Securing RHV based virtual ctrlplane.
Issue
- To configure Red Hat OpenStack (RHOSP) to be deployed with virtualized ctrl plane on top of Red Hat Virtualization (RHV) we need to provide Ironic and Pacemaker with access to the RHV admin user and password.
- Our documentation uses the
admin@internal
user credentials. - This may be ok for most deployments however may not meet the needs of customers in secured environments.
- This could be considered a security risk as anyone with access to the RHOSP infrastructure can obtain the credentials to take control of the RHV infrastructure.
Environment
Red Hat OpenStack Platform 16.1
Red Hat OpenStack Platform 16.2
Red Hat Virtualization 4.4
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.