Qubes OS VS Libreboot

5 Antworten [Letzter Beitrag]
404
404
Offline
Beigetreten: 04/09/2015

I'm currently running Qubes Os on a Thinkpad X220.

Should i consider a Thinkpad X200 with Libreboot and Trisquel since it has Intel ME disabled?

What are the benefits of a Librebooted system over Qubes OS?

GNUser
Offline
Beigetreten: 07/17/2013

QubesOS and Trisquel are both operating systems. That means they run AFTER the machine has already been initalized (booted) using the BIOS. Libreboot is a replacement for the BIOS that come in most machines, which is proprietary.
Advantages of Libreboot over other BIOS? Faster boot, especially because it has GRUB built-in. Secure by default, there are no back doors written in, being free software you can inspect the code or have someone doing it for you. Also, Libreboot makes a better use of the Thinkpad machine than the default BIOS, for example it gives more memory to the graphics card (256 vs 32 mbs).
On top of Libreboot you need an OS which you can choose. I don't know if QubesOS is supported or not. Check the website.
HOWEVER, I know Qubes is supposed to be a high level of security, and I can accept that since you have multiple Virtual Machines running and all of that... however my understanding is that there is still proprietary software running in your system and therefore you must accept that there might be a backdoor. Trisquel is 100% free software and therefore better in that regard. If you are willing to take the time, you can make Trisquel as secure as other distros. It is a matter of not being so by default.

404
404
Offline
Beigetreten: 04/09/2015

Unfortunately Qubes OS is only supported by Coreboot.
I love the approach of Qubes OS by compartmentalize every aspect of your digital life in cubes(VMs).
This makes me not accept the idea of having a single point of failure (in this case Trisquel) because i believe that we can benefit from Xen which has low attack of surface since has less lines of code compared to other Type 1 Hypervisors.Plus the fact that i think we need to compartmentalize our browsing habits.

A nice thing would be to have an X200 with Libreboot as a BIOS and Qubes OS based on Trisquel/Parabola Templates instead of Fedora/Debian.

andyprough
Offline
Beigetreten: 02/12/2015

Have you tried firejail? I'll bet you can install it on Trisquel, it installs easily on Debian. It's an extremely simple and low-resource way to compartmentalize programs. And it doesn't require you to make a radical paradigm shift in the way you use your computer, like Qubes does.

SuperTramp83

I am a translator!

Offline
Beigetreten: 10/31/2014

>Have you tried firejail?

I second firejail. It's as easy to set as it is powerful. o/

GNUser
Offline
Beigetreten: 07/17/2013

Like I said, I am not familiar with QubesOS support, however if it is only supported by Coreboot, it might mean that there are non-free dependencies. I might be wrong.
Anyway, the difference you asked was about Qubes and Libreboot, I hope I clarified your question.

Depends on your threat model I guess, I prefer to go with Libreboot and Trisquel, even though if I was in a higher threat level I would maybe do something different.