Limiting OpenStack service accounts sudo permissions
Issue
- Is it possible to limit the scope of the permissions granted to the
stack
andheat-admin
users in OpenStack? In RHV, using/etc/sudoers.d/50_vdsm
, thevdsm
user is limited on the commands it is able to run with sudo.
Environment
- Red Hat OpenStack 8 (Liberty)
- OpenStack 9.0 (Mitaka)
- OpenStack 10.0 (Newton)
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.