Bug 1352501 - [RFE] LUKs key management on RHEV
Summary: [RFE] LUKs key management on RHEV
Status: NEW
Alias: None
Product: Red Hat Enterprise Virtualization Manager
Classification: Red Hat
Component: RFEs
Version: 3.5.0
Hardware: All
OS: All
Target Milestone: ---
: ---
Assignee: Rob Young
QA Contact: meital avital
Depends On: 1301026 1821539 1301019 1301021 1406796 1406803 1406805 1518998 1518999 1631239
TreeView+ depends on / blocked
Reported: 2016-07-04 09:28 UTC by vaibhav
Modified: 2020-09-17 06:48 UTC (History)
9 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Last Closed: 2018-06-18 13:57:20 UTC
oVirt Team: Virt
Target Upstream Version:

Attachments (Terms of Use)

Description vaibhav 2016-07-04 09:28:00 UTC
Description of problem: LUKs key management for VMs running on RHEV

We want to encrypt VMs root disk and non root disk by LUKs encryption and that encryption related things should be taken care by RHEV.

Customer's statement :- I'm required to run our guest linux VMs (RHEL7.2) with full LUKs encryption of their root fs and any extra virtual disks attached. Having to enter a LUKS key phrase on boot of each VM is not practical. Does RHEV have any sort of LUKS key management for supporting LUKS encrypted virtual machines?

Version-Release number of selected component (if applicable):

How reproducible:

Steps to Reproduce:

Actual results:

Expected results:

Additional info:

Comment 7 vaibhav 2017-04-15 00:41:42 UTC
I have communicated same to the customer. Customer didn't came back yet.

Comment 8 Klaas Demter 2017-11-14 15:20:10 UTC
there is https://bugzilla.redhat.com/show_bug.cgi?id=1336045 with a similar goal, but in general this is already covered by rhel I'd say ( https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/security_guide/sec-using_network-bound_disk_encryption )

Comment 10 Martin Tessun 2018-06-18 13:57:20 UTC
Thank you for submitting this request for inclusion in Red Hat Virtualization. We've carefully evaluated the request, but are unable to include it in a future release. To request that Red Hat re-consider this request, please re-open the bugzilla via appropriate support channels and provide additional business and/or technical details about its importance to you.

Comment 11 Franta Kust 2019-05-16 13:04:31 UTC
BZ<2>Jira Resync

Note You need to log in before you can comment on or make changes to this bug.