SlideShare a Scribd company logo
•
•
•
•
•
•
What is federated identity?
What is Keystone to Keystone federation?
History of Keystone to Keystone
Terminology
Auth flows
Configuration
Demonstration
What's next?
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
•
●
●
●
●
●
●
○ idp_entity_id
○ idp_sso_endpoint
●
●
○
○
●
𝚜𝚊𝚖𝚕
𝚒𝚍𝚙 𝚎𝚗𝚝𝚒𝚝𝚢 𝚒𝚍 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚍𝚎𝚖𝚘 𝚒𝚍𝚙
𝚒𝚍𝚙 𝚜𝚜𝚘 𝚎𝚗𝚍𝚙𝚘𝚒𝚗𝚝 𝚑𝚝𝚝𝚙 𝚒𝚛𝚛𝚎𝚕𝚎𝚟𝚊𝚗𝚝
𝚌𝚎𝚛 𝚏𝚒𝚕𝚎 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚜𝚕 𝚌𝚎𝚛𝚝𝚜 𝚜𝚒𝚐𝚗𝚒𝚗𝚐 𝚌𝚎𝚛𝚝 𝚙𝚎𝚖
𝚔𝚎𝚢𝚏𝚒𝚕𝚎 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚜𝚕 𝚙𝚛𝚒𝚟𝚊𝚝𝚎 𝚜𝚒𝚐𝚗𝚒𝚗𝚐 𝚔𝚎𝚢 𝚙𝚎𝚖
𝚒𝚍𝚙 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊 𝚙𝚊𝚝𝚑 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚊𝚖𝚕𝟸 𝚒𝚍𝚙 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊 𝚡𝚖𝚕
●
𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢 𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚌𝚛𝚎𝚊𝚝𝚎
𝚛𝚎𝚖𝚘𝚝𝚎 𝚒𝚍 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚍𝚎𝚖𝚘 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙
𝚌𝚞𝚛𝚕 𝚜 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 keystone 𝚍𝚎𝚖𝚘/v3/OS-FEDERATION/saml2/metadata 𝚐𝚛𝚎𝚙
𝚎𝚗𝚝𝚒𝚝𝚢𝙸𝙳
𝙴𝚗𝚝𝚒𝚝𝚢𝙳𝚎𝚜𝚌𝚛𝚒𝚙𝚝𝚘𝚛 𝚎𝚗𝚝𝚒𝚝𝚢𝙸𝙳 𝚞𝚛𝚗 𝚎𝚡𝚊𝚖𝚙𝚕𝚎 𝚒𝚍𝚙 𝚡𝚖𝚕𝚗𝚜 𝚞𝚛𝚗 𝚘𝚊𝚜𝚒𝚜 𝚗𝚊𝚖𝚎𝚜
𝚝𝚌 𝚂𝙰𝙼𝙻 𝟸 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊
●
𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚐𝚛𝚘𝚞𝚙 𝚌𝚛𝚎𝚊𝚝𝚎 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚎𝚍 𝚞𝚜𝚎𝚛𝚜
𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚛𝚘𝚕𝚎 𝚊𝚍𝚍 𝚐𝚛𝚘𝚞𝚙 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚎𝚍 𝚞𝚜𝚎𝚛𝚜 𝚙𝚛𝚘𝚓𝚎𝚌𝚝 𝚊𝚍𝚖𝚒𝚗 𝚊𝚍𝚖𝚒𝚗
[
{
"local": [
{
"user": {
"name": "{0}"
},
"group": {
"domain": {
"name": "Default"
},
"name": "federated_users"
}
}
],
"remote": [
{
"type": "openstack_user"
}
]
}
]
●
●
$ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚖𝚊𝚙𝚙𝚒𝚗𝚐 𝚌𝚛𝚎𝚊𝚝𝚎 --𝚛𝚞𝚕𝚎𝚜 𝚛𝚞𝚕𝚎𝚜.𝚓𝚜𝚘𝚗 𝚔𝟸𝚔𝚖𝚊𝚙
●
$ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚒𝚘𝚗 𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕 𝚌𝚛𝚎𝚊𝚝𝚎 𝚜𝚊𝚖𝚕𝟸 
--𝚖𝚊𝚙𝚙𝚒𝚗𝚐 𝚔𝟸𝚔𝚖𝚊𝚙 
--𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢-𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙
●
●
○
○
○
●
●
● Changing the vhost file of keystone.
<𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗 /𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.𝚜𝚜𝚘>
𝚂𝚎𝚝𝙷𝚊𝚗𝚍𝚕𝚎𝚛 𝚜𝚑𝚒𝚋
</𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗>
<𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗 /𝚟𝟹/𝙾𝚂-𝙵𝙴𝙳𝙴𝚁𝙰𝚃𝙸𝙾𝙽/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢_𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛𝚜/𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙/𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕𝚜/𝚜𝚊𝚖𝚕𝟸/𝚊𝚞𝚝𝚑>
𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚎𝚜𝚝𝚂𝚎𝚝𝚝𝚒𝚗𝚐 𝚛𝚎𝚚𝚞𝚒𝚛𝚎𝚂𝚎𝚜𝚜𝚒𝚘𝚗 𝟷
𝙰𝚞𝚝𝚑𝚃𝚢𝚙𝚎 𝚜𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑
𝚂𝚑𝚒𝚋𝙴𝚡𝚙𝚘𝚛𝚝𝙰𝚜𝚜𝚎𝚛𝚝𝚒𝚘𝚗 𝙾𝚏𝚏
𝚁𝚎𝚚𝚞𝚒𝚛𝚎 𝚟𝚊𝚕𝚒𝚍-𝚞𝚜𝚎𝚛
<𝙸𝚏𝚅𝚎𝚛𝚜𝚒𝚘𝚗 < 𝟸.𝟺>
𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚒𝚛𝚎𝚂𝚎𝚜𝚜𝚒𝚘𝚗 𝙾𝚗
𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚒𝚛𝚎𝙰𝚕𝚕 𝙾𝚗
</𝙸𝚏𝚅𝚎𝚛𝚜𝚒𝚘𝚗> </𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗>
●
○
[𝚊𝚞𝚝𝚑]
𝚖𝚎𝚝𝚑𝚘𝚍𝚜 = 𝚙𝚊𝚜𝚜𝚠𝚘𝚛𝚍,𝚝𝚘𝚔𝚎𝚗,𝚜𝚊𝚖𝚕𝟸
●
○
○
$ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚜𝚎𝚛𝚟𝚒𝚌𝚎 𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚌𝚛𝚎𝚊𝚝𝚎 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚜𝚙 
--𝚊𝚞𝚝𝚑-𝚞𝚛𝚕 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢/𝚟𝟹/𝙾𝚂-
𝙵𝙴𝙳𝙴𝚁𝙰𝚃𝙸𝙾𝙽/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢_𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛𝚜/𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙/𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕𝚜/𝚜𝚊𝚖𝚕𝟸/𝚊𝚞𝚝𝚑

--𝚜𝚎𝚛𝚟𝚒𝚌𝚎-𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛-𝚞𝚛𝚕 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.
𝚜𝚜𝚘/𝚂𝙰𝙼𝙻𝟸/𝙴𝙲𝙿
•
$ 𝚌𝚞𝚛𝚕 -𝚜 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.𝚜𝚜𝚘/𝙼𝚎𝚝𝚊𝚍𝚊𝚝𝚊 | 𝚐𝚛𝚎𝚙
𝚞𝚛𝚗:𝚘𝚊𝚜𝚒𝚜:𝚗𝚊𝚖𝚎𝚜:𝚝𝚌:𝚂𝙰𝙼𝙻:𝟸.0:𝚋𝚒𝚗𝚍𝚒𝚗𝚐𝚜:𝙿𝙰𝙾𝚂
<𝚖𝚍:𝙰𝚜𝚜𝚎𝚛𝚝𝚒𝚘𝚗𝙲𝚘𝚗𝚜𝚞𝚖𝚎𝚛𝚂𝚎𝚛𝚟𝚒𝚌𝚎 𝙱𝚒𝚗𝚍𝚒𝚗𝚐="𝚞𝚛𝚗:𝚘𝚊𝚜𝚒𝚜:𝚗𝚊𝚖𝚎𝚜:𝚝𝚌:𝚂𝙰𝙼𝙻:
𝟸.0:𝚋𝚒𝚗𝚍𝚒𝚗𝚐𝚜:𝙿𝙰𝙾𝚂" 𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗="𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.
𝚜𝚜𝚘/𝚂𝙰𝙼𝙻𝟸/𝙴𝙲𝙿" 𝚒𝚗𝚍𝚎𝚡="𝟺"/>
●
$ openstack 
--os-service-provider keystonesp 
--os-remote-project-name demo 
--os-remote-project-domain-name Default 
token issue
https://docs.openstack.org/keystone/latest/admin/federation/federat
ed_identity.html
•
•
•
•
•
Bridging Clouds with Keystone to Keystone Federation
Bridging Clouds with Keystone to Keystone Federation

More Related Content

Featured

AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
marketingartwork
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
Skeleton Technologies
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
Neil Kimberley
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
contently
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
Albert Qian
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
Kurio // The Social Media Age(ncy)
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
Search Engine Journal
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
SpeakerHub
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
Tessa Mero
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Lily Ray
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
Rajiv Jayarajah, MAppComm, ACC
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
Christy Abraham Joy
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
Vit Horky
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
MindGenius
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
RachelPearson36
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Applitools
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
GetSmarter
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
Alireza Esmikhani
 
More than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike RoutesMore than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike Routes
Project for Public Spaces & National Center for Biking and Walking
 

Featured (20)

AI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdfAI Trends in Creative Operations 2024 by Artwork Flow.pdf
AI Trends in Creative Operations 2024 by Artwork Flow.pdf
 
Skeleton Culture Code
Skeleton Culture CodeSkeleton Culture Code
Skeleton Culture Code
 
PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024PEPSICO Presentation to CAGNY Conference Feb 2024
PEPSICO Presentation to CAGNY Conference Feb 2024
 
Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)Content Methodology: A Best Practices Report (Webinar)
Content Methodology: A Best Practices Report (Webinar)
 
How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024How to Prepare For a Successful Job Search for 2024
How to Prepare For a Successful Job Search for 2024
 
Social Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie InsightsSocial Media Marketing Trends 2024 // The Global Indie Insights
Social Media Marketing Trends 2024 // The Global Indie Insights
 
Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024Trends In Paid Search: Navigating The Digital Landscape In 2024
Trends In Paid Search: Navigating The Digital Landscape In 2024
 
5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary5 Public speaking tips from TED - Visualized summary
5 Public speaking tips from TED - Visualized summary
 
ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd ChatGPT and the Future of Work - Clark Boyd
ChatGPT and the Future of Work - Clark Boyd
 
Getting into the tech field. what next
Getting into the tech field. what next Getting into the tech field. what next
Getting into the tech field. what next
 
Google's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search IntentGoogle's Just Not That Into You: Understanding Core Updates & Search Intent
Google's Just Not That Into You: Understanding Core Updates & Search Intent
 
How to have difficult conversations
How to have difficult conversations How to have difficult conversations
How to have difficult conversations
 
Introduction to Data Science
Introduction to Data ScienceIntroduction to Data Science
Introduction to Data Science
 
Time Management & Productivity - Best Practices
Time Management & Productivity -  Best PracticesTime Management & Productivity -  Best Practices
Time Management & Productivity - Best Practices
 
The six step guide to practical project management
The six step guide to practical project managementThe six step guide to practical project management
The six step guide to practical project management
 
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
Beginners Guide to TikTok for Search - Rachel Pearson - We are Tilt __ Bright...
 
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
Unlocking the Power of ChatGPT and AI in Testing - A Real-World Look, present...
 
12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work12 Ways to Increase Your Influence at Work
12 Ways to Increase Your Influence at Work
 
ChatGPT webinar slides
ChatGPT webinar slidesChatGPT webinar slides
ChatGPT webinar slides
 
More than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike RoutesMore than Just Lines on a Map: Best Practices for U.S Bike Routes
More than Just Lines on a Map: Best Practices for U.S Bike Routes
 

Bridging Clouds with Keystone to Keystone Federation

  • 1.
  • 3. What is federated identity? What is Keystone to Keystone federation? History of Keystone to Keystone Terminology Auth flows Configuration Demonstration What's next?
  • 4.
  • 5.
  • 7.
  • 12.
  • 13.
  • 16. ● ○ ○ ● 𝚜𝚊𝚖𝚕 𝚒𝚍𝚙 𝚎𝚗𝚝𝚒𝚝𝚢 𝚒𝚍 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚍𝚎𝚖𝚘 𝚒𝚍𝚙 𝚒𝚍𝚙 𝚜𝚜𝚘 𝚎𝚗𝚍𝚙𝚘𝚒𝚗𝚝 𝚑𝚝𝚝𝚙 𝚒𝚛𝚛𝚎𝚕𝚎𝚟𝚊𝚗𝚝 𝚌𝚎𝚛 𝚏𝚒𝚕𝚎 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚜𝚕 𝚌𝚎𝚛𝚝𝚜 𝚜𝚒𝚐𝚗𝚒𝚗𝚐 𝚌𝚎𝚛𝚝 𝚙𝚎𝚖 𝚔𝚎𝚢𝚏𝚒𝚕𝚎 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚜𝚕 𝚙𝚛𝚒𝚟𝚊𝚝𝚎 𝚜𝚒𝚐𝚗𝚒𝚗𝚐 𝚔𝚎𝚢 𝚙𝚎𝚖 𝚒𝚍𝚙 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊 𝚙𝚊𝚝𝚑 𝚎𝚝𝚌 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚜𝚊𝚖𝚕𝟸 𝚒𝚍𝚙 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊 𝚡𝚖𝚕
  • 17. ● 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢 𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚌𝚛𝚎𝚊𝚝𝚎 𝚛𝚎𝚖𝚘𝚝𝚎 𝚒𝚍 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎 𝚍𝚎𝚖𝚘 𝚒𝚍𝚙 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙 𝚌𝚞𝚛𝚕 𝚜 𝚑𝚝𝚝𝚙 𝚒𝚍𝚙 keystone 𝚍𝚎𝚖𝚘/v3/OS-FEDERATION/saml2/metadata 𝚐𝚛𝚎𝚙 𝚎𝚗𝚝𝚒𝚝𝚢𝙸𝙳 𝙴𝚗𝚝𝚒𝚝𝚢𝙳𝚎𝚜𝚌𝚛𝚒𝚙𝚝𝚘𝚛 𝚎𝚗𝚝𝚒𝚝𝚢𝙸𝙳 𝚞𝚛𝚗 𝚎𝚡𝚊𝚖𝚙𝚕𝚎 𝚒𝚍𝚙 𝚡𝚖𝚕𝚗𝚜 𝚞𝚛𝚗 𝚘𝚊𝚜𝚒𝚜 𝚗𝚊𝚖𝚎𝚜 𝚝𝚌 𝚂𝙰𝙼𝙻 𝟸 𝚖𝚎𝚝𝚊𝚍𝚊𝚝𝚊 ● 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚐𝚛𝚘𝚞𝚙 𝚌𝚛𝚎𝚊𝚝𝚎 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚎𝚍 𝚞𝚜𝚎𝚛𝚜 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚛𝚘𝚕𝚎 𝚊𝚍𝚍 𝚐𝚛𝚘𝚞𝚙 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚎𝚍 𝚞𝚜𝚎𝚛𝚜 𝚙𝚛𝚘𝚓𝚎𝚌𝚝 𝚊𝚍𝚖𝚒𝚗 𝚊𝚍𝚖𝚒𝚗
  • 18. [ { "local": [ { "user": { "name": "{0}" }, "group": { "domain": { "name": "Default" }, "name": "federated_users" } } ], "remote": [ { "type": "openstack_user" } ] } ] ●
  • 19. ● $ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚖𝚊𝚙𝚙𝚒𝚗𝚐 𝚌𝚛𝚎𝚊𝚝𝚎 --𝚛𝚞𝚕𝚎𝚜 𝚛𝚞𝚕𝚎𝚜.𝚓𝚜𝚘𝚗 𝚔𝟸𝚔𝚖𝚊𝚙 ● $ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚏𝚎𝚍𝚎𝚛𝚊𝚝𝚒𝚘𝚗 𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕 𝚌𝚛𝚎𝚊𝚝𝚎 𝚜𝚊𝚖𝚕𝟸 --𝚖𝚊𝚙𝚙𝚒𝚗𝚐 𝚔𝟸𝚔𝚖𝚊𝚙 --𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢-𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙
  • 21. ● Changing the vhost file of keystone. <𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗 /𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.𝚜𝚜𝚘> 𝚂𝚎𝚝𝙷𝚊𝚗𝚍𝚕𝚎𝚛 𝚜𝚑𝚒𝚋 </𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗> <𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗 /𝚟𝟹/𝙾𝚂-𝙵𝙴𝙳𝙴𝚁𝙰𝚃𝙸𝙾𝙽/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢_𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛𝚜/𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙/𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕𝚜/𝚜𝚊𝚖𝚕𝟸/𝚊𝚞𝚝𝚑> 𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚎𝚜𝚝𝚂𝚎𝚝𝚝𝚒𝚗𝚐 𝚛𝚎𝚚𝚞𝚒𝚛𝚎𝚂𝚎𝚜𝚜𝚒𝚘𝚗 𝟷 𝙰𝚞𝚝𝚑𝚃𝚢𝚙𝚎 𝚜𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑 𝚂𝚑𝚒𝚋𝙴𝚡𝚙𝚘𝚛𝚝𝙰𝚜𝚜𝚎𝚛𝚝𝚒𝚘𝚗 𝙾𝚏𝚏 𝚁𝚎𝚚𝚞𝚒𝚛𝚎 𝚟𝚊𝚕𝚒𝚍-𝚞𝚜𝚎𝚛 <𝙸𝚏𝚅𝚎𝚛𝚜𝚒𝚘𝚗 < 𝟸.𝟺> 𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚒𝚛𝚎𝚂𝚎𝚜𝚜𝚒𝚘𝚗 𝙾𝚗 𝚂𝚑𝚒𝚋𝚁𝚎𝚚𝚞𝚒𝚛𝚎𝙰𝚕𝚕 𝙾𝚗 </𝙸𝚏𝚅𝚎𝚛𝚜𝚒𝚘𝚗> </𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗>
  • 23. ● ○ ○ $ 𝚘𝚙𝚎𝚗𝚜𝚝𝚊𝚌𝚔 𝚜𝚎𝚛𝚟𝚒𝚌𝚎 𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛 𝚌𝚛𝚎𝚊𝚝𝚎 𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚜𝚙 --𝚊𝚞𝚝𝚑-𝚞𝚛𝚕 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢/𝚟𝟹/𝙾𝚂- 𝙵𝙴𝙳𝙴𝚁𝙰𝚃𝙸𝙾𝙽/𝚒𝚍𝚎𝚗𝚝𝚒𝚝𝚢_𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛𝚜/𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎𝚒𝚍𝚙/𝚙𝚛𝚘𝚝𝚘𝚌𝚘𝚕𝚜/𝚜𝚊𝚖𝚕𝟸/𝚊𝚞𝚝𝚑 --𝚜𝚎𝚛𝚟𝚒𝚌𝚎-𝚙𝚛𝚘𝚟𝚒𝚍𝚎𝚛-𝚞𝚛𝚕 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑. 𝚜𝚜𝚘/𝚂𝙰𝙼𝙻𝟸/𝙴𝙲𝙿
  • 24. • $ 𝚌𝚞𝚛𝚕 -𝚜 𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑.𝚜𝚜𝚘/𝙼𝚎𝚝𝚊𝚍𝚊𝚝𝚊 | 𝚐𝚛𝚎𝚙 𝚞𝚛𝚗:𝚘𝚊𝚜𝚒𝚜:𝚗𝚊𝚖𝚎𝚜:𝚝𝚌:𝚂𝙰𝙼𝙻:𝟸.0:𝚋𝚒𝚗𝚍𝚒𝚗𝚐𝚜:𝙿𝙰𝙾𝚂 <𝚖𝚍:𝙰𝚜𝚜𝚎𝚛𝚝𝚒𝚘𝚗𝙲𝚘𝚗𝚜𝚞𝚖𝚎𝚛𝚂𝚎𝚛𝚟𝚒𝚌𝚎 𝙱𝚒𝚗𝚍𝚒𝚗𝚐="𝚞𝚛𝚗:𝚘𝚊𝚜𝚒𝚜:𝚗𝚊𝚖𝚎𝚜:𝚝𝚌:𝚂𝙰𝙼𝙻: 𝟸.0:𝚋𝚒𝚗𝚍𝚒𝚗𝚐𝚜:𝙿𝙰𝙾𝚂" 𝙻𝚘𝚌𝚊𝚝𝚒𝚘𝚗="𝚑𝚝𝚝𝚙://𝚜𝚙.𝚔𝚎𝚢𝚜𝚝𝚘𝚗𝚎.𝚍𝚎𝚖𝚘/𝚂𝚑𝚒𝚋𝚋𝚘𝚕𝚎𝚝𝚑. 𝚜𝚜𝚘/𝚂𝙰𝙼𝙻𝟸/𝙴𝙲𝙿" 𝚒𝚗𝚍𝚎𝚡="𝟺"/>
  • 25. ● $ openstack --os-service-provider keystonesp --os-remote-project-name demo --os-remote-project-domain-name Default token issue
  • 26.