It's not flawless. Sometimes switching to a big screen or moving USB devices between VMs is wonky... but the bottom line is I haven't booted my MacBook Pro for work in 2018. We stopped using MBPs because the then-current now one-minor-rev old generation is trash; all of them broke, and that was unacceptable, so I have a Lenovo (again).
Happy to answer questions about Qubes.
FWIW: not worried about Qubes' future. As Joanna herself points out in the blog post: Marek has been doing most of the technical day to day stuff for a while now, and Qubes has been doing just fine. I'm really thankful for the work Joanna has done in making Qubes happen and hope her new endeavors are everything she wants them to be :)
As somebody whose (trash) recently-current MBP just spent the weekend with Apple due to a display failure, I'm evaluating my options.
I think I had an issue with WiFi + suspend/resume but that was easy to fix, and fixed by default now. (It involves reloading the driver after resume -- that's automatic now but the setting lives in a config file.)
do you think Qubes will complete their effort with a live USB with persistence? what would be your opinion on using that?
Re: LiveUSB; I see the point for Tails. I don't see the point for Qubes. Is it "easy to try out"? Because the whole TemplateVM thing seems pretty core to how Qubes works and
* RAM hit is pretty big. 16gb was pretty much necessary for any type of work.
* CPU hit is decent. In Qubes, one of the applications I'm working on would build in 40s, on a "regular" OS it would take 20s.
The CPU hit is probably more variable and depends on many factors.
FWIW even though I really liked Qubes, I eventually moved away from it because maintaining the system took up a bit too much of my time. For the most part it "just works" (and huge props to the Qubes team for that!), but for example I had trouble upgrading my images at some point, which messed things up. I had backups (Qubes has a decent backup tool for which I had a bash script), but that was kind of the breaking point - I felt I had spent too much time futzing around with things. I think I used it for ~6 months. It's definitely worth trying out if you have the nerve to deal with those kinds of problems.
What does that mean?
Sia and a number of other projects are trying to address hot and cold storage while Golem and company are addressing the compute. With some clever architecture design, these decentralised systems could be combined to make a decentralised remote server.
I see what you mean, but on the other hand it's a threat to the endpoint security she's worked so hard on. If Intel offered a solution that allowed remote users to run code on your machine, no matter how secure they claimed it to be the response here would rightfully be 'what could go wrong?' Can it be made secure enough?
(I'm aware that Intel already offers such things, including via SGX which others in this discussion say is utilized by Golem.)
Chances are, the NSA won't be renting out Top Secret machines for Golem, but some rando with a multi-thousand dollar gaming rig she's just using to browse HN on may well view the tradeoff differently.
I want to believe that something good will come of this, beyond incinerating cash building products nobody actually wants to use. (Yes, I’m saying that Golem as described is impractical and naive, and giving it so much funding so early makes it even harder for them to learn hard lessons and succeed as a product).
In a way, they found a way to trick us into paying more taxes to subsidize public research and development! You’ve got to respect that.
Ethereum can do that (because it's just one giant computer running the same code and verifying it's state after every functional call), it's just really, really slow and insanely expensive. Perhaps they'll figure this out, if they do, it will be awesome.
Also, everything on Ethereum is public.
The initial goal of Golem was to be so efficient that the best way for big cloud vendors to offer their services would be through the Golem platform. That's obviously a moonshot, but it helps us to see what the Golem team is aiming for.
Just as there are a lot of people out there that are interested in banking but not interested in playing at the scale of being a bank I think there are a lot of people interested in contributing to a decentralized computing infrastructure without having to create a large dedicated data center.
>> Ethereum-based transaction system
Is this going to be fast enough for their use cases?
I'm not necessarily in favor of PoS, but it does "solve" the electricity concerns you are raising.
Also insert here long winded explanation of how much power is used by existing banking infrastructure.
Golem uses Intel SGX (specifically a modified Graphene-SGX libraryOS) for trusted execution if anybody is interested [1] https://software.intel.com/sgx
I can only imagine that's incredibly frustrating. Knowing no matter how hard you work on Qubes, x86 isn't really deserving of trust right now.
The third link of the top header is 'TEAM' leading to a page where Joanna Rutkowska is the most obvious topmost item, appearing above the fold on many devices (even my phone!), complete with her title(s).
Sometimes comments make my day. This is not one of them. I am achingly speechless.