-
Epic
-
Resolution: Unresolved
-
Major
-
None
-
None
-
None
-
[RFE] Support transferring an encrypted volume to another project
-
False
-
-
False
-
Proposed
-
Proposed
-
To Do
-
Proposed
-
Proposed
-
-
-
Storage; Cinder
Hello
The customer is currently using Barbican for encrypted volumes.
By default, only the owner of a volume can access it.
Thanks to a SE and some Barbican policy modification, now any user with a "creator" role in a project can access another user's encrypted volumes.
Now, they are asking for a new feature: the transfer of secrets between users.
For example, before leaving the company (that means before deleting a user account), the user should transfer the ownership of all his volumes to other users.
Another tricky scenario is the ownership transfer of encrypted volume when the owner is deleted from the project.
Currently, they are using RHOSP 16.1.6