diff options
author | Jasper Ras <jras@hostnet.nl> | 2025-04-04 14:31:53 +0200 |
---|---|---|
committer | Jasper Ras <jras@hostnet.nl> | 2025-04-04 14:31:53 +0200 |
commit | f9034731fa234a4b5efa1d2d6147fe1e798b6d36 (patch) | |
tree | 3e0ca7f2f73dbdafd666ce0d0a7b04d457394401 /Gobs Ceph Client Key Access.md | |
parent | 3f69286ef4b15161febb4a4bae085fb4c2c83bbf (diff) |
vault backup: 2025-04-04 14:31:53
Diffstat (limited to 'Gobs Ceph Client Key Access.md')
-rw-r--r-- | Gobs Ceph Client Key Access.md | 13 |
1 files changed, 13 insertions, 0 deletions
diff --git a/Gobs Ceph Client Key Access.md b/Gobs Ceph Client Key Access.md new file mode 100644 index 0000000..d8f86c7 --- /dev/null +++ b/Gobs Ceph Client Key Access.md @@ -0,0 +1,13 @@ +--- +tags: + - work + - gobs + - ceph + - openstack +--- +[[Overview of Ceph]] + +Ceph credentials are typically stored in a keyring file under `/etc/ceph`. Nova has a a key there owned by nova/nova. +Instead of adding a new key I've added the `goba` user to the `nova` group and modified our hieradata to specify a mode which allows the group to read the keyring. + +https://gitlab.group.one/groupvps/hieradata/-/merge_requests/499/diffs |