Updated openstack/openstack

Project: openstack/keystone  74608779455d34789352c3434c94edc1ac1d0b22

Concrete role assignments for federated users

"Shadow users: unified identity" implementation:
Allow concrete role assignments for federated users. Currently,
federated users get roles from mapped group assignments. However, with
the shadow users implementation, federated users are mapped to
identities in the backend; thus, can be assigned roles.

This patch returns locally assigned roles with the mapped group roles
for federated users; allowing for authorization for those roles.

bp shadow-users-newton

Change-Id: I9a150ded6c4b556627147d2671be15d6a3794ba5
This commit is contained in:
Jenkins
2016-06-29 23:24:14 +00:00
committed by Gerrit Code Review
parent efd7281cd1
commit a3ce33130d