Difference between revisions of "ReleaseNotes/Folsom"
Line 23: | Line 23: | ||
=== Key Features === | === Key Features === | ||
+ | |||
+ | * Completely new v2 API | ||
+ | * Completely new client - python-glanceclient | ||
+ | * Client SSL certificate validation on glance-api | ||
+ | * Tenant-specific storage in Swift | ||
+ | * Image replication using glance-replicator | ||
=== Known Issues === | === Known Issues === | ||
+ | |||
+ | * v2 API requires sql configuration on glance-api nodes | ||
=== Upgrade Notes === | === Upgrade Notes === | ||
+ | |||
+ | * auth_token middleware configuration moved from paste configuration to server confguration | ||
+ | * Set enable_v2_api to 'false' to disable new v2 API or copy sql configuration from glance-registry.conf to glance-api.conf | ||
+ | * Update local keystone code before starting Folsom glance services | ||
== [[OpenStack]] Dashboard (Horizon) == | == [[OpenStack]] Dashboard (Horizon) == |
Revision as of 02:10, 19 September 2012
OpenStack 2012.2 (Folsom) Release Notes
<<TableOfContents()>>
OpenStack Object Storage (Swift)
Key Features
Known Issues
Upgrade Notes
OpenStack Compute (Nova)
Key Features
Known Issues
Upgrade Notes
OpenStack Image Service (Glance)
Key Features
- Completely new v2 API
- Completely new client - python-glanceclient
- Client SSL certificate validation on glance-api
- Tenant-specific storage in Swift
- Image replication using glance-replicator
Known Issues
- v2 API requires sql configuration on glance-api nodes
Upgrade Notes
- auth_token middleware configuration moved from paste configuration to server confguration
- Set enable_v2_api to 'false' to disable new v2 API or copy sql configuration from glance-registry.conf to glance-api.conf
- Update local keystone code before starting Folsom glance services
OpenStack Dashboard (Horizon)
Key Features
Known Issues
Upgrade Notes
OpenStack Identity (Keystone)
Key Features
- PKI Support for authentication
- Integration into openstack-common libraries
- Swift AUTH middleware allowing overrides of authentication
- Consolidation of CLI option names to global openstack standard (use hyphens)
Known Issues
- V2 API exposes token within the URL
- If a tenant is deleted in Keystone, there is no orchestration to verify that resources associated with that tenant are disabled and/or removed in other projects (glance, nova, swift, etc)
- The Keystone CLI lacks a means of reporting the tenants that a user is associated with
- auth_token middleware requires installation of almost all of keystone, is not in its own package
- LDAP backend is lacking TLS/LDAPS support
- No active directory specific LDAP backend
- V2 API is not backed by RBAC