Provision certificates for Keystone install

Bug #1017554 reported by Adam Young
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
OpenStack Identity (keystone)
Fix Released
Undecided
Adam Young

Bug Description

In order to use the PKI signed tokens, the Keystone service will need a private key and signing certificate. These have to be present prior to the calls to generate tokens, or the openssl call will fail.

This is going in a separate ticket from https://bugs.launchpad.net/keystone/+bug/1003962 so that this code can be committed and the integration tests modified to use it prior to the Signed tokens code getting committed.

Adam Young (ayoung)
Changed in keystone:
assignee: nobody → Adam Young (ayoung)
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix proposed to keystone (master)

Fix proposed to branch: master
Review: https://review.openstack.org/8932

Changed in keystone:
status: New → In Progress
Revision history for this message
OpenStack Infra (hudson-openstack) wrote : Fix merged to keystone (master)

Reviewed: https://review.openstack.org/8932
Committed: http://github.com/openstack/keystone/commit/5ad80860fa227fdab204ea464462c353bc0e59a1
Submitter: Jenkins
Branch: master

commit 5ad80860fa227fdab204ea464462c353bc0e59a1
Author: Adam Young <email address hidden>
Date: Fri Jun 22 13:40:17 2012 -0400

    keystone_manage certificate generation

    Bug 1017554

    paths now correspond with SSL
    unit test for cert generation
    Added mode config values
    Explict about umask

    replace string concat for paths with proper use of os.path.join
    Change-Id: I8b3bec82d7b72993aa69653f63ff64c3f675f716

Changed in keystone:
status: In Progress → Fix Committed
Thierry Carrez (ttx)
Changed in keystone:
milestone: none → folsom-2
status: Fix Committed → Fix Released
Thierry Carrez (ttx)
Changed in keystone:
milestone: folsom-2 → 2012.2
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.