openstack-ansible/playbooks/roles/os_keystone/files
Miguel Grinberg 23da164fe4 Keystone Federation Service Provider Configuration
This patch adds the ability to configure Keystone as a Service
Provider (SP) for a Federated Identity Provider (IdP).

* New variables to configure Keystone as a service provider are now
  supported under a root `keystone_sp` variable. Example configurations
  can be seen in Keystone's defaults file. This configuration includes
  the list of identity providers and trusted dashboards. (At this time
  only one identity provider is supported).

* Identity provider configuration includes the remote-to-local user
  mapping and the list of remote attributes the SP can obtain from the
  IdP.

* Shibboleth is installed and configured in the Keystone containers when
  SP configuration is present.

* Horizon is configured for SSO login

DocImpact
UpgradeImpact
Implements: blueprint keystone-federation
Change-Id: I78b3d740434ea4b3ca0bd9f144e4a07026be23c6
Co-Authored-By: Jesse Pretorius <jesse.pretorius@rackspace.co.uk>
2015-08-07 08:44:51 +00:00
..
keystone-paste.ini Updated repository for minimum viable kilo install 2015-04-03 12:57:10 -05:00
keystone-wsgi.py Updated repository for minimum viable kilo install 2015-04-03 12:57:10 -05:00
policy.json Update Keystone config and policy for Kilo 2015-04-10 15:01:57 +00:00
sso_callback_template.html Keystone Federation Service Provider Configuration 2015-08-07 08:44:51 +00:00