Chapter 6. Identity in OpenStack Security Guide  - current, authorization section

Bug #1443518 reported by Michael McCune
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
openstack-manuals
Fix Released
Medium
Andreas Jaeger

Bug Description

The second paragraph of the introduction to the authorization section references the policy enforcement middleware but seems to be unclear as to whether the provided cases are examples or firm rules. The text in question is:

"The policy enforcement middleware enables fine-grained access control to OpenStack resources. Only admin users can provision new users and have access to various management functionality. The cloud users would only be able to spin up instances, attach volumes, and perform other operational tasks."

Is this stating the actual permissions for admin and cloud users or are these examples of what can be done with the middleware.?

These should be cleaned up and perhaps a reference to the policies section should be added to help guide the reader to a more in-depth discussion of the policy behavior.

-----------------------------------
Built: 2015-04-11T11:13:52 00:00
git SHA: 08a9f4ed1903ee1a6bd9eaaacf720b81484c0e6d
URL: http://docs.openstack.org/security-guide/content/identity.html

Tags: sec-guide
N Dillon (sicarie)
Changed in openstack-manuals:
importance: Undecided → Medium
status: New → Confirmed
Michael Simo (mpmsimo)
Changed in openstack-manuals:
assignee: nobody → Michael Simo (mpmsimo)
Changed in openstack-manuals:
assignee: Michael Simo (mpmsimo) → Sharat Sharma (sharat-sharma)
status: Confirmed → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to security-doc (master)

Fix proposed to branch: master
Review: https://review.openstack.org/300950

Changed in openstack-manuals:
assignee: Sharat Sharma (sharat-sharma) → Andreas Jaeger (jaegerandi)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to security-doc (master)

Reviewed: https://review.openstack.org/300950
Committed: https://git.openstack.org/cgit/openstack/security-doc/commit/?id=4d95183383da32d5696d52160249c1cef1778f1e
Submitter: Jenkins
Branch: master

commit 4d95183383da32d5696d52160249c1cef1778f1e
Author: sharat.sharma <email address hidden>
Date: Mon Apr 4 11:43:17 2016 +0530

    [sec-guide] Link added to policies section

    The ambiguous statements in the introduction to authorization
    have been removed and a link is added to policies section.

    Change-Id: If626acd63e36dcd639d1f1ded9e79b45e0b5e821
    Closes-Bug: 1443518

Changed in openstack-manuals:
status: In Progress → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.