Page MenuHomePhabricator

onion_knight2 (onion_knight)
User

Projects

User does not belong to any projects.

User Details

User Since
Aug 20 2019, 1:56 PM (32 w, 18 h)

Recent Activity

Fri, Mar 27

onion_knight2 created T975: Replace Debian mentions in /etc/motd and /etc/issue .
Fri, Mar 27, 12:36 PM · Whonix 15, Whonix, Whonix-Host

Thu, Mar 26

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

As of 15.0.1.0.7, the following behavior is observed:

Thu, Mar 26, 10:25 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Sun, Mar 22

onion_knight2 added a comment to T910: amnesia testing of Whonix-Host in Live mode.

Ok, so you want me to:

  • boot a Whonix-Host ISO
  • Install on HDD
  • Reboot on Whonix-Host ISO, do some stuff, shutdown
  • See if HDD has been modified (why would it be?)

Correct?

Sun, Mar 22, 8:51 PM · Whonix 15, Whonix-Host, Whonix
onion_knight2 added a comment to T910: amnesia testing of Whonix-Host in Live mode.

Whonix Live ISO runs without an HDD.
I am not sure what you want to test here? Please precise.

Sun, Mar 22, 7:53 PM · Whonix 15, Whonix-Host, Whonix
onion_knight2 added a comment to T910: amnesia testing of Whonix-Host in Live mode.

Do you mean: starting an installed version in live-mode (not tested, not supported yes) or starting a Whonix-Host iso file?

Sun, Mar 22, 6:07 PM · Whonix 15, Whonix-Host, Whonix
onion_knight2 added a comment to T969: instructions how to burn Whonix-Host ISO image to DVD or USB.

Sub pages or sub chapters of 1 wiki page?

Sun, Mar 22, 6:02 PM · Whonix 15, Whonix, Whonix-Host

Tue, Mar 17

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Do you know how to run calamares hook scripts? I think I saw this before but I can't find it anymore. Or we have to invent our own mini calamares module similar to how package calamares-settings-debian invented new calamares modules?

Tue, Mar 17, 2:25 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T969: instructions how to burn Whonix-Host ISO image to DVD or USB.

https://www.whonix.org/wiki/Whonix-Host is probably a good place to write all documentation.

Tue, Mar 17, 1:10 PM · Whonix 15, Whonix, Whonix-Host
onion_knight2 added a comment to T906: encrypt Whonix-Host disk after first boot of Whonix-Host.

Should we consider closing this task since Calamares installer provides the option of full disk encryption?

Tue, Mar 17, 12:59 PM · Whonix, Whonix-Host

Mon, Mar 16

onion_knight2 added a comment to T969: instructions how to burn Whonix-Host ISO image to DVD or USB.

Where do you want me to write the documentation? In the Whonix wiki?

Mon, Mar 16, 9:51 PM · Whonix 15, Whonix, Whonix-Host
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I think that is only here:
https://github.com/Whonix/Whonix/blob/master/build-steps.d/1800_copy_vms_into_raw#L35

Mon, Mar 16, 4:47 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

There are two read-only parameters:

Mon, Mar 16, 12:20 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Sun, Mar 15

onion_knight2 added a comment to T969: instructions how to burn Whonix-Host ISO image to DVD or USB.

I could help with this task once it's ready (soon hopefully).

Sun, Mar 15, 10:07 PM · Whonix 15, Whonix, Whonix-Host
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I guess images will be set to kvm images read-only when booted in live iso mode (and probably live mode too). But once installed, images are still set to live mode. That would be probably kvm images read-only is set when run in iso live mode, cached in RAM and then installed to local disk?

Sun, Mar 15, 9:45 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Fixed by adding

Sun, Mar 15, 5:22 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I added whoami in the script and it confirmed it runs as root.

Sun, Mar 15, 4:44 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Yes, it should be run by root. Maybe it is run by root but somehow the changes don't take place as they should. More debugging could help.

Sun, Mar 15, 3:09 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

It seems that https://github.com/Whonix/whonix-libvirt/blob/master/usr/lib/whonix-libvirt/live-mode-to-read-only is not ran by root. Thus it cannot get the virsh list --all (returns void) nor change the VM xml configuration file.

Sun, Mar 15, 1:51 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Thu, Mar 12

onion_knight2 added a comment to T909: installing Whonix-Host without installer (calamares).

It is possible to automatize grml-debootstrap with full-disk encryption. Nothing too hard. I could hack together a semi-working bash script after a couple of hours of online documentation.

Thu, Mar 12, 11:26 PM · user documentation, Whonix-Host, Whonix
onion_knight2 added a comment to T909: installing Whonix-Host without installer (calamares).

No disk encryption?

Thu, Mar 12, 10:13 AM · user documentation, Whonix-Host, Whonix