Uploaded image for project: 'Red Hat OpenStack Services on OpenShift'
  1. Red Hat OpenStack Services on OpenShift
  2. OSPRH-2954

Support transferring an encrypted volume to another project

XMLWordPrintable

    • Icon: Epic Epic
    • Resolution: Unresolved
    • Icon: Major Major
    • None
    • None
    • openstack-cinder
    • None
    • [RFE] Support transferring an encrypted volume to another project
    • False
    • Hide

      None

      Show
      None
    • False
    • Proposed
    • Proposed
    • To Do
    • Proposed
    • Proposed
    • Storage; Cinder

      Hello

      The customer is currently using Barbican for encrypted volumes.
      By default, only the owner of a volume can access it.

      Thanks to a SE and some Barbican policy modification, now any user with a "creator" role in a project can access another user's encrypted volumes.

      Now, they are asking for a new feature: the transfer of secrets between users.
      For example, before leaving the company (that means before deleting a user account), the user should transfer the ownership of all his volumes to other users.

      Another tricky scenario is the ownership transfer of encrypted volume when the owner is deleted from the project.

      Currently, they are using RHOSP 16.1.6

            abishop@redhat.com Alan Bishop
            rhn-support-cmayapka Christine Mayap Kamga (Inactive)
            rhos-dfg-storage-squad-cinder
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

              Created:
              Updated: