Skip to content

Commit 6048b9c

Browse files
committed
Update Federation Variable Names and Secrets
This updates the Federation variable names and secret keys to be more descriptive and to match what the keystone-operator is expecting.
1 parent fc7f5da commit 6048b9c

File tree

2 files changed

+6
-6
lines changed

2 files changed

+6
-6
lines changed

Makefile

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -32,7 +32,7 @@ endif
3232
# encoded. e.g. head --bytes=32 /dev/urandom | base64
3333
BARBICAN_SIMPLE_CRYPTO_ENCRYPTION_KEY ?= sEFmdFjDUqRM2VemYslV5yGNWjokioJXsg8Nrlc3drU=
3434
KEYSTONE_FEDERATION_CLIENT_SECRET ?= COX8bmlKAWn56XCGMrKQJj7dgHNAOl6f
35-
KEYSTONE_CRYPTO_PASSPHRASE ?= openstack
35+
KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE ?= openstack
3636

3737
# Allows overriding the cleanup command used in *_cleanup targets.
3838
# Useful in CI, to allow injectin kustomization in each operator CR directory
@@ -540,7 +540,7 @@ ${1}: export METADATA_SHARED_SECRET=${METADATA_SHARED_SECRET}
540540
${1}: export HEAT_AUTH_ENCRYPTION_KEY=${HEAT_AUTH_ENCRYPTION_KEY}
541541
${1}: export BARBICAN_SIMPLE_CRYPTO_ENCRYPTION_KEY=${BARBICAN_SIMPLE_CRYPTO_ENCRYPTION_KEY}
542542
${1}: export KEYSTONE_FEDERATION_CLIENT_SECRET=${KEYSTONE_FEDERATION_CLIENT_SECRET}
543-
${1}: export KEYSTONE_CRYPTO_PASSPHRASE=${KEYSTONE_CRYPTO_PASSPHRASE}
543+
${1}: export KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE=${KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE}
544544
${1}: export LIBVIRT_SECRET=${LIBVIRT_SECRET}
545545
${1}: export STORAGE_CLASS=${STORAGE_CLASS}
546546
${1}: export OUT=${OUT}

scripts/gen-input-kustomize.sh

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -44,8 +44,8 @@ if [ -z "$KEYSTONE_FEDERATION_CLIENT_SECRET" ]; then
4444
echo "Please set KEYSTONE_FEDERATION_CLIENT_SECRET"; exit 1
4545
fi
4646

47-
if [ -z "$KEYSTONE_CRYPTO_PASSPHRASE" ]; then
48-
echo "Please set KEYSTONE_CRYPTO_PASSPHRASE"; exit 1
47+
if [ -z "$KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE" ]; then
48+
echo "Please set KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE"; exit 1
4949
fi
5050

5151
if [ -z "$LIBVIRT_SECRET" ]; then
@@ -84,8 +84,8 @@ secretGenerator:
8484
- CinderPassword=${PASSWORD}
8585
- IronicPassword=${PASSWORD}
8686
- IronicInspectorPassword=${PASSWORD}
87-
- KeystoneClientSecret=${KEYSTONE_FEDERATION_CLIENT_SECRET}
88-
- KeystoneCryptoPassphrase=${KEYSTONE_CRYPTO_PASSPHRASE}
87+
- KeystoneOIDCClientSecret=${KEYSTONE_FEDERATION_CLIENT_SECRET}
88+
- KeystoneOIDCCryptoPassphrase=${KEYSTONE_FEDERATION_CRYPTO_PASSPHRASE}
8989
- OctaviaPassword=${PASSWORD}
9090
- OctaviaHeartbeatKey=${PASSWORD}
9191
- NovaPassword=${PASSWORD}

0 commit comments

Comments
 (0)