From nobody Sat Feb 7 21:50:22 2026 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) client-ip=170.10.129.124; envelope-from=libvir-list-bounces@redhat.com; helo=us-smtp-delivery-124.mimecast.com; Authentication-Results: mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass(p=none dis=none) header.from=redhat.com ARC-Seal: i=1; a=rsa-sha256; t=1681981872; cv=none; d=zohomail.com; s=zohoarc; b=PTgEf1D2agyPD9WnM3PcmfMCzJg5GO3gbODp2yOcvjhKsV5X5tuROnQHlCDey2jjrW7PVywEB6f2R52L+Zm183iCBo0n44k1azC9GwMe40LVcQNVrxY5TiwN3qbTxFy8xHXph4Z3ravna8wyq/1JH9jEQ0ioJpPAkTVEwKGiBME= ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=zohomail.com; s=zohoarc; t=1681981872; h=Content-Type:Content-Transfer-Encoding:Date:From:In-Reply-To:List-Subscribe:List-Post:List-Id:List-Archive:List-Help:List-Unsubscribe:MIME-Version:Message-ID:References:Sender:Subject:To; bh=LZ2bqfdXQjo/z4XI/AEOe5GwzTbFFxo2M6FjacY+650=; b=AE0VC64WqZsYBoLoRJyWhDQIrRTQFj9s3wtbXWpzNYAzFbFcGNW7LiAe7J1mZBviA8mHT/wWNJpKAGw4o1XbZbbHJZeVhRIX9V7WK2elIN8ehS7sOd7AjrJdmujwRhtqoVznS7lSaM720YbKevXOHmti4xTcxW0VGpeArxeiaQU= ARC-Authentication-Results: i=1; mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass header.from= (p=none dis=none) Return-Path: Received: from us-smtp-delivery-124.mimecast.com (us-smtp-delivery-124.mimecast.com [170.10.129.124]) by mx.zohomail.com with SMTPS id 1681981872973143.82693246058034; Thu, 20 Apr 2023 02:11:12 -0700 (PDT) Received: from mimecast-mx02.redhat.com (mimecast-mx02.redhat.com [66.187.233.88]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id us-mta-272-vKuTJIjrM8K2DLMrGA_5HA-1; Thu, 20 Apr 2023 05:09:48 -0400 Received: from smtp.corp.redhat.com (int-mx09.intmail.prod.int.rdu2.redhat.com [10.11.54.9]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mimecast-mx02.redhat.com (Postfix) with ESMTPS id 7C7A08A31B6; Thu, 20 Apr 2023 09:09:45 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (unknown [10.30.29.100]) by smtp.corp.redhat.com (Postfix) with ESMTP id 19E18492B05; Thu, 20 Apr 2023 09:09:44 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (localhost [IPv6:::1]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id B2E781946A4F; Thu, 20 Apr 2023 09:09:42 +0000 (UTC) Received: from smtp.corp.redhat.com (int-mx04.intmail.prod.int.rdu2.redhat.com [10.11.54.4]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id 9ACCC19465B5 for ; Thu, 20 Apr 2023 09:09:41 +0000 (UTC) Received: by smtp.corp.redhat.com (Postfix) id 7D6B12026D25; Thu, 20 Apr 2023 09:09:41 +0000 (UTC) Received: from speedmetal.redhat.com (unknown [10.45.242.23]) by smtp.corp.redhat.com (Postfix) with ESMTP id 04D562026D16 for ; Thu, 20 Apr 2023 09:09:40 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1681981872; h=from:from:sender:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:list-id:list-help: list-unsubscribe:list-subscribe:list-post; bh=LZ2bqfdXQjo/z4XI/AEOe5GwzTbFFxo2M6FjacY+650=; b=hDwMnCcmX0d2gxOWXT2Tso/ck5KbUB82alj5/JovAV90+EOl34WRzSFOT1HMMpR8lCS/Up 4XLHJaeMnvMRLKiUOM14l86smBsifyxsSLmuZWcqgq/Hzd4L+ZV+SKrrVOmJsS3P1V1/Ku hExbqz9eW5mwsPRmxbFuh09Ykr7QhuY= X-MC-Unique: vKuTJIjrM8K2DLMrGA_5HA-1 X-Original-To: libvir-list@listman.corp.redhat.com From: Peter Krempa To: libvir-list@redhat.com Subject: [PATCH 1/3] kbase: debuglogs: Emphasize disabling daemon timeout in 'TL; DR' section Date: Thu, 20 Apr 2023 11:09:37 +0200 Message-Id: <6ba51be703a2663629c215bedcb1963cb8bf8246.1681981762.git.pkrempa@redhat.com> In-Reply-To: References: MIME-Version: 1.0 X-Scanned-By: MIMEDefang 3.1 on 10.11.54.4 X-BeenThere: libvir-list@redhat.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Development discussions about the libvirt library & tools List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: libvir-list-bounces@redhat.com Sender: "libvir-list" X-Scanned-By: MIMEDefang 3.1 on 10.11.54.9 X-Mimecast-Spam-Score: 0 X-Mimecast-Originator: redhat.com Content-Transfer-Encoding: quoted-printable X-ZohoMail-DKIM: pass (identity @redhat.com) X-ZM-MESSAGEID: 1681981874119100001 Content-Type: text/plain; charset="utf-8" Disabling the daemon timeout is important so that the settings don't get discarded. Remove the comment saying it's optional and add a paragraph outlining what to do if it is not available. Signed-off-by: Peter Krempa Reviewed-by: Michal Privoznik --- docs/kbase/debuglogs.rst | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/docs/kbase/debuglogs.rst b/docs/kbase/debuglogs.rst index 811ccf0102..f08132d099 100644 --- a/docs/kbase/debuglogs.rst +++ b/docs/kbase/debuglogs.rst @@ -25,10 +25,12 @@ the system clears this setting:: # virt-admin -c virtqemud:///system daemon-log-outputs "3:journald 1:fi= le:/var/log/libvirt/libvirtd.log" # virt-admin -c virtqemud:///system daemon-log-filters "3:remote 4:even= t 3:util.json 3:util.object 3:util.dbus 3:util.netlink 3:node_device 3:rpc = 3:access 1:*" - - # # optionally disable timeout of the daemon # virt-admin -c virtqemud:///system daemon-timeout 0 +The last command disabling timeout of the daemon is available since +``libvirt-8.6.0``. With older versions make sure to reproduce the issue wi= thin +120 seconds or have a VM running which prevents the daemon from timing out. + For any other configuration please read the rest of the document. If you w= ant to persist the log level and log outputs settings edit ``/etc/libvirt/virtqemud.conf`` and look for ``log-filters`` and ``log-out= puts`` --=20 2.39.2 From nobody Sat Feb 7 21:50:22 2026 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) client-ip=170.10.129.124; envelope-from=libvir-list-bounces@redhat.com; helo=us-smtp-delivery-124.mimecast.com; Authentication-Results: mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass(p=none dis=none) header.from=redhat.com ARC-Seal: i=1; a=rsa-sha256; t=1681981866; cv=none; d=zohomail.com; s=zohoarc; b=hA58242vuxI1Phe6R2FNlSdZ5CDsa/5Ds39bB8hx+4Iq71/yzFxLV3QFiOFqydp0o8cZKDcoXG8otpI3UmvLDGXGgzJC6QkoSPt5yiy+kQkf01QPvl2cz4x64kNRiMBkIxbxNY8xUd338w2Zof190STYSa3JDmf0rtbyEisjey4= ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=zohomail.com; s=zohoarc; t=1681981866; h=Content-Type:Content-Transfer-Encoding:Date:From:In-Reply-To:List-Subscribe:List-Post:List-Id:List-Archive:List-Help:List-Unsubscribe:MIME-Version:Message-ID:References:Sender:Subject:To; bh=IXUwk1OBRKfkZ0IbTn+7euhpkp8lWOyV1c8jjgqL9Xw=; b=Y1ds0B3o+U7S/zU9iIxuqFIz5hyVWKddPuDWY7scdqMujk20zgW4AQSBgw8ZHFBXBSfXxSm5QVXEV87sWPPWexUPb71jzFD6ssM1y94NDOKY0KTQ2smh2JBW3OrOOtJ+eo/sXQ4MFBWe2lBVEBbd1e++MT6QtD99gJTdTDjb/YI= ARC-Authentication-Results: i=1; mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.129.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass header.from= (p=none dis=none) Return-Path: Received: from us-smtp-delivery-124.mimecast.com (us-smtp-delivery-124.mimecast.com [170.10.129.124]) by mx.zohomail.com with SMTPS id 1681981866063139.65279641530617; Thu, 20 Apr 2023 02:11:06 -0700 (PDT) Received: from mimecast-mx02.redhat.com (mimecast-mx02.redhat.com [66.187.233.88]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id us-mta-126-36lJSiC9NpKFCy6uusUdGQ-1; Thu, 20 Apr 2023 05:09:48 -0400 Received: from smtp.corp.redhat.com (int-mx09.intmail.prod.int.rdu2.redhat.com [10.11.54.9]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mimecast-mx02.redhat.com (Postfix) with ESMTPS id 7D01585A5B1; Thu, 20 Apr 2023 09:09:45 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (unknown [10.30.29.100]) by smtp.corp.redhat.com (Postfix) with ESMTP id 08067492B06; Thu, 20 Apr 2023 09:09:45 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (localhost [IPv6:::1]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id 531211946A4E; Thu, 20 Apr 2023 09:09:44 +0000 (UTC) Received: from smtp.corp.redhat.com (int-mx04.intmail.prod.int.rdu2.redhat.com [10.11.54.4]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id 997511946A4E for ; Thu, 20 Apr 2023 09:09:42 +0000 (UTC) Received: by smtp.corp.redhat.com (Postfix) id 89E982026D25; Thu, 20 Apr 2023 09:09:42 +0000 (UTC) Received: from speedmetal.redhat.com (unknown [10.45.242.23]) by smtp.corp.redhat.com (Postfix) with ESMTP id D15312026D16 for ; Thu, 20 Apr 2023 09:09:41 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1681981864; h=from:from:sender:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:list-id:list-help: list-unsubscribe:list-subscribe:list-post; bh=IXUwk1OBRKfkZ0IbTn+7euhpkp8lWOyV1c8jjgqL9Xw=; b=DLDQzdchCodDPP9BATb61mYzOrITz9ihDjKTRyqKSKLa2KdWM8MF0nxLCx8+ruSDIWMjWm ucOKOOwDo9lQbOR4vgaDa4lK5hjmTbESI9r10LF/bhiZQvfrI34SCf4Lj8kJhzDVKNYEKc +cM6eCXo8aEiKRFlOjyUWUx0/NqCKYo= X-MC-Unique: 36lJSiC9NpKFCy6uusUdGQ-1 X-Original-To: libvir-list@listman.corp.redhat.com From: Peter Krempa To: libvir-list@redhat.com Subject: [PATCH 2/3] docs: manpages: Clarify that only TLS/TCP remote access needs 'virtproxyd' Date: Thu, 20 Apr 2023 11:09:38 +0200 Message-Id: In-Reply-To: References: MIME-Version: 1.0 X-Scanned-By: MIMEDefang 3.1 on 10.11.54.4 X-BeenThere: libvir-list@redhat.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Development discussions about the libvirt library & tools List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: libvir-list-bounces@redhat.com Sender: "libvir-list" X-Scanned-By: MIMEDefang 3.1 on 10.11.54.9 X-Mimecast-Spam-Score: 0 X-Mimecast-Originator: redhat.com Content-Transfer-Encoding: quoted-printable X-ZohoMail-DKIM: pass (identity @redhat.com) X-ZM-MESSAGEID: 1681981866576100001 Content-Type: text/plain; charset="utf-8" Spell out that TCP and TLS needs virtproxyd as 'off-host' might mean that also ssh transport requires it. Also fix the name of the 'virtproxyd' daemon. Signed-off-by: Peter Krempa Reviewed-by: Michal Privoznik --- docs/manpages/virtbhyved.rst | 4 ++-- docs/manpages/virtinterfaced.rst | 4 ++-- docs/manpages/virtlxcd.rst | 4 ++-- docs/manpages/virtnetworkd.rst | 4 ++-- docs/manpages/virtnodedevd.rst | 4 ++-- docs/manpages/virtnwfilterd.rst | 4 ++-- docs/manpages/virtqemud.rst | 4 ++-- docs/manpages/virtsecretd.rst | 4 ++-- docs/manpages/virtstoraged.rst | 4 ++-- docs/manpages/virtvboxd.rst | 4 ++-- docs/manpages/virtvzd.rst | 4 ++-- docs/manpages/virtxend.rst | 4 ++-- 12 files changed, 24 insertions(+), 24 deletions(-) diff --git a/docs/manpages/virtbhyved.rst b/docs/manpages/virtbhyved.rst index 895fb97ffe..b9e0402f85 100644 --- a/docs/manpages/virtbhyved.rst +++ b/docs/manpages/virtbhyved.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for bhyve virtual machines. The ``virtbhyved`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtbhyved`` does not interrupt running guests. Guests contin= ue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtinterfaced.rst b/docs/manpages/virtinterface= d.rst index bdd4be7d87..247a8c4009 100644 --- a/docs/manpages/virtinterfaced.rst +++ b/docs/manpages/virtinterfaced.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for host network interfaces. The ``virtinterfaced`` daemon only listens for requests on a local Unix do= main -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtinterfaced`` does not interrupt running guests. Guests co= ntinue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtlxcd.rst b/docs/manpages/virtlxcd.rst index 709c893ca6..a0c1dbbbaa 100644 --- a/docs/manpages/virtlxcd.rst +++ b/docs/manpages/virtlxcd.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for LXC containers. The ``virtlxcd`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtlxcd`` does not interrupt running guests. Guests continue= to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtnetworkd.rst b/docs/manpages/virtnetworkd.rst index 2932e7c213..22b3fc0f2d 100644 --- a/docs/manpages/virtnetworkd.rst +++ b/docs/manpages/virtnetworkd.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for virtual networks. The ``virtnetworkd`` daemon only listens for requests on a local Unix doma= in -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtnetworkd`` does not interrupt running guests. Guests cont= inue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtnodedevd.rst b/docs/manpages/virtnodedevd.rst index 9044946ad6..0948318907 100644 --- a/docs/manpages/virtnodedevd.rst +++ b/docs/manpages/virtnodedevd.rst @@ -29,8 +29,8 @@ previously provided by the monolithic ``libvirtd`` daemon. This daemon runs on virtualization hosts to provide management for host de= vices. The ``virtnodedevd`` daemon only listens for requests on a local Unix doma= in -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtnodedevd`` does not interrupt running guests. Guests cont= inue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtnwfilterd.rst b/docs/manpages/virtnwfilterd.= rst index c90f71cfd2..b1fc45e7a2 100644 --- a/docs/manpages/virtnwfilterd.rst +++ b/docs/manpages/virtnwfilterd.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for network filters. The ``virtnwfilterd`` daemon only listens for requests on a local Unix dom= ain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtnwfilterd`` does not interrupt running guests. Guests con= tinue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtqemud.rst b/docs/manpages/virtqemud.rst index 25cd5361dc..42810d7146 100644 --- a/docs/manpages/virtqemud.rst +++ b/docs/manpages/virtqemud.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for QEMU virtual machines. The ``virtqemud`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtqemud`` does not interrupt running guests. Guests continu= e to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtsecretd.rst b/docs/manpages/virtsecretd.rst index 3c88f9b4d0..21138b630a 100644 --- a/docs/manpages/virtsecretd.rst +++ b/docs/manpages/virtsecretd.rst @@ -29,8 +29,8 @@ previously provided by the monolithic ``libvirtd`` daemon. This daemon runs on virtualization hosts to provide management for secret = data. The ``virtsecretd`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtsecretd`` does not interrupt running guests. Guests conti= nue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtstoraged.rst b/docs/manpages/virtstoraged.rst index 5164547e88..70863282d1 100644 --- a/docs/manpages/virtstoraged.rst +++ b/docs/manpages/virtstoraged.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for storage pools. The ``virtstoraged`` daemon only listens for requests on a local Unix doma= in -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtstoraged`` does not interrupt running guests. Guests cont= inue to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtvboxd.rst b/docs/manpages/virtvboxd.rst index 0c551b8c09..f449e0e29d 100644 --- a/docs/manpages/virtvboxd.rst +++ b/docs/manpages/virtvboxd.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for VirtualBox virtual machines. The ``virtvboxd`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtvboxd`` does not interrupt running guests. Guests continu= e to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtvzd.rst b/docs/manpages/virtvzd.rst index a5f351c27e..aa44885d46 100644 --- a/docs/manpages/virtvzd.rst +++ b/docs/manpages/virtvzd.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for Virtuozzo virtual machines. The ``virtvzd`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtvzd`` does not interrupt running guests. Guests continue = to operate and changes in their state will generally be picked up automatical= ly diff --git a/docs/manpages/virtxend.rst b/docs/manpages/virtxend.rst index eda210f5dd..39ddcc4efc 100644 --- a/docs/manpages/virtxend.rst +++ b/docs/manpages/virtxend.rst @@ -30,8 +30,8 @@ This daemon runs on virtualization hosts to provide manag= ement for Xen virtual machines. The ``virtxend`` daemon only listens for requests on a local Unix domain -socket. Remote off-host access and backwards compatibility with legacy -clients expecting ``libvirtd`` is provided by the ``virtproxy`` daemon. +socket. Remote access via TLS/TCP and backwards compatibility with legacy +clients expecting ``libvirtd`` is provided by the ``virtproxyd`` daemon. Restarting ``virtxend`` does not interrupt running guests. Guests continue= to operate and changes in their state will generally be picked up automatical= ly --=20 2.39.2 From nobody Sat Feb 7 21:50:22 2026 Delivered-To: importer@patchew.org Received-SPF: pass (zohomail.com: domain of redhat.com designates 170.10.133.124 as permitted sender) client-ip=170.10.133.124; envelope-from=libvir-list-bounces@redhat.com; helo=us-smtp-delivery-124.mimecast.com; Authentication-Results: mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.133.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass(p=none dis=none) header.from=redhat.com ARC-Seal: i=1; a=rsa-sha256; t=1681981793; cv=none; d=zohomail.com; s=zohoarc; b=IeBPb+OspSZFRAR2fC7W2nr06c2dJVhHBbjH6MNIXAEgaL4mM0WfsFcbGU5pIdtXtZ6Gk5UyE6hcV2P2L4R1wc16y8+hEi18IzLiC96kxMEASS7RZA1rGcY92TUUnt34c/QRCSaXSrwcAm3/apYkBiiq9onIialG0lh8+of0a48= ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=zohomail.com; s=zohoarc; t=1681981793; h=Content-Type:Content-Transfer-Encoding:Date:From:In-Reply-To:List-Subscribe:List-Post:List-Id:List-Archive:List-Help:List-Unsubscribe:MIME-Version:Message-ID:References:Sender:Subject:To; bh=kgFcJxoSbLhfTlMMkaT5l14iooEuXk2ITOTXa58h4UI=; b=g1fEUI45npa73FgZz3wY8rPZ2+KSzyG+fyCVRtGpeT8GLmj/7wax3JvQ0VZb0qtiBRmwZ5QMgXcyzcNuCI8upRtq3OuELWg1w+/8PDYU4Wd1ZLbgzfKtQyyotyUw5v2mkADn2/V40sW+CMryh4CU9gpKpnN6T0mQeOcP5y5MNAQ= ARC-Authentication-Results: i=1; mx.zohomail.com; dkim=pass; spf=pass (zohomail.com: domain of redhat.com designates 170.10.133.124 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass header.from= (p=none dis=none) Return-Path: Received: from us-smtp-delivery-124.mimecast.com (us-smtp-delivery-124.mimecast.com [170.10.133.124]) by mx.zohomail.com with SMTPS id 16819817932521023.2348424105339; Thu, 20 Apr 2023 02:09:53 -0700 (PDT) Received: from mimecast-mx02.redhat.com (mx3-rdu2.redhat.com [66.187.233.73]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id us-mta-346-egg4I_QyOpKN3dYIBQGEUA-1; Thu, 20 Apr 2023 05:09:48 -0400 Received: from smtp.corp.redhat.com (int-mx06.intmail.prod.int.rdu2.redhat.com [10.11.54.6]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mimecast-mx02.redhat.com (Postfix) with ESMTPS id 221641C0899C; Thu, 20 Apr 2023 09:09:46 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (unknown [10.30.29.100]) by smtp.corp.redhat.com (Postfix) with ESMTP id E30372166B37; Thu, 20 Apr 2023 09:09:45 +0000 (UTC) Received: from mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (localhost [IPv6:::1]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id F28F919466DF; Thu, 20 Apr 2023 09:09:44 +0000 (UTC) Received: from smtp.corp.redhat.com (int-mx04.intmail.prod.int.rdu2.redhat.com [10.11.54.4]) by mm-prod-listman-01.mail-001.prod.us-east-1.aws.redhat.com (Postfix) with ESMTP id 6ED8C19466DF for ; Thu, 20 Apr 2023 09:09:43 +0000 (UTC) Received: by smtp.corp.redhat.com (Postfix) id 63DA72026D25; Thu, 20 Apr 2023 09:09:43 +0000 (UTC) Received: from speedmetal.redhat.com (unknown [10.45.242.23]) by smtp.corp.redhat.com (Postfix) with ESMTP id DF5722026D16 for ; Thu, 20 Apr 2023 09:09:42 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhat.com; s=mimecast20190719; t=1681981792; h=from:from:sender:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references:list-id:list-help: list-unsubscribe:list-subscribe:list-post; bh=kgFcJxoSbLhfTlMMkaT5l14iooEuXk2ITOTXa58h4UI=; b=fNIXjprIJq+n2e1fVo0UBAgRAvBiz8TVZMXc2E6RY+kmjmVBuXAd3p1WXt9vOiwc2BWfyr UuPAfXb9ejtZh6ySE2nwJv5BFVu4aWUV/nGUmW1UtoiINQdb5WcGlvRlvVN9yVG/rDQRlY LUYakfkRTtZffNQzKV9ct5P0NyrV3+k= X-MC-Unique: egg4I_QyOpKN3dYIBQGEUA-1 X-Original-To: libvir-list@listman.corp.redhat.com From: Peter Krempa To: libvir-list@redhat.com Subject: [PATCH 3/3] docs: manpages: State that TCP connection is insecure in 'virtproxyd' man page Date: Thu, 20 Apr 2023 11:09:39 +0200 Message-Id: <8700fdfec73e1a88a659157b08f0180ef59ce2ee.1681981762.git.pkrempa@redhat.com> In-Reply-To: References: MIME-Version: 1.0 X-Scanned-By: MIMEDefang 3.1 on 10.11.54.4 X-BeenThere: libvir-list@redhat.com X-Mailman-Version: 2.1.29 Precedence: list List-Id: Development discussions about the libvirt library & tools List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: libvir-list-bounces@redhat.com Sender: "libvir-list" X-Scanned-By: MIMEDefang 3.1 on 10.11.54.6 X-Mimecast-Spam-Score: 0 X-Mimecast-Originator: redhat.com Content-Transfer-Encoding: quoted-printable X-ZohoMail-DKIM: pass (identity @redhat.com) X-ZM-MESSAGEID: 1681981794075100003 Content-Type: text/plain; charset="utf-8" Copy the wording we have in docs/uri.rst Signed-off-by: Peter Krempa Reviewed-by: Michal Privoznik --- docs/manpages/virtproxyd.rst | 3 +++ 1 file changed, 3 insertions(+) diff --git a/docs/manpages/virtproxyd.rst b/docs/manpages/virtproxyd.rst index 814575e504..cb29ccbaad 100644 --- a/docs/manpages/virtproxyd.rst +++ b/docs/manpages/virtproxyd.rst @@ -73,6 +73,9 @@ Or $ systemctl start virtproxyd-tcp.socket +**Note**: The TCP socket uses plain unencrypted TCP connection and thus is +insecure and should not be used. + Traditional service mode ------------------------ --=20 2.39.2