Update for Qubes OS 4.2.1, which uses virtualization to isolate applications

The release of the Qubes 4.2.1 operating system has been announced, implementing the idea of using a hypervisor for strict isolation of applications and OS components (each class of applications and system services operates in separate virtual machines). A system with 16 GB of RAM is recommended for operation (minimum — 6 GB) and a 64-bit Intel or AMD CPU with support for VT-x with EPT/AMD-v with RVI and VT-d/AMD IOMMU technologies; an Intel GPU is preferable (NVIDIA and AMD GPUs have not been thoroughly tested). The size of the installation image is 6 GB (x86_64).

Applications in Qubes are divided into classes depending on the importance of the processed data and the tasks being solved. Each class of applications (for example, work, entertainment, banking operations), as well as system services (network subsystem, firewall, storage management, USB stack, etc.), run separately. virtual machines, launched using the Xen hypervisor. These applications are available within a single desktop and are visually highlighted with different colors for the window borders. Each environment has read access to the base root filesystem and local storage, which does not intersect with the storage of other environments, and a special service is used to facilitate the interaction of applications.

Fedora and Debian package bases can serve as the foundation for forming virtual environments; the community also supports templates for Ubuntu, Gentoo, and Arch Linux. Access to applications in a Windows virtual machine can also be arranged, along with the creation of virtual machines based on Whonix to provide anonymous access through Tor. The user interface is built on Xfce. When a user launches an application from the menu, that application starts in a specific virtual machine. The content of the virtual environments is determined by a set of templates.

The new release features updates to the versions of software that form the base system environment (dom0). A template has been prepared for creating virtual environments based on Fedora 39. By default, the Linux 6.6 kernel is used, which has reduced the number of situations requiring the installation of the kernel-latest package on systems with new hardware.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster