Current policy checking does not allow fine grained zone and recordset contorol
Bug #1782611 reported by
Dmitry Galkin
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Designate |
In Progress
|
Undecided
|
Dmitry Galkin |
Bug Description
Hi All,
This is not exactly a bug. But rather a summary for reference of what was discussed on irc meeting: http://
We have several use cases with multiple roles in Designate when we need to allow particular users to create sub-zone for a zone that is already present in their project. Or to allow create/
The idea is to keep the default behavior as before with new policy checks to be bound to the same rules.
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/584024
Review: https:/