Hi folks,

Has there been any discussion in the community
for using nova-spicehtml5proxy to connect to spice tls port ?

For example, if a vm is booted using qemu by enabling spice_tls mode in 
qemu.conf,
it enables tls encryption on spice server for that vm.

nova-spicehtml5proxy is based on websockify, which supports ssl wrapped sockets.
It would be great, if nova-spicehtml5proxy could decide based on config param 
in nova.conf
regarding use of normal sockets or ssl wrapped sockets to connect to spice 
server.

This would ensure SSL encryption from spice proxy to spice server.
Are there any concerns with this approach ?

Thanks,
Meghal

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

_______________________________________________
OpenStack-dev mailing list
OpenStack-dev@lists.openstack.org
http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev

Reply via email to