openstack-ansible-os_keystone/templates
kevin 88fe59f04d Updated default fernet key usage
This change makes the use of fernet tokens production ready. The changes are
as follows:
  * Ensures that the keys are rotated on every playbook execution
  * Removes the need to sync keys back to a deployment host when distributing
    them to other keystone hosts.
  * Creates an autonomous key rotation process that can rotate on the following
    intervals [reboot, yearly, annually, monthly, weekly, daily, hourly] to all
    hosts from any keystone fernet host.
  * Fixes the section in `keystone.conf` which was named "fernet_key" instead
    of "fernet_token".

Change-Id: I50f6a852930728631f5c681a8aa0f1321d7424ac
Related-Bug: #1463569
Closes-Bug: #1468256
2015-06-30 09:54:31 -05:00
..
keystone-fernet-rotate.sh.j2 Updated default fernet key usage 2015-06-30 09:54:31 -05:00
keystone-httpd.conf.j2 Fix errors when enabling SSL for apache 2015-06-24 13:33:12 +01:00
keystone-ports.conf.j2 Convert existing roles into galaxy roles 2015-02-18 10:56:25 +00:00
keystone.conf.j2 Updated default fernet key usage 2015-06-30 09:54:31 -05:00
keystone.Default.conf.j2 Updated ldap config to support multi domain 2015-05-08 18:18:46 +00:00