This appears to be partly done:
* heat domain is created when user heat-domain is created.
* heat_domain_admin is created as user heat-trust.
* heat_stack_owner role is not created, but Helm needs to create with a user to be able to create a role.
* heat_stack_user is created with the name heat-domain, although role is currently set to admin rather than none.
Do the user names need to be exactly those names?
This appears to be partly done:
* heat domain is created when user heat-domain is created.
* heat_domain_admin is created as user heat-trust.
* heat_stack_owner role is not created, but Helm needs to create with a user to be able to create a role.
* heat_stack_user is created with the name heat-domain, although role is currently set to admin rather than none.