Encrypt OSDs on running System. A good Idea?

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello all :-),

We use Ceph both as storage in Proxmox and as storage in K8S. I would like to encrypt the OSDs. I have backups of the Proxmox machines, but honestly, I would prefer not to have to use them, as it would take two days to rebuild everything from scratch.

I ran some tests on a small Proxmox machine, and telling the OSDs to encrypt themselves doesn’t seem too difficult. However, nothing is running on that storage.

What issues should I expect if I take an OSD (15TB) out one at a time, encrypt it, and put it back into the cluster? I would have a long period where some OSDs are encrypted and others are not. How dangerous is this? Has anyone done it before ?

Best wishes,

Gio

_______________________________________________
ceph-users mailing list -- ceph-users@xxxxxxx
To unsubscribe send an email to ceph-users-leave@xxxxxxx




[Index of Archives]     [Information on CEPH]     [Linux Filesystem Development]     [Ceph Development]     [Ceph Large]     [Ceph Dev]     [Linux USB Development]     [Video for Linux]     [Linux Audio Users]     [Yosemite News]     [Linux Kernel]     [Linux SCSI]     [xfs]


  Powered by Linux