[OpenStack-Infra] Removal of infra-root shell accounts from nodepool DIBs

Paul Belanger pabelanger at redhat.com
Wed Apr 19 21:49:13 UTC 2017


Greetings!

To make sure everybody is aware, we have just approved cmurphy's patch[1] to
stop installing infra-root users onto our diskimages for nodepool. Fear not,
infra-root users will now be able to directly use the root user to access our
zuul worker nodes.

We'll now be using ansible-role-cloud-launcher[2] to populate the
infra-root-keys keypair for all our clouds. This means that glean will then
inject our keypairs into the authorized_keys file for the root user.

One step closer to dropping puppet from our image build process.

-PB

[1] https://review.openstack.org/#/c/450029/
[2] https://review.openstack.org/#/c/457712/



More information about the OpenStack-Infra mailing list