Re: [qubes-users] Windows hanging at starting up screen (changing xen video -> cirrus not working?)

2017-05-07 Thread Jean-Philippe Ouellet
On Sat, Apr 29, 2017 at 10:34 AM, Gaiko Kyofusho wrote: > I am trying to setup a win7 template. I started with the: > > qvm-create --hvm-template win7-x64-template -l green > > which seemed to work well enough, then tried to install windows (win7 pro > x64). When I

Re: [qubes-users] OpenWhisper Systems Signal not quite right in Qubes 3.2/Fedora23/Chromium

2017-05-07 Thread Jean-Philippe Ouellet
On Sun, May 7, 2017 at 10:05 PM, Neal Rauhauser wrote: > I installed Qubes 3.2 on a Dell Precision M4600 (slick) and I've been trying > to migrate a portion of my day to day work to it. > > I have many contacts who use Open Whisper Systems Signal App for > communication.

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread Vít Šesták
While I sometimes use the arguments “in such case e, attacker gains nothing, because it assumes you are already compromised”, one has to be careful with this, because compromise doesn't imply a total compromise. A simple example (unrelated to ME) of this catch: One might think that giving user

Re: [qubes-users] HDMI-related threats in Qubes OS

2017-05-07 Thread Chris Laprise
On 05/07/2017 02:14 PM, Vít Šesták wrote: After some while of inactivity, I've made an experiment and successfully created an HDMI “condom”. It is the most universal variant intended for connecting a laptop to some HDMI male. Ingredients: HDMI-male to DVI-female short cable + DVI-male to

[qubes-users] Re: Windows hanging at starting up screen (changing xen video -> cirrus not working?)

2017-05-07 Thread Drew White
> > > libvirt.libvirtError: internal error: libxenlight failed to create new > > > domain 'win7' I just noticed that the VM is trying to start up "win7" yet the domain is "win7-x64-template" Did you change the "" content? Did you remove or change the "" tag or content in the conf file? Or is

[qubes-users] Re: Windows hanging at starting up screen (changing xen video -> cirrus not working?)

2017-05-07 Thread Drew White
On Monday, 8 May 2017 13:13:48 UTC+10, Gaiko wrote: > On Sunday, May 7, 2017 at 3:10:55 PM UTC-4, cooloutac wrote: > > On Saturday, May 6, 2017 at 10:07:53 PM UTC-4, Gaiko wrote: > > > No responses? Is there any more information that I could post that might > > > make it easier to diagnose this

[qubes-users] Re: Windows hanging at starting up screen (changing xen video -> cirrus not working?)

2017-05-07 Thread Gaiko
On Sunday, May 7, 2017 at 3:10:55 PM UTC-4, cooloutac wrote: > On Saturday, May 6, 2017 at 10:07:53 PM UTC-4, Gaiko wrote: > > No responses? Is there any more information that I could post that might > > make it easier to diagnose this issue? > > > > > > For what its worth, I was able to make a

[qubes-users] Re: cp/mv from win7VM to other VMs?

2017-05-07 Thread Drew White
On Sunday, 30 April 2017 05:25:52 UTC+10, Gaiko wrote: > On Friday, April 28, 2017 at 9:58:48 PM UTC-4, Reg Tiangha wrote: > > On 04/28/2017 07:45 PM, Gaiko Kyofusho wrote: > > > Appologies if this is obvious but I only saw it was "possible" in the > > > docs and assumed that I would have the

[qubes-users] Re: No network connection v2

2017-05-07 Thread babel
On Saturday, May 6, 2017 at 7:38:16 PM UTC+2, menthols wrote: > Today installed Qubes 3rd release, but no network connection. Spent hours > trying to fix it, but to no avail. Network card is recognized. I have two > cables connected, no WiFi. I try to put qubes on Dell poweredge, Intel Xeon >

[qubes-users] OpenWhisper Systems Signal not quite right in Qubes 3.2/Fedora23/Chromium

2017-05-07 Thread Neal Rauhauser
I installed Qubes 3.2 on a Dell Precision M4600 (slick) and I've been trying to migrate a portion of my day to day work to it. I have many contacts who use Open Whisper Systems Signal App for communication. I've used the Google Chrome extension on both OSX and Linux without any troubles.

Re: [qubes-users] How to get trusted iso?

2017-05-07 Thread cooloutac
On Sunday, May 7, 2017 at 5:06:14 PM UTC-4, Jean-Philippe Ouellet wrote: > On Sun, May 7, 2017 at 2:41 PM, cooloutac wrote: > > On Monday, May 1, 2017 at 3:03:05 PM UTC-4, Chris Laprise wrote: > >> On 05/01/2017 02:33 PM, cooloutac wrote: > >> > I know I can't buy one, so how

[qubes-users] Re: HCL - Dell XPS 15 9560

2017-05-07 Thread 3k
> However, after updating dom0 things seem to have turned to worse. The > graphics have taken a hit and I can observe serious lag. Did you face similar > glitches? I think you should upgrade the kernel to 4.8, use: sudo qubes-dom0-update --enablerepo=qubes-dom0-unstable kernel kernel-qubes-vm

Re: [qubes-users] Re: Youtube/Video Problem

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/07/2017 07:07 PM, cooloutac wrote: > there is also vlc plugin for firefox browser. vlc uses its own codecs > don't think it installs anything for systemwide. You have to install > gstreamer packages for that. Although you shouldn't need to to for > youtube, but i had to install

[qubes-users] Re: [qubes-devel] Re: QSB #30: Critical Xen bugs related to PV memory virtualization (XSA-213, XSA-214)

2017-05-07 Thread Andrew David Wong
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2017-05-07 16:48, Adrian Jeleń wrote: > >> >> >> > W dniu wtorek, 2 maja 2017 14:10:12 UTC+2 użytkownik Andrew David > Wong napisał: >> >> For Qubes 3.2: - Xen packages, version 4.6.5-27 >> >> The packages are to be installed in dom0 via

[qubes-users] Re: First stab at installing qubes 3.2 - Couple of issues.

2017-05-07 Thread devrana
Patrick - I couldn't wait until evening. :) Your suggestion worked miracles. Only point: install, then reboot with VT-d _off_ and complete the setup process. When that's done, follow the instructions in your link. Now looking at the HCL, it's woefully out of date for this machine. What

[qubes-users] Floating windows appear below base windows

2017-05-07 Thread Andrew Morgan
After some time, floating windows (such as right-click menus or the downloads panel in Firefox) become seemingly invisible. They still pop up and you can click the items within them, you just cannot see what you're clicking. It turns out that these floating windows are actually being rendered

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread taii...@gmx.com
On 05/07/2017 03:21 PM, Manuel Amador (Rudd-O) wrote: Local exploit can talk to the ME via PCI and SMBus. Only from dom0. Remote exploit only good against machines with vPro (check your CPU SKU at the Intel database — I explicitly bought systems without that shit) because vPro is the

[qubes-users] Re: FYI: don't install with username "qubes"...

2017-05-07 Thread Eric Duncan
Humm. Thanks, but a simple validation error would have sufficed. :) I was wondering where to add bugs. I'll do i there from now on. On Saturday, May 6, 2017 at 12:34:15 AM UTC-4, Andrew Morgan wrote: > On 05/05/2017 04:32 PM, Eric Duncan wrote: > > ...because after waiting nearly two hours

Re: [qubes-users] How to get trusted iso?

2017-05-07 Thread Jean-Philippe Ouellet
On Sun, May 7, 2017 at 2:41 PM, cooloutac wrote: > On Monday, May 1, 2017 at 3:03:05 PM UTC-4, Chris Laprise wrote: >> On 05/01/2017 02:33 PM, cooloutac wrote: >> > I know I can't buy one, so how do I get an a fresh iso if my machine >> > is compromised? Obviously, someone

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/02/2017 05:25 AM, Vít Šesták wrote: > * There seems to be some MEI PCI device (see lspci | grep -i mei) in dom0 and > /dev/mei0. I am not sure how all the parts (network stack, MEI PCI device, > MEI software for OS and management while offline) are connected together. I > am also unsure

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/02/2017 05:25 AM, Vít Šesták wrote: > Some notes: > > > * I wonder what is the technical distinction between home and SMB/Enterprise. > Is it vPro? I deduced this in the affirmative a few years ago by comparing the SKUs for various Intel products, and whether they had vPro. --

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/01/2017 05:26 PM, Vít Šesták wrote: > AFAIU, if https://ark.intel.com/ shows “Intel® vPro™ Technology: no”, then > the particular CPU is safe. But I am not 100% confident in vPro and related > technologies, so I might be wrong. Can someone confirm/deny this claim? That has been my

Re: [qubes-users] Re: Intel ME exploitable

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/01/2017 05:14 PM, Reg Tiangha wrote: > On 05/01/2017 10:38 AM, Jean-Philippe Ouellet wrote: >> *Sigh*... Yep. We were right to be concerned (of course). And now we >> have something other than our tin foil hats to point at too: >> >>

[qubes-users] Re: Windows hanging at starting up screen (changing xen video -> cirrus not working?)

2017-05-07 Thread cooloutac
On Saturday, May 6, 2017 at 10:07:53 PM UTC-4, Gaiko wrote: > No responses? Is there any more information that I could post that might make > it easier to diagnose this issue? > > > For what its worth, I was able to make a non-template winVM on another > computer (before I quite understood

Re: [qubes-users] Apps not starting on the first try

2017-05-07 Thread cooloutac
On Sunday, May 7, 2017 at 11:48:17 AM UTC-4, tel wrote: > On Sat, May 06, 2017 at 10:41:04PM -0400, Chris Laprise wrote: > > On 05/06/2017 12:30 PM, Todd Lasman wrote: > > > > > >-BEGIN PGP SIGNED MESSAGE- > > >Hash: SHA256 > > > > > >This seems to be a new issue on a recent reboot. > > >

[qubes-users] Re: Youtube/Video Problem

2017-05-07 Thread cooloutac
On Sunday, May 7, 2017 at 3:00:23 PM UTC-4, cooloutac wrote: > On Thursday, May 4, 2017 at 12:33:18 AM UTC-4, Qubr wrote: > > I've tried on Debian 8 and Fedora 23, then upgraded to Fedora 24 and still > > no dice. I tried Youtube, Vimeo, and Dailymotion in Firefox and Chrome. All > > of them

[qubes-users] Re: Youtube/Video Problem

2017-05-07 Thread cooloutac
On Thursday, May 4, 2017 at 12:33:18 AM UTC-4, Qubr wrote: > I've tried on Debian 8 and Fedora 23, then upgraded to Fedora 24 and still no > dice. I tried Youtube, Vimeo, and Dailymotion in Firefox and Chrome. All of > them play ony 1 or 2 frames then the video stops. Same as before, I am able

[qubes-users] ANN: qubes-pass for Ansible — an Ansible lookup plugin for Qubes pass integration

2017-05-07 Thread Manuel Amador (Rudd-O)
Building on https://github.com/Rudd-O/qubes-pass, the new Ansible Qubes Pass lookup plugin allows you to create Ansible playbooks and roles that integrate seamlessly with your Qubes OS pass store. Check it out at https://github.com/Rudd-O/ansible-qubes/tree/master/lookup_plugins Enjoy! --

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/07/2017 05:23 PM, Andrew David Wong wrote: > > I prefer the security of qvm-backup[-restore], since it allows me to > keep the vault and its contents permanently offline. The entire VM is > BZIP compressed, AES-256 encrypted, and HMAC-SHA512 authenticated. The > integrity verification,

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/07/2017 03:23 PM, Andrew David Wong wrote: > On 2017-05-07 10:10, nickl...@kulinacs.com wrote: > > What benefit does this have over simply ysing > > qubes-split-gpg-client-wrapper, like done here: > > https://github.com/kulinacs/pass-qubes It seems like a lot of > > overhead for not a lot of

[qubes-users] Re: Multi Boot Question

2017-05-07 Thread cooloutac
On Saturday, May 6, 2017 at 12:39:29 AM UTC-4, Patrick Bouldin wrote: > I was attempting to go by the instructions here: > https://www.qubes-os.org/doc/multiboot/ > > Confused on which instructions to execute. First, I repartitioned, then > installed Windows 7 - it booted fine. Then I installed

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/07/2017 03:10 PM, nickl...@kulinacs.com wrote: > What benefit does this have over simply ysing > qubes-split-gpg-client-wrapper, like done here: > https://github.com/kulinacs/pass-qubes > It seems like a lot of overhead for not a lot of gain. 1. The actual store is stored in a separate VM.

Re: [qubes-users] Experiencing intermittent hangs?

2017-05-07 Thread cooloutac
On Sunday, May 7, 2017 at 2:50:39 PM UTC-4, cooloutac wrote: > On Saturday, May 6, 2017 at 10:56:57 AM UTC-4, cubit wrote: > > 6. May 2017 01:37 by tas...@openmailbox.org: > > > > On 05/05/2017 09:15 PM, Gaiko Kyofusho wrote:I seem to be experiencing > > intermittent/temporary (few secs-min)

Re: [qubes-users] Experiencing intermittent hangs?

2017-05-07 Thread cooloutac
On Saturday, May 6, 2017 at 10:56:57 AM UTC-4, cubit wrote: > 6. May 2017 01:37 by tas...@openmailbox.org: > > On 05/05/2017 09:15 PM, Gaiko Kyofusho wrote:I seem to be experiencing > intermittent/temporary (few secs-min) hangs > on/between VMs. That is, I can be working on an app in one VM, it

[qubes-users] Fwd: Us congress hearing of maan alsaan Money laundry قضية الكونغجرس لغسيل الأموال للمليادير معن الصانع

2017-05-07 Thread sady assad
*موقع اليوتيوب الذي عرض فيديوهات جلسة استماع الكونجرس الأمريكي * * لمتابعة نشاطات غسل الأموال ونشاطات* *السعودي معن عبدالواحد الصانع* *مالك مستشفى وشركة سعد ومدارس سعد بالمنطقة الشرقية** بالسعودية * * ورئيس مجلس ادارة بنك اوال البحريني* *وتعليق محطة سي ان بي سي التلفزيونية* *مترجم

[qubes-users] Re: No network connection v2

2017-05-07 Thread cooloutac
On Saturday, May 6, 2017 at 1:38:16 PM UTC-4, menthols wrote: > Today installed Qubes 3rd release, but no network connection. Spent hours > trying to fix it, but to no avail. Network card is recognized. I have two > cables connected, no WiFi. I try to put qubes on Dell poweredge, Intel Xeon >

Re: [qubes-users] How to get trusted iso?

2017-05-07 Thread cooloutac
On Monday, May 1, 2017 at 3:03:05 PM UTC-4, Chris Laprise wrote: > On 05/01/2017 02:33 PM, cooloutac wrote: > > I know I can't buy one, so how do I get an a fresh iso if my machine > > is compromised? Obviously, someone more prudent would of kept their > > original iso on dedicated usb stick.

Re: [qubes-users] HDMI-related threats in Qubes OS

2017-05-07 Thread Vít Šesták
After some while of inactivity, I've made an experiment and successfully created an HDMI “condom”. It is the most universal variant intended for connecting a laptop to some HDMI male. Ingredients: HDMI-male to DVI-female short cable + DVI-male to HDMI-female adaptor, both are passive. Price:

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Andrew David Wong
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2017-05-07 12:23, Andrew David Wong wrote: > On 2017-05-07 11:33, nickl...@kulinacs.com wrote: >> On May 7, 2017 10:39:22 AM CDT, Andrew David Wong >> wrote: On 2017-05-07 10:32, >> nickl...@kulinacs.com wrote: > On May 7,

[qubes-users] Re: First stab at installing qubes 3.2 - Couple of issues.

2017-05-07 Thread devrana
Patrick - Ok, the main thing in there seems to be to disable VT-d and do the install, with some grub trickery to re-enable it later. I'll try that tonight and report back. Thanks. -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Andrew David Wong
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2017-05-07 11:33, nickl...@kulinacs.com wrote: > On May 7, 2017 10:39:22 AM CDT, Andrew David Wong > wrote: On 2017-05-07 10:32, > nickl...@kulinacs.com wrote: On May 7, 2017 10:23:54 AM CDT, Andrew David Wong

[qubes-users] Re: First stab at installing qubes 3.2 - Couple of issues.

2017-05-07 Thread Patrick Bouldin
On Sunday, May 7, 2017 at 10:59:09 AM UTC-4, dev...@gmail.com wrote: > I'm experimenting by installing on a Thinkpad T500, which has integrated > (intel) graphics. Since the install freezes after loading the initrd, I try > installing in "basic graphics mode". A lot of text streams by, of

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread nicklaus
On May 7, 2017 10:39:22 AM CDT, Andrew David Wong wrote: >-BEGIN PGP SIGNED MESSAGE- >Hash: SHA512 > >On 2017-05-07 10:32, nickl...@kulinacs.com wrote: >> On May 7, 2017 10:23:54 AM CDT, Andrew David Wong >> wrote: On 2017-05-07 10:10, >>

Re: [qubes-users] Apps not starting on the first try

2017-05-07 Thread Todd Lasman
On Sat, May 06, 2017 at 10:41:04PM -0400, Chris Laprise wrote: > On 05/06/2017 12:30 PM, Todd Lasman wrote: > > > >-BEGIN PGP SIGNED MESSAGE- > >Hash: SHA256 > > > >This seems to be a new issue on a recent reboot. > > > >If I try to run a program from a VM that's not yet running, the VM >

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Andrew David Wong
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2017-05-07 10:32, nickl...@kulinacs.com wrote: > On May 7, 2017 10:23:54 AM CDT, Andrew David Wong > wrote: On 2017-05-07 10:10, > nickl...@kulinacs.com wrote: What benefit does this have over simply ysing

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread nicklaus
On May 7, 2017 10:23:54 AM CDT, Andrew David Wong wrote: >-BEGIN PGP SIGNED MESSAGE- >Hash: SHA512 > >On 2017-05-07 10:10, nickl...@kulinacs.com wrote: >> What benefit does this have over simply ysing >> qubes-split-gpg-client-wrapper, like done here: >>

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Andrew David Wong
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 On 2017-05-07 10:10, nickl...@kulinacs.com wrote: > What benefit does this have over simply ysing > qubes-split-gpg-client-wrapper, like done here: > https://github.com/kulinacs/pass-qubes It seems like a lot of > overhead for not a lot of gain. >

Re: [qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread nicklaus
What benefit does this have over simply ysing qubes-split-gpg-client-wrapper, like done here: https://github.com/kulinacs/pass-qubes It seems like a lot of overhead for not a lot of gain. On May 7, 2017 9:50:26 AM CDT, "Manuel Amador (Rudd-O)" wrote: >Building on the

Re: [qubes-users] Re: Changed resolution, now screen doesn't work?

2017-05-07 Thread Manuel Amador (Rudd-O)
On 05/01/2017 05:42 PM, almir.aljic1...@gmail.com wrote: > On Monday, May 1, 2017 at 6:51:51 PM UTC+2, almir.a...@gmail.com wrote: >> I changed the resolution of my Qubes from 1920x1080 to 1600x1200 (by >> accident) and now my screen doesn't show anything when I choose HDMI2 (my >> desktop PC is

[qubes-users] First stab at installing qubes 3.2 - Couple of issues.

2017-05-07 Thread devrana
I'm experimenting by installing on a Thinkpad T500, which has integrated (intel) graphics. Since the install freezes after loading the initrd, I try installing in "basic graphics mode". A lot of text streams by, of which I can only see the end, but I notice: "Not asking for VNC because we

[qubes-users] ANN: qubes-pass — an inter-VM password manager and store for Qubes OS

2017-05-07 Thread Manuel Amador (Rudd-O)
Building on the excellent pass (https://passwordstore.org), it gives me great pleasure to announce the initial release of qubes-pass — an inter-VM password manager and store for Qubes OS. Check it out here! https://github.com/Rudd-O/qubes-pass -- Rudd-O http://rudd-o.com/ -- You

[qubes-users] anaconda échec

2017-05-07 Thread patrice9514
Hello I can't install qubes os, I get this https://up2sha.re/file?f=2CrDDrQyfcDv failure. I have try on any other USB 2.0 and always the same. As if there is a hardware conflict. Thank you for your help. -- You received this message because you are subscribed to the Google Groups "qubes-users"

Re: [qubes-users] [3.2] Issues with Intel® HD Graphics 620 after update of clean installation

2017-05-07 Thread Vít Šesták
OK, thanks. It seems I have compiled it with slightly newer set of patches (4.8.14-12 vs. 4.8.14-9). I haven't noticed the unstable repo (https://yum.qubes-os.org/r3.2/unstable/dom0/fc23/rpm/ )… I don't see it in official repo. Is it compiled from slightly older version of

[qubes-users] Re: HOWTO: Compiling Kernels for dom0

2017-05-07 Thread Vít Šesták
OK, thanks. It seems I have compiled it with slightly newer set of patches (4.8.14-12 vs. 4.8.14-9). I haven't noticed the unstable repo (https://yum.qubes-os.org/r3.2/unstable/dom0/fc23/rpm/ )… I don't see it in official repo. Is it compiled from slightly older version of