From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.33) id 1CWcGb-0002x8-Pt for qemu-devel@nongnu.org; Tue, 23 Nov 2004 10:07:42 -0500 Received: from exim by lists.gnu.org with spam-scanned (Exim 4.33) id 1CWcGZ-0002w1-GN for qemu-devel@nongnu.org; Tue, 23 Nov 2004 10:07:40 -0500 Received: from [199.232.76.173] (helo=monty-python.gnu.org) by lists.gnu.org with esmtp (Exim 4.33) id 1CWcGZ-0002vZ-AM for qemu-devel@nongnu.org; Tue, 23 Nov 2004 10:07:39 -0500 Received: from [213.80.72.10] (helo=kubrik.opensource.se) by monty-python.gnu.org with esmtp (Exim 4.34) id 1CWc6t-0003IF-Ix for qemu-devel@nongnu.org; Tue, 23 Nov 2004 09:57:39 -0500 Subject: Re: [Qemu-devel] building a virus-proof PC with Qemu From: Magnus Damm In-Reply-To: <41A33090.9080703@gmx.com> References: <41A33090.9080703@gmx.com> Content-Type: text/plain Message-Id: <1101221775.8460.44.camel@localhost> Mime-Version: 1.0 Date: Tue, 23 Nov 2004 15:56:15 +0100 Content-Transfer-Encoding: 7bit Reply-To: qemu-devel@nongnu.org List-Id: qemu-devel.nongnu.org List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: bochnig@pool.math.tu-berlin.de, qemu-devel@nongnu.org Hello again, On Tue, 2004-11-23 at 13:44, Bochnig, Martin wrote: > Hi, > > most of you know that: The easiest and most secure (100.00%) option > imaginable is to boot from cd/dvd and to keep the registry (in case of > m$-win) - or other files requiring write access - inside of a ramdrive. > Works. I think the idea is really nice, tried to convince some people employed by the Swedish army about this two years ago. The Swedish army is very picky about classified data and if a computer ever gets near classified information the machine has to be marked as classified and then the entire machine has to be handled very strictly. Booting from cdrom is simple and effective. Do you have any pointers how to do this with Windows (2k/XP) ? Thanks! / magnus