[Openstack-operators] [Keystone] How to restrict the returned service endpoints to client ?

Kuo Hugo tonytkdk at gmail.com
Wed Aug 14 08:34:27 UTC 2013


Hi folks,

Is there a way to specify the particular service endpoints been returned to
user?


*[Scenario 1]*

There're Nova / Glance / Swift / Keystone services defined in service
table.
Also the relevant endpoints for each service.
Let's say

User:foo

Tenant: tenant-foo


Is it possible to return only Nova's endpoint in the json to the user foo ?
I don't want foo to get other service's endpoint.



*[Scenario 2] *

There're multiple Swift clusters authenticate users by a single keystone.

Swift clusters:

name:swift1

name:swift2

Let's say

User:foo

Tenant: tenant-foo


User:bar

Tenant: tenant-bar


Is there a way to return swift1's endpoint to foo and swift2's endpoint to
bar ?
I'm not sure if keystoneI should have two regions of endpoints for each
swift cluster or two services.



Appreciate~


+Hugo Kuo+
hugo at swiftstack.com
tonytkdk at gmail.com
+886 935004793
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstack.org/pipermail/openstack-operators/attachments/20130814/264e16db/attachment.html>


More information about the OpenStack-operators mailing list