Anonymous operating system Whonix

Discussion in 'privacy technology' started by lotuseclat79, Sep 26, 2012.

Thread Status:
Not open for further replies.
  1. lotuseclat79

    lotuseclat79 Registered Member

    Joined:
    Jun 16, 2005
    Posts:
    5,390
    Anonymous operating system Whonix.

    A more comprehensive description, security features and threat model Security.

    -- Tom
     
    Last edited: Sep 26, 2012
  2. Interesting, how is security compared to Talis & Liberte?
     
  3. popcorn

    popcorn Registered Member

    Joined:
    Apr 3, 2012
    Posts:
    239
    Looks promising :p
    Will wait til at least Beta release though
    Popcorn
     
  4. chronomatic

    chronomatic Registered Member

    Joined:
    Apr 9, 2009
    Posts:
    1,343
    This system is interesting. However, to use it effectively (if I understand) you need 3 different machines.
     
  5. lotuseclat79

    lotuseclat79 Registered Member

    Joined:
    Jun 16, 2005
    Posts:
    5,390
    Why 3 different machines?

    -- Tom
     
  6. adrelanos

    adrelanos Registered Member

    Joined:
    Sep 28, 2012
    Posts:
    85
    Interesting, I didn't make an announcement anywhere and different websites are already picking this up. Found this because it's the first search result about "Whonix". I can't read each and every thread here.

    It's nice to get some feedback from interested people.

    https://sourceforge.net/p/whonix/wiki/Security/#comparison-of-whonix-tails-and-tbb

    1 machine runs two virtual machines for default/download version.

    2 machines when using physical isolation.
     
  7. box750

    box750 Registered Member

    Joined:
    Nov 11, 2008
    Posts:
    261
    I first found out about it in DistroWatch, not sure where they heard it from.
     
  8. Cutting_Edgetech

    Cutting_Edgetech Registered Member

    Joined:
    Mar 30, 2006
    Posts:
    5,694
    Location:
    USA
    That's awesome! I can't wait to give it a try. It would be better though if it could be used with an anonymous VPN's of your choice, and not just Tor.
     
  9. adrelanos

    adrelanos Registered Member

    Joined:
    Sep 28, 2012
    Posts:
    85
    Tunnel Tor through proxy, VPN or SSH
    and Tunnel Proxy/SSH/VPN through Tor
    or both
    is already possible:

    https://sourceforge.net/p/whonix/wiki/OptionalConfigurations/

    You could also simply add a VPN to the host, if it's acceptable for you, that all your host traffic will goes through it. I'd recommend to configure the VPN to fail closed, see:

    https://sourceforge.net/p/whonix/wiki/OtherAnonymizingNetworks/#fail-closed-mechanism

    If you meant "VPN's as a Tor replacement", that feature and a lot more is considered and unfinished. But don't hold your breath for that particular one.

    https://sourceforge.net/p/whonix/wiki/OtherAnonymizingNetworks/
     
  10. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
    @adrelanos

    Could one simply add VPNs to both host and workstation VM? The host VPN would not need to be very anonymous. But the workstation VPN would need to be highly-anonymous. Best would be to use free ones, or sign up via Tor using throw-away email and well-laundered Bitcoins. Right?
     
  11. Snoop3

    Snoop3 Registered Member

    Joined:
    Jan 2, 2011
    Posts:
    474
    ok, dumb question - any chance i can run this on just a netbook (2 GB RAM) and with a USB cell modem?

    sounds like you're running 2 virtual machines in a host OS(?) or do you need 2 different computers? o_O


    tia
     
  12. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
    The easy way, using the OVA ("VM archive") downloads from SourceForge, requires a computer running VirtualBox. Whonix might run on your netbook. The gateway uses 128MB memory, and the workstation uses 768MB. I can run one Ubuntu VM using 512MB on an AspireOne netbook with 1GB RAM.
     
  13. adrelanos

    adrelanos Registered Member

    Joined:
    Sep 28, 2012
    Posts:
    85
    At the moment 768 MB RAM for the Whonix-Workstation and 128 MB RAM for the Whonix-Gateway. I haven't tested it... With a small host operating system it could work.

    You could also try experiment with reducing the 768 MB RAM.

    You could also try using a lightweight graphical user interface instead by installing for example LXDE, Xfce or Openbox, they need less RAM.

    Standard/Download version are 2 virtual machines running on 1 host.

    http://sourceforge.net/p/whonix/wiki/Security/#comparison-of-different-whonix-variants

    Not required. Optional. This is at the moment an optional feature for experts called Physical Isolation.
    https://sourceforge.net/p/whonix/wiki/PhysicalIsolation/

    Adding VPN to the host will look like: user -> VPN -> Tor -> website.

    Adding VPN to the Workstation will look like: user > Tor -> VPN -> website.

    Adding VPN to the host and to the workstation will look like:
    user -> VPN -> Tor -> VPN -> website.

    Well, sorry. I can not take position about the statement if a VPN will make Tor more or less anonymous. There are many contradictory statements about this stuff from related experts, such as the Tor or Tails developers. I believe there are use cases, advantages and disadvantages. Ultimately it depends on ones personal threat model.

    Here are three good links about this topic:
    https://trac.torproject.org/projects/tor/wiki/doc/TorPlusVPN
    https://tails.boum.org/todo/vpn_support/
    http://sourceforge.net/p/whonix/wiki/Authorship/#whonix-vpn-disclaimer

    The "combine with VPN features" have been added because I saw they were frequently discussed in many places, how can I tunnel a VPN through Tor, how can I tunnel Tor through a VPN and I found it motivating to provide a relatively easy solution. Adding these "features" wasn't much effort, it's more a "textual feature", that's why it's called optional configurations.

    https://sourceforge.net/p/whonix/wiki/OptionalConfigurations/
     
  14. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
    @adrelanos

    Are you using a "stock" Tor configuration? Are you selecting for fast relays?

    Those are lazy questions, I know.
     
  15. Snoop3

    Snoop3 Registered Member

    Joined:
    Jan 2, 2011
    Posts:
    474
    Awesome. Thanks.
     
  16. adrelanos

    adrelanos Registered Member

    Joined:
    Sep 28, 2012
    Posts:
    85
  17. Less

    Less Registered Member

    Joined:
    Dec 24, 2008
    Posts:
    288
    how to do i install this.

    quote
    "Quickstart:

    1. Download both files.

    2. Import them into Virtual Box.

    3. Start Whonix-Gateway.

    4. Start Whonix-Workstation.

    "


    it prompt for password
     
  18. Less

    Less Registered Member

    Joined:
    Dec 24, 2008
    Posts:
    288

    managed to get it to work using default password
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.