[Openstack-operators] [openstack-dev] [nova] Is verification of images in the image cache necessary?

Dan Smith dms at danplanet.com
Tue May 24 17:28:58 UTC 2016

> It was my impression we were trying to prevent bitrot, not defend
> against an attacker that has gained control over the compute node.

I think we've established that addressing bitrot at the nova layer is
(far) out of scope and not something we want or need to do in nova.


More information about the OpenStack-operators mailing list