Hi every one,

The glance policy.json allows specific users/roles to download an image. If
we apply a policy on a specific role, only that role can download and/or
boot an image.

What if we want to restrict downloading an image, but at the same time
allowing the user to boot it via nova boot. The catch is that we will have
to restrict the user from taking the snapshot right? Can glance can
differentiate between user downloading an image and nova doing the same on
the behalf of a user.

OR how to solve the puzzle, please guide.

Thanks
__________________________________________________________________________
OpenStack Development Mailing List (not for usage questions)
Unsubscribe: openstack-dev-requ...@lists.openstack.org?subject:unsubscribe
http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack-dev

Reply via email to