Files
puppet-manila/releasenotes/notes/provider-system-scope-cb9a22337ffe738d.yaml
Takashi Kajinami 5ca6e6fc9c Use system scope credentials in providers
This change enforces usage of system scope credentials to manage share
types, following the new policy rules for SRBAC support in manila.

The logic to look up credential for the nova service user from
[keystone_authtoken] is left to keep backward compatibility but is
deprecated and will be removed.

Depends-on: https://review.opendev.org/806474
Depends-on: https://review.opendev.org/828025
Change-Id: Ifd8aa63c94e194083a2b81fa9ea2c14afad5d6ab
2022-03-07 23:56:49 +09:00

15 lines
597 B
YAML

---
upgrade:
- |
Now the ``manila_type`` resource type uses system scope credential instead
of project scope credential when sending requests to Manila API.
deprecations:
- |
Currently the manila_type`` resource type uses the credential written in
the ``[keystone_authtoken]`` section of ``manila.conf``. However this
behavior has been deprecated and now the resource type first looks for
the yaml files in ``/etc/openstack/puppet``. Make sure one of
``clouds.yaml`` or ``admin-clouds.yaml`` (which is created by
puppet-keystone) is created in that directory.