Recent questions tagged ldap

0 votes
18 responses 47 views

So the application credentials spec has merged - huge thanks to Monty and the Keystone team for getting this done: ...

asked Oct 30, 2017 in openstack-dev by Zane_Bitter (21,640 points)   4 6 9
0 votes
1 response 15 views

Hi All, The OpenStack login screen has just login name and password for validation. Now, if someone writes a script to perform DoS attacks by sending a lot of fake login requests, the server will easily become unavailable. I know there is a ...

asked Oct 13, 2017 in openstack-dev by Puneet_Jain (160 points)  
0 votes
0 responses 15 views

# Simplification PTG Recap ## Introduction This goal was started off in the May 2017 leadership workshop [1]. We are collecting feedback from the community that OpenStack can be complex for deployers, contributors, and ultimately the people ...

asked Oct 4, 2017 in openstack-dev by Mike_Perez (13,120 points)   2 3 4
0 votes
19 responses 87 views

I am trying to get collectd to report some alarms to vitrage in a devstack setup, I am using a devstack created on a late version of ocata. And my devstack with vitrage appears to be working ok otherwise; e.g. I can create VMs, and raise ...

asked Sep 6, 2017 in openstack-dev by Waines,_Greg (2,700 points)   1 5 11
0 votes
4 responses 23 views

On Thu, Aug 24, 2017 at 11:15 AM, Jeffrey Zhang wrote: > We are moving to deploy service via WSGI[0]. > > There are two recommended ways. > > - apache + mod_wsgi > - nginx + uwsgi > > later one is more better. > > For traditional ...

asked Aug 25, 2017 in openstack-dev by Mohammed_Naser (3,860 points)   1 3
0 votes
16 responses 13 views

Keystone had a bug reported [0] recently (that we are targeting to pike-rc1) that exposes an inconsistency in the API based on configuration. The happy path is as follows: - a deployment is configured to store projects (controlled by the ...

asked Aug 7, 2017 in openstack-dev by Lance_Bragstad (11,080 points)   2 3 6
0 votes
0 responses 11 views

* Hi all, ** I'd like to formally communicate my desire to continue serving as the keystone PTL for the upcoming Queen’s release. Despite some turbulence throughout the Pike development cycle, keystone has managed to make progress on some ...

asked Aug 4, 2017 in openstack-dev by Lance_Bragstad (11,080 points)   2 3 6
0 votes
7 responses 651 views

Hi, I am running OpenStack Ocata that as originally provisioned using RDO Packstack. I currently have Keystone configured to use a single identity backend which is LDAP. Everything works great with this configuration except Heat and Magnum. ...

asked Jul 27, 2017 in openstack by Tristan_Evans (280 points)   1 1 1
0 votes
41 responses 65 views

Trove has evolved rapidly over the past several years, since integration in IceHouse when it only supported single instances of a few databases. Today it supports a dozen databases including clusters and replication. The user survey [1] ...

asked Jul 18, 2017 in openstack-dev by amrith.kumar_at_gmai (3,580 points)   2 3
0 votes
6 responses 26 views

Hi all, Keystone has deprecated the domain configuration upload capability provided through `keystone-manage`. We discussed it's removal in today's meeting [0] and wanted to send a quick note to the operator list. The ability to upload a ...

asked Jun 29, 2017 in openstack-dev by Lance_Bragstad (11,080 points)   2 3 6
0 votes
1 response 12 views

Hello OpenStack Community, I'd like to introduce to you all a service we have developed at Catalyst and are now ready to release to the OpenStack community in hopes that others may find it useful. As a public cloud provider we quickly ran ...

asked Jun 2, 2017 in openstack-dev by Adrian_Turjak (2,660 points)   3 7
0 votes
0 responses 7 views

A quick summary of what happened in the writing applications for the VM and Baremetal forum session. The etherpad is available here: We had a good number of API users and API ...

asked May 19, 2017 in openstack-dev by John_Garbutt (15,460 points)   3 4 5
0 votes
33 responses 4 views

Hey all, One of the Baremetal/VM sessions at the summit focused on what we need to do to make OpenStack more consumable for application developers [0]. As a group we recognized the need for application specific passwords or API keys and ...

asked May 18, 2017 in openstack-dev by Lance_Bragstad (11,080 points)   2 3 6
0 votes
0 responses 13 views

Hello OpenStack-dev, I am running Keystone in a virtual environment with LDAP backend. When user_id_attribute is set to sn (and the LDAP directory is configured accordingly), `openstack user list --domain default --group test-group` results ...

asked May 17, 2017 in openstack-dev by Boris_Kudryavtsev (120 points)  
0 votes
7 responses 12 views

Hey folks, During today's keystone meeting we added another member to keystone's core team. For several releases, Colleen's had a profound impact on keystone. Her reviews are meticulous and of incredible quality. She has no hesitation to ...

asked May 3, 2017 in openstack-dev by Lance_Bragstad (11,080 points)   2 3 6
0 votes
0 responses 15 views

Hi All I am a new to openstack and have a basic question regarding User types and administration I find 3 categories of users 1. Openstack cloud administrators/users who create tenants (or projects) and administer the cloud 2. ...

asked May 1, 2017 in openstack by Sriram_Bhamidipati (160 points)  
0 votes
3 responses 148 views

We have configured Keystone for LDAP authentication via the domain_specific_drivers_enabled setting and a file keystone..conf, and by tcpdump and LDAP server logs it appears to be working to some degree. That is, if the wrong credentials ...

asked Apr 20, 2017 in openstack by Gregory_Orange (460 points)   1 1
0 votes
0 responses 38 views

>Hi Robert, > > I saw your proposal about keystone middleware >for Radius and OpenStack integration from the last year’s discussion, > >do you know about the progress in this area, >maybe someone has already done the scalability ...

asked Apr 19, 2017 in openstack by Van_Leeuwen,_Robert (1,740 points)   1 3
0 votes
2 responses 13 views

Hi team, I am trying to integrate Identity (Ocata Release) with LDAP. Afer I following this page: I failed ...

asked Apr 17, 2017 in openstack-dev by Chason_Chan (240 points)  
0 votes
5 responses 8 views

[tl;dr I want to remove the artificial restriction of not allowing FKs between subsystems and I want to stop FK enforcement in code.] The keystone code architecture is pretty simple. The data and functionality are divided up into ...

asked Apr 12, 2017 in openstack-dev by dstanek_at_dstanek.c (2,440 points)   1 2