keystone/keystone
Lance Bragstad 465a8bb59b Update system grant policies for system reader
The system grant policies were not taking the default roles work we
did last release into account. This commit changes the default
policies to rely on the ``reader`` role for getting and listing system
assignments. Subsequent patches will incorporate:

 - system member test coverage
 - system admin functionality
 - domain user test coverage
 - project user test coverage

Change-Id: I838c85f315864d2f0baf747d6bcc546724e4673a
Related-Bug: 1805368
Related-Bug: 1750669
Related-Bug: 1806762
2019-03-21 14:43:59 +00:00
..
access_rules_config Add a permissive mode for access rules config 2019-03-03 18:33:49 +01:00
api Use ForbiddenAction for invalid action instead of Forbidden 2019-03-18 17:14:21 +08:00
application_credential Add driver support for app cred access rules 2019-03-03 18:33:49 +01:00
assignment Replace 'tenant_id' with 'project_id' 2019-02-04 16:17:52 +01:00
auth Emit CADF notifications on authentication for invalid users 2018-10-25 17:43:37 -07:00
catalog Region update extra support 2018-11-07 22:57:11 +00:00
cmd Merge "Replace 'tenant_id' with 'project_id'" 2019-02-05 04:04:48 +00:00
common Update system grant policies for system reader 2019-03-21 14:43:59 +00:00
conf Merge "Add a permissive mode for access rules config" 2019-03-11 05:39:50 +00:00
credential Incorrect use of translation _() 2018-09-03 21:52:56 +05:30
endpoint_policy Convert policy API to flask 2018-08-31 07:14:32 +00:00
federation Fix wrong example for direct_maps 2019-02-11 22:46:48 +05:30
identity Merge "PY3: Ensure LDAP searches use unicode attributes" 2019-03-19 15:29:50 +00:00
limit Add domain level support for strict-two-level-model 2019-02-19 11:09:13 +08:00
locale Imported Translations from Zanata 2018-08-09 06:06:59 +00:00
models Add missing ws seperator between words 2018-11-19 14:36:40 +08:00
oauth1 Convert /v3/users to flask native dispatching 2018-10-11 15:27:45 -07:00
policy Convert policy API to flask 2018-08-31 07:14:32 +00:00
receipt Change __all__ list to tuple 2018-11-07 16:40:02 -06:00
resource Update project depth check 2019-02-19 11:09:13 +08:00
revoke Remove unused revoke_by_user_and_project 2018-09-14 04:08:01 +00:00
server Add manager for access rules config 2019-03-03 18:33:49 +01:00
tests Update system grant policies for system reader 2019-03-21 14:43:59 +00:00
token Merge "Implement JWS token provider" 2019-02-22 03:53:02 +00:00
trust Add abstract method in trusts base.py 2018-11-07 08:43:39 +05:30
__init__.py Revert "Disable eventlet monkey-patching of DNS" 2013-05-10 10:24:48 -04:00
exception.py Add JSON driver for access rules config 2019-03-03 18:33:11 +01:00
i18n.py Update links in keystone 2017-09-12 15:18:13 +08:00
notifications.py Added request_id and global_request_id to basic notifications 2019-02-06 09:50:20 +03:00
version.py bump Keystone version for Stein 2019-01-22 15:34:06 +13:00