Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
enable service token role validation for all service tokens
As part of adressing CVE-2023-2088 cinder was modifed to require the service role to be present in service token when calling the attachemtn api to modify attachments related to nova instance. One recomendation of that CVE mitigration discussions was that all services shoudl enabel the service token role validation by default. This change simplely enabled that by setting [keystone_authtoken]/service_token_roles_required = true Related: OSPRH191
- Loading branch information