Length of user_name in database too short for X.509 DNs
Bug #1081932 reported by
Alvaro Lopez
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Identity (keystone) |
Fix Released
|
Low
|
Morgan Fainberg |
Bug Description
We are using the REMOTE_AUTH authentication with X.509 certificates, setting the username to the user certificate's DN. However, the name column in the SQL backend is limited to 64 characters, but the certificate DN can be longer than that so we are unable to add some of our users.
Changed in keystone: | |
status: | New → Confirmed |
Changed in keystone: | |
assignee: | nobody → Alvaro Lopez (aloga) |
status: | Confirmed → In Progress |
Changed in keystone: | |
assignee: | Alvaro Lopez (aloga) → Morgan Fainberg (mdrnstm) |
Changed in keystone: | |
milestone: | none → havana-3 |
status: | Fix Committed → Fix Released |
Changed in keystone: | |
milestone: | havana-3 → 2013.2 |
To post a comment you must log in.
An example one, a bit on the long side is
dn="DN= macgregor, cn=PUBLICTEST09 ,cn=FEDORAPROJE CT,cn=ORG"
In [2]: len(dn)
Out[2]: 52
How long do you need them to be?