Long Wiki Edits Thread

@0brand

https://github.com/Whonix/whonix-repository/commit/f04391c5ad438732c5a9ae886b926530e277e9cd

Onionizing repositories will need to be updated when these patches hit stable. Mostly minor edits.

1 Like

VPN before Tor (Separate VPN-Gateway) has been updated.

https://www.whonix.org/w/index.php?title=Tunnels/Connecting_to_a_VPN_before_Tor&oldid=39997&diff=cur

2 Likes

Wasn’t very clear on this. Fixed?

https://www.whonix.org/w/index.php?title=Tunnels/Connecting_to_Tor_before_a_VPN&oldid=40474&diff=cur

1 Like

Without a failed closed configuration when VPN connection breaks down all traffic originating from the Whonix-Workstation AppVM (commonly called <code>anon-whonix</code>) would <u>only</u> be forced through Tor.

When a failed closed configuration is used and the VPN connection breaks down, all traffic originating from the Whonix-Workstation AppVM (commonly called <code>anon-whonix</code>) would <u>only</u> be forced through Tor.

Seems inverted logic.
Fact: with fail closed mechanism → no leaks | without fail closed mechanism → leaks

Currently it’s saying the opposite after the edit.

Am I right or misreading this?

https://www.whonix.org/w/index.php?title=Tunnels%2FConnecting_to_Tor_before_a_VPN&type=revision&diff=40795&oldid=40779

90% sure this is no longer required since Whonix 14.

Updates onionizing repositories (Whonix clearnet repos by default). Also updates to Qubes onionizing instructions.

https://whonix.org/w/index.php?title=Onionizing_Repositories&oldid=40258&diff=cur

Qubes references.

1 Like

For legal reasons, it’s now being made clear that Whonix is free in price. Hence to all pages that matter a green link saying FREE was added.

Using this template:

The placing of the notice and wording can be adjusted if someone wants to add enhancements.

New users learning about Whonix don’t really obviously/easily that Whonix is free in price and/or Libre Software / Open Source anyhow at the moment?

2 Likes

BitMessage - Whonix

“Note that the extended output of pwgen (pre-installed from Whonix 14 onward) can be used for secure passwords.” -> This directly contradicts the advice on the Surfing, Posting, Blogging page. So one of these pages is incorrect.

Download Whonix (FREE)

there should be a wiki on whonix news and version check as right now the wiki for hardening the whonixcheck program simply links to a download page for the whole os additionally, there should be wikis explaining the advantages and drawbacks of hardening certain whonix operations because as it stands right now it’s unclear what those are

thanks

Absolutely not. The output of pwgen is not as random as something like diceware.

EDIT: Now corrected

2 Likes

For people on Windows, yeah they will not be familiar with free software even is so it’s good to emphasize that their wallet will stay untouched.


What does this even mean?

1 Like

In Instant Messenger Chat, the following

flatpak remote-add --if-not-exists flathub https://flathub.org/repo/flathub.flatpakrepo

should be changed to

flatpak remote-add --if-not-exists flathub https://dl.flathub.org/repo/flathub.flatpakrepo

Or the following error appears when trying to install qTox:

GPG signatures found, but none are in trusted keyring

per GPG found, none in trusted keyring · Issue #1450 · flatpak/flatpak · GitHub

1 Like

No idea. I was hoping someone else would understand better than me. :slight_smile:

1 Like

vfemail will have to be replaced in Encrypted Email with Thunderbird and Enigmail due to destructive hackers.

@tempest mentioned that TNT had a reasonable suggestion with https://danwin1210.me/mail/

Haven’t really looked at this provider but will very shortly. Then update the wiki.

1 Like

Added notice not to use vfemail to the wiki

https://www.whonix.org/w/index.php?title=Encrypted_Email_with_Thunderbird_and_Enigmail&diff=40886&oldid=40246

1 Like

"should be changed to

flatpak remote-add --if-not-exists flathub https://dl.flathub.org/repo/flathub.flatpakrepo

"

Can someone with template editing powers please change this in the tox template? I was about to, but I don’t have the power to edit templates at the minute…

OK - I’ve just been doing general edits here and there as you probably noticed.

I gather you mightn’t like the Warrant Canary stuff (?). Basically, canaries are speculative, cause more angst than benefit, and probably protect against minimal threats in the Whonix case (open source etc.), even in the event of an NSL. So worth fleshing that out a bit.

That was the point. Unless you think some German court is going to force you to backdoor your own product (baby) and destroy the Whonix brand in the process. Wholly unlikely, since I think you’d go into early retirement before doing that.

1 Like

Was raided and temporarily shutdown in the past, but he’s up and running now.

2 Likes

Placeholder for template edits (reminder for later):

  1. Tox template:

flatpak remote-add --if-not-exists flathub https://dl.flathub.org/repo/flathub.flatpakrepo

  1. Tunnel Support template:

Update “Chaining Anonymizing Networks” link (currently points to old Advanced Security Guide)

  1. Download table:

Replace the hideous old 1990s retro table with the pretty new table in the Download Table template (?) - see pending edit