devstack/lib/nova_plugins
Julia Kreger 6af3cb9eb2 nova ironic-hypevisor - support scoped auth config
The Secure RBAC effort has updated Ironic such that it
can support a mode where it is scope enforcing for all
interactions with the API. Due to the design, and operating
nature of Ironic's API, services speaking with it must
authenticate with a system scope to have a full picture
of the universe.

In this case, we need to update the nova configuration
accordingly such that the compute service understands
how to talk to ironic so that it can see the nodes under
management.

Ironic will likely update this again at a later point in
time to enable a "hybrid" mixed-mode as the operating model
and related permissions *should* allow nova to use a project
scoped "owner" account with Ironic, in order to access
and command nodes to deploy. But at this time, we're
focusing on the exclusive operating mode.

Change-Id: I1946725ce08c495178c419eaf38829f921c91bbe
Needed-By: https://review.opendev.org/c/openstack/ironic/+/778957
2021-06-15 11:32:45 -07:00
..
functions-libvirt Check centos-8-stream 2021-06-07 06:54:20 +00:00
hypervisor-fake Modernize VIRT_DRIVER=fake usage 2018-06-02 12:40:58 -04:00
hypervisor-ironic nova ironic-hypevisor - support scoped auth config 2021-06-15 11:32:45 -07:00
hypervisor-libvirt Use python3-guestfs in Ubuntu 2020-12-16 09:17:08 +09:00
hypervisor-openvz Stop configuring '[DEFAULT] firewall_driver' for nova 2020-01-16 09:27:54 +00:00
hypervisor-vsphere Namespace XTRACE commands 2015-11-27 15:36:04 +11:00