Create group in non-default domain, enable group updates

asked 2017-04-17 20:17:18 -0600

tomcat8994 gravatar image

When in the dashboard, if I login with an administrative user in the default domain I can click on the identity -> group tab and create a group. However, when I login with an administrative user using a different domain(integrated with AD) it does not allow me to.

The openstack admin guide states " The Identity service server might not allow all operations. For example, if you use the Identity server with the LDAP Identity back end and group updates are disabled, a request to create, delete, or update a group fails."

I have tried changing the policy.json file as well as adding group_allow_create = true, group_allow_update = true, group_allow_delete = true within the keystone file.

edit retag flag offensive close merge delete