On Wed, Jul 29, 2026 at 08:58:53 +0000, Abhisek Panda wrote:
> For encrypted migration of VMs, QEMU provides the TLS-PSK
> authentication apart from TLS certificates. This mechanism relies on
> pre-shared keys (a secret key that is known to both sender and receiver
> prior to secure communication) for providing secure transfer of data.
> Libvirt handles the lifecycle of pre-shared keys, managing their
> generation, persistent storage, and cleanup.
> 
> Add the "migrate_tls_psk_length" configuration attribute to qemu.conf
> to allow users to define the size of the pre-shared key.
> 
> Signed-off-by: Abhisek Panda <[email protected]>
> ---
>  src/qemu/libvirtd_qemu.aug         |  1 +
>  src/qemu/qemu.conf.in              |  8 ++++++++
>  src/qemu/qemu_conf.c               | 18 ++++++++++++++++++
>  src/qemu/qemu_conf.h               |  1 +
>  src/qemu/test_libvirtd_qemu.aug.in |  1 +
>  5 files changed, 29 insertions(+)

Reviewed-by: Peter Krempa <[email protected]>

Reply via email to