<div dir="ltr">Apologies for the lack of attention on that review; getting that in today and proposed for backport is my highest priority. If we can hold 2013.1.1 for keystone until this is considered for backporting, that would be much appreciated!<div>
<br></div><div style>I want to be clear though, this patch is cutting a feature (multi-domain support for LDAP/AD) from stable/grizzly rather than fixing it; while the feature technically works, it doesn't satisfy the use case it was intended to solve and results in unnecessary post-configuration setup for LDAP/AD deployments that may not be possible in the real world. Trying to backport a real "fix" would require backporting new features that are currently still in the blueprint phase for Havana.</div>
</div><div class="gmail_extra"><br clear="all"><div><div><br></div>-Dolph</div>
<br><br><div class="gmail_quote">On Tue, May 7, 2013 at 3:47 AM, Alan Pevec <span dir="ltr"><<a href="mailto:apevec@gmail.com" target="_blank">apevec@gmail.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
2013/5/6 Alan Pevec <<a href="mailto:apevec@gmail.com">apevec@gmail.com</a>>:<br>
> 2013/5/4 Adam Young <<a href="mailto:ayoung@redhat.com">ayoung@redhat.com</a>>:<br>
<div class="im">>>> * Keystone, from Dolph: no patch yet, critical issue "blurring the<br>
>>> line between bug fix and feature change"<br>
>>> <a href="https://bugs.launchpad.net/keystone/+bug/1175838" target="_blank">https://bugs.launchpad.net/keystone/+bug/1175838</a><br>
>> I'd hold out for this one. LDAP is broken without it.<br>
><br>
> Above bug was identified as a duplicate of<br>
> <a href="https://bugs.launchpad.net/keystone/+bug/1168726" target="_blank">https://bugs.launchpad.net/keystone/+bug/1168726</a><br>
> and Dolph is working on a patch <a href="https://review.openstack.org/28197" target="_blank">https://review.openstack.org/28197</a><br>
> which hopefully will be ready for backporting soon.<br>
<br>
</div>Adam, Dolph - I don't see any progress on that review, what shall we<br>
do with Keystone 2013.1.1 ?<br>
We're supposed to release it in 2 days, do you want to skip this<br>
update until the fix for default domain in LDAP is ready?<br>
<br>
Cheers,<br>
Alan<br>
</blockquote></div><br></div>