@@ -58,19 +58,19 @@ ANOTHER_ROLE=$(get_id keystone role-create --name=anotherrole)
5858
5959
6060# Add Roles to Users in Tenants
61- keystone user-role-add --user $ADMIN_USER --role $ADMIN_ROLE --tenant_id $ADMIN_TENANT
62- keystone user-role-add --user $ADMIN_USER --role $ADMIN_ROLE --tenant_id $DEMO_TENANT
63- keystone user-role-add --user $DEMO_USER --role $ANOTHER_ROLE --tenant_id $DEMO_TENANT
61+ keystone user-role-add --user_id $ADMIN_USER --role_id $ADMIN_ROLE --tenant_id $ADMIN_TENANT
62+ keystone user-role-add --user_id $ADMIN_USER --role_id $ADMIN_ROLE --tenant_id $DEMO_TENANT
63+ keystone user-role-add --user_id $DEMO_USER --role_id $ANOTHER_ROLE --tenant_id $DEMO_TENANT
6464
6565# TODO(termie): these two might be dubious
66- keystone user-role-add --user $ADMIN_USER --role $KEYSTONEADMIN_ROLE --tenant_id $ADMIN_TENANT
67- keystone user-role-add --user $ADMIN_USER --role $KEYSTONESERVICE_ROLE --tenant_id $ADMIN_TENANT
66+ keystone user-role-add --user_id $ADMIN_USER --role_id $KEYSTONEADMIN_ROLE --tenant_id $ADMIN_TENANT
67+ keystone user-role-add --user_id $ADMIN_USER --role_id $KEYSTONESERVICE_ROLE --tenant_id $ADMIN_TENANT
6868
6969
7070# The Member role is used by Horizon and Swift so we need to keep it:
7171MEMBER_ROLE=$( get_id keystone role-create --name=Member)
72- keystone user-role-add --user $DEMO_USER --role $MEMBER_ROLE --tenant_id $DEMO_TENANT
73- keystone user-role-add --user $DEMO_USER --role $MEMBER_ROLE --tenant_id $INVIS_TENANT
72+ keystone user-role-add --user_id $DEMO_USER --role_id $MEMBER_ROLE --tenant_id $DEMO_TENANT
73+ keystone user-role-add --user_id $DEMO_USER --role_id $MEMBER_ROLE --tenant_id $INVIS_TENANT
7474
7575
7676# Configure service users/roles
@@ -79,34 +79,34 @@ NOVA_USER=$(get_id keystone user-create --name=nova \
7979 --tenant_id $SERVICE_TENANT \
8080 --email=nova@example.com)
8181keystone user-role-add --tenant_id $SERVICE_TENANT \
82- --user $NOVA_USER \
83- --role $ADMIN_ROLE
82+ --user_id $NOVA_USER \
83+ --role_id $ADMIN_ROLE
8484
8585GLANCE_USER=$( get_id keystone user-create --name=glance \
8686 --pass=" $SERVICE_PASSWORD " \
8787 --tenant_id $SERVICE_TENANT \
8888 --email=glance@example.com)
8989keystone user-role-add --tenant_id $SERVICE_TENANT \
90- --user $GLANCE_USER \
91- --role $ADMIN_ROLE
90+ --user_id $GLANCE_USER \
91+ --role_id $ADMIN_ROLE
9292
9393if [[ " $ENABLED_SERVICES " =~ " swift" ]]; then
9494 SWIFT_USER=$( get_id keystone user-create --name=swift \
9595 --pass=" $SERVICE_PASSWORD " \
9696 --tenant_id $SERVICE_TENANT \
9797 --email=swift@example.com)
9898 keystone user-role-add --tenant_id $SERVICE_TENANT \
99- --user $SWIFT_USER \
100- --role $ADMIN_ROLE
99+ --user_id $SWIFT_USER \
100+ --role_id $ADMIN_ROLE
101101 # Nova needs ResellerAdmin role to download images when accessing
102102 # swift through the s3 api. The admin role in swift allows a user
103103 # to act as an admin for their tenant, but ResellerAdmin is needed
104104 # for a user to act as any tenant. The name of this role is also
105105 # configurable in swift-proxy.conf
106106 RESELLER_ROLE=$( get_id keystone role-create --name=ResellerAdmin)
107107 keystone user-role-add --tenant_id $SERVICE_TENANT \
108- --user $NOVA_USER \
109- --role $RESELLER_ROLE
108+ --user_id $NOVA_USER \
109+ --role_id $RESELLER_ROLE
110110fi
111111
112112if [[ " $ENABLED_SERVICES " =~ " quantum" ]]; then
@@ -115,8 +115,8 @@ if [[ "$ENABLED_SERVICES" =~ "quantum" ]]; then
115115 --tenant_id $SERVICE_TENANT \
116116 --email=quantum@example.com)
117117 keystone user-role-add --tenant_id $SERVICE_TENANT \
118- --user $QUANTUM_USER \
119- --role $ADMIN_ROLE
118+ --user_id $QUANTUM_USER \
119+ --role_id $ADMIN_ROLE
120120fi
121121
122122if [[ " $ENABLED_SERVICES " =~ " tempest" ]]; then
0 commit comments