Browse Source

[install] Fix heat trustee configuration

The current example config is broken with the default deferred
authentication of trusts - the project_domain_id and project_name
cannot be specified in this section or keystone will throw a
"cannot be scoped to multiple targets" error when we attempt to get
a token scoped to a trust.

Also, the auth_uri is unused by the keystoneclient password auth
plugins, so remove it (it has been a source of confusion in the
referenced bug).

Change-Id: I6305be3c693993de4d16d82fd6de936e92c437c5
Closes-Bug: #1300246
Backport: liberty
changes/27/254327/2
Steven Hardy 6 years ago
committed by Matthew Kassawara
parent
commit
98ef59a599
  1. 7
      doc/install-guide/source/heat-install.rst

7
doc/install-guide/source/heat-install.rst

@ -400,14 +400,11 @@ Install and configure components
[trustee]
...
auth_uri = http://controller:5000
auth_url = http://controller:35357
auth_plugin = password
project_domain_id = default
user_domain_id = default
project_name = service
auth_url = http://controller:35357
username = heat
password = HEAT_PASS
user_domain_id = default
[clients_keystone]
...

Loading…
Cancel
Save