Fedora 15 end of life on 2012-06-26

53 views
Skip to first unread message

Zrubecz Laszlo

unread,
Jun 10, 2012, 5:06:10 PM6/10/12
to qubes...@googlegroups.com
Hi,

It was already a discussion, but now f15 is just history:
http://lists.fedoraproject.org/pipermail/devel-announce/2012-May/000936.html

Qubes 1.0 will come out with only 1 supported - but already outdated -
VM template?

No offense, really. Just I already asked about this issue long time ago...

--
Zrubi

Radoslaw Szkodzinski

unread,
Jun 10, 2012, 5:45:08 PM6/10/12
to qubes...@googlegroups.com
Part of the reason why I'm working on Sabayon. Far better platform to support.
(When I'm not battling other Qubes-related issues etc.)
I'm still working on the right "qubeize" script for it, as the install
wasn't trivial.

Perhaps I'll just post the image once it's done.

The real treat is the dom0 Fedora 13 - it's real old, esp. Xorg
drivers and mesa (used for compositing), as well as antique KDE.
Xen is also built with its internal (unused though w/o Qubes Pro)
qemu-dm, which is a real antique (0.10.2), and F13 qemu proper is not
built with xen support.

I suppose this will be rectified after 1.0... there are other bugs in
the core Qubes and qubes-manager still.

--
Radosław Szkodziński

Marek Marczykowski

unread,
Jun 10, 2012, 6:59:22 PM6/10/12
to qubes...@googlegroups.com, Zrubecz Laszlo
I'm already working on F17 template.
http://wiki.qubes-os.org/trac/ticket/580

--
Best Regards / Pozdrawiam,
Marek Marczykowski
Invisible Things Lab

signature.asc

Joanna Rutkowska

unread,
Jun 10, 2012, 7:00:24 PM6/10/12
to qubes...@googlegroups.com, Zrubecz Laszlo
Checking the list of active tickets, before posting is generally a good
idea...

https://wiki.qubes-os.org/trac/ticket/580

joanna.

signature.asc

7v5w7go9ub0o

unread,
Jun 10, 2012, 8:23:17 PM6/10/12
to qubes...@googlegroups.com
On 06/10/12 17:45, Radoslaw Szkodzinski wrote:

>
> Part of the reason why I'm working on Sabayon. Far better platform to
> support. (When I'm not battling other Qubes-related issues etc.) I'm
> still working on the right "qubeize" script for it, as the install
> wasn't trivial.
>
> Perhaps I'll just post the image once it's done.

err....... image....... is this a Qubes installation .iso built around
Sabayon!?!?
I
If you are building a Qubes-Sabayon based installation .iso, in parallel
with the development of the Qubes-Fedora iso., ISTM it would be *very*
interesting to Joanna and Marek (not to mention others on this list)
after they get some time to breath.

Radoslaw Szkodzinski

unread,
Jun 11, 2012, 3:55:19 AM6/11/12
to qubes...@googlegroups.com
On Mon, Jun 11, 2012 at 2:23 AM, 7v5w7go9ub0o <7v5w7g...@gmail.com> wrote:
> On 06/10/12 17:45, Radoslaw Szkodzinski wrote:
>
>>
>> Part of the reason why I'm working on Sabayon. Far better platform to
>> support. (When I'm not battling other Qubes-related issues etc.) I'm
>> still working on the right "qubeize" script for it, as the install
>> wasn't trivial.
>>
>> Perhaps I'll just post the image once it's done.
>
> err....... image....... is this a Qubes installation .iso built around
> Sabayon!?!?

Not yet and I'd have to handle Anaconda to make one, as well as
prepare a dom0 image. (which should actually be easier than domU)
First, I want to finish the script to construct the builder script -
it's still missing a few parts.
Afterwards, I'll replace the dom0.

> If you are building a Qubes-Sabayon based installation .iso, in parallel
> with the development of the Qubes-Fedora iso., ISTM it would be *very*
> interesting to Joanna and Marek (not to mention others on this list)
> after they get some time to breath.

I'm still handling a few minor remaining issues.
For starters, I'm using Pulseaudio in system mode to avoid any
unnecessary session management, as I was unable to get it to work
without consolekit.
I had to patch the vchan module preload hack to not attempt setuid,
but I was unable to get rid of the preload entirely yet. Perhaps this
will require a patch vs u2mfn module.

Consolekit itself is also (strongly?) deprecated and no longer
available due to Fedora decision for systemd to handle everything,
including making coffee and walking pets.
As there's no systemd in Sabayon, the init scripts had to be
rewritten... and they contain a few minor hacks.

I'm still tangling with the desktop file propagation and have to "fix"
the service list handling by adding pulseaudio and correct
meminfo-writer toggle.
And of course finish the builder script, which proved to be harder
than I wanted it to - I need to run a full install using entropy/equo
alone.

There are also other things I want to fix to smooth out the usage,
involving browser horizontal transfers between VMs.
(e.g. enter an unknown shop in an untrusted VM or DVM, then move the
state to the banking VM to complete the transaction once you're sure
it's legit after a proper confirmation)
Currently Qubes is wide open to operator errors (such as phishing
attacks) and I'm looking into ways to rectify that.

--
Radosław Szkodziński

gorka -

unread,
Jun 11, 2012, 7:52:30 AM6/11/12
to qubes...@googlegroups.com
You are doing a great job integrating qubes into FC17, congrats

Joanna Rutkowska

unread,
Jun 11, 2012, 7:56:45 AM6/11/12
to qubes...@googlegroups.com, gorka -
On 06/11/12 13:52, gorka - wrote:
> You are doing a great job integrating qubes into FC17, congrats

Actually, we're integrating FC17 into Qubes...

signature.asc

Ian Pirie

unread,
Jun 11, 2012, 8:21:29 AM6/11/12
to qubes...@googlegroups.com
Just wondering but what is your take on libvirt in f17?  

Here is a link to their take on it:
http://fedoraproject.org/wiki/Features/VirtSandbox

Ph.T

unread,
Jun 25, 2012, 2:57:13 PM6/25/12
to qubes...@googlegroups.com

On Mon, Jun 11, 2012 at 5:21 AM, Ian Pirie <pirie....@gmail.com> wrote:
Just wondering but what is your take on libvirt in f17?  

Here is a link to their take on it:
http://fedoraproject.org/wiki/Features/VirtSandbox

chapt 3 may be relevant:
http://qubes-os.org/files/doc/arch-spec-0.3.pdf

--
Americium Dream Documents
"(real opportunity starts with real documentation)

Radoslaw Szkodzinski

unread,
Jun 26, 2012, 5:01:33 AM6/26/12
to qubes...@googlegroups.com
On Mon, Jun 11, 2012 at 2:21 PM, Ian Pirie <pirie....@gmail.com> wrote:
> Just wondering but what is your take on libvirt in f17?
>
> Here is a link to their take on it:
> http://fedoraproject.org/wiki/Features/VirtSandbox

Libvirt on its own would be pretty nice to be used by Qubes.
I think it now supports Xen fully, but I'm not sure about stubdoms.

Qubes VM tools are actually quite annoying at times, since they force
overwrite VM setups instead of modifying the settings.
Also, the HVM part uses the old qemu-dm, which doesn't support
pulseaudio directly yet and has no HDA support.
The use of newer version of qemu in dom0 (actually in stubdoms) would
help with that.

KVM is an entirely different matter though and explained in the design paper.
It just doesn't have certain security features...

--
Radosław Szkodziński
Reply all
Reply to author
Forward
0 new messages