neutron/neutron
Slawek Kaplonski 47038c27c5 Add missing "system" scope in some of the new API policies
During the migration to the new RBAC policies we made mistakes and we
allowed some of the APIs to be available for SYSTEM users but we allowed
it only for "project" scope.
As we discussed during the PTG, policy in such case should allows to use
such API also for the "system" scope tokens.
This patch adds it where it was still missing.

Partially-Implements blueprint: secure-rbac-roles

Change-Id: Icfbd00040834b311e78138cc93e7ab86355e557c
2021-04-23 12:59:45 +02:00
..
agent Merge "Add the DHCPReponder for IPv4" 2021-04-21 18:02:48 +00:00
api DHCP notification optimization 2021-04-09 13:33:43 +03:00
cmd Merge "Initialize privsep library in Neutron commands" 2021-04-20 22:44:12 +00:00
common Remove unused method "get_ovsdb_connection" 2021-04-16 14:46:13 +00:00
conf Add missing "system" scope in some of the new API policies 2021-04-23 12:59:45 +02:00
core_extensions Set system_scope='all' in elevated context 2021-03-19 12:05:56 +01:00
db Merge "Improve port delete performance" 2021-04-22 21:01:22 +00:00
debug Remove rootwrap execution (2) 2021-02-06 16:23:03 +00:00
extensions Allow 255 character strings in tags 2021-03-30 10:44:39 +02:00
hacking Remove "six" library 2020-07-28 16:55:52 +00:00
ipam Allow to manually define the gateway IP when using subnet pools 2021-02-27 10:06:35 +00:00
locale Imported Translations from Zanata 2020-10-11 07:22:44 +00:00
notifiers [OVS] Fix live-migration connection disruption 2021-01-13 11:13:41 +00:00
objects Get only FIP ID on network delete 2021-04-13 11:27:14 +03:00
pecan_wsgi Log exception generated in Controller.prepare_request_body 2020-08-18 16:18:34 -03:00
plugins Merge "Improve port delete performance" 2021-04-22 21:01:22 +00:00
privileged Implement conntrack command privsep context 2021-04-09 15:36:03 +00:00
profiling Remove "six" library 2020-07-28 16:55:52 +00:00
quota Remove "six" library 2020-07-28 16:55:52 +00:00
scheduler Set system_scope='all' in elevated context 2021-03-19 12:05:56 +01:00
server Re-use existing ProcessLauncher from wsgi in RPC workers 2020-02-07 14:51:06 +01:00
services Set system_scope='all' in elevated context 2021-03-19 12:05:56 +01:00
tests Merge "Add tests for RBAC API's new policy rules" 2021-04-23 04:37:15 +00:00
__init__.py Remove usage of six.PY2 2020-05-22 12:59:01 -04:00
_i18n.py Make code follow log translation guideline 2017-08-14 02:01:48 +00:00
auth.py
manager.py Remove usage of six.add_metaclass 2020-05-21 14:41:18 -04:00
neutron_plugin_base_v2.py Remove usage of six.add_metaclass 2020-05-21 14:41:18 -04:00
opts.py Provide the rpc_response_max_timeout parameter to metadata-agent 2021-03-23 18:08:44 +09:00
policy.py Always perform policy checks if enforce_new_defaults == true 2021-03-18 08:51:00 +01:00
service.py Re-use existing ProcessLauncher from wsgi in RPC workers 2020-02-07 14:51:06 +01:00
version.py
worker.py Change process name of neutron-server to match worker role 2019-03-01 14:18:09 -05:00
wsgi.py neutron-server api worker process should be named to their role 2021-01-11 08:28:32 +08:00