aodh/aodh
Zane Bitter cb90d3ad47 Don't allow the user to pass in a trust ID
Since Aodh uses trust IDs stored in alarm URLs unconditionally - without
checking for tenant safety - it is not safe to allow users to pass in their own
trust IDs. Forbid this and allow only trusts created by Aodh to be used. It is
highly unlikely that there is any (legitimate) use of this feature in the wild,
since allowing Aodh to create the trust is easier anyway.

Change-Id: I8fd11a7f9fe3c0ea5f9843a89686ac06713b7851
Closes-Bug: #1649333
2017-08-15 12:21:09 +02:00
..
api Don't allow the user to pass in a trust ID 2017-08-15 12:21:09 +02:00
cmd Fix aodh-config-generator 2017-07-09 11:53:10 +02:00
conf cors: update default configuration using cors' own set_defaults funtion 2016-10-26 20:59:01 +08:00
evaluator gnocchi: return better 'insufficient data' reason 2017-07-11 11:18:24 +02:00
locale Imported Translations from Zanata 2017-08-10 10:42:35 +00:00
notifier Don't allow the user to pass in a trust ID 2017-08-15 12:21:09 +02:00
storage Expose alarm state reason to API 2017-07-10 15:16:13 +02:00
tests Merge "Update and replace http with https for doc links in aodh" 2017-08-02 15:28:49 +00:00
__init__.py Update to hacking 0.11.0 2016-05-10 17:07:35 +02:00
coordination.py Remove log translations. 2017-03-21 18:39:09 +08:00
event.py Remove default=None when set value in Config 2016-09-27 14:33:19 +00:00
i18n.py Update and optimize documentation links 2017-07-18 16:03:22 +08:00
keystone_client.py Remove keystoneclient deprecation 2017-06-05 17:36:46 +02:00
messaging.py Remove oslo.msg deprecation 2017-06-05 17:36:51 +02:00
opts.py gnocchi: fix alarms for unpriviledged user 2017-06-14 08:30:36 +02:00
queue.py Use "topics" instead of "topic" in Notifier initialization 2016-06-13 16:30:24 +08:00
service.py Move policy.json out of etc 2017-01-19 14:59:35 +01:00