Browse code

Enable admin_domain_scope by default in Tempest

Tempest introduced a new ability to use domain scoped tokens for
identity v3 admin APIs. Since domain scoped tokens can be used
with the base keystone policy used in the gate, and the
pre-provisioned admin user is assigned a role on the domain, turn
the option alway on.

Change-Id: Ib1bb958eee076364b407fc03e77e6882d92147d2
Depends-on: I91ca907992428a5a14fb8d48a4fad105d2906e27

Andrea Frittoli (andreaf) authored on 2016/06/09 08:33:30
Showing 1 changed files
... ...
@@ -261,6 +261,8 @@ function configure_tempest {
261 261
     # Identity
262 262
     iniset $TEMPEST_CONFIG identity uri "$KEYSTONE_SERVICE_PROTOCOL://$KEYSTONE_SERVICE_HOST:5000/v2.0/"
263 263
     iniset $TEMPEST_CONFIG identity uri_v3 "$KEYSTONE_SERVICE_URI_V3"
264
+    # Use domain scoped tokens for admin v3 tests, v3 dynamic credentials of v3 account generation
265
+    iniset $TEMPEST_CONFIG identity admin_domain_scope True
264 266
     if [[ "$TEMPEST_HAS_ADMIN" == "True" ]]; then
265 267
         iniset $TEMPEST_CONFIG auth admin_username $admin_username
266 268
         iniset $TEMPEST_CONFIG auth admin_password "$password"