* aes -> aes256k
@ 2026-09-21 7:31 Martin Konold
0 siblings, 0 replies; only message in thread
From: Martin Konold @ 2026-09-21 7:31 UTC (permalink / raw)
To: pve-user
Hi there,
after experiencing severe trouble with a non critical cluster after applying "--restrict-ciphers" as I followed the instructions from https://pve-41.kosu.ag/pve-docs/chapter-pveceph.html#pveceph_cephx_migration.
I then further examined the situation with another ceph cluster and saw that the following settings apply after following the instructions.
auth_allowed_ciphers: aes, aes256k (permitted for authentication)
auth_preferred_cipher: aes (default for new keys)
as outputted from
pveceph auth status
This time I set auth_preferred_cipher explicitly to aes256k not aes and resolved this issue.
IMHO this should be mentioned in the instructions.
Regards
--martin
--
martin.konold@konsec.com
Phone: +49 711 21 72 74-90
KONSEC GmbH - make things real
Amtsgericht Stuttgart, HRB 23690
Geschäftsführer: Andreas Mack
Im Köller 3, 70794 Filderstadt, Germany
^ permalink raw reply [flat|nested] only message in thread
only message in thread, other threads:[~2026-09-21 7:40 UTC | newest]
Thread overview: (only message) (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2026-09-21 7:31 aes -> aes256k Martin Konold
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.