On 2/05/2013 11:29 PM, Kelley Burgin wrote:
OpenStack has a need for key management where I think KMIP
makes perfect sense (see the first diagram at https://wiki.openstack.org/wiki/VolumeEncryption
for a few more details of one place KMIP could be used).
Intel is planning to post
a (very TPM-centric) blueprint and dedicate resources to building
the Key Manager for the next (Havana) release. If no one
challenges the write up it will most likely be the default
implementation for Openstack and difficult to get changes
(such as KMIP support) made. See https://wiki.openstack.org/wiki/KeyManager
The link that Subhash was talking about on the call with comments
based on review of the usage guide.
https://etherpad.openstack.org/havana-key-manager
Tim.