[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Xen-users] xl migrate command - disable ssh

On Wed, Mar 13, 2013 at 5:50 AM, Katerina Mparmpopoulou
<kate_mparmpop@xxxxxxxxxxx> wrote:
> Hash: SHA1
> Hi all,
> I use xen 4.2.1 and i'm trying to do live migration without ssh.
> I read at the manual page of xl that if i place the option -s empty
> the command is running as run <host>, instead of ssh <host>.
> I 've used the command with the following alternatives:
> - - sudo xl migrate VM3 root@ip -s
> - - sudo xl migrate VM3 root@ip -s ''
> the problem is that in the same time i run tcpdump (filtering the
> particular interface/port 22/and the target host) and i can see the
> ssh packets, even the -s option is empty (no parameters).
> my question is:
> How can I disable ssh????
> Version: GnuPG v1.4.11 (GNU/Linux)
> Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
> jUR+/xBSpuH49N9dKxczOc89SWjPHNhZ58lvUlvZMm/NiPrRGmm+oR2nLg5YTue+
> A5GzX4X23v2P6lDNHYiCREIULzjKvZEMrT8MwmUy/+AGl3NZ0tw+uwgdctWd2kqK
> eSiKqCErDTbjK73D74Mxrt4NWwSTOcGaBBZleqGOlQtIUIvlkBT+7OzsNqAlC8Ar
> j+TN9TRmiYPJBC3IHLBW2ZrDs+9sxXAVwL2braJSY4sV1sXEfI17Z4fl48ubWOX0
> 4fh+Xg6esKK9Jy6LsMEJCEzvbpPEWyb0ukqeYDD3pFf2cTVKFQfN5fZxEH0QP9E=
> =XrqQ
> _______________________________________________
> Xen-users mailing list
> Xen-users@xxxxxxxxxxxxx
> http://lists.xen.org/xen-users

I'm rather curious as to why you want to disable SSH. Since the
migration is passing raw memory blocks across the network, this is
certainly something that ought to be encrypted to prevent both
monkeying and sniffing.

Regardless, to migrate using some program other than SSH, you need
something akin to it (e.g. tenlet, RSH, etc.). Xen does not create a
migration "socket" on its own, AFAIK the xl migrate scheme passes the
data to xl on the receiving side through stdin on the terminal.


Sent from some sort of computing device.

Xen-users mailing list



Lists.xenproject.org is hosted with RackSpace, monitoring our
servers 24x7x365 and backed by RackSpace's Fanatical Support®.