Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-18 Thread Yaniv Dary
On 06/12/2015 02:40 PM, Nir Soffer wrote: - Original Message - From: "Oved Ourfali" To: "Nir Soffer" Cc: "Eric Blake" , "devel" , "Michal Skrivanek" Sent: Friday, June 12, 2015 2:35:30 PM Subject: Re: [ovirt-devel] Libvirt secret

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-16 Thread Michal Skrivanek
On 16 Jun 2015, at 18:22, Nir Soffer wrote: > > > - Original Message - >> From: "Michal Skrivanek" >> To: "Nir Soffer" >> Cc: "Francesco Romani" , "devel" , >> "Adam Litke" , "Federico >> Simoncelli" , "Dan Kenigsberg" , >> "Allon Mureinik" , >> "Daniel Erez" , "Eric Blake" >> Sent

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-16 Thread Nir Soffer
- Original Message - > From: "Michal Skrivanek" > To: "Nir Soffer" > Cc: "Francesco Romani" , "devel" , "Adam > Litke" , "Federico > Simoncelli" , "Dan Kenigsberg" , > "Allon Mureinik" , > "Daniel Erez" , "Eric Blake" > Sent: Tuesday, June 16, 2015 6:57:35 PM > Subject: Re: Libvirt s

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-16 Thread Michal Skrivanek
On 15 Jun 2015, at 17:57, Nir Soffer wrote: > - Original Message - >> From: "Michal Skrivanek" >> To: "Nir Soffer" >> Cc: "Francesco Romani" , "devel" , >> "Adam Litke" , "Federico >> Simoncelli" , "Dan Kenigsberg" , >> "Allon Mureinik" , >> "Daniel Erez" , "Eric Blake" >> Sent: Mo

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Nir Soffer
- Original Message - > From: "Michal Skrivanek" > To: "Nir Soffer" > Cc: "Francesco Romani" , "devel" , "Adam > Litke" , "Federico > Simoncelli" , "Dan Kenigsberg" , > "Allon Mureinik" , > "Daniel Erez" , "Eric Blake" > Sent: Monday, June 15, 2015 6:20:34 PM > Subject: Re: Libvirt secr

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Michal Skrivanek
On 15 Jun 2015, at 17:33, Nir Soffer wrote: > > > - Original Message - >> From: "Michal Skrivanek" >> To: "Francesco Romani" , "Nir Soffer" >> >> Cc: "devel" , "Adam Litke" , "Federico >> Simoncelli" , "Dan >> Kenigsberg" , "Allon Mureinik" , >> "Daniel Erez" , "Eric >> Blake" >>

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Nir Soffer
- Original Message - > From: "Michal Skrivanek" > To: "Francesco Romani" , "Nir Soffer" > Cc: "devel" , "Adam Litke" , "Federico > Simoncelli" , "Dan > Kenigsberg" , "Allon Mureinik" , > "Daniel Erez" , "Eric > Blake" > Sent: Monday, June 15, 2015 6:30:00 PM > Subject: Re: Libvirt se

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Michal Skrivanek
On 15 Jun 2015, at 17:16, Francesco Romani wrote: > - Original Message - >> From: "Nir Soffer" >> To: "Francesco Romani" >> Cc: "devel" , "Adam Litke" , "Federico >> Simoncelli" , "Dan >> Kenigsberg" , "Allon Mureinik" , >> "Daniel Erez" , "Michal >> Skrivanek" , "Eric Blake" >> Sent

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Michal Skrivanek
On 15 Jun 2015, at 17:06, Nir Soffer wrote: > > > - Original Message - >> From: "Francesco Romani" >> To: "devel" >> Cc: "Adam Litke" , "Federico Simoncelli" >> , "Dan Kenigsberg" >> , "Allon Mureinik" , "Daniel Erez" >> , "Michal Skrivanek" >> , "Eric Blake" , "Nir Soffer" >> >>

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Francesco Romani
- Original Message - > From: "Nir Soffer" > To: "Francesco Romani" > Cc: "devel" , "Adam Litke" , "Federico > Simoncelli" , "Dan > Kenigsberg" , "Allon Mureinik" , > "Daniel Erez" , "Michal > Skrivanek" , "Eric Blake" > Sent: Monday, June 15, 2015 5:06:09 PM > Subject: Re: Libvirt secr

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Nir Soffer
- Original Message - > From: "Francesco Romani" > To: "devel" > Cc: "Adam Litke" , "Federico Simoncelli" > , "Dan Kenigsberg" > , "Allon Mureinik" , "Daniel Erez" > , "Michal Skrivanek" > , "Eric Blake" , "Nir Soffer" > > Sent: Monday, June 15, 2015 4:08:09 PM > Subject: Re: Libvirt

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-15 Thread Francesco Romani
- Original Message - > From: "Nir Soffer" > To: "Adam Litke" > Cc: "devel" , "Francesco Romani" , > "Federico Simoncelli" , > "Dan Kenigsberg" , "Allon Mureinik" , > "Daniel Erez" , > "Michal Skrivanek" , "Eric Blake" > Sent: Saturday, June 13, 2015 11:14:03 PM > Subject: Re: Libvirt s

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-13 Thread Nir Soffer
- Original Message - > From: "Adam Litke" > To: "Nir Soffer" > Cc: "devel" , "Francesco Romani" , > "Federico Simoncelli" , > "Dan Kenigsberg" , "Allon Mureinik" , > "Daniel Erez" , > "Michal Skrivanek" , "Eric Blake" > Sent: Saturday, June 13, 2015 4:52:19 PM > Subject: Re: Libvirt se

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-13 Thread Adam Litke
On 12/06/15 08:10 -0400, Nir Soffer wrote: Here are more details on the new approach. A Ceph key is required only when starting a vm or hot-plugging a disk. Once the operation is done, libvirt does not need the Ceph key any more. A vm operation requiring a secret, will register a Ceph key usi

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-12 Thread Nir Soffer
Here are more details on the new approach. A Ceph key is required only when starting a vm or hot-plugging a disk. Once the operation is done, libvirt does not need the Ceph key any more. A vm operation requiring a secret, will register a Ceph key using new random UUID, and remove the libvirt secr

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-12 Thread Nir Soffer
- Original Message - > From: "Oved Ourfali" > To: "Nir Soffer" > Cc: "Eric Blake" , "devel" , "Michal > Skrivanek" > Sent: Friday, June 12, 2015 2:35:30 PM > Subject: Re: [ovirt-devel] Libvirt secrets management - tak

Re: [ovirt-devel] Libvirt secrets management - take 2

2015-06-12 Thread Oved Ourfali
On Jun 12, 2015 14:21, Nir Soffer wrote: > > Hi all, > > Recently support for Ceph network disk landed in master. It its possible > now to start a vm using Ceph network disk or hot-plug/unplug such disk > using Cephx authentication. > > However, to make it work, you must add the relevant Ceph

[ovirt-devel] Libvirt secrets management - take 2

2015-06-12 Thread Nir Soffer
Hi all, Recently support for Ceph network disk landed in master. It its possible now to start a vm using Ceph network disk or hot-plug/unplug such disk using Cephx authentication. However, to make it work, you must add the relevant Ceph secret to libvirt manually, in the same way it is done in Op