WEBVTT

00:00.380 --> 00:07.340
Okay, so now that we understand why tails is non-persistent by default, why you might want to use

00:07.340 --> 00:13.650
persistence and the warnings and the things that you want to keep in mind while using persistence.

00:13.670 --> 00:17.450
Let's go ahead and see how to enable it and how to use it.

00:17.870 --> 00:20.210
So I have tails right here.

00:20.210 --> 00:28.400
And to enable persistent storage, we're going to go to applications tails, and we're going to click

00:28.400 --> 00:30.450
on Persistence Storage.

00:30.470 --> 00:32.990
This will open the Persistence Wizard.

00:34.110 --> 00:37.070
It's also asking me for a passphrase.

00:37.080 --> 00:41.580
This is the passphrase that will be used to encrypt the storage.

00:42.000 --> 00:48.870
Make sure you pick something that is difficult to guess and difficult to brute force, but make sure

00:48.870 --> 00:51.030
it's also easy for you to remember.

00:52.120 --> 00:54.550
So I'm going to put my passphrase.

00:54.580 --> 00:57.760
I'm going to verify it in the second box.

00:57.760 --> 01:03.400
And once you're ready, you can click on Create to create the persistent storage.

01:04.680 --> 01:11.550
And once done, you will get a menu like this one right here which will ask you to what exactly you

01:11.550 --> 01:14.580
want to save in this persistent volume.

01:14.850 --> 01:19.050
So by default, you can see personal data is set to on.

01:19.290 --> 01:25.920
And what this will do, it will actually create a directory that you'll be able to see here in places

01:25.920 --> 01:27.180
called persistent.

01:27.180 --> 01:34.830
And anything you store in this directory will be persistent and will not be removed when you restart

01:34.830 --> 01:36.270
or shut down tails.

01:37.460 --> 01:40.650
Now, you can take any of these as you wish.

01:40.670 --> 01:43.910
For example, if you want to store your bookmarks, you want to take this.

01:43.940 --> 01:49.430
If you want to store the settings you set for your network connections, you want to take this.

01:49.430 --> 01:55.160
So, for example, if you connect to a Wi-Fi network, it will remember the password because otherwise

01:55.160 --> 01:59.930
with the installation that we have right now, the Wi-Fi settings are not stored.

01:59.930 --> 02:02.330
So you'll have to connect to the same network.

02:02.330 --> 02:06.800
If you are connecting to the same network every time you boot into tales.

02:07.790 --> 02:12.710
The additional software will not remove any software you install on tells.

02:12.740 --> 02:19.100
Now, you want to be careful about this because like I said, if hackers install software on your installation,

02:19.100 --> 02:21.770
then that software will also be persistent.

02:21.770 --> 02:25.610
So make sure you only turn this on if you know what you're doing.

02:26.340 --> 02:27.540
You have other options.

02:27.540 --> 02:32.640
For example, for printers, for Thunderbird, which is a mail Client GnuPG.

02:32.940 --> 02:35.190
The electron Bitcoin wallet.

02:35.190 --> 02:41.550
And basically turning on persistence for any of these programs will store anything you do within these

02:41.550 --> 02:43.770
programs and store all the settings.

02:44.220 --> 02:50.160
So I'm actually going to turn it on for Electron because I might want to store some keys in this Bitcoin

02:50.160 --> 02:52.950
wallet and I wouldn't want them to be deleted.

02:53.340 --> 02:59.670
I'm going to do the same with GnuPG because again, I might have some passwords in here or keys that

02:59.670 --> 03:03.660
I don't want them to be deleted when I restart or boot into tails.

03:03.660 --> 03:11.730
Again, I'll do this for Thunderbird as well and for pigeon just in case I actually go ahead and modify

03:11.730 --> 03:16.080
the settings of any of these programs or store something in these programs.

03:16.080 --> 03:17.730
I don't want it to be deleted.

03:17.730 --> 03:21.630
I want it to be stored every time I boot into tails.

03:21.630 --> 03:27.880
So like I said, go through these options, see which programs you might want to use and turn them on

03:27.880 --> 03:28.840
accordingly.

03:29.620 --> 03:33.280
Now, don't worry about these programs that I didn't really speak about.

03:33.310 --> 03:39.160
We will go through a lot of these programs as we go through the course and you'll learn exactly what

03:39.160 --> 03:40.570
they can be used for.

03:41.380 --> 03:45.700
Now I'm going to close this and I'm going to restart.

03:47.790 --> 03:55.320
And now when you get to the welcome Wizard of Tails, you'll see we have an extra option in here.

03:55.560 --> 04:03.060
So right now we can put the passphrase here and unlock the persistent storage or just click on start

04:03.090 --> 04:07.050
tails to start it normally without unlocking the storage.

04:07.050 --> 04:13.080
So it'll work exactly like we've seen in previous lectures with no persistence at all.

04:13.680 --> 04:20.010
So right now I actually want to unlock the persistent storage, so I'm going to put the passphrase that

04:20.010 --> 04:24.870
I created when I created the storage and I'm going to click on Unlock.

04:26.290 --> 04:29.560
As you can see, it's telling us that the storage is unlocked.

04:29.560 --> 04:37.150
And now if I start Tales, I should have access to this persistent storage and be able to store files

04:37.150 --> 04:43.510
in my persistent directory and all the settings that I'm going to change within the programs that I

04:43.510 --> 04:47.440
picked will still be stored even if I restart Tales.

04:48.200 --> 04:55.070
So if I go to places now, you will see we have an extra directory called Persistent.

04:56.030 --> 05:01.970
And anything we place in this directory will not be removed when we restart.

05:02.000 --> 05:03.950
Tails So let's try this.

05:03.950 --> 05:10.490
I'm going to right click and create a new folder and let's call this persistence test.

05:12.100 --> 05:19.900
So we have this new folder here and I'm going to create a new folder on the desktop and we'll call this

05:19.900 --> 05:20.860
test two.

05:21.520 --> 05:28.450
So when I restart tells now, test two should be removed because it's stored outside of the persistent

05:28.450 --> 05:31.630
storage and persistent test in here.

05:31.630 --> 05:33.430
Should still be here.

05:34.240 --> 05:40.600
I'm just going to do this to help you understand how to use this persistent storage so you can put any

05:40.630 --> 05:47.320
files that you don't want them to be removed in here, and then anything you store outside of this directory

05:47.350 --> 05:51.670
will be securely wiped every time you turn off tails.

05:52.540 --> 05:58.660
I'm also going to go ahead and connect to a Wi-Fi network because remember, when I configured persistence,

05:58.660 --> 06:05.860
I chose to store the network settings so any settings I make should be persistent and should not be

06:05.860 --> 06:08.250
reset when I restart tails.

06:08.260 --> 06:14.240
So I'm going to go to my Wi-Fi settings and I'm going to click on Select Network.

06:14.690 --> 06:21.860
I'm going to select my network and connect, put the password connect.

06:22.820 --> 06:25.310
And as you can see, the icon is restored.

06:25.310 --> 06:27.170
It's telling me tour is ready.

06:27.170 --> 06:33.930
And if I look in here, wired, disconnected, and Wi-Fi is connected to my network, too.

06:33.950 --> 06:41.480
So now when I restart the test in here, the test directory should be removed because it's outside of

06:41.480 --> 06:43.160
the persistent storage.

06:43.190 --> 06:51.440
The persistent test here should still be here because it's inside the persistent storage, and I should

06:51.440 --> 06:58.160
automatically connect to this network because I configured my network settings to be persistent.

06:58.760 --> 07:05.450
So this will go to show you that all of the programs that I turned on, the persistent option to will

07:05.450 --> 07:09.140
store any settings or anything that I do in them.

07:09.970 --> 07:12.190
So let's go ahead and restart.

07:13.440 --> 07:17.160
Okay, so we're back at the login screen again.

07:17.160 --> 07:24.450
As usual, I'm going to put my password in here to unlock the persistent volume unlock that's unlocked.

07:24.450 --> 07:24.990
Perfect.

07:25.020 --> 07:26.520
Now we're going to start it.

07:27.420 --> 07:29.250
And perfect, as you can see.

07:29.280 --> 07:33.180
First of all, we don't see the test directory that we created here.

07:33.210 --> 07:38.100
This is good because we created it outside of our persistent volume.

07:38.430 --> 07:43.530
Now let's go to places and go to our persistent volume.

07:45.310 --> 07:49.820
And as you can see, we do have the persistent directory right here.

07:49.840 --> 07:50.920
This is perfect.

07:50.920 --> 07:55.780
This should still be here because we created this inside the persistent volume.

07:55.780 --> 08:02.350
So if you stored any other files in here, you'll always be able to see them when you start tales.

08:03.230 --> 08:08.540
Let's go ahead and check if we automatically connect it to our Wi-Fi network.

08:08.750 --> 08:12.890
And perfect, as you can see it, automatically connected.

08:13.130 --> 08:19.370
Like I said, without persistent, you would have had to connect to your target network every time you

08:19.370 --> 08:22.820
start tales because the network settings won't be stored.

08:23.210 --> 08:29.110
This is just an example of all the other applications which we enabled persistent for.

08:29.120 --> 08:35.870
So right now I can use any of the other applications that I enabled persistence for, and anything I

08:35.870 --> 08:40.970
do on these applications will be stored even after I restart Tales.

08:41.540 --> 08:42.830
So this is perfect.

08:42.830 --> 08:45.290
Right now I have the best of both worlds.

08:45.290 --> 08:49.250
I can store files in a specific encrypted volume.

08:49.250 --> 08:56.150
I can also store some settings that I specifically chose and everything else will be securely wiped

08:56.150 --> 08:58.310
every time I turn off the machine.

08:58.640 --> 09:06.060
Not only that, but I still have the option of using tales with no persistence exactly as we seen in

09:06.060 --> 09:07.350
previous lectures.

09:08.180 --> 09:16.610
Let me restart and all I have to do is basically just start tales without unlocking the persistent volume.

09:16.910 --> 09:24.650
So right here, all I have to do is literally ignore this and just click on Start Tales and this will

09:24.650 --> 09:29.450
start it for me in the normal mode without mounting the persistent volume.

09:29.450 --> 09:34.640
So I won't even have access to the file stored in the persistent directory.

09:35.300 --> 09:41.240
So now even if I go to places, I don't even have a directory called Persistent.

09:42.080 --> 09:49.070
And just to confirm, if I go to my network settings, you'll see that it's detecting that I have a

09:49.100 --> 09:55.790
Wi-Fi adapter, but it's not automatically connecting to my network, even though that we can detect

09:55.790 --> 10:03.500
the network because the network settings are not accessible, because we started Tales without mounting

10:03.500 --> 10:05.030
the persistent volume.

10:06.110 --> 10:14.510
So right now we have an installation of tails on a USB stick that we can use as an amnesic live operating

10:14.510 --> 10:18.260
system where nothing gets stored once you shut it down.

10:18.260 --> 10:25.490
And if we wanted to, we can unlock the persistent volume which will allow us to store files in a specific

10:25.490 --> 10:32.630
location, and it will also allow us to restore the settings for the programs that we enabled persistence

10:32.630 --> 10:33.290
for.

10:33.980 --> 10:41.270
And keep in mind, all of these settings and all of these files are stored in an encrypted volume that

10:41.270 --> 10:45.620
is encrypted with a passphrase that we pick ourselves.

10:46.890 --> 10:54.810
Now, if for any reason you wanted to delete the persistence storage, all you have to do is go to applications

10:54.810 --> 11:01.160
again, two tales Persistence, storage and click on Delete.

11:01.170 --> 11:03.300
This will ask you if you really want to do this.

11:03.300 --> 11:04.260
I'm going to say yes.

11:04.260 --> 11:05.940
Delete it for me please.

11:06.120 --> 11:06.990
And that's it.

11:07.020 --> 11:08.280
Now it's deleted.

11:08.280 --> 11:16.050
So now if you restart you won't even get the option to unlock the persistence volume because it is deleted.
