opendevreview | Stephen Finucane proposed openstack/keystone stable/2025.1: Fix getting token from application credentials token https://review.opendev.org/c/openstack/keystone/+/951641 | 12:06 |
---|---|---|
stephenfin | dansmith: I was out yesterday, but I think I'm seeing the same issue in reverse with zaqar currently https://review.opendev.org/c/openstack/zaqar/+/945589 | 16:45 |
dansmith | ah, PEP-3333 clears up the SCRIPT_NAME thing I guess | 16:45 |
stephenfin | The service catalog (correctly IMO) includes an application path (/messaging). Zaqar does not include that in its URLs. That breaks Gophercloud. Changing it breaks keystoneauth though | 16:46 |
dansmith | I'm really not sure what the best approach is here.. what placement does (and what you're doing to zaqar) seems wrong to me, since the app doesn't really know how proxies may be configured to get to it | 16:46 |
dansmith | yeah, definitely right to have it in the catalog | 16:46 |
gtema | stephenfin - when returning relative links those must be relative to the service catalog, and not to whatever the service wants | 16:47 |
gtema | if that does not work in gophercloud - it is a bug there, but that it how it is intended to be working | 16:47 |
dansmith | right, "relative to the service catalog" seems correct to me | 16:48 |
gtema | the rule is described at https://specs.openstack.org/openstack/api-sig/guidelines/consuming-catalog/version-discovery.html#expanding-endpoints | 16:49 |
stephenfin | ooh, this is documented? | 16:49 |
* stephenfin looks | 16:49 | |
opendevreview | Dr. Jens Harbott proposed openstack/keystone master: Revert "docs: identity service now use https" https://review.opendev.org/c/openstack/keystone/+/951701 | 19:27 |
Generated by irclog2html.py 4.0.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!