2.3. 为 OpenStack 用户创建 IdM 组
您必须有一个 IdM 组 openstack-users
来映射到 Keystone 组 federated_users
。将 test 用户映射到此组。
在 Red Hat Identity Management (IdM)中创建 openstack-users
组:
流程
确保
openstack-users
组不存在:Copy to Clipboard Copied! Toggle word wrap Toggle overflow ipa group-show openstack-users
$ ipa group-show openstack-users ipa: ERROR: openstack-users: group not found
将 openstack-users 组添加到 IdM 中:
Copy to Clipboard Copied! Toggle word wrap Toggle overflow ipa group-add openstack-users
ipa group-add openstack-users
将 test 用户添加到
openstack-users
组中:Copy to Clipboard Copied! Toggle word wrap Toggle overflow ipa group-add-member --users jdoe openstack-users
ipa group-add-member --users jdoe openstack-users
验证
openstack-users
组是否存在,并将 test 用户作为成员:Copy to Clipboard Copied! Toggle word wrap Toggle overflow ipa group-show openstack-users
$ ipa group-show openstack-users Group name: openstack-users GID: 331400001 Member users: jdoe