Comment 22 for bug 1372635

Revision history for this message
Thierry Carrez (ttx) wrote :

@Rob: unfortunately we singled that design flaw a long time ago (you were still on the VMT then) and nothing was done to fix it. In some cases it's oversight (like in this driver), in some others it's an architectural choice (like in Swift using unencrypted rsync on the management network). Unless a group takes on the task to fix it throughout OpenStack (and folows up with patches and hangs there until they get approved and merged), I don't see any progress coming.

Do you think the OSSG could form a workgroup around that ? We already have one proposed to eradicate XSS from Horizon... we really need one taking on absence of proper encryption on the management network side.