Hi Fabrice, If users do not have a Secret Key and API key then they cannot use the API. You could use a SQL Query to go through and remove all Keys. Admins could still use the unauthenticated API Port, obviously on a random port for enhanced security.
Regards Geoff -----Original Message----- From: Fabrice Brazier [mailto:fabrice.braz...@apalia.net] Sent: 15 November 2012 10:55 To: cloudstack-users@incubator.apache.org Subject: Forbid direct API connection Hi Folks, Is there a way to disable the API connection on a management server ? I don’t want to allow api request from internet. Thanks, Fabrice -- Fabrice Brazier *Apalia*™* *FR: +33-632-73-53-00 *http://www.apalia.net fabrice.braz...@apalia.net* ShapeBlue provides a range of strategic and technical consulting and implementation services to help IT Service Providers and Enterprises to build a true IaaS compute cloud. ShapeBlue’s expertise, combined with CloudStack technology, allows IT Service Providers and Enterprises to deliver true, utility based, IaaS to the customer or end-user. ________________________________ This email and any attachments to it may be confidential and are intended solely for the use of the individual to whom it is addressed. Any views or opinions expressed are solely those of the author and do not necessarily represent those of Shape Blue Ltd. If you are not the intended recipient of this email, you must neither take any action based upon its contents, nor copy or show it to anyone. Please contact the sender if you believe you have received this email in error. Shape Blue Ltd is a company incorporated in England & Wales.