The basics of Whonix - based security

Mutt

Professional
Messages
1,459
Reaction score
1,112
Points
113
The methods written in this article will help you achieve some peace of mind for your skin. In other words, what you need for a restful sleep at night.

The implementation of this miracle will happen with the help of:
Virtualbox + Whonix gateway + Windows + vpn.

You will need:
  • Iron of medium power
  • RAM from 4GB
  • 30-40 GB free space
  • A couple of days of time to customize for yourself.

Why whonix?
Hunix "out of the box" is imprisoned for anonymity.
It passes all your traffic through the Tor channel, and only then the traffic goes to our second emulated system.
Thanks to this chain, it becomes possible to use dangerous funds on your vm without threatening deanon.

The first steps

Installing Linux Mint
First of all, we will put on the virtual machine one of the simplest distributions - Linux mint, this will be our host machine.
The system itself is made most favorable to novice users.
As you master it, you can change to something more powerful, in terms of anonymity.

Linux Mint Official Site-> https://linuxmint.com/download.php

I think that no one should have any problems with the installation.

Installing virtualbox
Open the console (ctrl + alt + T) and write:
Code:
sudo nano /etc/apt/sources.list

Add there:
Code:
deb http://download.virtualbox.org/virtualbox/debian xenial contrib
save and exit.

Next, let's download and register the keys:
Code:
wget -q https://www.virtualbox.org/download/oracle_vbox_2016.asc -O- | sudo apt-key add -
wget -q https://www.virtualbox.org/download/oracle_vbox.asc -O- | sudo apt-key add -

Next, install virtualbox-5.1:
Code:
sudo apt-get update
sudo apt-get install virtualbox-5.1

Add our user to the vboxusers group:
Code:
sudo usermod -a -G vboxusers your login

Installing whonix
Download the whonix gateway image from here -> https://www.whonix.org/wiki/VirtualBox

We open our virtualbox.

Go to the menu -> file -> import configurations.

Paving the way for our image.
We launch the image, wait for the import. As soon as the import process is over, we cut in our hunix.
We now have our internet gateway.

Setting up whonix.
In virtualbox, click:
configure -> system -> motherboard -> RAM

the default is 768MB, if you leave it that way, the system will start with a gui interface, but, in my opinion, there is no need for this. You can reduce it to 168MB, after which the system will start in console mode. You should not be afraid of this, the whole mechanism of operation is simple. In the gateway, you need to run only two tools, the authorization itself, and the "arm" network monitoring and connection interface itself.

Initial actions.
After installing whonix, we are shown a couple of warnings and conventions. We agree.

The next step is to open the console and write there:
Code:
sudo apt-get update && sudo apt-get upgrade -y && sudo apt-get dist-upgrade -y

Thus, we will update the system.

The standard login is user, the password for user is changeme.
In the future, I recommend that you change it.

Getting started with windows
We turn to the choice of the Windows image.
We will proceed from the hardware configuration parameters.

For weak systems we install XP, and if you are not obsessed with hardware, then 7 is better. It is more secure, and there will be no software compatibility problems.
So where can you download the images?

Go here, select the desired image, download-> http://office-windows.ru/
We mount the image in the car and immediately start putting it on our car.

Setting up our work environment.
The first thing to do is poke the PCM on the virtual machine with Windows, select the "configure" item, then go to "Network" and disable the first adapter, enable the second adapter, select "Internal network" and select "Whonix" below.

Then, we go to Windows and go to "Network and Sharing Center" -> "Changes to adapter settings"
Click properties -> IPv4 properties and paste the following there:

Ip - 10.152.152.44
Mask - 255.0.0.0
Gateway - 10.152.152.10
Dns - 10.152.152.10

We save and check the Internet.

Ready! Now all our traffic goes through the TOP and the Whonix Gateway.

Final guidance of the marathon.
Install from virtualbox guest additions. This is replacing your firewood with those that are designed and sharpened specifically for virtual machines.
We set up the OS itself, remove all the graphic buns. they didn't give up to us, but they consume resources.
We install the antivirus without fail. Even node32 will do.
We also add a comodo firewall there. Setting up the firewall will take a couple of days, but the output will be a powerful protective harvester.
Next, download and configure the fire fox and use it in conjunction with jap.

Go to settings-> network and write:
JAP = localhost 4001
Check the "use everywhere" checkbox.

Downloaded JAP, turned it on.
Now your FF will not actually work without JAP enabled.

Outcomes
Now we have a virtual machine on which you can safely run dumb software. Let's add an encrypted channel.

All this together gives a good layer of anonymity and security.
There is always something to improve, but this is a completely affordable way that you can provide yourself without any great effort.
 
Well composed read, Im curious about a few parts. One, could you run a vpn prior to opening whonix for more security or would that give you away. Two, what is the purpose of linux mint in this?
 
Top