security-doc/security-notes
Josephine Seifert 8b27aa09ee OSSN-0089: Missing configuration option in Secure Live Migration guide
The guide to enable secure live migration with QEMU-native tls on
nova compute nodes missed an important config option. Without this
option a default connection is uses which is TCP instead of TLS.
This leads to an unecrypted migration of the ram.

Closes-Bug: #1919357
Change-Id: I5cbc4ec8f15ca7c66ca9562b536299524ab5999c
2021-04-12 09:46:12 +02:00
..
2018-09-24 20:38:04 +08:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2018-09-24 20:38:04 +08:00
2016-07-11 10:51:07 +00:00
2018-09-24 20:38:04 +08:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2016-07-11 10:51:07 +00:00
2018-05-31 04:53:37 +00:00
2016-09-07 16:43:47 +00:00
2018-09-24 20:38:04 +08:00
2016-11-11 19:52:25 +01:00
2017-03-14 18:26:27 +00:00
2017-07-20 15:56:20 +01:00
2017-09-07 13:37:29 +01:00
2017-10-04 15:42:26 +01:00
2018-04-17 23:21:08 -06:00
2020-06-30 08:43:51 -04:00
2018-12-05 12:31:23 +01:00

OpenStack Security Notes (OSSN)

The OpenStack Security Group (OSSG) publishes Security Notes to advise users of security related issues. Security notes are similar to advisories; they address vulnerabilities in 3rd party tools typically used within OpenStack deployments and provide guidance on common configuration mistakes that can result in an insecure operating environment.

Repository Layout

This repository contains published Security Notes and templates that should be used when creating new Security Notes.

notes - contains Security Notes in e-mail format (see the templates)
templates - contains e-mail and wiki format templates

A list of published Security Notes is available here:

https://wiki.openstack.org/wiki/Security_Notes

The process used to create new Security Notes is available here:

https://wiki.openstack.org/wiki/Security/Security_Note_Process