yahoo-eng-team team mailing list archive
-
yahoo-eng-team team
-
Mailing list archive
-
Message #31683
[Bug 1442787] [NEW] Mapping openstack_user attribute in k2k assertions with different domains
Public bug reported:
We can have two users with the same username in different domains. So if
we have a "User A" in "Domain X" and a "User A" in "Domain Y", there is
no way to differ what "User A" is being used in a SAML assertion
generated by this IdP (we have only the openstack_user attribute in the
SAML assertion).
** Affects: keystone
Importance: Undecided
Status: New
--
You received this bug notification because you are a member of Yahoo!
Engineering Team, which is subscribed to Keystone.
https://bugs.launchpad.net/bugs/1442787
Title:
Mapping openstack_user attribute in k2k assertions with different
domains
Status in OpenStack Identity (Keystone):
New
Bug description:
We can have two users with the same username in different domains. So
if we have a "User A" in "Domain X" and a "User A" in "Domain Y",
there is no way to differ what "User A" is being used in a SAML
assertion generated by this IdP (we have only the openstack_user
attribute in the SAML assertion).
To manage notifications about this bug go to:
https://bugs.launchpad.net/keystone/+bug/1442787/+subscriptions
Follow ups
References