Red Hat Bugzilla – Bug 987684
[RFE] Keystone with Kerberos authentication
Last modified: 2016-04-27 00:35:19 EDT
Configure Keystone to run in Apache HTTPD and requires Kerberos authentication
(RH IdM is the simplest means)
How to test: use keystone with Apache mod_auth_krb5.
This is a refinement of an earlier blueprint for handling REMOTE_USER, specific to using Kerberos. The upstream commit was https://github.com/openstack/keystone/commit/e276d142541e2517484e5bc539a19a5495a1c679 but we did not explicitly test it.
Tests verified however when PKI tokens are in use BZ1035032 occurs for v3 token request.
for v3 test cases requesting pki tokens without the catalog. This is a workaround for the following issue that is unrelated to this feature.
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.