Skip to content

Slice manager authorization model proposal #3

@alfonsoegio

Description

@alfonsoegio

First approach to authorization regarding ownership of different resources handled by slice-manager:

1 - If a user POSTs a compute (owner) this user is the one who can POST Openstack Projects over that compute giving access to another users

2 - Same as 1 applies for physical networks and Openstack VLANs.

3 - Once a Compute/Physical Network Owner gives access to resources to another user chunking them as Openstack Projects/Openstack VLANs, this user can now deploy network service instances on top of the slice from a network service (previously published in the OSM catalogue) freely as long as the system tracks which user is using which service belonging to the network service vendor (the one who registered it on slice-manager).

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions