Information Validation - Federated keystone in Security Guide

Bug #1619502 reported by N Dillon
10
This bug affects 2 people
Affects Status Importance Assigned to Milestone
OpenStack Security Guide Documentation
Confirmed
Medium
Khanak Nangia

Bug Description

Need to refresh if this information is still accurate, or needs to be updated.

1) Enabling Federation - is the Apache patch information still accurate? Along with the WSGIScriptAlias and the location directives

2) Performing Federation Authentication - are the processes for unscoped token generation still the same?

3) Scoped token generation?

4) Setting Identity service as Identity Provider - Configuration options - SAML fields?

-----------------------------------
Release: 0.0.1 on 2016-08-31 01:41
SHA: d029b6f283e5e2d276738284ce15a1af5beef26d
Source: http://git.openstack.org/cgit/openstack/security-doc/tree/security-guide/source/identity/federated-keystone.rst
URL: http://docs.openstack.org/security-guide/identity/federated-keystone.html

Tags: sec-guide
N Dillon (sicarie)
Changed in openstack-manuals:
status: New → Confirmed
importance: Undecided → Medium
Ian Cordasco (icordasc)
affects: openstack-manuals → ossp-security-documentation
Khanak Nangia (knangia)
Changed in ossp-security-documentation:
assignee: nobody → Khanak Nangia (knangia)
Revision history for this message
Egor Panfilov (erakli) wrote :

I think this article is totally old and need refresh. For example, Future section (https://docs.openstack.org/security-guide/identity/federated-keystone.html#future) contains the next phrase: "There is no support for dashboard available presently." Today this is not actually true.

I think, whole topic must be reworked. For example, we already have guide about this (https://docs.openstack.org/keystone/rocky/advanced-topics/federation/configure_federation.html#mapping).

What about synchronization of article or replacing most of parts with link on keystone documentation?

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.