Add FAQ entry explicitly stating that Qubes uses FDE

Fixes QubesOS/qubes-issues#2151
This commit is contained in:
Andrew David Wong 2016-07-04 05:01:47 -07:00
parent 0f917b3ee3
commit 1f12352489
No known key found for this signature in database
GPG Key ID: 8CE137352A019A17

View File

@ -15,6 +15,7 @@ Qubes Users' FAQ
--------------------------------------- ---------------------------------------
* [Is Qubes just another Linux distribution?](#is-qubes-just-another-linux-distribution) * [Is Qubes just another Linux distribution?](#is-qubes-just-another-linux-distribution)
* [How is Qubes different from other security solutions?](#how-is-qubes-different-from-other-security-solutions) * [How is Qubes different from other security solutions?](#how-is-qubes-different-from-other-security-solutions)
* [Does Qubes use full disk encryption (FDE)?](#does-qubes-use-full-disk-encryption-fde)
* [What is the main concept behind Qubes?](#what-is-the-main-concept-behind-qubes) * [What is the main concept behind Qubes?](#what-is-the-main-concept-behind-qubes)
* [What about other approaches to security?](#what-about-other-approaches-to-security) * [What about other approaches to security?](#what-about-other-approaches-to-security)
* [What about safe languages and formally verified microkernels?](#what-about-safe-languages-and-formally-verified-microkernels) * [What about safe languages and formally verified microkernels?](#what-about-safe-languages-and-formally-verified-microkernels)
@ -66,6 +67,10 @@ If you really want to call it a distribution, then it's more of a "Xen distribut
Please see [this article](http://theinvisiblethings.blogspot.com/2012/09/how-is-qubes-os-different-from.html) for a thorough discussion. Please see [this article](http://theinvisiblethings.blogspot.com/2012/09/how-is-qubes-os-different-from.html) for a thorough discussion.
### Does Qubes use full disk encryption (FDE)?
Yes, of course! Full disk encryption is enabled by default. Specifically, we use [`LUKS`](https://en.wikipedia.org/wiki/Linux_Unified_Key_Setup)/[`dm-crypt`](https://en.wikipedia.org/wiki/Dm-crypt). You can even [manually configure your encryption parameters](/doc/encryption-config/), if you like!
### What is the main concept behind Qubes? ### What is the main concept behind Qubes?
To build security on the “Security by Compartmentalization (or Isolation)” principle. To build security on the “Security by Compartmentalization (or Isolation)” principle.