• Pre-Unlock

    The pre-unlock state of the host should contain no secrets used during regular operation. But it must contain some secrets, both so that we can unlock it and so that it supports as much redundancy as possible even when locked We want SSH access to…

    Read more

  • Storage Unlock Policy

    I currently run my cloud hosts in a manual-intervention-required configuration for storage. Even the VPNs can’t come up until someone connects and provides a key to the hypervisor to unlock storage and start services This is a configuration I intend to continue when setting up…

    Read more

  • Constraining Shapes

    I’m thinking of something of a VM map that looks something like this, duplicated at each hosting provider: zCloud Overall hypervisor, installed on the “bare metal” I rent; all other VMs are internal to this hypervisor Does not host any client-facing or VM-facing services. Forwards…

    Read more

  • Hosting

    I am thinking about setting up a hosting platform. I want to host my own things. I want to offer free hosting and other online services to people in my community. I would like to sell certain kinds of hosting in support of my tech…

    Read more