@@ -309,30 +309,32 @@ function configure_keystone {
309309# service -- --
310310# -- -- service
311311# -- -- ResellerAdmin
312- # -- -- Member
312+ # -- -- member
313313# demo admin admin
314- # demo demo Member , anotherrole
314+ # demo demo member , anotherrole
315315# alt_demo admin admin
316- # alt_demo alt_demo Member , anotherrole
317- # invisible_to_admin demo Member
316+ # alt_demo alt_demo member , anotherrole
317+ # invisible_to_admin demo member
318318
319319# Group Users Roles Project
320320# ------------------------------------------------------------------
321321# admins admin admin admin
322- # nonadmins demo, alt_demo Member , anotherrole demo, alt_demo
322+ # nonadmins demo, alt_demo member , anotherrole demo, alt_demo
323323
324324
325325# Migrated from keystone_data.sh
326326function create_keystone_accounts {
327327
328- # The keystone bootstrapping process (performed via keystone-manage bootstrap)
329- # creates an admin user, admin role and admin project. As a sanity check
330- # we exercise the CLI to retrieve the IDs for these values.
328+ # The keystone bootstrapping process (performed via keystone-manage
329+ # bootstrap) creates an admin user, admin role, member role, and admin
330+ # project. As a sanity check we exercise the CLI to retrieve the IDs for
331+ # these values.
331332 local admin_project
332333 admin_project=$( openstack project show " admin" -f value -c id)
333334 local admin_user
334335 admin_user=$( openstack user show " admin" -f value -c id)
335336 local admin_role=" admin"
337+ local member_role=" member"
336338
337339 get_or_add_user_domain_role $admin_role $admin_user default
338340
@@ -349,17 +351,6 @@ function create_keystone_accounts {
349351 # role is also configurable in swift-proxy.conf
350352 get_or_create_role ResellerAdmin
351353
352- # The Member role is used by Horizon and Swift so we need to keep it:
353- local member_role=" member"
354-
355- # Capital Member role is legacy hard coded in Horizon / Swift
356- # configs. Keep it around.
357- get_or_create_role " Member"
358-
359- # The reality is that the rest of the roles listed below honestly
360- # should work by symbolic names.
361- get_or_create_role $member_role
362-
363354 # another_role demonstrates that an arbitrary role may be created and used
364355 # TODO(sleepsonthefloor): show how this can be used for rbac in the future!
365356 local another_role=" anotherrole"
0 commit comments