Note: This bug is displayed in read-only format because the product is no longer active in Red Hat Bugzilla.

Bug 1718654

Summary: [RFE] Support TLS-Everywhere when realm and DNS domain do not match
Product: Red Hat OpenStack Reporter: Nathan Kinder <nkinder>
Component: rhosp-directorAssignee: Harry Rybacki <hrybacki>
Status: CLOSED CURRENTRELEASE QA Contact: Jeremy Agee <jagee>
Severity: high Docs Contact:
Priority: high    
Version: 16.2 (Train)CC: augol, dwilde, hrybacki, jagee, mburns, morazi, rheslop, scohen, spower
Target Milestone: AlphaKeywords: FutureFeature, TestOnly
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of:
: 1718656 1718658 (view as bug list) Environment:
Last Closed: 2023-11-03 14:39:18 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1713758, 1713760, 1713771, 1718658    
Bug Blocks: 1718656, 1718657    

Description Nathan Kinder 2019-06-09 16:40:11 UTC
When deploying TLS everywhere with Director, we need to allow the DNS domain of the OSP deployment to differ from the IdM realm.  This allows for deployments where OSP uses a sub-domain of the IdM realm, or for a completely different domain.

The implementation of this feature spans multiple components.  This is a top-level tracker bug that is used to track dependent bugs for the individual affected components.