tunnelled migration

Mark Wu wudxw at linux.vnet.ibm.com
Fri Jan 11 06:05:10 UTC 2013


On 01/11/2013 04:14 AM, Caitlin Bestler wrote:
> Dan Kenisberg wrote:
>
>
>> Choosing tunnelled migration is thus a matter of policy. I would like to suggest a new cluster-level configurable in Engine,
>> that controls whether migrations in this cluster are tunnelled. The configurable must be available only in new cluster levels
>> where hosts support it.
> Why not just dump this issue to network configuration?
>
> Migrations occur over a secure network. That security could be provided by port groups, VLANs or encrypted tunnels.
Agreed. Is a separate vlan network not secure enough?  If yes, we could 
build a virtual encrypted network, like using openvpn + iptables.
>
> _______________________________________________
> Arch mailing list
> Arch at ovirt.org
> http://lists.ovirt.org/mailman/listinfo/arch
>




More information about the Arch mailing list