On Mon, Dec 28, 2020 at 08:59:39PM +0800, zihao chang wrote: > Hi all: > The VNC of QEMU suppots TLS encryption. The client & server can use > arbitrary certificates from CA certificates the running VM loaded(user can > use new certificates immediately), but if the CA certificate is changed to > a new one,the running VM still use the old CA. > Is it reasonable to provide an API(e.g.QMP) to replace the CA certificate > for running VM live?Any security problem?
It makes sense as a concept. Just needs someone to write the code to deal with it. Regards, Daniel -- |: https://berrange.com -o- https://www.flickr.com/photos/dberrange :| |: https://libvirt.org -o- https://fstop138.berrange.com :| |: https://entangle-photo.org -o- https://www.instagram.com/dberrange :|