Page MenuHomePhabricator

whonix-libvirtProject
ActivePublic

Members (1)

Watchers

  • This project does not have any watchers.
  • View All

Recent Activity

May 17 2020

Patrick closed T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on as Resolved.

Awesome!

May 17 2020, 7:21 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Yes, worth it. I guess lots of people are going to try Whonix-Host inside a virtual machine before considering installation on real hardware. That's why I even would like to have ability to run Whonix-Host inside VirtualBox.

Please post new tickets in forums as per:
https://forums.whonix.org/t/abolishing-whonix-phabricator-issue-tracker-moving-issue-tracking-to-forums-migrating-phabricator-whonix-org-to-forums-whonix-org/7112

May 17 2020, 6:54 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

May 16 2020

Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

But forgot to add sudo install_package_list+=" debug-misc "...

May 16 2020, 3:05 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

May 15 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Just built 15.0.1.3.6-developers-only

May 15 2020, 9:42 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

May 14 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Great! Will try to build tomorrow and report back... asap :)

May 14 2020, 11:11 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Please add your build commands to Whonix wiki Dev/Whonix-Host, then I can add suggestion there how to improve these.

Not sure what you mean here?

May 14 2020, 11:05 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

That's probably because of T950. You'd need to remove both:

quiet loglevel=0

I see. But I won't lose time trying to debug this particular build, I will just try a new one and see if the problem persists. Had some problems with lack of space on the VM I am building with, maybe related. Not worth debugging if it's a one time thing. We'll see.

May 14 2020, 10:05 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Seems I have quite a flexible notion of "asap" :)...

May 14 2020, 7:11 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Seems I have quite a flexible notion of "asap" :)...

May 14 2020, 2:47 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Apr 23 2020

Patrick closed T928: install xfce4-power-manager on Whonix Host and Kicksecure Host as Resolved.

xfce4-power-manager is installed on Whonix-Host in 15.0.1.3.2-developers-only.

Apr 23 2020, 7:37 PM · Whonix 15, whonix-libvirt, live-mode, Whonix, Whonix-Host
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Great news! I am rebuilding the whole package Host+gw+ws now, excited to test it out! Will report asap.

Apr 23 2020, 2:18 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick reassigned T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on from Patrick to onion_knight2.
echo "options overlay metacopy=on" > /etc/modprobe.d/overlay.conf 
update-initramfs -u
Apr 23 2020, 11:01 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Apr 21 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

That would be OK but this is not my preferred solution. Reason: an unclean shutdown in Whonix installed persistent mode would with a subsequent boot into live mode would result in a failed reboot into Whonix installed live mode.

Apr 21 2020, 6:34 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Awesome analysis and description!

Apr 21 2020, 4:28 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Some progress made as of Whonix-Host 15.0.1.2.7:

Apr 21 2020, 1:15 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 30 2020

Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

[1] There is currently no trigger (systemd unit file) to execute /usr/lib/whonix-libvirt/persistent-mode-to-read-write.

Mar 30 2020, 3:27 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 26 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

As of 15.0.1.0.7, the following behavior is observed:

Mar 26 2020, 9:25 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 21 2020

Patrick added a project to T928: install xfce4-power-manager on Whonix Host and Kicksecure Host: Whonix 15.
Mar 21 2020, 10:39 AM · Whonix 15, whonix-libvirt, live-mode, Whonix, Whonix-Host

Mar 17 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Do you know how to run calamares hook scripts? I think I saw this before but I can't find it anymore. Or we have to invent our own mini calamares module similar to how package calamares-settings-debian invented new calamares modules?

Mar 17 2020, 1:25 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I don't know. Not implemented yet. Currently installed (persistent) Whonix-Host does not have live-boot option.

Mar 17 2020, 12:19 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a project to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on: Whonix 15.
Mar 17 2020, 12:14 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 16 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I think that is only here:
https://github.com/Whonix/Whonix/blob/master/build-steps.d/1800_copy_vms_into_raw#L35

Mar 16 2020, 3:47 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I agree that a solution would probably to run some kind of script at the end of the Calamares installtion to revert ro to rw.

Mar 16 2020, 7:22 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 15 2020

onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

There are two read-only parameters:

Mar 15 2020, 11:20 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I guess images will be set to kvm images read-only when booted in live iso mode (and probably live mode too). But once installed, images are still set to live mode. That would be probably kvm images read-only is set when run in iso live mode, cached in RAM and then installed to local disk?

Mar 15 2020, 8:45 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Good catch! Merged.

Mar 15 2020, 8:13 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Fixed by adding

Mar 15 2020, 4:22 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

I added whoami in the script and it confirmed it runs as root.

Mar 15 2020, 3:44 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Yes, it should be run by root. Maybe it is run by root but somehow the changes don't take place as they should. More debugging could help.

Mar 15 2020, 2:09 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

Pretty sure it is run by root.

Mar 15 2020, 1:37 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
onion_knight2 added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

It seems that https://github.com/Whonix/whonix-libvirt/blob/master/usr/lib/whonix-libvirt/live-mode-to-read-only is not ran by root. Thus it cannot get the virsh list --all (returns void) nor change the VM xml configuration file.

Mar 15 2020, 12:51 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Mar 12 2020

Patrick changed the status of T928: install xfce4-power-manager on Whonix Host and Kicksecure Host from Open to testing-in-next-build-required.

https://github.com/Whonix/anon-meta-packages/commit/9550d47959e37cb8cca508e169c121dc65cde342

Mar 12 2020, 8:34 AM · Whonix 15, whonix-libvirt, live-mode, Whonix, Whonix-Host
Patrick updated the task description for T928: install xfce4-power-manager on Whonix Host and Kicksecure Host.
Mar 12 2020, 8:30 AM · Whonix 15, whonix-libvirt, live-mode, Whonix, Whonix-Host

Aug 21 2019

Patrick changed the status of T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on from Open to testing-in-next-build-required.

Should work on manual invocation.

Aug 21 2019, 7:13 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode
Patrick added a comment to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on.

For the record, this is the diff being generated.

Aug 21 2019, 6:38 AM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Aug 19 2019

Patrick triaged T928: install xfce4-power-manager on Whonix Host and Kicksecure Host as Normal priority.
Aug 19 2019, 2:22 PM · Whonix 15, whonix-libvirt, live-mode, Whonix, Whonix-Host
Patrick added projects to T914: Whonix Host Live - enable KVM readonly mode - virt-xml vm-name --edit --disk readonly=on: whonix-libvirt, Whonix-Host.
Aug 19 2019, 1:47 PM · Whonix 15, Whonix-Host, whonix-libvirt, Whonix, live-mode

Jun 2 2016

Lobster added a comment to T512: Change suffix of compressed archives to .tar.xz.

I searched a bit in GitHub and I think these are the only lines that need to be changed:

Jun 2 2016, 9:00 AM · whonix-libvirt, KVM, Whonix

May 17 2016

Patrick updated subscribers of T512: Change suffix of compressed archives to .tar.xz.
May 17 2016, 8:13 PM · whonix-libvirt, KVM, Whonix
Lobster updated the task description for T512: Change suffix of compressed archives to .tar.xz.
May 17 2016, 8:08 PM · whonix-libvirt, KVM, Whonix
Lobster created T512: Change suffix of compressed archives to .tar.xz.
May 17 2016, 7:57 PM · whonix-libvirt, KVM, Whonix

Jul 27 2015

Patrick created whonix-libvirt.
Jul 27 2015, 1:59 PM