Bug 1577361
Summary: | Unable to dump policy using oslopolicy-policy-generator | ||
---|---|---|---|
Product: | Red Hat OpenStack | Reporter: | Harry Rybacki <hrybacki> |
Component: | openstack-keystone | Assignee: | Harry Rybacki <hrybacki> |
Status: | CLOSED WORKSFORME | QA Contact: | nlevinki <nlevinki> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 10.0 (Newton) | CC: | aherr, apevec, chjones, dhill, hrybacki, kbasil, lhh, mgarciam, nkinder, nlevinki, pkesavar, srevivo |
Target Milestone: | zstream | Keywords: | Reopened, Triaged, ZStream |
Target Release: | 10.0 (Newton) | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | If docs needed, set a value | |
Doc Text: | Story Points: | --- | |
Clone Of: | 1572317 | Environment: | |
Last Closed: | 2018-11-01 20:03:53 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1572317 | ||
Bug Blocks: |
Comment 1
RHEL Program Management
2018-05-16 21:42:36 UTC
Attempting to reproduce this on OSP10 has failed.: root@harold ~]# ssh stack@undercloud-0 [stack@undercloud-0 ~]$ source stackrc (undercloud) [stack@undercloud-0 ~]$ openstack server list +--------------------------------------+--------------+--------+------------------------+----------------+------------+ | ID | Name | Status | Networks | Image | Flavor | +--------------------------------------+--------------+--------+------------------------+----------------+------------+ | ec445e94-b683-46ac-84ac-ccb32c81aaab | controller-0 | ACTIVE | ctlplane=192.168.24.6 | overcloud-full | controller | | 02b6afd3-2e64-41ba-837e-a0972c9e13ef | compute-0 | ACTIVE | ctlplane=192.168.24.11 | overcloud-full | compute | +--------------------------------------+--------------+--------+------------------------+----------------+------------+ (undercloud) [stack@undercloud-0 ~]$ ssh heat-admin.24.6 [heat-admin@controller-0 ~]$ oslopolicy-policy-generator --namespace keystone "identity:delete_project": "rule:admin_required" "identity:list_revoke_events": "rule:service_or_admin" "identity:revoke_system_grant_for_group": "rule:admin_required" <snip> "identity:list_system_grants_for_user": "rule:admin_required" "identity:list_registered_limits": "" "identity:delete_region": "rule:admin_required" This worked for cinder and nova as well. I believe we can close this. |