meta-virtualization/recipes-extended/libvirt
Bruce Ashfield 2400d285f1 libvirt: update to v10.5.0 -tip
Bumping libvirt to version v10.5.0-77-ge5232f6fd6, which comprises the following commits:

    e5232f6fd6 virt-host-validate: Allow longer list of CPU flags
    8f3b46e30b Translated using Weblate (Portuguese (Brazil))
    149ffd964b Translated using Weblate (Swedish)
    e8c5ecd3cf Translated using Weblate (English (United Kingdom))
    6699341d88 docs: use real examples for QEMU cli passthrough
    c019350a76 security: AppArmor allow write when os loader readonly=no
    65b54e791f tests: Add test for UEFI autoselection on riscv64
    a4fbb7bcc7 tests: Add firmware descriptor for edk2 on riscv64
    47d34ffb26 qemu: ROM firmware images are always readonly
    f13b3f8098 qemu: Filter firmware images by type
    b14c97e007 tests: Add more firmware selection coverage
    79941dd3c9 tests: Update firmware descriptors
    ea6c3ea2d5 qemu: virtiofs: format --rlimit-nofile
    562fc02ac1 conf: virtiofs: add rlimit_nofile element
    239669049d vmx: Be even more lax when trying to comprehend serial ports
    fcf6beaf3d ci: Refresh generated files
    3bc3b7220b news: Mention pauth Arm CPU feature
    6690b01de2 tests: Add coverage for pauth Arm CPU feature
    1ac1e4dae0 cpu_map: Add pauth Arm CPU feature
    bec903cae8 qemu: Don't leave beingDestroyed=true on inactive domain
    c9fa43c48c virt-host-validate: Drop extra "PASS"
    92333a2c4e Translated using Weblate (Swedish)
    d94b31a68a qemu: migration: allow migration for virtiofs
    8dc04cafec qemu: do not use deprecated options for new virtiofsd
    730eaafaac qemu: fill capabilities for virtiofsd
    132bf6d89b tests: qemuxmlconf: adjust test case to new virtiofsd
    f64e658df0 tests: vhostuser: add virtiofsd json descriptor
    6d3955acf1 Include support for Vfio stats during Migration
    7a9e9dfb18 network: allow "modify" option for DNS-Txt records
    cf934c87cc network: allow "modify" option for DNS-Srv records
    09a5d8165c network: allow "modify" option for DNS hostname
    619a915862 domain_conf: comment not match the code below
    b5c54df901 virt-aa-helper: Drop needless comments
    0d3e962d47 security_manager: Remove redundant qemuSecurityGetNested() call

Signed-off-by: Bruce Ashfield <bruce.ashfield@gmail.com>
2024-07-23 15:42:15 +00:00
..
libvirt libvirt: update to v10.5.0 and convert to git 2024-07-10 15:59:26 +00:00
libvirt-glib libvirt-glib: fix introspection and documentation build 2023-09-04 03:03:14 +00:00
libvirt_git.bb libvirt: update to v10.5.0 -tip 2024-07-23 15:42:15 +00:00
libvirt-dbus_1.4.1.bb libvirt: add libvirt-dbus 2024-04-09 13:40:25 +00:00
libvirt-glib_5.0.0.bb libvirt-glib: update 4.0.0 -> 5.0.0 2024-03-15 17:17:20 +00:00
libvirt-python.inc libvirt: update to v10.5.0 and convert to git 2024-07-10 15:59:26 +00:00
README libvirt: libvirtd: Facilitate using tls connection mode 2019-07-16 19:41:05 +00:00

libvirt default connection mode between client(where for example virsh runs) and server(where libvirtd runs) is tls which requires keys and certificates for certificate authority, client and server to be properly generated and deployed. Otherwise, servers and clients cannot be connected.

recipes-extended/libvirt/libvirt/gnutls-help.py is provided to help generate required keys and certificates.

Usage: gnutls-help.py [-a|--ca-info] <ca.info> [-b|--server-info] <server.info> [-c|--client-info] <client.info> If ca.info or server.info or client.info is not provided, a corresponding sample file will be generated.

!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !! "ip_address" field of server.info must be IP address of the server. !! !! For more details, please refer to: !! !! https://libvirt.org/remote.html#Remote_certificates !! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

Please deploy cacert.pem to CA and server and client /etc/pki/CA/cacert.pem Please deploy serverkey.pem to server /etc/pki/libvirt/private/serverkey.pem Please deploy servercert.pem to server /etc/pki/libvirt/servercert.pem Please deploy clientkey.pem to client /etc/pki/libvirt/private/clientkey.pem Please deploy clientcert.pem to client /etc/pki/libvirt/clientcert.pem"

For more details please refer to libvirt official document, https://libvirt.org/remote.html#Remote_certificates