Uploaded image for project: 'Red Hat OpenStack Services on OpenShift'
  1. Red Hat OpenStack Services on OpenShift
  2. OSPRH-17740

Fix the mounting multi-realm federation files permissions

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Done
    • Icon: Major Major
    • None
    • None
    • keystone-operator
    • None
    • DFG Security: Test Sprint 5, DFG Security: Test Sprint 6, DFG Security: Test Sprint 7
    • 3

      Generated multi-realm federation files are mounted directly to /etc/httpd/... which bypasses kolla copy system resulting to keystone and apache user not be able to read these files (they are mounted as root).

      The fix adds new mount path and adds correct permissions and copy setting in kolla config.

              rh-ee-vfisarov Veronika Fisarova
              rh-ee-vfisarov Veronika Fisarova
              rhos-dfg-security
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: