Steve Martinelli 2b0013c5c1 Refactor option handling for user|group|project domain scoping
put the common options in identity.common, this way the help is
consistent

Change-Id: I5b09cfb56fa0f8d16feb95150f216fccbe9f2b22
2015-06-17 12:38:40 -04:00

1.7 KiB

trust

Identity v3

trust create

Create new trust

trust create

os trust create
    --project <project>
    --role <role>
    [--impersonate]
    [--expiration <expiration>]
    [--project-domain <domain>]
    [--trustor-domain <domain>]
    [--trustee-domain <domain>]
    <trustor>
    <trustee>

--project <project>

Project being delegated (name or ID) (required)

--role <role>

Roles to authorize (name or ID) (repeat to set multiple values) (required)

--impersonate

Tokens generated from the trust will represent <trustor> (defaults to False)

--expiration <expiration>

Sets an expiration date for the trust (format of YYYY-mm-ddTHH:MM:SS)

--project-domain <project-domain>

Domain the project belongs to (name or ID). This can be used in case collisions between user names exist.

--trustor-domain <trustor-domain>

Domain that contains <trustor> (name or ID)

--trustee-domain <trustee-domain>

Domain that contains <trustee> (name or ID)

<trustor-user>

User that is delegating authorization (name or ID)

<trustee-user>

User that is assuming authorization (name or ID)

trust delete

Delete trust(s)

trust delete

os trust delete
    <trust> [<trust> ...]

<trust>

Trust(s) to delete

trust list

List trusts

trust list

os trust list

trust show

Display trust details

trust show

os trust show
    <trust>

<trust>

Trust to display