[Openstack] [Barbican] Key Recovery / Availability

Clark, Robert Graham robert.clark at hp.com
Wed Mar 19 18:50:48 UTC 2014



> -----Original Message-----
> From: Clint Byrum [mailto:clint at fewbar.com]
> Sent: 19 March 2014 18:22
> To: openstack
> Subject: Re: [Openstack] [Barbican] Key Recovery / Availability
> 
> Excerpts from Clark, Robert Graham's message of 2014-03-19 07:41:35 -
> 0700:
> > Has there been much discussion on how to ensure that keys are
> > recoverable in the event that Barbican has some sort of horrific
> > failure?
> >
> > I suppose a HA frontend, Redundant Keystore Databases and HA paired
> > HSMs would be the most obvious non-code-writing path but this feels
> > pretty clunky, I was wondering if it had been discussed yet?
Possibly
> > it should be something for a design session?
> >
> 
> Sorry, what is clunky about backing up your data?
> 
> _______________________________________________

There's nothing clunky about backups, I was just wondering what
approaches people were considering for data resiliency in Barbican,
beyond the obvious scenario I described.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6187 bytes
Desc: not available
URL: <http://lists.openstack.org/pipermail/openstack/attachments/20140319/771626dc/attachment.bin>


More information about the Openstack mailing list