[Openstack] trusted computing and nova

Yang, Fred fred.yang at intel.com
Fri Dec 9 21:58:10 UTC 2011


> From: Chris Wright [mailto:chrisw at sous-sol.org]
> * Yang, Fred (fred.yang at intel.com) wrote:
> > * Vishvananda Ishaya (vishvananda at gmail.com) wrote:
> > > 1. add an admin api to add and remove hosts from an availabilty
> zone.
> > > Then the component that is verifying trust could periodically check
> the
> > > hosts and remove them from the trusted zone if they fail. The
> scheduler
> > > could just use regular availability-zone scheduling to send the
> hosts
> > > to the trusted zone.
> > Service providers can have mixed computing nodes of trusted or non-
> trusted nodes dispatched pending on subscribers' demands.  The intent
> is to make "trust" to be transparent to providers' zone setup
> 
> I think this would work well with the host-aggregates proposal.
> A VM would then only be scheduled on and migratable to a "trusted"
> host aggregate.
> 
> http://wiki.openstack.org/host-aggregates
Got to agree API approach is much less invasive to Nova scheduler, worthwhile to pursue
-Fred




More information about the Openstack mailing list