I was going to have a little side quest and try Whonix, which is known to be a privacy focused distro that can be run in VirtualBox. However, I ran into trouble, that can be fixed by reading some documentation (it was related to adding additional kernel components). However, I'll do that later on because learning should be my priority. Before focus solidifies, I often need these little diversions to get my brain locked in.

#Whonix #tonight

#Whonix #Linux jest ciekawy ;-)

He who controls the Time, Controls the Chances!

Are dispvm.py type=int really numbered randomly? #maths #mathematics #randomness (still searching for a solution) @ThePSF @pythonclcoding

#Serendipity in computation with the perfect random number generator. Hyper-order is deranged.

#QubesOS #Entropy Verification
https://forums.whonix.org/t/entropy-quality/18057

"just because *you* can't figure it out, and just because I can't figure it out doesn't mean that it is ipso facto something which a really bright NSA analyst working in Fort Meade can't figure out. (Or heck, a really clever Intel engineer who has full visibility into the internal design of an Intel CPU..." see -->
https://kicksecure.com/wiki/Dev/Entropy
https://chronox.de
https://systemd.io/RANDOM_SEEDS/
#Whonix @whonix

PARAMS #Kernel #Linux
* random.trust_cpu=off
* rng_core.default_quality=1000
(enroll may not be possible in #coreboot BIOS)

Embeded Security (#TPM)
https://www.thinkwiki.org/wiki/Embedded_Security_Subsystem

Interesting code-base for robust randomness
--> crates.io rands #rust
https://crates.io/crates/rand

Entropy Quality

I am trying to confirm that it is safe to generate very high-importance private keys in Qubes Whonix. I’ve read every Wiki post and GitHub issue that Qubes/Whonix have on this topic (excellent work there Patrick) and I am close to being confident enough, but I want to be certain of a few more things. I think the main sources of credited entropy are the kernel’s in-built “Linus Jitter Dance” [1][2], haveged and jitterentropy-rngd. There’s also some uncredited entropy from dom0’s getrandom(0) [3]...

Whonix Forum
#whonix version 18 is broken for me with virtualbox.
Can't set the right keyboard layout - there is an entry complaining about that for ch_fr or fr_ch in the forum - and copy/paste on Virtualbox does no longer work.
I'll remove Whonix 17 but I don't understand why the latest and greatest #wayland was chosen but is not really usable.
Obviously, there will be no solution in the foreseeable future for virtualbox and depending on it was a mistake !

La sicurezza di un sistema operativo vista da una prospettiva diversa, per chi non vuole davvero fidarsi di nulla.
https://estelinux.serviziliberi.it/qubes-os-quando-la-sicurezza-diventa-architettura/

#QubesOS #Whonix #Sicurezza #Privacy #SoftwareLibero #SistemiOperativiSicuri

Qubes OS: quando la sicurezza diventa architettura

Immagina un sistema operativo che non si limiti a “difendersi” dalle minacce, ma che le renda quasi irrilevanti per progettazione. Non un antivirus, non un firewall aggiuntivo, ma una vera filosofia: separare tutto in compartimenti stagni. Benvenuto nel mondo di Qubes OS. L’idea alla base è semplice quanto potente:

ILS Este

Dylan "I read the law and I'm here to implement it" M. Tylor gets up in the morning and decides to write age verification code that he himself calls "hilariously pointless and ineffective", within a week strikes 4 repos off his list, and i bet the Linux Kernel is going to be next (I'm joking... mostly)

It's worth noting that the first people who approved the PR on systemd repo are 2 big tech employees - Mircoslop and Redhat/IBM (why I'm i not surprised!!), someone then opened a revert PR, Lennart Poettering (systemd creator) closed it.. thus blocking the removal

And this is why you now have Liberated Systemd, a fork of systemd without Age verification.. which IS 'hilariously pointless and ineffective' at saving children

when engineers starts reading the law like a specification, this is what you get.. useful idiots.

#ageverification #authoritarianism #SaveTheChildren #thinkofthechildren #epstein #surveillance #bigtech #government #privacy #anonymity #humanrights #FreeSoftware #freespeech #ubuntu #linux #fedora #arch #archlinux #agelesslinux #artix #whonix #tails #systemd #opensource #openknowledge #openaccess #cyberlaw #infosec

This week's Linux and FOSS news:

LINUX NEWS

elementaryOS dev announces to comply with California law to avoid fines:
https://mastodon.online/@danirabbit/116250765623660340
(I mean, losing a source of income is a valid concern on her part, but it doesn't justify that she risks the privacy of the users. Even though she says in a reply that asking for ID is different, I wouldn't be so sure at this point that she won't consider implementing that too, just to stay in business)

Fedora Project Leader Suggests Linux Distros Could Adopt Apple's Age Verification API:
https://itsfoss.com/news/fedora-leader-suggests-age-verification-api/
(Adopting a big tech corp's API? What the hell did he smoke? It's even worse than the Systemd stuff. I already had some trust issues with Fedora, but now it becomes pretty obvious, that they shouldn't be trusted)

Devuan rejects compliance:
https://xcancel.com/jaromil/status/2034694340249821329
(Now this is great to see. I'm considering getting away from Systemd due to their attitude to comply, Devuan is the primary distro I consider, because it would let me keep the Debian base but get rid of Systemd at the same time)

Slackware also rejects compliance:
https://www.linuxquestions.org/questions/slackware-14/how-is-ab-1043-going-to-impact-slackware-4175762747/page15.html#post6626190
(3 Systemd-free distros not complying at this point, there are quite a few distros to go to.)

And ZorinOS too:
https://forum.zorin.com/t/statement-about-age-verification-laws/61052
(A really good summary of this whole age nonsense, a worthy read)

And MX Linux also joins the camp:
https://mxlinux.org/blog/mx-news-week-ending-march-28-2026/

Kicksecure/Whonix changes plan, "unlikely" to comply, after user backlash:
https://www.kicksecure.com/wiki/Age-api#status

Inside the Systemd Age Verification Debate: Developer Responds to Criticism:
https://itsfoss.com/dylan-taylor-systemd-controversy/
(I think he isn't the one to blame here, but rather the Systemd project. If he didn't do it, someone else would do it. That's what we get from a corporate-backed project I guess. Harrassing him won't do anything, it's just naive, childish behavior.)

Someone Forked Systemd to Strip Out Its Age Verification Support:
https://itsfoss.com/news/systemd-fork-strips-out-age-verification/

(more Linux and FOSS news in comments)

#News #Linux #LinuxNews #AgeVerification #elementaryOS #Devuan #ZorinOS #Whonix #Systemd

Danielle Foré (@[email protected])

When you tell me to just not implement age declaration, do you understand you’re asking me to risk thousands of dollars in fines? Which means realistically the only way for me to not follow the law is to close my business and stop making elementary OS. Do you think it makes sense for me to decide to have no income right now in the middle of massive tech layoffs in a purely symbolic act of protest? Do you really fully understand this is what you’re asking of me?

Mastodon

Honestly.. at first i was surprised (and disappointed) at some major Linux distributions not having a clear answer to age verification laws after weeks of their announcement, but then lots of them started discussing them. really! discussing them! what's there to be discussed?

"maybe we can implement age checks in a privacy respecting manner? 👉👈"

And it's just so happens this serves the corporation that you work for best interests! Big tech "Foss devs" have a clear conflict of interest here

#ageverification #authoritarianism #SaveTheChildren #thinkofthechildren #epstein #surveillance #bigtech #government #privacy #anonymity #humanrights #FreeSoftware #freespeech #ubuntu #linux #fedora #arch #archlinux #agelesslinux #artix #whonix #tails #systemd #opensource #openknowledge #openaccess #cyberlaw #infosec

...en plus de ca, le premier astronaute "africain" MAIS blanc quoi 🤷‍♀️ et touriste spatial, donc pas meme d'embryon de début d'effort vrmt " " mérité " " (' deja léger comme concept)

Bref, fedora va suivre, la distribution soit disant sécurisé et confidentielle #Whonix aussi, UN COMBLE
...