Version 17.2 of the Whonix distribution is now available, focused on ensuring guaranteed anonymity, security, and privacy protection. The distribution is based on Debian GNU/Linux and utilizes Tor for anonymity. The project's releases are distributed under the GPLv3 license. Virtual machine images in ova format are prepared for download for VirtualBox (2.1 GB with Xfce and 1.4 GB console). The image can also be converted for use with the KVM hypervisor.
A distinctive feature of Whonix is the separation of the distribution into two separately runnable components â Whonix-Gateway, which implements a network gateway for anonymous communications, and Whonix-Workstation with a desktop environment. Both components come within a single bootable image. Network access from the Whonix-Workstation environment is only possible through the Whonix-Gateway, isolating the working environment from direct interaction with the outside world and allowing the use of only fake network addresses. This approach helps protect the user from leaking their real identity. Adresa IP nĂ« rast tĂ« thyerjes sĂ« shfletuesit web dhe madje edhe gjatĂ« shfrytĂ«zimit tĂ« njĂ« dobĂ«sie qĂ« i jep sulmuesit qasje root nĂ« sistem.
Hakimi i Whonix-Workstation do tâi lejojĂ« sulmuesit tĂ« marrĂ« vetĂ«m parametrat e rremĂ« tĂ« rrjetit, pasi IP reale dhe parametrat DNS janĂ« tĂ« fshehur pas portĂ«s sĂ« rrjetit, qĂ« operon mbi Whonix-Gateway, e cila drejton trafikun vetĂ«m pĂ«rmes Tor. Duke pasur parasysh, komponentĂ«t e Whonix janĂ« krijuar pĂ«r t'u iniciuar si sisteme mikpritĂ«se, pra nuk pĂ«rjashtohet mundĂ«sia e shfrytĂ«zimit tĂ« dobĂ«sive kritike 0-day nĂ« platformat e virtualizimit, tĂ« cilat mund tĂ« ofrojnĂ« akses nĂ« sistemin mikpritĂ«s. PĂ«r kĂ«tĂ« arsye, nuk rekomandohet qĂ« Whonix-Workstation tĂ« fillojĂ« nĂ« tĂ« njĂ«jtin kompjuter si Whonix-Gateway.
Whonix-Workstation, by default, provides a user environment with Xfce. Included in the distribution are programs such as VLC, Tor Browser, Thunderbird+TorBirdy, Pidgin, etc. The Whonix-Gateway package contains a set of server applications, including Apache httpd, nginx, and IRC servers, which can be used to organize Tor hidden services. Tunneling over Tor for Freenet, i2p, JonDonym, SSH, and others is possible. VPNKrahasoni Whonix me Tails, Tor Browser, Qubes OS TorVM dhe corridor mund të gjendet në këtë faqe. Nëse dëshiron, përdoruesi mund të kufizohet vetëm me Whonix-Gateway dhe të lidhë përmes tij sistemet e tij të zakonshme, përfshirë Windows, duke ofruar mundësinë për të siguruar një dalje anonime për stacionet e punës që tashmë janë në përdorim.

Ndryshimet kryesore:
- The builds based on the components of the secure distribution Kicksecure have been updated, enhancing Debian with additional mechanisms and settings for increased security (AppArmor for isolation, updates via Tor, use of the PAM module tally2 to protect against password brute-forcing, entropy expansion for RNG, disabling suid, absence of open network ports by default, adherence to recommendations from the KSPP project (Kernel Self Protection Project), adding protection against leaking CPU activity information, etc.).
- By default, there is a connection to the Tor network (without calling the connection wizard on first boot). Users who require direct network access are offered to call the ACW (Anon Connection Wizard) separately.
- The Whonix-Firewall has been migrated from iptables to nftables.
- Përmirësuar mbështetje për IPv6.
- Puna vazhdohet me versionin eksperimental Live të Whonix-Host, i pajisur me instalues. Ky version bazohet në mjedisin Kicksecure dhe është krijuar për të ofruar një mjedis të sigurt pritës për ekzekutimin e makinave virtuale me "Whonix-Gateway" dhe "Whonix-Workstation".
- Versionet e Tor dhe Tor Browser janë përmirësuar.
- Janë bërë ndryshime për mbështetje të rrjetit të decentralizuar P2P Bisq 2, i cili është i destinuar për shkëmbimin dhe tregtimin e kriptovalutave.
- Janë përmirësuar shabllonët për sistemin operativ Qubes. Kalimi është bërë nga pulseaudio në pipewire. Për të drejtuar trafikun përmes Tor është përdorur tinyproxy dhe protokolli SOCKS.
- Kur ekzekutohet nën menaxhimin e hipervizorit KVM, madhësia e RAM në parametrat e makinës virtuale Whonix-Gateway është rritur në 1280 MB, ndërsa për Whonix-Workstation është rritur në 2048 MB, duke përputhur konfigurimet që ishin përdorur më parë për VirtualBox.
Burimi: opennet.ru
