Description of problem: Section 1.8.2 Step 5b of https://access.redhat.com/documentation/en/red-hat-openstack-platform/9/single/integrate-with-identity-service/ has the user create a keystone domain config file. This example config file should include the following in the [ldap] stanza to disable referral chasing: # Override the system's default referral chasing behavior for # queries. (boolean value) chase_referrals = false This is addressed in https://access.redhat.com/solutions/2309891 This also affects the documentation for RHOSP 7 and 8 (and likely 10): https://access.redhat.com/documentation/en/red-hat-enterprise-linux-openstack-platform/7/paged/integrate-with-identity-service/chapter-1-active-directory-integration https://access.redhat.com/documentation/en/red-hat-openstack-platform/version-8/integrate-with-identity-service/#sec-active-directory
Peer review done with Don
Republished updated guides: * OSP9 - https://access.redhat.com/documentation/en/red-hat-openstack-platform/9/single/integrate-with-identity-service/ * OSP8 - https://access.redhat.com/documentation/en/red-hat-openstack-platform/8/single/integrate-with-identity-service/ * OSP7 - https://access.redhat.com/documentation/en/red-hat-enterprise-linux-openstack-platform/7/single/integrate-with-identity-service/ And confirmed that update is in the OSP10 draft build.