Files
docs/doc/source/security/kubernetes/keystone-accounts.rest
Suzana Fernandes 0bf77eef8e Update User Management Section in the SECURITY guide
Change-Id: I753b0cd3912d2f9bc53c50906c05e90f2443d3f0
Signed-off-by: Suzana Fernandes <Suzana.Fernandes@windriver.com>
2025-10-15 17:30:18 +00:00

65 lines
1.3 KiB
ReStructuredText

.. xsx1607977134022
.. _keystone-accounts:
Keystone Accounts
=================
|prod-long| uses Keystone for authentication and authorization of users of the
StarlingX REST APIs, the |CLI|, the Horizon Web interface and the Local Docker
Registry. |prod|'s Keystone uses the default local SQL Backend.
.. contents:: |minitoc|
:local:
:depth: 2
--------------------------------------
System-Critical Keystone User Accounts
--------------------------------------
The following Keystone user accounts are system-critical and cannot be deleted:
- ``admin``
- ``mtce``
- ``fm``
- ``barbican``
- ``sysinv``
- ``patching``
- ``dcorch``
- ``vim``
- ``dcagent``
- ``dcmanager``
- ``dcdbsync``
- ``smapi``
- ``usm``
.. note::
These Keystone user accounts are essential for the operation and management of the
platform. Deleting or modifying these accounts could lead to unexpected
behavior or system instability.
.. include:: about-keystone-accounts.rest
.. include:: keystone-account-authentication.rest
.. include:: keystone-account-roles-64098d1abdc1.rest
.. include:: manage-keystone-accounts.rest
.. include:: configure-the-keystone-token-expiration-time.rest
.. include:: keystone-passwd-recovery-ef3b3ce867b7.rest
.. include:: keystone-security-compliance-configuration-b149adca6a7f.rest