Cloned from launchpad bug 1635306. Description: I did a full deployment using RDO Newton and at the end of deployment i see _member_ role is missing. [stack@topstrio1101 ~]$ openstack role list +----------------------------------+-----------------+ | ID | Name | +----------------------------------+-----------------+ | 023e0f4fc56a47f7bada5fd512bab014 | swiftoperator | | 48e4519e09b4469bbbf5c533830d3ad8 | heat_stack_user | | 52be634093e14ea7a1acdf3f5ec12066 | admin | | a1f8e6636dc842d8a896a3e903298997 | ResellerAdmin | +----------------------------------+-----------------+ In Mitaka _member_ role has been created correctly. Specification URL (additional information): https://bugs.launchpad.net/tripleo/+bug/1635306
This is a byproduct of switching to using the v3 Identity API for the deployment. I provided details in the upstream bug here: https://bugs.launchpad.net/tripleo/+bug/1635306/comments/8
FWIW using the 2016-11-11.1 puddle, I got a successful deployment where the _member_ role was created automatically, which resolves the Horizon issue.
Works on python-keystone-10.0.0-3.el7ost.noarch
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHEA-2016-2948.html