Cloned from launchpad blueprint https://blueprints.launchpad.net/glance/+spec/pass-targets-to-policy-enforcer. Description: Currently it's possible to define custom rules in Glance's ``policy.json`` that rely on attributes other than a user's roles. Unfortunately, if you attempt to apply one of those rules, it will always cause the user to be prevented from performing the associated action. This specification proposes that we pass the proper target objects to the enforcer so these rules can be used and properly enforced. Specification URL (additional information): https://review.openstack.org/149112
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHEA-2015:1548