Comment 2 for bug 1809469

Revision history for this message
John Garbutt (johngarbutt) wrote : Re: keystone_fernet container runs token rotate on multiple hosts

so token timeout is 1 day...

[token]
revoke_by_id = False
provider = fernet
expiration = 86400

but we have already rotated out too many keys by then...

we need to update max_active_keys to match the number of controllers.