From 517be51ba25b78c5dde80a33784b4937b7eea9ae Mon Sep 17 00:00:00 2001 From: thanharrison Date: Tue, 10 May 2022 14:52:33 -0400 Subject: [PATCH 1/9] update Qubes version to 4.1.0 --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index e335f46..bc207bb 100644 --- a/guide.md +++ b/guide.md @@ -4922,7 +4922,7 @@ We will follow the instructions from their own guide [[Archive.org]][369] so it should be disabled in the BIOS/UEFI settings.) -- Download the latest Qubes OS 4.0.x installation ISO according to their hardware compatibility list. +- Download the latest Qubes OS 4.1.x installation ISO according to their hardware compatibility list. - Prepare a USB key with the Qubes OS ISO file From 8381bbf7780278a678f10843b384c017686a3d06 Mon Sep 17 00:00:00 2001 From: thanharrison Date: Tue, 10 May 2022 15:12:40 -0400 Subject: [PATCH 2/9] Add Qubes OS Master Signing Key --- guide.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/guide.md b/guide.md index bc207bb..a014a26 100644 --- a/guide.md +++ b/guide.md @@ -4924,6 +4924,8 @@ We will follow the instructions from their own guide + - Prepare a USB key with the Qubes OS ISO file - Install Qubes OS according to the installation guide: @@ -4932,6 +4934,8 @@ We will follow the instructions from their own guide . Check by obtaining the fingerprint from multiple independent sources in several different ways as recommended. This is to ensure the image has not been tampered with. Do not skip this vital step even though we know we are getting the ISO from a trusted source. + - If you cannot use Tor at all, there is also no point in installing Whonix. So, you should disable Whonix installation within the Software Selection Menu. ### Lid Closure Behavior: From 245c1665f85c65f6557eacb43d543dbf9d83d927 Mon Sep 17 00:00:00 2001 From: Alex Anderson Date: Wed, 11 May 2022 01:51:02 +0000 Subject: [PATCH 3/9] Add Qubes master key fingerprint --- guide.md | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/guide.md b/guide.md index a014a26..647fb9f 100644 --- a/guide.md +++ b/guide.md @@ -4938,6 +4938,10 @@ We will follow the instructions from their own guide Date: Wed, 11 May 2022 01:54:40 +0000 Subject: [PATCH 4/9] Added stuff --- guide.md | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 647fb9f..a791103 100644 --- a/guide.md +++ b/guide.md @@ -4940,7 +4940,9 @@ We will follow the instructions from their own guide .* ### Lid Closure Behavior: From 9d01ae480ba92d09ab238ded32a480ec9ada6e32 Mon Sep 17 00:00:00 2001 From: Alex Anderson Date: Wed, 11 May 2022 01:58:48 +0000 Subject: [PATCH 5/9] Added archive.org irror for Qubes verification guide --- guide.md | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/guide.md b/guide.md index a791103..ec559a7 100644 --- a/guide.md +++ b/guide.md @@ -4934,7 +4934,7 @@ We will follow the instructions from their own guide . Check by obtaining the fingerprint from multiple independent sources in several different ways as recommended. This is to ensure the image has not been tampered with. Do not skip this vital step even though we know we are getting the ISO from a trusted source. + - Be absolutely sure that you are verifying the signature of the ISO, which you can find on this page: [[Archive.org]][1367]. Check by obtaining the fingerprint from multiple independent sources in several different ways as recommended. This is to ensure the image has not been tampered with. Do not skip this vital step even though we know we are getting the ISO from a trusted source. - If you cannot use Tor at all, there is also no point in installing Whonix. So, you should disable Whonix installation within the Software Selection Menu. @@ -4942,7 +4942,7 @@ To be sure your Qubes ISO hasn't been tampered with, you should get the Qubes ma The Qubes master signing key fingerprint should match `427F 11FD 0FAA 4B08 0123 F01C DDFA 1A3E 3687 9494`. -*Remember to read the guide to verifying signatures on the Qubes website: .* +*Remember to read the guide to verifying signatures on the Qubes website: [[Archive.org]][1367].* ### Lid Closure Behavior: @@ -14801,3 +14801,4 @@ You can find some introduction on these on these projects: [1364]: https://web.archive.org/web/https://en.wikipedia.org/wiki/Rubber-hose_cryptanalysis [1365]: https://web.archive.org/web/https://github.com/psal/anonymouth [1366]: https://web.archive.org/web/https://psal.cs.drexel.edu/index.php/Main_Page + [1367]: https://web.archive.org/web/20220511015546/https://www.qubes-os.org/security/verifying-signatures/ From c5c1898beab3892879e2b562d184cbfb065bbd08 Mon Sep 17 00:00:00 2001 From: Alex Anderson Date: Wed, 11 May 2022 02:03:39 +0000 Subject: [PATCH 6/9] Add explanation to why verification should not be skipped --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index ec559a7..16e46f3 100644 --- a/guide.md +++ b/guide.md @@ -4934,7 +4934,7 @@ We will follow the instructions from their own guide [[Archive.org]][1367]. Check by obtaining the fingerprint from multiple independent sources in several different ways as recommended. This is to ensure the image has not been tampered with. Do not skip this vital step even though we know we are getting the ISO from a trusted source. + - Be absolutely sure that you are verifying the signature of the ISO, which you can find on this page: [[Archive.org]][1367]. Check by obtaining the fingerprint from multiple independent sources in several different ways as recommended. This is to ensure the image has not been tampered with. Do not skip this vital step even though we know we are getting the ISO from a trusted source, because it's possible for the Qubes website to be compromised. - If you cannot use Tor at all, there is also no point in installing Whonix. So, you should disable Whonix installation within the Software Selection Menu. From 48601431dd38c237152c2398fa3574ea8e246ae7 Mon Sep 17 00:00:00 2001 From: Alex Anderson Date: Wed, 11 May 2022 02:11:13 +0000 Subject: [PATCH 7/9] Use more coloquial language --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 16e46f3..7f76f1d 100644 --- a/guide.md +++ b/guide.md @@ -4938,7 +4938,7 @@ We will follow the instructions from their own guide Date: Wed, 11 May 2022 02:26:24 +0000 Subject: [PATCH 8/9] Made changes --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 7f76f1d..4c076c9 100644 --- a/guide.md +++ b/guide.md @@ -5002,7 +5002,7 @@ After you are connected to a Wi-Fi you need to update Qubes OS and Whonix. You m ### Updating Whonix from version 15 to version 16: -Follow the instructions on [[Archive.org]][371] +Follow the instructions on [[Archive.org]][371]. *If you're running Qubes 4.1, this is already done for you.* ### Hardening Qubes OS: From 0ebc64bac83cb8c632ec74b8dedc60c5625029fe Mon Sep 17 00:00:00 2001 From: Alex Anderson Date: Wed, 11 May 2022 02:26:52 +0000 Subject: [PATCH 9/9] Made changes --- guide.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/guide.md b/guide.md index 4c076c9..2111a11 100644 --- a/guide.md +++ b/guide.md @@ -4938,7 +4938,7 @@ We will follow the instructions from their own guide