[Openstack] trusted computing and nova

Chris Wright chrisw at sous-sol.org
Fri Dec 9 20:32:48 UTC 2011

* Yang, Fred (fred.yang at intel.com) wrote:
> * Vishvananda Ishaya (vishvananda at gmail.com) wrote:
> > 1. add an admin api to add and remove hosts from an availabilty zone.
> > Then the component that is verifying trust could periodically check the
> > hosts and remove them from the trusted zone if they fail. The scheduler
> > could just use regular availability-zone scheduling to send the hosts
> > to the trusted zone.
> Service providers can have mixed computing nodes of trusted or non-trusted nodes dispatched pending on subscribers' demands.  The intent is to make "trust" to be transparent to providers' zone setup

I think this would work well with the host-aggregates proposal.
A VM would then only be scheduled on and migratable to a "trusted"
host aggregate.



