Network Recon Qube
A way to probe a network with physical interfaces rather than virtual ones.
Pretty much like the default sys-net
but with network analysis tooling like nmap and wireshark.
Use inter-qube communication to move recon data into Analysis Qube
The Qubes team always cautions users to always move data from more trusted VMs into less trusted VMs.
So, if in doubt that your Analysis Qube is more trusted than your Recon Qube, just copy and paste the dumps through the clipboard - since in the end it’s all just text files.
Another more trustworthy way is to take screenshots (which are taken from dom0) and then send them over to the Analysis Qube.
This qube is not connected to sys-firewall
The qube is not connected to any firewall proxy (like sys-firewall
), so there is a bit more elevated risk - but this is the only actual way to probe the network while using Qubes.
Plug in in a network peripheral
This qube gets attached a USB WiFi network peripheral (you don’t want to mess anything up with your sys-net
)