Configuration
Specifications
| Model | ThinkPad X1 Carbon Gen 11 (14") |
|---|---|
| CPU / RAM | Intel i7-1365U · 16 GB |
| OS | Qubes OS / Tails / hardened Debian (your choice) |
| Firmware | BIOS password + Secure Boot with your keys |
What this does not protect against
- Coreboot/Heads is NOT available on this recent hardware — OS + firmware hardening, not measured boot.
- Intel ME present (neutralization not guaranteed on this generation).
- No protection once the machine is unlocked and running.