Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Investigate remote administration #73

Closed
joshuathayer opened this issue Mar 9, 2018 · 2 comments
Closed

Investigate remote administration #73

joshuathayer opened this issue Mar 9, 2018 · 2 comments
Assignees

Comments

@joshuathayer
Copy link
Contributor

Part of the reason we decided to target Qubes 4 for the workstation release was to potentially use its admin VM / remote administration features to allow us to keep client installations updated.

Since Qubes is approaching stability, investigate how we may be able to use this feature: its abilities, its security tradeoffs, its applicability to our use case.

@eloquence
Copy link
Member

We've aimed to keep maintenance requirements minimal, and are handling updates through a preflight updater that's started on each workstation boot. That said, providing remote admin tooling may still be worth considering in our threat model (e.g., to deal with any kind of system breakage), so keeping this old issue open pending input from other team members.

@conorsch
Copy link
Contributor

Since this issue was opened, Qubes has added a GUI updater, and we've added our own GUI updater specifically for the SDW (mostly for UX niceties such as a progress bar, as well as to force updates on net-less VMs, which wouldn't ordinarily appear in the GUI updater). So keeping instances up to date is largely achieved now, although we'll certainly try to smooth out that process as time goes on.

admin VM / remote administration features to allow us to keep client installations updated.

My interpretation of this phrasing is a recommendation to explore the Admin API https://www.qubes-os.org/doc/admin-api/, not to allow geographically distributed access for instance Admins to log into a Workstation to help debug a problem a journalist is having. Geographic distribution remains a challenge for deployments, but we're currently providing support directly to journalists in the pilot, with Admins in the loop.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants