Join GitHub today
GitHub is home to over 28 million developers working together to host and review code, manage projects, and build software together.
Sign upCentralized Qubes Policy #867
Comments
marmarek
added this to the
Release 3 milestone
Mar 8, 2015
marmarek
added
enhancement
C: core
P: major
labels
Mar 8, 2015
marmarek
modified the milestones:
Release 4.0,
Release 3.0
May 13, 2015
marmarek
referenced this issue
Jan 15, 2016
Closed
Template policy, services->features, core plugins #1637
andrewdavidwong
added
the
help wanted
label
Jun 9, 2016
added a commit
that referenced
this issue
Jun 9, 2016
This comment has been minimized.
Show comment
Hide comment
This comment has been minimized.
jpouellet
Dec 20, 2016
Contributor
e.g. policy for containers tagged as "corporate" should be hashable separate from the policy applicable to other containers, e.g. personal
Is it a goal to enable a single qubes machine to both have policy enforced by a remote administrator and simultaneously be trustworthy for personal (private) use!?
Is it a goal to enable a single qubes machine to both have policy enforced by a remote administrator and simultaneously be trustworthy for personal (private) use!? |
This comment has been minimized.
Show comment
Hide comment
This comment has been minimized.
marmarek
Dec 20, 2016
Member
It's indeed tricky. But I think it's possible. The basic idea is "management VM can manage only VMs it created". This also applies to templates etc. Some more design documentation will be soon.
|
It's indeed tricky. But I think it's possible. The basic idea is "management VM can manage only VMs it created". This also applies to templates etc. Some more design documentation will be soon. |
marmarek commentedMar 8, 2015
Reported by joanna on 2 Jun 2014 12:51 UTC
Should include:
Some properties we want:
Migrated-From: https://wiki.qubes-os.org/ticket/867