Remove obsolete protocol policies from policy.v3cloudsample.json
Bug #1804518 reported by
Lance Bragstad
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Identity (keystone) |
Fix Released
|
Medium
|
Lance Bragstad |
Bug Description
Once support for scope types landed in the protocol API policies, the policies in policy.
We should add formal protection for the policies with enforce_scope = True in keystone.
This will reduce confusion by having a true default policy for protocols.
[0] https:/
[1] https:/
Changed in keystone: | |
status: | New → Triaged |
importance: | Undecided → Medium |
tags: | added: policy |
Changed in keystone: | |
assignee: | nobody → Lance Bragstad (lbragstad) |
status: | Triaged → In Progress |
Changed in keystone: | |
milestone: | none → stein-3 |
To post a comment you must log in.
Reviewed: https:/ /review. openstack. org/625357 /git.openstack. org/cgit/ openstack/ keystone/ commit/ ?id=24b8db9e064 713e7350f83cd77 ed197b050b1fe1
Committed: https:/
Submitter: Zuul
Branch: master
commit 24b8db9e064713e 7350f83cd77ed19 7b050b1fe1
Author: Lance Bragstad <email address hidden>
Date: Fri Dec 14 21:54:42 2018 +0000
Remove protocol policies from v3cloudsample.json
By incorporating system-scope and default roles, we've effectively
made these policies obsolete. We can simplify what we maintain and
provide a more consistent, unified view of default protocol
behavior by removing them.
Related-Bug: 1806762 6213311c4246135 cdae4f46ab2
Closes-Bug: 1804518
Change-Id: Ia839555d821159