key_repository is world readable: /etc/keystone/fernet-keys/

Bug #1668514 reported by Christian Berendt
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
kolla-ansible
Fix Released
High
Unassigned

Bug Description

With fernet tokens enabled for keystone the following warning message appears in the keystone logs:

key_repository is world readable: /etc/keystone/fernet-keys/

The mode of the key_repository should be changed.

Changed in kolla-ansible:
status: New → Triaged
importance: Undecided → High
Changed in kolla-ansible:
assignee: nobody → Noboru Iwamatsu (rockpine)
affects: kolla-ansible → kolla
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to kolla (master)

Fix proposed to branch: master
Review: https://review.openstack.org/480830

Changed in kolla:
status: Triaged → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Change abandoned on kolla (master)

Change abandoned by Noboru Iwamatsu (<email address hidden>) on branch: master
Review: https://review.openstack.org/480830
Reason: This permission change should be done by kolla-ansible.

affects: kolla → kolla-ansible
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to kolla-ansible (master)

Fix proposed to branch: master
Review: https://review.openstack.org/481388

Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Change abandoned on kolla-ansible (master)

Change abandoned by Noboru Iwamatsu (<email address hidden>) on branch: master
Review: https://review.openstack.org/481388

Revision history for this message
Eduardo Gonzalez (egonzalez90) wrote :

Any update on this bug?

Revision history for this message
Chason Chan (chen-xing) wrote :
Changed in kolla-ansible:
assignee: Noboru Iwamatsu (rockpine) → nobody
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.