Control system DS deployment with ACL rules
|Assignee:||Carlos Martín||% Done:|
|Target version:||Release 4.14|
The scheduler uses HOST MANAGE to filter the hosts, but it does not filter the system DS.
Requested in the mailing list:
feature #2742: Enforce System DS Access Rights to deploy VMs
(cherry picked from commit 3f0a7fc0cd276ce778e269837855949735021564)
#4 Updated by Ruben S. Montero almost 6 years ago
- % Done changed from 0 to 90
- Resolution set to fixed
Needs to include comment on release notes:
"The scheduler (and oned) has been update to enforce access rights on system datastores. For versions < 4.12 only compatibility with the selected host is checked. This new version also checks that the user can access the System DS. This is useful to implement different allocation policies and VDC-based provision schemes. This may require to update system DS rights in current installations"
Alternatively we can add other+use to system DS; which is close to current behavior.