keystone/keystone/common/policies
Lance Bragstad 93fa014ea7 Add scope_types for revoke event policies
This commit associates `system` to revoke event policies, since these
policies were developed to assist the system in offline token
validation.

From now on, a warning will be logged when a project-scoped token is
used to get revocation events. Operators can opt into requiring
system-scoped tokens for these policies by enabling oslo.policy's
`enforce_scope` configuration option, which will result in an
HTTP Forbidden exception when mismatching scope is used.

Change-Id: I1dddeb216b2523b8471e5f2d5370921bb7a45e7f
2018-01-04 21:14:16 +00:00
..
__init__.py Use DocumentedRuleDefault for token operations 2017-06-06 19:40:11 +00:00
access_token.py Move access token to DocumentedRuleDefault 2017-04-05 23:43:06 +00:00
auth.py Add HEAD API to auth 2017-06-21 15:11:05 +00:00
base.py remove default rule 2017-07-12 14:26:51 -04:00
consumer.py Move consumer to DocumentedRuleDefault 2017-04-05 23:46:40 +00:00
credential.py Move credential policies to DocumentedRuleDefault 2017-04-04 16:11:09 +00:00
domain.py Move domain policies to DocumentedRuleDefault 2017-03-29 18:54:43 +00:00
domain_config.py Move domain config to DocumentedRuleDefault 2017-06-12 20:53:27 +00:00
ec2_credential.py Move ec2 credential policies to DocumentedRuleDefault 2017-06-22 19:26:30 +00:00
endpoint.py Move endpoint policies to DocumentedRuleDefault 2017-03-29 18:56:19 +00:00
endpoint_group.py Move endpoint group to DocumentedRuleDefault 2017-04-17 21:40:40 +00:00
grant.py Move grant policies to DocumentedRuleDefault 2017-06-08 21:50:03 -04:00
group.py Move group policies to DocumentedRuleDefault 2017-04-06 00:02:41 +00:00
identity_provider.py fix identity:get_identity_providers typo 2017-07-11 17:51:57 -04:00
implied_role.py Move implied role policies to DocumentedRuleDefault 2017-06-28 14:03:02 -04:00
mapping.py Add HEAD APIs to federated API 2017-06-21 15:06:21 +00:00
policy.py Move policy policies to DocumentedRuleDefault 2017-04-04 15:05:10 +00:00
policy_association.py Move policy association to DocumentedRuleDefault 2017-04-04 15:45:40 +00:00
project.py Add policy for project tags 2017-10-17 10:15:19 -05:00
project_endpoint.py Move project endpoint to DocumentedRuleDefault 2017-04-05 23:19:36 +00:00
protocol.py Move protocol to DocumentedRuleDefault 2017-04-04 16:12:46 +00:00
region.py Move region policies to DocumentedRuleDefault 2017-04-05 23:22:16 +00:00
revoke_event.py Add scope_types for revoke event policies 2018-01-04 21:14:16 +00:00
role.py Move role policies to DocumentedRuleDefault 2017-06-08 22:37:39 +05:30
role_assignment.py Move role assignment to DocumentedRuleDefault 2017-04-05 23:35:56 +00:00
service.py Move service policies to DocumentedRuleDefault 2017-03-30 14:42:23 +00:00
service_provider.py Add HEAD APIs to federated API 2017-06-21 15:06:21 +00:00
token.py Use DocumentedRuleDefault for token operations 2017-06-06 19:40:11 +00:00
token_revocation.py Use DocumentedRuleDefault for token operations 2017-06-06 19:40:11 +00:00
trust.py Move trust to DocumentedRuleDefault 2017-07-12 11:09:51 +00:00
user.py Remove policy for self-service password changes 2017-08-04 13:56:59 +00:00