Cleanup of signature_utils code
Glance and Nova contain nearly identical digital signature modules. In order to reduce the effort required to maintain this code and to eliminate the possibility that the modules diverge, we propose removing this code and instead using the cursive library. The cursive library is a Stackforge project which implements OpenStack-specific verification of digital signatures.
We are targeting this cleanup for the Ocata-1 sprint.
Relevant links:
Bug report: https:/
Cursive library: https:/
Blueprint information
- Status:
- Complete
- Approver:
- Matt Riedemann
- Priority:
- Low
- Drafter:
- Dane Fichter
- Direction:
- Approved
- Assignee:
- Dane Fichter
- Definition:
- Approved
- Series goal:
- Accepted for pike
- Implementation:
- Implemented
- Milestone target:
- pike-1
- Started by
- Dane Fichter
- Completed by
- Matt Riedemann
Related branches
Related bugs
Bug #1528349: Nova and Glance contain a near-identical signature_utils module | Fix Released |
Sprints
Whiteboard
WIP patch: https:/
Gerrit topic: https:/
Addressed by: https:/
Use cursive for signature verification
I'm going to approve this for Pike as a code cleanup effort so we reduce duplication of efforts between nova and glance. There is CI testing on this code path in the nova experimental queue now too:
-- mriedem 20170315