Comment 0 for bug 1818734

Revision history for this message
Lance Bragstad (lbragstad) wrote :

In Rocky, keystone implemented support to ensure at least three default roles were available [0].
An endpoint group is a collection of endpoints that can be populated in a users service catalog through association to projects. Ultimately, endpoint groups are system-specific resources and shouldn't be accessible directly by domain or project users.

The report is to track the work for implementing system `member` and system `reader` role support for endpoint groups.

[0] http://specs.openstack.org/openstack/keystone-specs/specs/keystone/rocky/define-default-roles.html
[1] http://git.openstack.org/cgit/openstack/keystone/tree/keystone/common/policies/endpoint_group.py?id=6e3f1f6e46787ed4542609c935c13cb85e91d7fc