Update of OS Qubes 4.1.2, which uses virtualization for application isolation

An update for the Qubes operating system 4.1.2 has been released, implementing the idea of using a hypervisor for strict isolation of applications and OS components (each class of applications and system services operates in separate virtual machines). A system with 6 GB of RAM and a 64-bit Intel or AMD CPU supporting VT-x with EPT/AMD-v with RVI and VT-d/AMD IOMMU technologies is required, and it is preferable to have an Intel GPU (NVIDIA and AMD GPUs have not been tested thoroughly enough). The size of the installation image is 6 GB.

Applications in Qubes are divided into classes depending on the importance of the processed data and the tasks being solved. Each class of applications (for example, work, entertainment, banking operations), as well as system services (network subsystem, firewall, storage management, USB stack, etc.), run separately. virtual machines, launched using the Xen hypervisor. These applications are available within a single desktop and are visually highlighted with different colors for the window borders. Each environment has read access to the base root filesystem and local storage, which does not intersect with the storage of other environments, and a special service is used to facilitate the interaction of applications.

Fedora and Debian package bases can serve as the foundation for forming virtual environments; the community also supports templates for Ubuntu, Gentoo, and Arch Linux. Access to applications in a Windows virtual machine can also be arranged, along with the creation of virtual machines based on Whonix to provide anonymous access through Tor. The user interface is built on Xfce. When a user launches an application from the menu, that application starts in a specific virtual machine. The content of the virtual environments is determined by a set of templates.

The new release notes only the updates to the versions of programs that form the base system environment (dom0). A template has been prepared for creating virtual environments based on Fedora 37. The installer now includes the ability to use USB keyboards. The boot menu of the installation image offers the kernel-latest option to use the latest kernel release with extended hardware support.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster