Bug 965549

Summary: heat RDO packages omit default policy.json
Product: [Community] RDO Reporter: Steven Hardy <shardy>
Component: openstack-heatAssignee: RHOS Maint <rhos-maint>
Status: CLOSED CURRENTRELEASE QA Contact: Amit Ugol <augol>
Severity: unspecified Docs Contact:
Priority: unspecified    
Version: unspecifiedCC: jpeeler, sdake
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2013-05-29 17:08:42 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Steven Hardy 2013-05-21 10:57:30 UTC
Description of problem:
The heat packages in RDO don't include the /etc/heat/policy.json file, which results in a potentially less secure installation because access to the APIs is not restricted for the in-instance users

Version-Release number of selected component (if applicable):
openstack-heat-2013.1-1.3.fc19.src.rpm

How reproducible:
Always

Steps to Reproduce:
1. Install heat from RDO repos
2. Note that /etc/heat/policy.json is missing
3. See warning in API logs:
WARNING heat.common.policy [-] Unable to find policy file

Actual results:


Expected results:


Additional info:

Comment 1 Jeff Peeler 2013-05-29 17:08:42 UTC
This has been fixed in RDO, specifically in openstack-heat-common.