[DRBD-user] correction: DRBD does not do encryption -- was: Remove network cable causing system reboot

Digimer linux at alteeve.com
Tue Aug 16 22:26:33 CEST 2011

Note: "permalinks" may not be as permanent as we would like,
direct links of old sources may well be a few messages off.


On 08/16/2011 04:22 PM, Lars Ellenberg wrote:
> On Tue, Aug 16, 2011 at 12:55:28PM -0400, Digimer wrote:
>> A couple of comments:
>>
>>>         net {
>>>                 allow-two-primaries;                 
>>>                 cram-hmac-alg sha1;
>>>                 shared-secret "123456";
>>
>> You're on a dedicated link, so there is no real reason to add the
>> overhead of encryption.
> 
> DRBD does not do encryption.
> This is only a challenge response "pre-shared-key" like "authentication"
> of the peers during the initial handshake.
> 
> The rest of the DRBD TCP session will be just as "plain text"
> as without this option.

Oh, huh, ok then.

-- 
Digimer
E-Mail:              digimer at alteeve.com
Freenode handle:     digimer
Papers and Projects: http://alteeve.com
Node Assassin:       http://nodeassassin.org
"At what point did we forget that the Space Shuttle was, essentially,
a program that strapped human beings to an explosion and tried to stab
through the sky with fire and math?"



More information about the drbd-user mailing list