Policy directory files cannot reset rules and only can update rules.
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
oslo.policy |
Fix Released
|
Undecided
|
Mitya Eremeev |
Bug Description
1. There is no main policy file (policy.yaml or policy.json),
but there are 2 policy files in policy directory:
# ls /etc/octavia/
certs logging.conf octavia.conf policy.d
# ls /etc/octavia/
01-default.yaml 02-custom.yaml
# cat /etc/octavia/
load-balancer:
# cat /etc/octavia/
os_load-
os_load-
2. An user with member role asks loadbalancer list and gets response:
Unrecognized schema in response body. (HTTP 403)
3. empty file /etc/octavia/
# cat /etc/octavia/
{}
4. An user with member role asks loadbalancer list and gets response:
Unrecognized schema in response body. (HTTP 403)
actual behavior:
user was denied to get loadbalancer list
expected behavior:
User got loadbalancer list
Changed in oslo.policy: | |
assignee: | nobody → Mitya Eremeev (mitos) |
description: | updated |
Changed in oslo.policy: | |
status: | New → In Progress |
Would you please distinguish between "reset" and "update" here?