Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-18 Thread Vijay Venkatachalam
Typos corrected. From: Vijay Venkatachalam Sent: 18 September 2015 00:36 To: OpenStack Development Mailing List (not for usage questions) <openstack-dev@lists.openstack.org> Subject: RE: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates Ye

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-18 Thread Vijay Venkatachalam
not be mandated to learn about the LBaaS service user. From: Nathan Reller [mailto:nathan.s.rel...@gmail.com] Sent: 18 September 2015 18:32 To: OpenStack Development Mailing List (not for usage questions) <openstack-dev@lists.openstack.org> Subject: Re: [openstack-dev] [Barbican] Providing servic

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-18 Thread Kant, Arun
6 PM To: OpenStack Development Mailing List (not for usage questions) Subject: Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates Typos corrected. From: Vijay Venkatachalam Sent: 18 September 2015 00:36 To: OpenStack Development Mailing List (not for usage ques

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-18 Thread Nathan Reller
> But that approach looks a little untidy, because tenant admin has to do some infrastructure work. I would think infrastructure work would be part of the admin role. They are doing other things such as creating LBaaS, which seems like an infrastructure job to me. I would think configuring LBaaS

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-17 Thread Dave McCowan (dmccowan)
From: Vijay Venkatachalam Sent: Tuesday, September 15, 2015 7:06:39 PM To: OpenStack Development Mailing List (openstack-dev@lists.openstack.org<mailto:openstack-dev@lists.openstack.org>) Subject: [openstack-dev] [Barbican] Providing service user read access to al

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-17 Thread Vijay Venkatachalam
(dmccowan) [mailto:dmcco...@cisco.com] Sent: 17 September 2015 18:20 To: OpenStack Development Mailing List (not for usage questions) <openstack-dev@lists.openstack.org> Subject: Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates The tenant admin from Step 1

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-16 Thread Dave McCowan (dmccowan)
tack-dev@lists.openstack.org<mailto:openstack-dev@lists.openstack.org>)" <openstack-dev@lists.openstack.org<mailto:openstack-dev@lists.openstack.org>> Subject: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates Hi, Is there a way to

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-16 Thread Fox, Kevin M
, September 15, 2015 7:06:39 PM To: OpenStack Development Mailing List (openstack-dev@lists.openstack.org) Subject: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates Hi, Is there a way to provide read access to a certain user to all secrets

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-16 Thread Vijay Venkatachalam
[mailto:kevin@pnnl.gov] Sent: 16 September 2015 19:24 To: OpenStack Development Mailing List (not for usage questions) <openstack-dev@lists.openstack.org> Subject: Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates Why not have lbaas do step 2

Re: [openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-16 Thread Vijay Venkatachalam
enStack Development Mailing List (openstack-dev@lists.openstack.org<mailto:openstack-dev@lists.openstack.org>)" <openstack-dev@lists.openstack.org<mailto:openstack-dev@lists.openstack.org>> Subject: [openstack-dev] [Barbican] Providing service user read access to all tenan

[openstack-dev] [Barbican] Providing service user read access to all tenant's certificates

2015-09-15 Thread Vijay Venkatachalam
Hi, Is there a way to provide read access to a certain user to all secrets/containers of all project/tenant's certificates? This user with universal "read" privilege's will be used as a service user by LBaaS plugin to read tenant's certificates during LB