[openstack-dev] Glance Image signing and verification

2016-02-16 Thread Benjamin, Bruce P.
All, Here are operations guide instructions currently in review to add signed images and configure Nova to automatically check the signature prior to conditionally booting an image. https://review.openstack.org/#/c/245886/. These instructions are more up to date than the ones on the etherpad.

[openstack-dev] [Barbican] KMIP support

2014-06-04 Thread Benjamin, Bruce P.
All, I'm researching a bunch of HSM applications and I'm struggling to find much info. I was wondering about the progress of KMIP support in Barbican? Is this waiting on an open python KMIP support? Just for a bit more clarification, APL is supporting a KMIP implementation as a

[openstack-dev] [Nova] FFE Request: Encrypt Cinder volumes

2013-09-06 Thread Benjamin, Bruce P.
We request that volume encryption [1] be granted an exception to the feature freeze for Havana-3. Volume encryption [2] provides a usable layer of protection to user data as it is transmitted through a network and when it is stored on disk. The main patch [2] has been under review since the