openstack-ansible/playbooks/roles/os_nova/templates
Kevin Carter e6cc4d6bac Update Kilo SHAs - 21 Jan 2016
Updates all repo SHAs to open up work on 11.2.8

This patch includes a normalisation of file names and updates
of paste, policy and rootwrap configurations.

It also updates tempest.conf.j2 to replace ssh_auth_method with
auth_method, and change auth_method to 'keypair' (configured is no
longer an a valid option).

The locally held temporary pin for django-compressor has been
removed as https://review.openstack.org/265025 is included in the
updated OpenStack sources.

Some projects name their paste config files with an underscore
instead of a dash. This patch ensures that the source-branch-updater
includes those files too when checking for updates.

The OpenStack updates include the following CVE fixes:

- OSSA-2016-001: Nova host data leak through snapshot
  https://security.openstack.org/ossa/OSSA-2016-001.html

- OSSA-2016-002: Xen connection password leak in logs via StorageError
  https://security.openstack.org/ossa/OSSA-2016-002.html

- OSSA-2016-003: Heat denial of service through template-validate
  https://security.openstack.org/ossa/OSSA-2016-003.html

Change-Id: I2c878646dd54f41637bd4830122f11e97e9f70f6
Related-Bug: #1532048
2016-01-22 03:31:37 +00:00
..
api-paste.ini.j2 adds the config_template to nova 2015-10-02 15:46:57 +00:00
libvirtd.conf.j2 Remove hardcoded config drive enforcement 2015-08-18 15:55:13 +00:00
nova-upstart-init.j2 Fix spelling of runlevel in init scripts 2015-06-17 18:13:09 +00:00
nova.conf.j2 Fix to correctly set the nova_management_address 2015-10-19 12:18:52 -05:00
policy.json.j2 Update Kilo SHAs - 21 Jan 2016 2016-01-22 03:31:37 +00:00
rootwrap.conf.j2 Update Kilo SHAs - 21 Jan 2016 2016-01-22 03:31:37 +00:00
sudoers.j2 Convert existing roles into galaxy roles 2015-02-18 10:56:25 +00:00