[Openstack-security] [Bug 1305566] Re: the token still can be used if the credential has been deleted

Dolph Mathews 1305566 at bugs.launchpad.net
Thu Apr 10 14:05:58 UTC 2014


This would be a great place to emit revocation events in Juno.

** Changed in: keystone
   Importance: Undecided => Medium

** Changed in: keystone
       Status: New => Triaged

** Tags added: security

** Summary changed:

- the token still can be used if the credential has been deleted
+ the token still can be used if the EC2 credential has been deleted

-- 
You received this bug notification because you are a member of OpenStack
Security Group, which is subscribed to OpenStack.
https://bugs.launchpad.net/bugs/1305566

Title:
  the token still can be used if the EC2 credential has been deleted

Status in OpenStack Identity (Keystone):
  Triaged

Bug description:
  Currently, the associated tokens are not deleted when deleting ec2
  credential. So, the token got before can still be used.

To manage notifications about this bug go to:
https://bugs.launchpad.net/keystone/+bug/1305566/+subscriptions




More information about the Openstack-security mailing list