Re: secure hosts communications

2019-02-01 Thread Ugo Vasi
rom:* Ugo Vasi *Sent:* Friday, February 1, 2019 2:47:42 PM *To:* Rohit Yadav; users@cloudstack.apache.org *Subject:* Re: secure hosts communications Hi Rohit, I think I've found the problem: following the configuration instructions of the agent, we are told to only modify the file /etc/libvirt/libvi

Re: secure hosts communications

2019-02-01 Thread Rohit Yadav
bruary 1, 2019 2:47:42 PM To: Rohit Yadav; users@cloudstack.apache.org Subject: Re: secure hosts communications Hi Rohit, I think I've found the problem: following the configuration instructions of the agent, we are told to only modify the file /etc/libvirt/libvirtd.conf for the ubuntu 16.04

Re: secure hosts communications

2019-02-01 Thread Ugo Vasi
Rohit Yadav; users@cloudstack.apache.org *Subject:* Re: secure hosts communications Hi Rohit, the cloudstack-agent  version is 4.11.2.0: # dpkg -l cloudstack-agent Desired=Unknown/Install/Remove/Purge/Hold | Status=Not/Inst/Conf-files/Unpacked/halF-conf/Half-inst/trig-aWait/Trig-pend |/ Err?=(none

Re: secure hosts communications

2019-01-31 Thread Rohit Yadav
16514 - Rohit <https://cloudstack.apache.org> From: Ugo Vasi Sent: Thursday, January 31, 2019 7:08:00 PM To: Rohit Yadav; users@cloudstack.apache.org Subject: Re: secure hosts communications Hi Rohit, the cloudstack-agent version is 4.11.2.0: # d

Re: secure hosts communications

2019-01-31 Thread Ugo Vasi
u upgrade to the latest LTS minor 4.11.2.0 release? If not please do that, we've some bugs around CA certificates fixed. - Rohit rohit.ya...@shapeblue.com www.shapeblue.com @shapeblue -------- *From:* Ugo Vasi *Sent:* Thursday, Januar

Re: secure hosts communications

2019-01-31 Thread Rohit Yadav
m: Ugo Vasi Sent: Thursday, January 31, 2019 4:56:28 PM To: users@cloudstack.apache.org; Rohit Yadav Subject: Re: secure hosts communications Update: by rebooting the host system, the libvirt is restarted and the ACS-agent has been reconnected to management. The host remains in "unsecure"

Re: secure hosts communications

2019-01-31 Thread Ugo Vasi
- Rohit rohit.ya...@shapeblue.com www.shapeblue.com @shapeblue *From:* Ugo Vasi *Sent:* Wednesday, January 30, 2019 4:47:09 PM *To:* users@cloudstack.apache.org; Rohit Yadav *Subject:* Re: secure hosts communications Hi Rohit,

Re: secure hosts communications

2019-01-31 Thread Ugo Vasi
ohit rohit.ya...@shapeblue.com www.shapeblue.com @shapeblue *From:* Ugo Vasi *Sent:* Wednesday, January 30, 2019 4:47:09 PM *To:* users@cloudstack.apache.org; Rohit Yadav *Subject:* Re: secure hosts communications Hi Rohit, I hav

Re: secure hosts communications

2019-01-31 Thread Rohit Yadav
com >> www.shapeblue.com<http://www.shapeblue.com> >> @shapeblue >> >> ------------ >> *From:* Ugo Vasi >> *Sent:* Wednesday, January 30, 2019 6:43:00 PM >> *To:* Rohit Yadav; users@cloudstack.apach

Re: secure hosts communications

2019-01-31 Thread Ugo Vasi
asi > *Sent:* Wednesday, January 30, 2019 4:47:09 PM > *To:* users@cloudstack.apache.org; Rohit Yadav > *Subject:* Re: secure hosts communications > Hi Rohit, > I have a 4.11.2.0 ACS infrastructure (Ubuntu 16.04 with KVM hypervisor) > I see that all the hosts are in unsec

Re: secure hosts communications

2019-01-31 Thread Ugo Vasi
January 30, 2019 6:43:00 PM *To:* Rohit Yadav; users@cloudstack.apache.org *Subject:* Re: secure hosts communications Hi Rohit, what I do not understand is if in this ACS version (4.11.2.0) you have to start the procedure manually or it is done during the installation. Did I skip some st

Re: secure hosts communications

2019-01-30 Thread Rohit Yadav
, January 30, 2019 4:47:09 PM > *To:* users@cloudstack.apache.org; Rohit Yadav > *Subject:* Re: secure hosts communications > Hi Rohit, > I have a 4.11.2.0 ACS infrastructure (Ubuntu 16.04 with KVM hypervisor) > I see that all the hosts are in unsecure state from the UI and so the &g

Re: secure hosts communications

2019-01-30 Thread Ugo Vasi
). - Rohit rohit.ya...@shapeblue.com www.shapeblue.com @shapeblue *From:* Ugo Vasi *Sent:* Wednesday, January 30, 2019 4:47:09 PM *To:* users@cloudstack.apache.org; Rohit Yadav *Subject:* Re: secure hosts communications Hi Rohit

Re: secure hosts communications

2019-01-30 Thread Rohit Yadav
-effects on existing running VMs). - Rohit <https://cloudstack.apache.org> From: Ugo Vasi Sent: Wednesday, January 30, 2019 4:47:09 PM To: users@cloudstack.apache.org; Rohit Yadav Subject: Re: secure hosts communications Hi Rohit, I have a 4.11.2

Re: secure hosts communications

2019-01-30 Thread Ugo Vasi
the provisionCertificate API as well. - Rohit <https://cloudstack.apache.org> From: Richard Persaud Sent: Monday, November 26, 2018 8:19:56 PM To: users@cloudstack.apache.org Subject: RE: secure hosts communications Thank you, Rohit. I am using

Re: secure hosts communications

2018-11-27 Thread Rohit Yadav
tps://cloudstack.apache.org> From: Richard Persaud Sent: Monday, November 26, 2018 8:19:56 PM To: users@cloudstack.apache.org Subject: RE: secure hosts communications Thank you, Rohit. I am using 4.11.1 with a full KVM environment. They are showing unsecure with strictne

RE: secure hosts communications

2018-11-26 Thread Richard Persaud
@cloudstack.apache.org Subject: Re: secure hosts communications ⚠ EXT MSG: Richard, Starting 4.11, agent and management servers will use an in-built CA framework to secured hosts. Only in case of KVM hosts you may see an insecure state, otherwise all KVM hosts (agents) and SSVM/CPVM agents

Re: secure hosts communications

2018-11-24 Thread Rohit Yadav
Richard, Starting 4.11, agent and management servers will use an in-built CA framework to secured hosts. Only in case of KVM hosts you may see an insecure state, otherwise all KVM hosts (agents) and SSVM/CPVM agents will by default in Up state will be secured. There is an auth strictness