Keystone Role-Based Access Control

Registered by Kurt Griffiths

python-keystoneclient middleware currently does not so any kind of role-based access control. Let's add this as a middleware component to marconi and eventually see if we can get it accepted into python-keystoneclient proper.

Blueprint information

Status:
Complete
Approver:
None
Priority:
Undefined
Drafter:
None
Direction:
Needs approval
Assignee:
None
Definition:
Obsolete
Series goal:
None
Implementation:
Unknown
Milestone target:
None
Completed by
Kurt Griffiths

Related branches

Sprints

Whiteboard

I don't think keystone client is / will meant to do that. I mean, it makes sense but....

Most project just use the Policy code in Oslo (which I recently re-factored). We should probably import that code and enforce RBAC ourselves 'til we find a better way to do it. I'd like us to define a set of AC that we want to enforce.

(?)

Work Items

This blueprint contains Public information 
Everyone can see this information.

Subscribers

No subscribers.