Is there anything stopping me from using the Fedora template as the default template (sys-net, sys-usb, sys-firewall will be Fedora) on my Qubes system?
My point is: Does choosing Fedora as the default template on my Qubes system negatively affect my privacy, anonymity, and security compared to choosing Debian as the default template on my Qubes system?
I will add that I use the Qubes system mainly to use Whonix.
Generally no for both questions, although packages in Debian are typically less up-to-date compared to Fedora, and this topic is out of scope for the Qubes-Whonix category:
There’s currently no strong recommendation in the wiki that states you absolutely should use one or another host operating system / template.
That’s the essential support answer. If you enjoy diving deeper into privacy, security, and anonymity, read on.
Further context (optional reading):
Asking “without worrying about my privacy, security, anonymity” is problematic because it suggests a guarantee or yes/no answer. These areas are never absolute. Each involves trade-offs that depend on configuration and threat model. A useful answer always starts with “it depends,” otherwise the discussion becomes endless.
If you wish to learn all of the details, start with reading the wiki:
This documentation is a course on security on the Internet. Kicksecure is a technological means to staying secure online, but staying safe necessitates complete behavioral change; it is a complex problem without an easy solution. The more you know, the safer you can be.
This documentation is a crash course in anonymity and security on the Internet. Whonix is a technological means to anonymity, but staying safe necessitates complete behavioral change; it is a complex problem without an easy solution. The more you know, the safer you can be.
Generally yes. Qubes OS comes with a reasonable default configuration that does not need to be modified unless you understand what you are doing, along with its potential consequences. If you want a more detailed answer, you will need to define a threat model.