Bug 988935 - [Doc] [RFE] Keystone with Kerberos authentication
Summary: [Doc] [RFE] Keystone with Kerberos authentication
Keywords:
Status: CLOSED CURRENTRELEASE
Alias: None
Product: Red Hat OpenStack
Classification: Red Hat
Component: doc-Installation_and_Configuration_Guide
Version: 4.0
Hardware: Unspecified
OS: Unspecified
high
high
Target Milestone: ---
: 4.0
Assignee: Don Domingo
QA Contact: ecs-bugs
URL:
Whiteboard:
Depends On:
Blocks: 987684 1011085
TreeView+ depends on / blocked
 
Reported: 2013-07-26 17:58 UTC by Stephen Gordon
Modified: 2014-01-07 04:30 UTC (History)
4 users (show)

Fixed In Version:
Doc Type: Enhancement
Doc Text:
Clone Of:
Environment:
Last Closed: 2014-01-07 04:30:53 UTC
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)

Description Stephen Gordon 2013-07-26 17:58:06 UTC
Cloned for documentation impact, refer to Bug # 987684 for implementation details.

Comment 3 Adam Young 2013-11-18 16:34:35 UTC
You need to establish an Identity store that matches the Kerberos credential.  For example if you use FreeIPA/RHIdM  you would make the identity store use the LDAP backend and point directly at the associated LDAP/Directory server.   The user ID will be calucalted based on the REMOTE_USER field passed through from HTTPD, so mapping it to a field such as the User principal would be simplest.


Note You need to log in before you can comment on or make changes to this bug.