Skip to content
Snippets Groups Projects
  1. May 28, 2018
    • Frode Nordahl's avatar
      Remove orphan symlink · 041a479d
      Frode Nordahl authored
      Support for dfs was dropped in commit b4019e45
      
      Remove orphan symlink in the actions/ directory.
      
      Change-Id: Ie353de9da422a863e53a92983d9819c324761667
      041a479d
  2. May 11, 2018
  3. May 09, 2018
  4. May 08, 2018
    • Dmitrii Shcherbakov's avatar
      add WebSSO support · 45be17c9
      Dmitrii Shcherbakov authored
      * add support for relating with subordinate charms providing Service
      Provider functionality via apache2 authentication modules;
      * retrieve protocol, identity provider and user-facing name info from
        keystone service provider charm subordinates;
      * provide trusted dashboard information to keystone charm
      
      Change-Id: I15ca0dd1616ec12c7ad47dc05961b51bb45bb770
      45be17c9
  5. Apr 11, 2018
    • David Ames's avatar
      Charm-helpers sync to fix CA cert comparison · 07075904
      David Ames authored
      The comparison of bytes vs string of the CA certificate produces a
      false negative. This leads to rewriting certificates and affecting
      connectivity to services.
      
      Read in the certificate as bytes as well for a bytes vs bytes
      comparison.
      
      Change-Id: I3b233a79689858db0962bafe71eba0a0667c2bf0
      Closes-Bug: #1762431
      07075904
  6. Apr 06, 2018
  7. Apr 03, 2018
    • Ryan Beisner's avatar
      Update tox.ini to stop using unverified package · 6a7a9a92
      Ryan Beisner authored
      As of pip 10.0, --allow-unverified is not permitted.
      
      Use of the flag in this repo was previously used to force
      installation of python-apt to accommodate certain unit tests.
      
      The unverified package, python-apt, is no longer necessary
      for test execution.
      
      Related-Bug: #1760720
      
      Change-Id: I15a489755a94d0df0f2a6331410add716e56e091
      6a7a9a92
  8. Mar 26, 2018
  9. Mar 15, 2018
    • Corey Bryant's avatar
      Align Ocata Apache conf with other releases · e0f9ad5a
      Corey Bryant authored
      This runs the Apache conf for Ocata under horizon:horizon as we
      already do for other releases.
      
      Change-Id: I07775bd13c117b8a56295f348a9383c8ecb1ed76
      Partial-bug: #1755027
      e0f9ad5a
    • James Page's avatar
      Auto-configure WSGI worker processes · c35faf4c
      James Page authored
      Automatically configure WSGI worker processes inline with other
      charms using the worker-multiplier configuration option and the
      WSGI worker configuration context from charm-helpers.
      
      Change-Id: Ib8af4a5a54fcff13a05ba4f4094bf123d5282c4a
      c35faf4c
  10. Mar 02, 2018
  11. Feb 21, 2018
  12. Feb 12, 2018
    • Corey Bryant's avatar
      Enable Heat and Designate dashboards in Horizon · cd8b510f
      Corey Bryant authored
      The Heat dashboard was split from horizon in Queens, and
      therefore needs to be installed separately.
      
      The Designate dashboard was never installed by the charm
      before but should be.
      
      Change-Id: Ie0790fd1e1a6422465f4a4e00769efcd667d28e2
      Closes-Bug: #1746031
      Closes-Bug: #1747934
      cd8b510f
  13. Jan 30, 2018
  14. Jan 24, 2018
  15. Jan 22, 2018
  16. Jan 19, 2018
    • Nobuto Murata's avatar
      OPENSTACK_KEYSTONE_MULTIDOMAIN_SUPPORT expects boolean · 48119619
      Nobuto Murata authored
      Previously the single domain mode has been implemented. This is a
      follow-up commit to set the value properly as boolean instead of string.
      
      Change-Id: I0e34d93d05693bf0ca5e8f68bc9af198fd29680a
      Closes-Bug: #1744346
      Related-Bug: #1712999
      48119619
  17. Jan 11, 2018
    • Jason Hobbs's avatar
      Add public binding to support DNS-HA. · 27e1e3be
      Jason Hobbs authored
      This binding is required so that the DNS-HA code can find the
      address to use for the hostname specified by os-public-hostname.
      
      This also deprecates the os-internal-hostname and os-admin-hostname
      options, as there is no binding to use them with.
      
      Change-Id: I57609c5ab641e2ae6377c6fbad5c9e7b8cf6495c
      Closes-Bug: #1742548
      27e1e3be
  18. Jan 08, 2018
    • James Page's avatar
      Remove deploy from source support · b4019e45
      James Page authored
      Drop support for deployment from Git repositories, as deprecated
      in the 17.02 charm release.  This feature is unmaintained and has
      no known users.
      
      Change-Id: I19732b50483ab7284723f847f182fd1cfa67e425
      b4019e45
  19. Jan 06, 2018
  20. Dec 11, 2017
    • David Ames's avatar
      Update HAProxy default timeout values · cad0fa0d
      David Ames authored
      The default HAProxy timeout values are fairly strict. On a busy cloud
      it is common to exceed one or more of these timeouts. The only
      indication that HAProxy has exceeded a timeout and dropped the
      connection is errors such as "BadStatusLine" or "EOF." These can be
      very difficult to diagnose when intermittent.
      
      This charm-helpers sync pulls in the change to update the default
      timeout values to more real world settings. These values have been
      extensively tested in ServerStack. Configured values will not be
      overridden.
      
      Partial Bug: #1736171
      
      Change-Id: Ida7949113594b9b859ab7b4ba8b2bb440bab6e7d
      cad0fa0d
  21. Dec 10, 2017
  22. Dec 05, 2017
    • Ryan Beisner's avatar
      Add Bionic and remove Zesty series and tests · 225f1c3e
      Ryan Beisner authored
      Bionic, being the next LTS, is important to enable for dev
      and test as early as possible ahead of 18.02.
      
      Zesty goes EOL in Jan 2018. The next stable charms release (18.02)
      will not provide Zesty series support, as it was an interim
      (non-LTS) release.
      
      Change-Id: If96d593120b3b334819fca892042ec17c7403dd6
      225f1c3e
  23. Nov 22, 2017
  24. Nov 21, 2017
  25. Nov 19, 2017
  26. Nov 15, 2017
    • Nobuto Murata's avatar
      Allow to override the default volume creation behavior · 55b96671
      Nobuto Murata authored
      Now that Horizon upstream added the ability to configure the default
      "create volume" value when launching an instance (See. LP: #1678109),
      expose it as a new charm config.
      
      Change-Id: I68a6f199a72c11ad4eff2b587cb4279c91da52ae
      Closes-Bug: #1711342
      55b96671
  27. Oct 27, 2017
    • Corey Bryant's avatar
      Fix theme rendering for kilo · 5e0f9e50
      Corey Bryant authored
      Set WEBROOT in openstack-dashboard's local_settings.py to the value
      of webroot from the charm's config (see config.yaml).
      
      Add /horizon/static alias to apache2 config in addition to /static
      to cover both paths to static resources.
      
      Change-Id: I29a156d322bac91ca02fb0f08f291fc805e59110
      Closes-Bug: #1728086
      5e0f9e50
  28. Oct 23, 2017
    • Nobuto Murata's avatar
      Allow to enable password autocompletion by browser · a0551816
      Nobuto Murata authored
      Horizon tries to inhibit browsers' password autocompletion by default.
      Offer a configurable option in the charm so that admin can allow
      password autocompletion if necessary.
      
      Change-Id: I461752d1d1175f777de5bff26953b200efb17137
      Closes-Bug: 1714676
      a0551816
  29. Oct 22, 2017
  30. Oct 18, 2017
  31. Oct 17, 2017
  32. Oct 11, 2017
    • Nobuto Murata's avatar
      Enable security related headers when SSL is enabled · 47396b52
      Nobuto Murata authored
      Horizon can be setup in a more secure way. Enable more headers:
       - X-XSS-Protection "1; mode=block"
       - X-Content-Type-Options "nosniff"
       - CSRF_COOKIE_SECURE, SESSION_COOKIE_SECURE in Django
      
      Change-Id: I84605bd7e00df64da522b805b4e9a88521d1e0f6
      Partial-Bug: #1713202
      47396b52
  33. Oct 09, 2017
    • Edward Hope-Morley's avatar
      Remove obsolete templates · f68514cb
      Edward Hope-Morley authored
      Removes essex, folsom, grizzly, havana and juno
      templates since those versions are
      out-of-support.
      
      Change-Id: If4a256793060a0935b40397fb50c201eeee9fe68
      f68514cb
  34. Oct 04, 2017
    • Michael Skalka's avatar
      Add default_domain config option. · 780381e6
      Michael Skalka authored
      This commit adds the default-domain config option to limit
      the login page to only the specifed domain. For use with a single
      domain environment where users are only given a login.
      
      When considering a single domain usecase for users (admin_domain for
      administration, then example_domain for all other users), it would
      be handy for users not to input their domain name, but only username
      and password to login.
      
      By setting two lines below, we can create a separate dashboard instance
      for non-admin users only.
      
      OPENSTACK_KEYSTONE_MULTIDOMAIN_SUPPORT=False
      OPENSTACK_KEYSTONE_DEFAULT_DOMAIN=example_domain
      
      However, the current local_settings.py template does not allow that.
      
      This change adds the 'default-domain' configuration option which modifies
      local_policy.py to set the two configuration flags outlined in the bug.
      If the config option is not set the charm will behave as before, enabling
      the user to specify the domain at login.
      
      This does no validation to ensure the domain exists, so it is up to the user
      to supply a valid domain name.
      
      Closes-Bug: 1712999
      Change-Id: I316372ae305a4ba10e4d8ba047f23a317836b960
      780381e6
  35. Sep 27, 2017
    • James Page's avatar
      Fix use-syslog support >= Newton · 83705125
      James Page authored
      Update local_settings.py template to correctly configure syslog
      handler for OpenStack Newton or later.
      
      Change-Id: If3d6f4d7b550ef253a03146de518ec8f23eda170
      Closes-Bug: 1678014
      83705125
    • Nobuto Murata's avatar
      Rely on HTTP_HOST sent by clients for redirection · 289d5bb6
      Nobuto Murata authored
      The dashboard may have multiple networks and IP addresses. We never be
      able to determine where to redirect reliably. Also, redirecting an
      access from internal network to a public IP address may not be what
      users want. Instead, use HTTP_HOST sent by the client and let the
      client's browser reveal SSL related errors if any.
      
      Change-Id: I9f4c734a61d3ab07f3f7c9a1a073eede73ae4651
      Closes-Bug: #1710930
      Closes-Bug: #1713198
      289d5bb6
  36. Sep 26, 2017
Loading