Bug 1325676

Summary: [RFE] [Neutron] RBAC support for external networks
Product: Red Hat OpenStack Reporter: Nir Yechiel <nyechiel>
Component: openstack-neutronAssignee: Assaf Muller <amuller>
Status: CLOSED ERRATA QA Contact: Alexander Stafeyev <astafeye>
Severity: medium Docs Contact:
Priority: medium    
Version: 8.0 (Liberty)CC: amuller, chrisw, djuran, dsanzmor, jjoyce, jraju, jschluet, nlevinki, nyechiel, pbandark, srevivo, tfreger
Target Milestone: gaKeywords: FutureFeature, Triaged
Target Release: 9.0 (Mitaka)   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: openstack-neutron-8.0.0-1.el7ost Doc Type: Enhancement
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2016-08-11 12:16:04 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 1339441    

Description Nir Yechiel 2016-04-10 15:06:51 UTC
Description of problem:

There is currently no way to restrict the tenants that have access to an external network in Neutron. So there is currently no workflow to have a special set of floating IPs that only certain tenants can access. In order to support this, access to external networks should be controlled via the RBAC framework that was introduced to limit access to shared networks.

Comment 7 errata-xmlrpc 2016-08-11 12:16:04 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://rhn.redhat.com/errata/RHEA-2016-1597.html

Comment 8 Assaf Muller 2016-08-16 13:44:37 UTC
*** Bug 1362115 has been marked as a duplicate of this bug. ***

Comment 9 Assaf Muller 2016-12-20 19:09:31 UTC
*** Bug 1349442 has been marked as a duplicate of this bug. ***