• 17 Posts
  • 29 Comments
Joined 1 year ago
cake
Cake day: September 12th, 2023

help-circle























  • Libreboot Gaming Desktop

    • Dell OptiPlex 9020 MT Motherboard
    • i7 4790K
    • 32GB DDR3 1600Mhz RAM
    • 9TB (1TB M.2 NVME, 2x4TB Hard drives) RAID 0 with LUKS and LVM (/boot stored on SD card)
    • NVIDIA 2080 SUPER 8GB VRAM
    • NZXT S340 Elite Case
    • EVGA 700W BR
    • Kicksecure GNU/Linux

    Libreboot Server

    • Dell Precision T1650
    • Xeon E3 1275 V2
    • 32GB DDR3L 1600Mhz RAM (ECC)
    • 8TB (2x4TB Hard drives) RAID 1 with LUKS and LVM (/boot stored on SD card)
    • AMD RX580 8GB VRAM
    • Proxmox VE / Learning to use YunoHost inside VM

    Libreboot Laptop

    • Lenovo Thinkpad T440P
    • i7 4810MQ (Recommend i7 4700MQ for better battery life)
    • 16GB DDR3 1600Mhz RAM
    • 1TB SSD (/boot encrypted with Argon2)
    • 100% Free BIOS (LibreMRC), Intel Management Engine is still present but neutered
    • Intel AC 7260 (Can run without blobs when running Linux-libre kernel)
    • AR9271 USB for WiFi (100% FOSS)
    • Kicksecure GNU/Linux with Linux-libre kernel (Removed all non-free-firmware with vrms)

    GrapheneOS Phone (100% FOSS in the OS layer)

    • Cheogram / JMP.chat for Calling / Texting
    • Mint Mobile for Service (Cash)
    • Ported number into JMP.chat
    • F-Droid

    LibreCMC Routers (100% Free Firmware/Software)

    • ThinkPenguin R1400 Ethernet (1Gbps)
    • ThinkPenguin R1300 WiFi Router (100Mbs)
    • Running under MullvadVPN (Paid in XMR)

    OpenWRT Network Switch

    • D-Link DGS-1210-28MP
    • VLAN Support

    Yeah that’s pretty much my setup, don’t know if it’s really strange or not lol



  • Lemmy@lemm.eetoPrivacy@lemmy.mlImprove Your Privacy Setup
    link
    fedilink
    arrow-up
    4
    ·
    edit-2
    8 months ago

    “My BIOS is password locked but proprietary (due to compatibility issues).”

    “I use full disk encryption, multiple disks, and a second layer of encryption for specific important files (NSA style)”

    I recommend switching to Libreboot, I’ve recently helped add support for the Dell Optiplex 9020 MT, and will soon add support for the Dell Precision T1700 MT. Libreboot allows for full disk encryption, including the automatically encrypting the /boot partition during installation of an OS. I use RAID 0 with 3 disks (LUKS and LVM) on my desktop, with my /boot unencrypted stored on a SD card so I can easily toss it whenever.

    For gaming, I’ve had success using Proxmox to play games like GTA V and Rainbow Six Siege through a VM, even passing through NVIDIA drivers (though I plan to switch to AMD). Although, currently the Haswell boards (9020MT and T1700MT) can’t use IOMMU correctly so I recommend using the T1650 for passing through your GPU to a VM. Beware though, the T1650 board can’t be freed entirely in the BIOS I believe.

    Also, updating your CPU microcode can help avoid potential performance issues. If you’re concerned about security, consider GPG signing your kernel with Libreboot GRUB for an additional layer of verification at boot.