coreboot (SeaBIOS version 1.11.0) which is on this machine now. Should I 
firstly flash the new Lenovo BIOS or directly flash the newest Skull?


I bought that X230 with Coreboot already flashed, so I don't have the 
original BIOS nor any information one might need to gather from it.


Thanks!

--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To post to this group, send email to qubes-users@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/bb649b0d-8f5a-58ca-75b5-9cb68742234e%40rbox.co.
For more options, visit https://groups.google.com/d/optout.


Re: [qubes-users] Re: About Wasabi

2019-07-30 Thread Anac




On 7/30/19 4:17 PM, alteration2...@gmail.com wrote:

Hi, dosent any one have an ansver for this qustion.  Would aprisiate it!


Wrong group.

Apart from that, the request displays a lack of even the most basic 
knowledge as well as an unwillingness to spend the necessary time for 
learning. This - in combination with the complex nature of the matter - 
is exactly what gets people into trouble. If you want to play safe, 
there is no shortcut. Without extensive reading and as long as dealing 
with the dudes in the appropriate groups is like "waisting time" for 
you, you're gonna mess up your safety, for sure.


--
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/92763a76-709c-8b4c-5763-3786ce2cba21%40rbox.co.


Re: [qubes-users] Qubes OS 4.0.2-rc2 has been released!

2019-11-04 Thread Anac
Hi all,

Is it just me or does the iso really not fit onto a regular DVD? I tried
several burn programs - same result. The 4.8 GB iso doesn't fit onto a
4.7 GB DVD. Is a double-layer DVD required or is it possible to delete
some seldomly needed parts from the iso? Or did I catch a
[three-digits-agency]-in-the-middle version?

Cheers,
Anac

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/bde70e48-e2fe-fb84-dfc4-34f63d8f0e0c%40rbox.co.


Re: [qubes-users] Please tell me the best laptop.

2019-12-05 Thread Anac
Hi @tukaisute,

On 12/6/19 7:32 AM, tukais...@cock.li wrote:
> I'm looking for the best laptop I can install Qubes on. Please help me
> choose.
> I've looked into it, and I think this looks good.
>
> https://ryf.fsf.org/categories/laptops
> https://www.qubes-os.org/news/2019/07/18/insurgo-privacybeast-qubes-certification/
>
> https://puri.sm/products/librem-13/
> https://puri.sm/products/librem-15/
>
The best laptop in terms of security *in my opinion* is Lenovo G505s,
because it doesn't have that potential backdoor PSP (which is AMD's
equivalent to Intel's ME) and with a A10-5750M CPU and 16 GB of RAM it
seems well eqipped for Qubes (I haven't flashed it with Coreboot yet but
hope to do so over x-mas).

The Thinkpad x230 is a wonderful piece of hardware, but one cannot get
fully rid of ME. It can be neutered, though. I'm just not sure if this
is good enough. Same goes for the Librem laptops.


-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/6ded807d-3dbc-b5e6-9093-580eb9f1226e%40rbox.co.


Re: VS: [qubes-users] Re: 2 new Intel vulnerabilites

2020-02-03 Thread Anac



On 2/3/20 8:31 PM, unman wrote:
> On Mon, Feb 03, 2020 at 05:13:55AM -0800, regg...@gmail.com wrote:
>> [a lot of text, quotes and blah]
> Hi
> The convention here is not to top-post.
> Please scroll to the bottom of the message before you start typing. Or
> reply inline.
> It only takes you seconds, and makes it much easier to follow threads.
> Thanks.
> unman
>
Yes. And please, reggelo, remove the text areas that you are not
referring to. This can save a lot of people a lot of time.

-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/bc385441-6d9d-ade9-e56d-9c2e1fb397ba%40rbox.co.


Re: [qubes-users] Upgrade to 16 GB RAM for an X230

2020-02-08 Thread Anac



On 2/8/20 9:18 PM, ggg...@gmail.com wrote:
> I am sure this question has been dealt with before, answers change a
> bit over time. 
>
> I have an X230 2325, Core I5.

Hi,
I don't know for sure, but answers may vary between stock BIOSed and
corebooted machines. I corebooted mine and would like to recommend this,
too.

> As best as I can see I should probably buy Crucial, in the basic spec
> shown on the Lenovo website.

Crucial seems to be a safe bet. Also Elpida, Hynix, Corsair (but not the
"Value Select" line), Samsung and ADATA work well on both my i5 and i7
X230. Kingston RAM acts strangely. It works but seems slow or somehow
'sluggish'. Avoid the "Value RAM" or "kvr" series.

> After I install it, how can I verify that the memory is operating
> interleaved?

>From my experience, as long as the OS recognizes the RAM it can also use
it.

Btw. your questions may fit well on https://forums.lenovo.com or
https://forum.thinkpads.com



-- 
You received this message because you are subscribed to the Google Groups 
"qubes-users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to qubes-users+unsubscr...@googlegroups.com.
To view this discussion on the web visit 
https://groups.google.com/d/msgid/qubes-users/0474fbea-a12e-829c-e110-9916880dbe95%40rbox.co.