https://review.openstack.org/156308
commit 717206bc70de1833b02a57529a6cdaf6e5675ea8
Author: Marek Denis <email address hidden>
Date: Mon Feb 16 18:37:16 2015 +0100
Authenticate local users via federated workflow
Mapping rules can specify that effective users should be local users
with all their roles. For that we need a way to distinguish which flow
should be choosen (user is either ``ephemeral`` or ``local``). This patch
correctly interprets mapped properties and sets authentication context
so either workflow goes as ephemeral or local user.
As part of the required work, class UserAuthInfo was moved from
``keystone/auth/plugins/password.py`` to
``keystone/auth/plugins/core.py`` and is now accessed after importing
``keystone.auth.plugins`` module.
DocImpact
Change-Id: I90b7408a9905aa96387414d9250b410b28eff485
Partially-Implements: bp federated-direct-user-mapping
Federated keystone documentation is here: http:// docs.openstack. org/security- guide/identity/ federated- keystone. html