I guess we can also create a user account ego
on whonix.org server so you can (next time) upload it directly to whonix.org server. Please send me your ssh public key by e-mail. (We have public key login only, no passwords.)
What should we use as file locations on https://download.whonix.org
? What about…?
https://download.whonix.org/windows/13.0.0.1.1/Whonix-Installer.exe
https://download.whonix.org/windows/13.0.0.1.1/Whonix-Installer.exe.asc
Good day,
I’d say those locations are fine. Just send the public key.
Have a nice day,
Ego
Is that the thing I am supposed to drop into /home/ego/.ssh/authorized_keys
? Do you know if that will work?
Good day,
I believe, though I’m not certain. I usually don’t rely on SSH that much to be honest.
Have a nice day,
Ego
Due to CVE-2016-1252
(https://forums.whonix.org/t/apt-get-upgrading-security-issue-cve-2016-1252), I suggest to delay public testing until Whonix 13.0.0.1.2 was released.
Good day,
Ok, in the meantime I may be able to port everything to MUI2.
Have a nice day,
Ego
Good day,
Will build a new version now that 13.0.0.1.4 is out.
Have a nice day,
Ego
Worth trying it 13.0.0.1.4 even boots. But if it does, it is probably alright since only the Whonix and Debian stable upgrades are included.
Still testing 13.0.0.1.4 but looks sane so far. Release announcement coming soon.
Update:
What should we use as file locations on https://download.whonix.org? What about…?
https://download.whonix.org/windows/Whonix-Installer-13.0.0.1.4.exe
https://download.whonix.org/windows/Whonix-Installer-13.0.0.1.4.exe.asc
Replied again to @Ego on ssh. [Let’s delete these mail notification posts. Not sure they are even useful?]
Good day,
Really? Now? Or are you talking about the “Key has been added” one? Cause don’t worry, I saw that. Just wanted to wait with an answer till I finally got the build on the server.
Have a nice day,
Ego
Ego:
Or are you talking about the “Key has been added” one?
Yes, only about that one.
Just wanted to wait with an answer till I finally got the build on the
server.
Sure.
To sort out that strange ssh issue… I created a new user ego
on my local disk and populated it with the following files.
ego-ssh-test - upload script
.ssh - .ssh folder
.ssh/known_hosts - preconfigured known_hosts
.ssh/id_ed25519.pub - ssh public key
.ssh/id_ed25519 - ssh private key
some-file - just a test file
some-file.asc - just another test file
Then tar’ed it, sent it to another VM, untared, moved to the home folder and run ./ego-ssh-test
. Worked. Just now sent ego.tar.gz
to @Ego.
Good day,
Success. Finally works. We might want to find a better solution though and use this key pair only in this solitary instance. Still don’t get why it didn’t work before too, as Github and my Amazon Instances had no issue accepting the same keys…
Either way, is currently uploading the Installer.
Have a nice day,
Ego
Good day,
Just uploaded it together with the signature. My Public Key may be found here: Mailvelope Key Server
The output if verified should be:
gpg: Signature made Fri 06 Jan 2017 10:55:22 PM UTC
gpg: using RSA key 0x584A8DF9FBB8E862
gpg: Good signature from "Ego <ego-superego-id@protonmail.com>" [unknown]
gpg: WARNING: This key is not certified with a trusted signature!
gpg: There is no indication that the signature belongs to the owner.
Primary key fingerprint: 2B72 83C9 D382 4D7F 9D11 8364 584A 8DF9 FBB8 E862
Have a nice day,
Ego
Great!
Can you announce it in Whonix blog please, call for public testing?
Good day,
I’m not certain, though I think I don’t have writing privileges there yet.
Have a nice day,
Ego
New admin account Ego
created just now and password sent by e-mail.