mirror of
https://gitlab.com/libvirt/libvirt.git
synced 2025-01-04 03:55:20 +00:00
3a6a725b8f
When using systemd socket activation the --listen arg has no effect. This is confusing to users upgrading from previous versions of libvirt as their config is silently ignored. Turn use of --listen into a fatal error when sockets are passed from systemd. This helps the admin discover the change in behaviour and thus decide whether to stick with socket activation or revert to previous behaviour. Reviewed-by: Ján Tomko <jtomko@redhat.com> Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
236 lines
5.9 KiB
Plaintext
236 lines
5.9 KiB
Plaintext
=head1 NAME
|
|
|
|
libvirtd - libvirtd management daemon
|
|
|
|
=head1 SYNOPSIS
|
|
|
|
B<libvirtd> [I<OPTION>]...
|
|
|
|
=head1 DESCRIPTION
|
|
|
|
The B<libvirtd> program is the server side daemon component of the libvirt
|
|
virtualization management system.
|
|
|
|
This daemon runs on host servers and performs required management tasks for
|
|
virtualized guests. This includes activities such as starting, stopping
|
|
and migrating guests between host servers, configuring and manipulating
|
|
networking, and managing storage for use by guests.
|
|
|
|
The libvirt client libraries and utilities connect to this daemon to issue
|
|
tasks and collect information about the configuration and resources of the host
|
|
system and guests.
|
|
|
|
By default, the libvirtd daemon listens for requests on a local Unix domain
|
|
socket. Using the B<-l>|B<--listen> command line option, the libvirtd daemon
|
|
can be instructed to additionally listen on a TCP/IP socket. The TCP/IP socket
|
|
to use is defined in the libvirtd configuration file.
|
|
|
|
Restarting libvirtd does not impact running guests. Guests continue to operate
|
|
and will be picked up automatically if their XML configuration has been
|
|
defined. Any guests whose XML configuration has not been defined will be lost
|
|
from the configuration.
|
|
|
|
=head1 SYSTEM SOCKET ACTIVATION
|
|
|
|
The B<libvirtd> daemon is capable of starting in two modes.
|
|
|
|
In the traditional mode, it will create and listen on UNIX sockets itself.
|
|
If the B<--listen> parameter is given, it will also listen on TCP/IP socket(s),
|
|
according to the B<listen_tcp> and B<listen_tls> options in
|
|
B</etc/libvirt/libvirtd.conf>
|
|
|
|
In socket activation mode, it will rely on systemd to create and listen
|
|
on the UNIX, and optionally TCP/IP, sockets and pass them as pre-opened
|
|
file descriptors. In this mode, it is not permitted to pass the B<--listen>
|
|
parameter, and most of the socket related config options in
|
|
B</etc/libvirt/libvirtd.conf> will no longer have any effect. To enable
|
|
TCP or TLS sockets use either
|
|
|
|
B<$ systemctl start libvirtd-tls.socket>
|
|
|
|
Or
|
|
|
|
B<$ systemctl start libvirtd-tcp.socket>
|
|
|
|
Socket activation mode is generally the default when running on a host
|
|
OS that uses systemd. To revert to the traditional mode, all the socket
|
|
unit files must be masked:
|
|
|
|
B<$ systemctl mask libvirtd.socket libvirtd-ro.socket \
|
|
libvirtd-admin.socket libvirtd-tls.socket libvirtd-tcp.socket>
|
|
|
|
=head1 OPTIONS
|
|
|
|
=over
|
|
|
|
=item B<-h, --help>
|
|
|
|
Display command line help usage then exit.
|
|
|
|
=item B<-d, --daemon>
|
|
|
|
Run as a daemon & write PID file.
|
|
|
|
=item B<-f, --config> I<FILE>
|
|
|
|
Use this configuration file, overriding the default value.
|
|
|
|
=item B<-l, --listen>
|
|
|
|
Listen for TCP/IP connections. This should not be set if using systemd
|
|
socket activation. Instead activate the libvirtd-tls.socket or
|
|
libvirtd-tcp.socket unit files.
|
|
|
|
=item B<-p, --pid-file> I<FILE>
|
|
|
|
Use this name for the PID file, overriding the default value.
|
|
|
|
=item B<-t, --timeout> I<SECONDS>
|
|
|
|
Exit after timeout period (in seconds), provided there are neither any client
|
|
connections nor any running domains.
|
|
|
|
=item B<-v, --verbose>
|
|
|
|
Enable output of verbose messages.
|
|
|
|
=item B< --version>
|
|
|
|
Display version information then exit.
|
|
|
|
=back
|
|
|
|
=head1 SIGNALS
|
|
|
|
On receipt of B<SIGHUP> libvirtd will reload its configuration.
|
|
|
|
=head1 FILES
|
|
|
|
=head2 When run as B<root>.
|
|
|
|
=over
|
|
|
|
=item F<SYSCONFDIR/libvirt/libvirtd.conf>
|
|
|
|
The default configuration file used by libvirtd, unless overridden on the
|
|
command line using the B<-f>|B<--config> option.
|
|
|
|
=item F<RUNSTATEDIR/libvirt/libvirt-sock>
|
|
|
|
=item F<RUNSTATEDIR/libvirt/libvirt-sock-ro>
|
|
|
|
The sockets libvirtd will use.
|
|
|
|
=item F<SYSCONFDIR/pki/CA/cacert.pem>
|
|
|
|
The TLS B<Certificate Authority> certificate libvirtd will use.
|
|
|
|
=item F<SYSCONFDIR/pki/libvirt/servercert.pem>
|
|
|
|
The TLS B<Server> certificate libvirtd will use.
|
|
|
|
=item F<SYSCONFDIR/pki/libvirt/private/serverkey.pem>
|
|
|
|
The TLS B<Server> private key libvirtd will use.
|
|
|
|
=item F<RUNSTATEDIR/libvirtd.pid>
|
|
|
|
The PID file to use, unless overridden by the B<-p>|B<--pid-file> option.
|
|
|
|
=back
|
|
|
|
=head2 When run as B<non-root>.
|
|
|
|
=over
|
|
|
|
=item F<$XDG_CONFIG_HOME/libvirt/libvirtd.conf>
|
|
|
|
The default configuration file used by libvirtd, unless overridden on the
|
|
command line using the B<-f>|B<--config> option.
|
|
|
|
=item F<$XDG_RUNTIME_DIR/libvirt/libvirt-sock>
|
|
|
|
The socket libvirtd will use.
|
|
|
|
=item F<$HOME/.pki/libvirt/cacert.pem>
|
|
|
|
The TLS B<Certificate Authority> certificate libvirtd will use.
|
|
|
|
=item F<$HOME/.pki/libvirt/servercert.pem>
|
|
|
|
The TLS B<Server> certificate libvirtd will use.
|
|
|
|
=item F<$HOME/.pki/libvirt/serverkey.pem>
|
|
|
|
The TLS B<Server> private key libvirtd will use.
|
|
|
|
=item F<$XDG_RUNTIME_DIR/libvirt/libvirtd.pid>
|
|
|
|
The PID file to use, unless overridden by the B<-p>|B<--pid-file> option.
|
|
|
|
=item If $XDG_CONFIG_HOME is not set in your environment, libvirtd will use F<$HOME/.config>
|
|
|
|
=item If $XDG_RUNTIME_DIR is not set in your environment, libvirtd will use F<$HOME/.cache>
|
|
|
|
=back
|
|
|
|
=head1 EXAMPLES
|
|
|
|
To retrieve the version of libvirtd:
|
|
|
|
# libvirtd --version
|
|
libvirtd (libvirt) 0.8.2
|
|
#
|
|
|
|
To start libvirtd, instructing it to daemonize and create a PID file:
|
|
|
|
# libvirtd -d
|
|
# ls -la RUNSTATEDIR/libvirtd.pid
|
|
-rw-r--r-- 1 root root 6 Jul 9 02:40 RUNSTATEDIR/libvirtd.pid
|
|
#
|
|
|
|
=head1 BUGS
|
|
|
|
Please report all bugs you discover. This should be done via either:
|
|
|
|
=over
|
|
|
|
=item a) the mailing list
|
|
|
|
L<https://libvirt.org/contact.html>
|
|
|
|
=item or,
|
|
|
|
B<>
|
|
|
|
=item b) the bug tracker
|
|
|
|
L<https://libvirt.org/bugs.html>
|
|
|
|
=item Alternatively, you may report bugs to your software distributor / vendor.
|
|
|
|
=back
|
|
|
|
=head1 AUTHORS
|
|
|
|
Please refer to the AUTHORS file distributed with libvirt.
|
|
|
|
=head1 COPYRIGHT
|
|
|
|
Copyright (C) 2006-2012 Red Hat, Inc., and the authors listed in the
|
|
libvirt AUTHORS file.
|
|
|
|
=head1 LICENSE
|
|
|
|
libvirtd is distributed under the terms of the GNU LGPL v2.1+.
|
|
This is free software; see the source for copying conditions. There
|
|
is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR
|
|
PURPOSE
|
|
|
|
=head1 SEE ALSO
|
|
|
|
L<virsh(1)>, L<virt-install(1)>, L<virt-xml-validate(1)>, L<virt-top(1)>,
|
|
L<virt-df(1)>, L<https://www.libvirt.org/>
|
|
|
|
=cut
|