Live data from Hacker News

Introducing Qubes OS

theinvisiblethings.blogspot.com

1–10 of 23 posts

Re: Introducing Qubes OS

#2
Qubes implements Security by Isolation approach. To do this, Qubes utilizes virtualization technology, to be able to isolate various programs from each other, and even sandbox many system-level components, like networking or storage subsystem, so that their compromise don’t affect the integrity of the rest of the system.

Re: Introducing Qubes OS

#3
I think there will be more projects like this. Apps running in a sandbox, thinking they have the OS to themselves. The next logical step is to have all new apps written in managed code, and use virtualization for the "legacy" native code.

Come to think of it, isn't it supposed to be the purpose of an operating system: letting programs think they own the hardware? Now they can pretend to own the OS too :)

I think we'll get to microkernels, but through evolutionary steps like this rather than ground-up redesign.

Re: Introducing Qubes OS

#4
post #3

I think there will be more projects like this. Apps running in a sandbox, thinking they have the OS to themselves. The next logical step is to have all new apps written in managed code, and use virtualization for the "legacy" native code. Come to think of it, isn't it supposed to be the purpose of an operating system: letting programs think they own the hardware? Now they can pretend to own the OS too :) I think we'l…

Presumably that would mean that operating systems (at least for guests) could become a lot simpler as in most cases the guest is there for one specialized purpose and doesn't need most of the features usually found in an OS.

Re: Introducing Qubes OS

#6
:-) it seems there's a news story every day on HN about a new Linux based OS on the market. I do like this one much better than the North Korean one with the lockdown of user freedoms.

Re: Introducing Qubes OS

#9
post #6

:-) it seems there's a news story every day on HN about a new Linux based OS on the market. I do like this one much better than the North Korean one with the lockdown of user freedoms.

It's not exactly a new "Linux based OS", Joanna is a well known security hacker and so if you think about the reasons them you will see that what she's trying to do is a new security computing model for operating systems based on virtualization, just like Google Chrome was a new model for browser security[1].

Virtualization will be huge in the future, probably we will have common desktop hardware with bare metals hypervisors implemented directly on the hardware in the next 15 years or so, virtualization is already used in datacenters, network appliances and used extensively in the "cloud", how will we use it in the desktop is still open, but I do believe the first application will be running legacy application on modern operating systems and security.

[1]: http://communities.intel.com/community/openportit/vproexpert...

Post reply on HN