Dear Jonathan,

               As a client of AAI, we are told that multicloud micro-services 
follow the rule “Each system should be issued its own ID in AAF ” . So I would 
like to have your help to understand following questions:

1, What the ID looks like? Is it a static UUID or dynamic one generated during 
run-time ?

2, Giving the context that MultiCloud has not integrated with AAF, but AAI 
does, Is that possible that MultiCloud to use this ID to interact with AAI ?

3, How we can apply the ID?

Thanks

Best Regards,
Bin Yang,    Solution Engineering Team,    Wind River
ONAP Multi-VIM/Cloud PTL
Direct +86,10,84777126    Mobile +86,13811391682    Fax +86,10,64398189
Skype: yangbincs993

From: [email protected] [mailto:[email protected]] On 
Behalf Of Yang Bin
Sent: Tuesday, September 18, 2018 11:01 AM
To: [email protected]; [email protected]
Cc: HUANG, HAIBIN ([email protected]); Ethan Lynn ([email protected]); 
Morales, Victor; Sudhakar Reddy ([email protected]); HU, BIN 
([email protected]); [email protected]; Xinhui Li ([email protected]); 
Zhang, Xiaohua
Subject: Re: [onap-discuss] New authentication and authorization in Casablanca 
for #aai

Dear Jimmy,

               Mulit-VIM/Cloud is client of AAI as well.

               I hope this transition will not impact M4 so that we can figure 
out how to comply with this new rule. Thanks

Best Regards,
Bin Yang,    Solution Engineering Team,    Wind River
ONAP Multi-VIM/Cloud PTL
Direct +86,10,84777126    Mobile +86,13811391682    Fax +86,10,64398189
Skype: yangbincs993

From: [email protected] [mailto:[email protected]] On 
Behalf Of Jimmy Forsyth
Sent: Tuesday, September 18, 2018 10:44 AM
To: [email protected]
Subject: [onap-discuss] New authentication and authorization in Casablanca for 
#aai

Dear AAI Clients,

AAI is still using HTTPS basic authentication in Casablanca but since we are 
integrating with AAF we cannot continue to use the existing usernames and 
passwords since all the ones we created in the demo in Amsterdam are against 
AAF standards – therefore, I cannot port into AAF the existing credentials that 
have been used to talk to AAI.

I have reached out directly to the PTLs of the major clients of AAI about this 
upcoming change in usernames and passwords, so they should be covered (robot, 
so, sdnc, dcae, policy, sdc, vid, appc, and oof).

I have two open commits for both HEAT and OOM environments so that your teams 
will be able to transition to the new usernames/passwords before we move to 
AAF, which will allow us to turn on the AAF enforcement without a flash cut and 
hopefully without any interruptions for those clients who have taken the step 
of converting to the new credentials.

For the rest of you who may be piggy-backing off these legacy credentials and 
your project is not listed above, the credential you have been using *will stop 
working* once AAI has enabled Authentication and Authorization with AAF.  Let 
me say that again: the usernames and passwords that you have been using will 
stop working once we enable AAF in AAI – we were hoping to get there by M4 but 
we are unlikely to reach that goal so it will be implemented shortly after M4.

Each system should be issued its own ID in AAF; if your system has not been set 
up in AAF I recommend reaching out to the AAF team ASAP (Jonathan Gathman is 
the PTL) and then let me know what your application id is.

Please let me know soon so we can make this transition as painless and seamless 
as possible.

Thanks,
Jimmy Forsyth
AAI PTL


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#12491): https://lists.onap.org/g/onap-discuss/message/12491
Mute This Topic: https://lists.onap.org/mt/25742174/21656
Mute #aai: https://lists.onap.org/mk?hashtag=aai&subid=2740164
Group Owner: [email protected]
Unsubscribe: https://lists.onap.org/g/onap-discuss/unsub  
[[email protected]]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to