We keep seeing people concerned about data leakage and thorough deletion of data from volumes on volume deletion [1][2], and Cinder currently only worries about the data leakage, not the stealing of the physical disks. In order to clarify this for administrators and to reduce the number of specs proposed to address this issue we are adding additional documentation on security aspects as well as data leakage. This patch was decided as an action from the discussion during the Wallaby PTG [3]. [1]: https://review.opendev.org/#/c/758375/ [2]: https://review.opendev.org/#/c/759553/ [3]: https://wiki.openstack.org/wiki/CinderWallabyPTGSummary#Two_proposed_specs_on_the_same_topic_.28mutually_assured_destruction.29 Change-Id: I9f8d413cf8337e75241ad24c85692135b34a17fc Implements: blueprint specify-data-secure-deletion
2.2 KiB
Cinder Administration
The OpenStack Block Storage service works through the interaction of
a series of daemon processes named cinder-*
that reside
persistently on the host machine or machines. You can run all the
binaries from a single node, or spread across multiple nodes. You can
also run them on the same node as other OpenStack services.
To administer the OpenStack Block Storage service, it is helpful to understand a number of concepts. You must make certain choices when you configure the Block Storage service in OpenStack. The bulk of the options come down to two choices - single node or multi-node install. You can read a longer discussion about Storage Decisions in the OpenStack Operations Guide.
OpenStack Block Storage enables you to add extra block-level storage to your OpenStack Compute instances. This service is similar to the Amazon EC2 Elastic Block Storage (EBS) offering.
blockstorage-security.rst blockstorage-accelerate-image-compression.rst blockstorage-api-throughput.rst blockstorage-manage-volumes.rst blockstorage-troubleshoot.rst blockstorage-availability-zone-type.rst generalized_filters.rst blockstorage-backup-disks.rst blockstorage-boot-from-volume.rst blockstorage-basic-volume-qos.rst blockstorage-capacity-based-qos.rst blockstorage-consistency-groups.rst blockstorage-driver-filter-weighing.rst blockstorage-get-capabilities.rst blockstorage-groups.rst blockstorage-image-volume-cache.rst blockstorage-lio-iscsi-support.rst blockstorage-multi-backend.rst blockstorage-nfs-backend.rst blockstorage-over-subscription.rst blockstorage-ratelimit-volume-copy-bandwidth.rst blockstorage-volume-backed-image.rst blockstorage-volume-backups-export-import.rst blockstorage-volume-backups.rst blockstorage-volume-migration.rst blockstorage-volume-multiattach.rst blockstorage-volume-number-weigher.rst