Admin portion of the API requires RBAC
Bug #1266454 reported by
Flavio Percoco
This bug affects 2 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
zaqar |
Invalid
|
High
|
Unassigned |
Bug Description
Enforce AuthZ for the admin portion of the API, meaning only users with some specific Keystone roles, as configured in marconi.conf, should be able to access the control plane.
Changed in marconi: | |
importance: | Undecided → High |
assignee: | nobody → Flavio Percoco (flaper87) |
milestone: | none → icehouse-2 |
no longer affects: | marconi/icehouse |
Changed in marconi: | |
milestone: | icehouse-3 → none |
summary: |
- Health endpoint should be admin only + Admin portion of the API requires RBAC |
description: | updated |
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/65072
Review: https:/