summaryrefslogtreecommitdiff
path: root/Gobs Ceph Client Key Access.md
diff options
context:
space:
mode:
authorJasper Ras <jras@hostnet.nl>2025-04-04 14:31:53 +0200
committerJasper Ras <jras@hostnet.nl>2025-04-04 14:31:53 +0200
commitf9034731fa234a4b5efa1d2d6147fe1e798b6d36 (patch)
tree3e0ca7f2f73dbdafd666ce0d0a7b04d457394401 /Gobs Ceph Client Key Access.md
parent3f69286ef4b15161febb4a4bae085fb4c2c83bbf (diff)
vault backup: 2025-04-04 14:31:53
Diffstat (limited to 'Gobs Ceph Client Key Access.md')
-rw-r--r--Gobs Ceph Client Key Access.md13
1 files changed, 13 insertions, 0 deletions
diff --git a/Gobs Ceph Client Key Access.md b/Gobs Ceph Client Key Access.md
new file mode 100644
index 0000000..d8f86c7
--- /dev/null
+++ b/Gobs Ceph Client Key Access.md
@@ -0,0 +1,13 @@
+---
+tags:
+ - work
+ - gobs
+ - ceph
+ - openstack
+---
+[[Overview of Ceph]]
+
+Ceph credentials are typically stored in a keyring file under `/etc/ceph`. Nova has a a key there owned by nova/nova.
+Instead of adding a new key I've added the `goba` user to the `nova` group and modified our hieradata to specify a mode which allows the group to read the keyring.
+
+https://gitlab.group.one/groupvps/hieradata/-/merge_requests/499/diffs