Is this possible? Take a look, please

Hi Whonix Community,

I’m new to this Project and wana start to protect my privacy. Now i did read the Wiki a bit and wana just ask if this scenario here work?:
https://img.bi/#!PzaYBmm!kDxe1OvjEU7aaQ55GSMeXY18j6zeZuUTVcEko5xB

Maybe when you make modifications to your router. But while you’re at it, why not use Whonix-Gateway as your router?

Another less related note:
Android devises are usually connected by wifi, not physical lan cable. Once a device is compromised, they can jump onto any other available wifi.

Mhhh Whonix-Gateway as router? Is that hard to configure? I am not at home, but i thought I can disable the whole internet but for accepted clients. So I should better connect the raspberry to the router and all devices to the raspberry?
But that the Gateway can have much ProxyServer’s with different node’s, did I see that rigth?

[quote=“Patrick, post:2, topic:302”]Another less related note:
Android devises are usually connected by wifi, not physical lan cable. Once a device is compromised, they can jump onto any other available wifi.[/quote]

Android is anyway a whole trojan, but my girlfriend wana use it and she have all google & facebook shit on her phone. So I am very interesting for that Stream Isolation.

p.s.: sry for my bad english

pps: (ach cool du kommst aus leipzig? da ziehe ich auch bald hin :slight_smile: )

I see. The definition “router” is too ambiguous. My idea was, that you go online with a standard device (adsl router / 3g stick / etc.) which is connected to Whonix-Gateway. Then connect all devices through Whonix-Gateway. Looks way simpler to me than “all devices connected to RP, which decides to forward a few connections to Whonix-Gateway”.

Is that hard to configure?
Whole computer stuff Linux is imho very hard and not really user friendly.
I am not at home, but i thought I can disable the whole internet but for accepted clients.
Devices would have to somehow authenticate themselves. Using ARP spoofing defense, ssh or vpn. (The https://www.whonix.org/wiki/Connections_between_Whonix-Gateway_and_Whonix-Workstation page is related, similar.) This is more like a general linux / router config question. I haven't done this yet.
So I should better connect the raspberry to the router and all devices to the raspberry?
Yes. Installing Whonix-Gateway on RP is another challenge. For one you need two network interfaces. Then follow physical isolation instructions. (https://www.whonix.org/wiki/Dev/Build_Documentation/Physical_Isolation) There was an older forum thread about RP (http://sourceforge.net/p/whonix/discussion/general/thread/30381157/).
But that the Gateway can have much ProxyServer's with different node's, did I see that rigth?
Yes, see: https://www.whonix.org/wiki/Multiple_Whonix-Workstations
Android is anyway a whole trojan, but my girlfriend wana use it and she have all google & facebook shit on her phone. So I am very interesting for that [b]Stream Isolation[/b].
Stream isolation / Tor has less value when one logs into accounts, that know your name anyway. However, you get location privacy. And more harsh account verification requests, of course. See also: https://www.whonix.org/wiki/Multiple_Whonix-Workstations
pps: (ach cool du kommst aus leipzig? da ziehe ich auch bald hin :) )
Ja. Cool.

Ok thx for your help, will look how to get some Ethernet Ports for my Raspberry and then I will start that.
But one question still exist: Is it possible still to go then out with the normal ISP IP from client? Maybe with a Proxy authentication? I do play some online games and want still play them (yes I will try that with Whonix-Workstation)

Possible in theory, but in practice it is neither researched nor documented how to do this with Whonix-Gateway.

[quote=“Patrick, post:6, topic:302”][quote author=deekay link=topic=318.msg2137#msg2137 date=1401258791]
Is it possible still to go then out with the normal ISP IP from client? Maybe with a Proxy authentication? I do play some online games and want still play them (yes I will try that with Whonix-Workstation)
[/quote]
Possible in theory, but in practice it is neither researched nor documented how to do this with Whonix-Gateway.[/quote]

Opensource is the key for the win, I will look for a solution