Live data from Hacker News

Windows Sandbox

techcommunity.microsoft.com

291–300 of 328 posts

Re: Windows Sandbox

#291

Earlier quoted context omitted.

I think the problem is not that windows pro costs money. The problem is that Microsoft also sells a second-class version of their OS that is really shitty. From a pure brand perspective, the smart move for Microsoft would be to stop selling windows home.

And while they are at it rethink the "OS as a service" strategy. I don't get the often cited comment on how Microsoft transformed itself under Nutella. They just take the steps they are forced to make because a lot of developers ran to different platforms. I think MS-software to be less attractive than any time before. Be that windows, their office suite or their cloud landscape, which mainly excels at being slow. An…

I have mixed feelings on this one... tbh, I wish I could pay MS $5-10/month to nuke all the passive-agressive ads. I reluctantly do so for YouTube already.

Re: Windows Sandbox

#292
It would have been very useful to have something that support persistence(you can install a program in isolation and use it over time). This does not support that.

Are there any good alternatives, that do support persistence ?

Re: Windows Sandbox

#293

Earlier quoted context omitted.

Which cheapo Android has a better screen than an iPhone 8??

At the risk of wading into the iPhone vs Android battle...: iPhone 8 vs Nexus 6 from 2014, back when Google marketed that series as reasonable Dev devices, not necessarily flagships. 326 ppi vs 493 ppi 750 x 1334 pixels vs 1440 x 2560 pixels IPS LCD vs AMOLED Somewhere there is a tongue in cheek meme comparing a sister phone, the Nexus 4, from 2012 against a 2016(?) iPhone and it's quite interesting how many features…

I know my G1 had online contact syncing and updates while the iPhone still required a USB adapter.

Re: Windows Sandbox

#294

Nowadays it's almost impossible to uninstall an app completely, because most of them creating files willy nilly. And it's same on all known OSes. The side effect we see is system size growing in time. IMO running an app in a sandbox should be the default option. On Windows, I used to like sandboxie, which virtualized every write into single directory. Uninstall was easy as removing that dir. This MS sandbox doesn't a…

> And it's same on all known OSes.

I guess you're missing one. Android allows you to remove everything that app created.

Re: Windows Sandbox

#295
post #252

Earlier quoted context omitted.

> So there is no reason why MS cannot implement Windows Sandbox even on Home since the underlying tech actually functions on all Windows editions By that logic Microsoft could also allow Windows 10 Home to run Active Directory. The reason there's a Pro/Home split is a commercial decision not a technical one, so trying to view it through a technical lens is faulty. Regardless, if we want to talk about security feature…

But your computer illeterate relatives wouldn't know how to set applocker in the first place, so it does fall within the realm of managed machines which is kind of what pro is for.

It should be turned on by default then with an override option, so that the average home user can't install stuff that'll bork the system without being warned. Just like SIP in OS X or Developer Mode on Chromebooks (although that's more extreme).

Re: Windows Sandbox

#296

Earlier quoted context omitted.

I would spend a few hundred extra dollars and just get a MacBook air or mini and install 1blocker on it.

Because you're still left with the same issue? MacOS's security technology is significantly behind Windows, only its relative obscurity protects it.

All I know is my older and less tech savvy relatives experience pretty much no problems with Apple devices and iOS/macOS. And if they did, they can take it to the Apple store.

Re: Windows Sandbox

#297
post #16

>this feature ships with Windows 10 Pro and Enterprise. No need to download a VHD! Swing and a miss. It's interesting how Microsoft will force their slow AV onto every win10 home edition device, yet won't give actual tools users can protect themselves with.

Power users get Pro, typical home users think that sandboxes are children playgrounds.

Most people who use Windows are not paying for Pro. That includes the 'power users'. This is a feature that has to be enabled, having it in Home does 0 damage, yet gives the ability for those who don't have Pro to protect themselves.

Re: Windows Sandbox

#298

This is pretty cool, I know where I'm going to run my browser from now on :-).

In case that wasn’t sarcasm: you probably don’t want to run your browser in this, since it already has a sandbox and you’ll have a measurable performance penalty by running in a virtual machine.

It wasn't sarcasm, although I don't know if it would become my daily driver either.

Performance is a non-issue for me, generally the browser performance is limited by pages waiting for ad networks to serve up ads. A pi-hole helps (and running in a VM/Sandbox lets you run the filtering DNS server as a local process pretty easily.

Lack of local data persistence is similarly a non-issue as the reason for running this way is to drop tracking cookies etc that fall out of a browsing session like leaves on an autumn day.

If it had some built in way to defeat the dozen other ways in which a browser can be fingerprinted, then it would be perfect.

Just a simple way to avoid the ad trackers and keep my actual stuff safe from the evil doers on the web.

Re: Windows Sandbox

#299
post #33
post #12

Earlier quoted context omitted.

why not just buy them a pro edition? I know it's more expensive, but that would also get you remote desktop, bitlocker, and group policy, which would all also be great for remote supporting your parents.

Because sometimes they buy a new computer and it is a while before I am able to visit them across the planet and install a new OS in it. Would really like a good out of the box experience.

Totally get that issue. It might be worth spending a day or weekend making a boot-disk for them that will wipe their current disk image, and install win10 pro with it set-up so you can remote admin it.

That way for your parents they just have to buy the pc, put the usb in and reboot it, and then call you when it's back on so you can remote in and give it a key and finish configuring it for them. I suppose even that might cause issues if you can't teach them or walk them through via facetime how to set the device to boot from the usb instead of the harddrive.

Re: Windows Sandbox

#300
post #86

Earlier quoted context omitted.

I haven't used HyperV in a while. I rarely connected to VMs via the hyperv console, just for installations or cases where windows wasn't booting properly. I use MSTSC (MS Terminal Services Client). That has supported multimonitor for the 12 or so years I've used it.

Yes, it does support multi monitor no problem. VMware has a couple of buttons in the tools bar that allows you to go from using 1 monitor to 2 or 3. It then adjust the screen resolution inside the guest vm and of course you can go back to one monitor. I believe MSTSC reguires you to start it with a switch /span or something and then you need to close the RDP window and launch it again if you want to add / remove moni…

I'm trying to think when exactly the GUI was updated. I think somewhere around Vista. You can just check "use all my monitors for the remote session" in the Display tab.

I'll admit that with a triple-monitor setup, I've sometimes wanted to remote in with only a dual-screen setup. So it wasn't perfect for me. It certainly did fine for my 95% use-cases. Having to reconnect to adjust desktop size just was never a big deal for me.

Maybe adjusting sizes is more of an issue for people today. If I was using a laptop and constantly docking/disconnecting external monitors with a large number of active connections, it'd annoy me to have to completely reconnect each time.

Post reply on HN