Skip to content

Commit a8d2b00

Browse files
authored
Update exec.config, symlink PKI paths for kvm-node-agent sync
The libvirt certificates will be managed by the unprivileged kvm-node-agent. (kvm-node-agent cannot write to /etc/pki due it's security settings)
1 parent d35d2c6 commit a8d2b00

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed

features/orabos/exec.config

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,9 @@ chsh -s /bin/bash nova
3232
mkdir -p /var/lib/nova/{.ssh,instances,mnt}
3333
chown -R nova:libvirt-qemu /var/lib/nova/{.ssh,instances,mnt}
3434
chmod 0600 /var/lib/nova/.ssh
35+
ln -s /var/lib/kvm-node-agent/CA /etc/pki/CA
36+
ln -s /var/lib/kvm-node-agent/libvirt /etc/pki/libvirt
3537

3638
# limit vnc port autorange to possible kubernetes nodeports
3739
sed -i 's/#remote_display_port_min = 5900/remote_display_port_min = 32200/' /etc/libvirt/qemu.conf
38-
sed -i 's/#remote_display_port_max = 65535/remote_display_port_max = 32299/' /etc/libvirt/qemu.conf
40+
sed -i 's/#remote_display_port_max = 65535/remote_display_port_max = 32299/' /etc/libvirt/qemu.conf

0 commit comments

Comments
 (0)