Use project scoped token for cinder, glance services
All services except Ironic (and keystone to support ironic with system scope deployement), will not have system scope in their API policy instead they are default to project scoped. Change-Id: Id13a359086f9b24dbfcd2b565a42c50d0dab7736
This commit is contained in:
parent
f2bc2ff363
commit
ceec890947
@ -1649,15 +1649,9 @@ function configure_client_for {
|
||||
|
||||
# NOTE(TheJulia): Below are services which we know, as of late 2021, which support
|
||||
# explicit scope based ops *and* have knobs.
|
||||
# Needed: Neutron, swift, nova ?service_catalog?
|
||||
# Neutron - https://review.opendev.org/c/openstack/devstack/+/797450
|
||||
|
||||
if [[ "$service_config_section" == "inspector" ]] && [[ "$IRONIC_INSPECTOR_ENFORCE_SCOPE" == "True" ]]; then
|
||||
use_system_scope="True"
|
||||
elif [[ "$service_config_section" == "cinder" ]] && [[ "${CINDER_ENFORCE_SCOPE:-False}" == "True" ]]; then
|
||||
use_system_scope="True"
|
||||
elif [[ "$service_config_section" == "glance" ]] && [[ "${GLANCE_ENFORCE_SCOPE:-False}" == "True" ]]; then
|
||||
use_system_scope="True"
|
||||
fi
|
||||
|
||||
if [[ "$use_system_scope" == "True" ]]; then
|
||||
|
Loading…
Reference in New Issue
Block a user