To read all comments associated with this story, please click here.
There is a summary:
Key architecture features:
Based on a secure bare-metal hypervisor (Xen)
Networking code sand-boxed in an unprivileged VM (using IOMMU/VT-d)
No networking code in the privileged domain (dom0)
All user applications run in “AppVMs”, lightweight VMs based on Linux
Centralized updates of all AppVMs based on the same template
Qubes GUI virtualization presents applications like if they were running locally
Qubes GUI provides isolation between apps sharing the same desktop
Storage drivers and backends sand-boxed in an unprivileged virtual machine(*)
Secure system boot based on Intel TXT(*)
Thanks! I think also the project screenshot page http://qubes-os.org/Screenshots.html helps to get a first look of what it is and how it works (before looking under the hood).





Member since:
2005-11-16
That MS scam is popular here. It weeds out those that should not be allowed to use computers.
Thanks for the explanation on what Qubes OS is. The blog entry was rambling about security so much I stopped reading.