On 08/16/2011 04:22 PM, Lars Ellenberg wrote:
> On Tue, Aug 16, 2011 at 12:55:28PM -0400, Digimer wrote:
>> A couple of comments:
>>
>>>         net {
>>>                 allow-two-primaries;                 
>>>                 cram-hmac-alg sha1;
>>>                 shared-secret "123456";
>>
>> You're on a dedicated link, so there is no real reason to add the
>> overhead of encryption.
> 
> DRBD does not do encryption.
> This is only a challenge response "pre-shared-key" like "authentication"
> of the peers during the initial handshake.
> 
> The rest of the DRBD TCP session will be just as "plain text"
> as without this option.

Oh, huh, ok then.

-- 
Digimer
E-Mail:              digi...@alteeve.com
Freenode handle:     digimer
Papers and Projects: http://alteeve.com
Node Assassin:       http://nodeassassin.org
"At what point did we forget that the Space Shuttle was, essentially,
a program that strapped human beings to an explosion and tried to stab
through the sky with fire and math?"
_______________________________________________
drbd-user mailing list
drbd-user@lists.linbit.com
http://lists.linbit.com/mailman/listinfo/drbd-user

Reply via email to