OpenStack Identity (Keystone)
Go to file
Li Ma 94a2053cd0 Password trunction makes password insecure
The trunc_password function attempts to correct and truncate
password. It is not recommended to 'fix' invalid input and
continue on processing and logging it. Instead, strict check
is introduced to validate password. If a password exceeds the
maximum length, an HTTP 403 Forbidden error is thrown.

In order to keep compatibility, an option 'strict_password_check'
is also introduced to let operator decide which method to use.

DocImpact
Change-Id: I560daa843b94a05412af59a059de5a98bad2925e
Closes-Bug: #1175904
2014-06-13 21:24:59 -07:00
bin Refactor service readiness notification 2014-04-24 22:49:11 +02:00
doc Merge "no one uses macports" 2014-05-28 03:41:47 +00:00
etc Password trunction makes password insecure 2014-06-13 21:24:59 -07:00
examples/pki Modified keystone endpoint-create default region 2014-02-03 09:41:16 -06:00
httpd Isolate backend loading 2014-04-16 15:13:20 +10:00
keystone Password trunction makes password insecure 2014-06-13 21:24:59 -07:00
rally-scenarios Add rally performance gate job for keystone 2014-04-30 13:24:32 +00:00
tools Sync with oslo-incubator 2fd457b 2014-04-15 15:14:25 -05:00
.coveragerc Add tests dir to the coverage omit list 2013-09-30 16:07:03 -04:00
.gitignore Fixes documentation building 2013-12-13 02:47:37 +00:00
.gitreview Add .gitreview config file for gerrit. 2011-10-24 14:48:03 -04:00
.mailmap Add mailmap entry 2014-05-07 12:09:29 -07:00
.testr.conf Fix parallel unit tests keystoneclient partial checkout 2014-04-02 19:19:59 -05:00
CONTRIBUTING.rst Migrate to pbr. 2013-05-23 16:59:08 +02:00
HACKING.rst Fix assertEqual arguments order(catalog, cert_setup, etc) 2014-04-03 20:11:29 +09:00
LICENSE Added Apache 2.0 License information. 2012-02-15 17:48:33 -08:00
MANIFEST.in Create TMPDIR for tests recursively 2014-03-24 18:46:36 +01:00
README.rst Keystone team uses #openstack-keystone now 2014-02-18 10:57:25 -08:00
babel.cfg setting up babel for i18n work 2012-06-21 18:03:09 -07:00
openstack-common.conf Refactor service readiness notification 2014-04-24 22:49:11 +02:00
requirements-py3.txt Make the py33 Jenkins job happy 2014-04-24 19:27:41 +00:00
requirements.txt Updated from global requirements 2014-04-24 16:27:49 +00:00
run_tests.sh Adds run_tests.sh cli option to stop on failure 2014-01-18 10:17:55 -05:00
setup.cfg Open Juno development 2014-03-26 17:57:01 +01:00
setup.py Sync with global requirements 2013-09-30 17:03:58 -04:00
test-requirements-py3.txt Make the py33 Jenkins job happy 2014-04-24 19:27:41 +00:00
test-requirements.txt Updated from global requirements 2014-04-12 02:15:31 +00:00
tox.ini Adds several more tests to the Python 3 test run 2014-05-05 11:27:42 +00:00

README.rst

OpenStack Keystone

Keystone provides authentication, authorization and service discovery mechanisms via HTTP primarily for use by projects in the OpenStack family. It is most commonly deployed as an HTTP interface to existing identity systems, such as LDAP.

Developer documentation, the source of which is in doc/source/, is published at:

http://keystone.openstack.org/

The API specification is available at:

https://github.com/openstack/identity-api

The API documentation is available at:

http://api.openstack.org/api-ref-identity.html

The canonical client library is available at:

https://github.com/openstack/python-keystoneclient

Documentation for cloud administrators is available at:

http://docs.openstack.org/

The source of documentation for cloud administrators is available at:

https://github.com/openstack/openstack-manuals

Information about our team meeting is available at:

https://wiki.openstack.org/wiki/Meetings/KeystoneMeeting

Bugs and feature requests are tracked on Launchpad at:

https://bugs.launchpad.net/keystone

Future design work is tracked at:

https://blueprints.launchpad.net/keystone

Contributors are encouraged to join IRC (#openstack-keystone on freenode):

https://wiki.openstack.org/wiki/IRC

For information on contributing to Keystone, see CONTRIBUTING.rst.