ReHIPS

Discussion in 'sandboxing & virtualization' started by MrBrian, May 24, 2014.

  1. Lockdown

    Lockdown Registered Member

    Joined:
    Oct 28, 2016
    Posts:
    772
    Location:
    Wilders Security
    Windows has two basic user groups:

    1. Admins
    2. Standard Users

    Each user group has a user profile with different system privileges. The Standard user profile is the much more restrictive. ReHIPS creates an even further restricted user group - ReHIPSUser = isolated environment.

    That's it.

    In the rules, you will see rules for both ReHIPSUser and SYSTEM. SYSTEM is the "real" user profile = the one that applies to the signed-in active desktop - which could be an Admin or Standard User desktop\user profile. ReHIPSUser = isolated environment can run along side either the Admin or Standard User account profiles.

    Admin or Standard User || ReHIPSUser\isolated environment

    Most privileges or restricted privileges || highly restricted privileges

    The basic concept is that one user profile cannot "touch" another user profile - it's a fundamental protection mechanism of Windows

    Processes in ReHIPSUser\isolated environment cannot mess with the signed-in account profile (unless you monkey with the isolated environment settings and allow some stuff)

    So if malware blasts your isolated environment - which is highly unlikely with the way ReHIPS works - but let's just say that it does happen for the sake of demonstration - it won't carry over to the signed-in user account active profile\desktop

    Just delete "blasted" ReHIPSUser - all gone...

    That's it.

    There is some rare stuff that could happen, but you probably have a better chance of hitting the lotto and retiring a very wealthy man before it happens...
     
  2. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    @Lockdown Thanks for that comprehensive explanation....I will study it later, because I have to go out for awhile. Much appreciated! Cheers. :)
     
  3. askmark

    askmark Registered Member

    Joined:
    Jul 7, 2016
    Posts:
    392
    Location:
    united kingdom
    +1:)
     
  4. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    ReHips never finish installing rules!!!

    My cpu and ram go up!

    How's that possible?!
     
  5. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    Yeah, sorry! W10 x64 pro!
    i have just exclude rehips in Hmp.A.

    I use IDT driver for the sound.

    I see in task manager "Pack of Rules of Rehips" process, showing hiding every time.
     
  6. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    yeah i did all, after that reboot, but the same!

    to stop the cpu usage i reset the settings to default!

    thanks anyway!
     
  7. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    what's the main purpose if i reset the rules to default?

    can i use rehips like this or i have to reinstall rules!?
     
  8. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    to me too! :eek:
     
  9. tonino

    tonino Registered Member

    Joined:
    Jan 2, 2017
    Posts:
    62
    Location:
    somewhere
    i just reinstall rules. here my log:
     
  10. guest

    guest Guest

    @tonino If you have issues , you should post it on ReHIPS forum, devs are only active there , here you will have only replies and help from users and closed-beta testers like us, even if we have a good knowledge of ReHIPS we can't solve/diagnostic specific issues. Only give guidances and basic help based on our experiences.
     
  11. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    My home page, when I start the browser is Wilders. However, I need to have ReHIPS disabled, so that that my login details [stored by Opera] for Wilders are remembered, and then I can login.

    But, with ReHIPS enabled and then trying to login [when I want], those stored-by-the-browser login details, are no longer accessible. I need to go and find my login details for Wilders' website, and enter manually.
     
  12. guest

    guest Guest

    Because by default, ReHIPS creates an anonymous user for every IE, so any apps running isolated are ran with default settings.
    If you want access to your customized opera , you have to :

    1- be sure your system is clean.
    2- go to Settings > Programs > your username when using Opera > the IE owning Opera (should be called Opera or Chrome) > double click on its name > select "Copy User Datas" > run Opera > deselect "Copy User datas" . (check Screenshot below)

    if it doesn't works , create a thread on ReHIPS forum.
     

    Attached Files:

    Last edited by a moderator: Mar 3, 2017
  13. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    @guest I just made the change. It did the trick :thumb:
     
  14. guest

    guest Guest

    Glad we solve your issue ;)

    ReHIPS by default is very secure at the cost of some convenience (which is often the weak link) , once you get used to its mechanisms , it becomes very easy to handle.
     
  15. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
    I ticked 'Copy User Data' to get my password manager (Roboform) to work in Firefox.
    That did the trick, so I have now unticked it again, as per your advice.
    Will that data stay in the IE in future i.e. the data doesn't get deleted again when I close Firefox?
    I guess if data changes in the 'real' world, one would need to tick that option again to get the changes into the IE?
     
  16. guest

    guest Guest

    no , they will stay permanently until you delete the IE.

    yes, if the changes are local.
    For example, i use Lastpass , so my password are saved in the cloud (reason i use lastpass) so i don't have to tick it again.

    Usually, you just need to tick at 1st launch of the apps, launch the app, untick right after.
     
  17. guest

    guest Guest

    yes , if new changes are expected , better delete the IE and let ReHIPS recreates it with ticking the option.
     
  18. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
    I have looked in the Help ... but what is the correct way of deleting an IE?
     
  19. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
    So obvious when you see it :D
     
  20. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    I didn't know that...but, I have unticked 'Copy User Data'. I can still log into Wilders, automatically, still. :)
     
  21. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    Not really understanding about the cookies. As far as I know the cookies are deleted, when I end a session. And, passwords that I use regularly, are remembered/stored in the Opera browser.
     
  22. guest

    guest Guest

    @Tarnak "copy user datas" are mostly for configurations and settings, extensions, etc...
     
  23. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    I assume, you mean settings in Opera, and not ReHIPS. I leave the browser settings alone, after I have custom configured.
     
  24. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,295
    That is what I had assumed. Thanks. :)
     
  25. guest

    guest Guest

    @Tarnak basically :

    1- you setup your browser/apps as you like in real system (non-isolated) by disabling ReHIPS when you launch it and immediately re-enabling ReHIPS once the browser/app is launched.
    2- once finish, you close the apps/browser, and you tick "copy user data".
    3- you launch the apps/browser isolated, so all your settings/extensions are copied in Isolated Environment.
    4- you close the apps/browser and untick the option (because you won't want a potential later infection copied in the IE).
     
    Last edited by a moderator: Mar 4, 2017
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.