os-server-groups policy doesn't separate CRUD actions
Bug #1632820 reported by
Matthew Edmonds
This bug report is a duplicate of:
Bug #1636157: os-server-groups uses same policy.json rule for all CRUD operations.
Edit
Remove
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
OpenStack Compute (nova) |
Opinion
|
Wishlist
|
Unassigned |
Bug Description
nova.api.
Found with Newton.
Changed in nova: | |
status: | New → Confirmed |
importance: | Undecided → Wishlist |
To post a comment you must log in.
Seems it already done, part of generated policy file: api:os- server- groups: discoverable" : "@" api:os- server- groups" : "rule:admin_ or_owner" api:os- server- groups: create" : "rule:os_ compute_ api:os- server- groups" api:os- server- groups: delete" : "rule:os_ compute_ api:os- server- groups" api:os- server- groups: index": "rule:os_ compute_ api:os- server- groups" api:os- server- groups: show": "rule:os_ compute_ api:os- server- groups"
"os_compute_
#
"os_compute_
#
"os_compute_
#
"os_compute_
#
"os_compute_
#
"os_compute_