Re: remote-viewer: tls seamless migration : CA option is not keep

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



>>Can you try the attached patch (not tested)? thanks 

It's works fine, thanks !


----- Mail original ----- 

De: "Marc-André Lureau" <mlureau@xxxxxxxxxx> 
À: "Alexandre DERUMIER" <aderumier@xxxxxxxxx> 
Cc: "spice-devel" <spice-devel@xxxxxxxxxxxxxxxxxxxxx> 
Envoyé: Lundi 22 Juillet 2013 15:25:07 
Objet: Re:  remote-viewer: tls seamless migration : CA option is not keep 

Hi 

----- Mensaje original ----- 
> Hi, 
> 
> I'm trying to do seamless migration of a qemu guest, using only tls for spice 
> client. 
> 
> Client is remote-viewer, and is launched through a config file with the ca 
> certificate embedded like this 
> 
> [virt-viewer] 
> type=spice 
> ca=----BEGIN CERTIFICATE------\n........\nEND CERTIFICATE----\n 
> tls-port=xxxx 
> ... 
> 
> 
> This works fine for establish the connection to spice server, 
> but when I'm doing a seamless migration, the ca is not reused and 
> remote-viewer give me 
> 
> (remote-viewer:25533): GSpice-WARNING **: no cert loaded 
> 
> Workaround is to copy the cerficate in .spicec/spice_truststore.pem, 
> 
> But I would like to avoid to do this. 
> 
> 
> Is it a bug ? or does exist some option to force remote-viewer to auto write 
> the ca=... inside the spice_truststore.pem ? 

It looks like a bug, I think we should copy the ca when creating the migration session. Can you try the attached patch (not tested)? thanks 
_______________________________________________
Spice-devel mailing list
Spice-devel@xxxxxxxxxxxxxxxxxxxxx
http://lists.freedesktop.org/mailman/listinfo/spice-devel





[Index of Archives]     [Linux ARM Kernel]     [Linux ARM]     [Linux Omap]     [Fedora ARM]     [IETF Annouce]     [Security]     [Bugtraq]     [Linux]     [Linux OMAP]     [Linux MIPS]     [ECOS]     [Asterisk Internet PBX]     [Linux API]     [Monitors]