)]}'
{"id":"openstack%2Fkeystonemiddleware~995234","triplet_id":"openstack%2Fkeystonemiddleware~master~I2508eae2afd14a55ee3b13085c85f51693616bb6","project":"openstack/keystonemiddleware","branch":"master","hashtags":["asgi","asgi-phase-1"],"change_id":"I2508eae2afd14a55ee3b13085c85f51693616bb6","subject":"Add async ASGI AuthProtocol middleware","status":"ABANDONED","created":"2026-06-29 00:18:36.000000000","updated":"2026-07-01 03:09:10.000000000","total_comment_count":1,"unresolved_comment_count":0,"work_in_progress":true,"has_review_started":true,"meta_rev_id":"f7368a88d131d372343961d3fd342ec90e45503e","_number":995234,"virtual_id_number":995234,"owner":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"actions":{},"labels":{"Verified":{"disliked":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"tag":"autogenerated:zuul:check","value":-1,"date":"2026-06-30 06:54:09.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","value":-1,"default_value":0,"optional":true},"Code-Review":{"all":[{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","default_value":0,"optional":true},"Workflow":{"all":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}]},"pending_reviewers":{"REVIEWER":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}]},"reviewer_updates":[{"updated":"2026-06-29 02:26:15.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"}],"messages":[{"id":"01f4d8f962941c60c13f2c3869ed51e6146710b9","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-06-29 00:18:36.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"c3e763e0dc1d0e95a9591019d4d9b1a47bc8cc5d","tag":"autogenerated:gerrit:setWorkInProgress","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-06-29 00:18:45.000000000","message":"Set Work In Progress","accounts_in_message":[],"_revision_number":1},{"id":"d15b53ece16a38f7ca8678de04d2c31e1f47ec52","tag":"autogenerated:gerrit:setHashtag","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-06-29 00:18:46.000000000","message":"Hashtag added: asgi","accounts_in_message":[],"_revision_number":1},{"id":"628c010d582ac532001baeec1951347808619cb7","tag":"autogenerated:gerrit:setHashtag","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-06-29 00:27:19.000000000","message":"Hashtag added: asgi-phase-1","accounts_in_message":[],"_revision_number":1},{"id":"54eca02f5e1ca5b3cf5579b22b7bbe3ef69e6278","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-29 02:26:15.000000000","message":"Patch Set 1: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttps://docs.opendev.org/opendev/infra-manual/latest/developers.html#automated-testing\nand https://docs.openstack.org/project-team-guide/testing.html#how-to-handle-test-failures\n\nhttps://zuul.opendev.org/t/openstack/buildset/ba4f2b867d55411985a87ca61cc94f2f\n\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/9d00b80374b9488caafbc59e1f46cc94 : FAILURE in 3m 38s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/b69453f710854251aae793cb5861f13e : SUCCESS in 2m 57s\n- openstack-tox-py311 https://zuul.opendev.org/t/openstack/build/8afe49fa0f3d455881dbf774d167ee10 : FAILURE in 3m 08s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/5216f6a7f66442d18f3a85d7f3f34047 : FAILURE in 2m 00s\n- openstack-tox-py314 https://zuul.opendev.org/t/openstack/build/2e08cdbfe9d9401d8ffd584e1265f1aa : FAILURE in 5m 54s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/66c3ca94fbb049a2952f3e8e3aacf9b6 : SUCCESS in 6m 58s\n- tempest-full-py3 https://zuul.opendev.org/t/openstack/build/78aa69abe3264026990c856cb4c36746 : SUCCESS in 2h 02m 33s\n- build-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/4844df694cb04b56b2c18034e5bcdc78 : SUCCESS in 5m 07s","accounts_in_message":[],"_revision_number":1},{"id":"4bec01f95923ff392bce47328a0c901c9ebc4202","tag":"autogenerated:gerrit:newWipPatchSet","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-06-30 05:53:50.000000000","message":"Uploaded patch set 2.\n\nOutdated Votes:\n* Verified-1 (copy condition: \"NEVER\")\n","accounts_in_message":[],"_revision_number":2},{"id":"e0829b38d453548377b84cea327a1719a63fcbeb","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2026-06-30 06:54:09.000000000","message":"Patch Set 2: Verified-1\n\n(1 comment)\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttps://docs.opendev.org/opendev/infra-manual/latest/developers.html#automated-testing\nand https://docs.openstack.org/project-team-guide/testing.html#how-to-handle-test-failures\n\nhttps://zuul.opendev.org/t/openstack/buildset/ba8894e07366468b9c0bc8e5797d7bb3\n\n- openstack-tox-cover https://zuul.opendev.org/t/openstack/build/989ff65752c84ec68c9cbc40c98b68ac : FAILURE in 3m 54s\n- openstack-tox-pep8 https://zuul.opendev.org/t/openstack/build/cc6c6e7ee99e4904bf19111c1064a23e : FAILURE in 2m 39s\n- openstack-tox-py311 https://zuul.opendev.org/t/openstack/build/f83e38f887834b23916ef4214b400c9c : FAILURE in 3m 06s\n- openstack-tox-py313 https://zuul.opendev.org/t/openstack/build/4bf35e3805a24c42bdde5b6474f2b615 : FAILURE in 3m 06s\n- openstack-tox-py314 https://zuul.opendev.org/t/openstack/build/135054d38cd0420bbb340dd9511dc33e : FAILURE in 5m 03s (non-voting)\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/505b101d9e2a48f795c6ee1c6e44c344 : SUCCESS in 5m 53s\n- requirements-check https://zuul.opendev.org/t/openstack/build/891b2d1099e44f64b0963ea713f830db : SUCCESS in 1m 18s\n- tempest-full-py3 https://zuul.opendev.org/t/openstack/build/a90a525380304a0b9fcb2e21f954fb70 : SUCCESS in 58m 03s\n- build-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/4434e34a9acc4fdc9e5e627430098e40 : SUCCESS in 4m 47s","accounts_in_message":[],"_revision_number":2},{"id":"f7368a88d131d372343961d3fd342ec90e45503e","tag":"autogenerated:gerrit:abandon","author":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"date":"2026-07-01 03:09:10.000000000","message":"Abandoned\n\nBenchmark proved async provides no throughput benefit over thread-pool-tuned WSGI for OpenStack workloads. Preserving Phase 0 (ASGI serving for HTTP/2) only. See full analysis in opencode-workspace/asgi/HANDOFF.md.","accounts_in_message":[],"_revision_number":2}],"current_revision_number":2,"current_revision":"d11d75835b252a3a8de73466d742a15bc3b4ae71","revisions":{"4b1ed1761e00d516720d98d128141930ee44d9c1":{"kind":"REWORK","_number":1,"created":"2026-06-29 00:18:36.000000000","uploader":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"ref":"refs/changes/34/995234/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystonemiddleware","ref":"refs/changes/34/995234/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/1"}}},"commit":{"parents":[{"commit":"39ae6caf883a93e8dddbeb73e2b0ff11628429cd","subject":"Merge \"Change service_token_roles_required default config\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/39ae6caf883a93e8dddbeb73e2b0ff11628429cd"}]}],"author":{"name":"Adam Harwell","email":"flux.adam@gmail.com","date":"2026-06-29 00:00:38.000000000","tz":-240},"committer":{"name":"Adam Harwell","email":"flux.adam@gmail.com","date":"2026-06-29 00:18:24.000000000","tz":-240},"subject":"Add async ASGI AuthProtocol middleware","message":"Add async ASGI AuthProtocol middleware\n\nAdds keystonemiddleware.auth_token.asgi.AsyncAuthProtocol, an ASGI\nmiddleware that validates Keystone tokens and injects identity headers\ninto the ASGI scope. Functionally equivalent to the WSGI AuthProtocol\nbut designed for async ASGI servers.\n\nKey components:\n- AsyncAuthProtocol: main ASGI middleware (448 lines)\n- AsyncTokenCache: in-memory TTL cache with asyncio.Lock\n- AsyncIdentityServer: async token verification via Keystone API\n\nDesign:\n- Zero webob imports -- pure ASGI protocol\n- Duck-typed session interface (accepts any async HTTP client)\n- Same config options and header contract as WSGI AuthProtocol\n- Anti-spoofing: strips all auth headers before processing\n- Service token support with X-Service-* headers\n- delay_auth_decision support for deferred auth\n\n25 unit tests covering token validation, caching, service tokens,\nanti-spoofing, expiry rejection, and error handling.\n\nChange-Id: I2508eae2afd14a55ee3b13085c85f51693616bb6\nSigned-off-by: Adam Harwell \u003cflux.adam@gmail.com\u003e\nGenerated-By: claude-opus-4-6 (OpenCode)\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/4b1ed1761e00d516720d98d128141930ee44d9c1"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/4b1ed1761e00d516720d98d128141930ee44d9c1"}]},"branch":"refs/heads/master"},"d11d75835b252a3a8de73466d742a15bc3b4ae71":{"kind":"REWORK","_number":2,"created":"2026-06-30 05:53:50.000000000","uploader":{"_account_id":10273,"name":"Adam Harwell","email":"flux.adam@gmail.com","username":"rm_you"},"ref":"refs/changes/34/995234/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystonemiddleware","ref":"refs/changes/34/995234/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystonemiddleware refs/changes/34/995234/2"}}},"commit":{"parents":[{"commit":"39ae6caf883a93e8dddbeb73e2b0ff11628429cd","subject":"Merge \"Change service_token_roles_required default config\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/39ae6caf883a93e8dddbeb73e2b0ff11628429cd"}]}],"author":{"name":"Adam Harwell","email":"flux.adam@gmail.com","date":"2026-06-29 00:00:38.000000000","tz":-240},"committer":{"name":"Adam Harwell","email":"flux.adam@gmail.com","date":"2026-06-30 05:53:39.000000000","tz":-240},"subject":"Add async ASGI AuthProtocol middleware","message":"Add async ASGI AuthProtocol middleware\n\nAdds keystonemiddleware.auth_token.asgi.AsyncAuthProtocol, an ASGI\nmiddleware that validates Keystone tokens and injects identity headers\ninto the ASGI scope. Functionally equivalent to the WSGI AuthProtocol\nbut designed for async ASGI servers.\n\nKey components:\n- AsyncAuthProtocol: main ASGI middleware (448 lines)\n- AsyncTokenCache: in-memory TTL cache with asyncio.Lock\n- AsyncIdentityServer: async token verification via Keystone API\n\nDesign:\n- Zero webob imports -- pure ASGI protocol\n- Duck-typed session interface (accepts any async HTTP client)\n- Same config options and header contract as WSGI AuthProtocol\n- Anti-spoofing: strips all auth headers before processing\n- Service token support with X-Service-* headers\n- delay_auth_decision support for deferred auth\n\n25 unit tests covering token validation, caching, service tokens,\nanti-spoofing, expiry rejection, and error handling.\n\nChange-Id: I2508eae2afd14a55ee3b13085c85f51693616bb6\nSigned-off-by: Adam Harwell \u003cflux.adam@gmail.com\u003e\nGenerated-By: claude-opus-4-6 (OpenCode)\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/d11d75835b252a3a8de73466d742a15bc3b4ae71"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystonemiddleware/commit/d11d75835b252a3a8de73466d742a15bc3b4ae71"}]},"branch":"refs/heads/master"}},"requirements":[],"submit_records":[],"submit_requirements":[{"name":"Verified","description":"Verified in gate by CI","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Verified\u003dMAX AND -label:Verified\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Verified\u003dMAX","label:Verified\u003dMIN"],"atom_explanations":{"label:Verified\u003dMAX":"","label:Verified\u003dMIN":""}}},{"name":"Code-Review","description":"Code reviewed by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX AND -label:Code-Review\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Code-Review\u003dMAX","label:Code-Review\u003dMIN"],"atom_explanations":{"label:Code-Review\u003dMAX":"","label:Code-Review\u003dMIN":""}}},{"name":"Workflow","description":"Approved for gate by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Workflow\u003dMAX AND -label:Workflow\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Workflow\u003dMAX","label:Workflow\u003dMIN"],"atom_explanations":{"label:Workflow\u003dMAX":"","label:Workflow\u003dMIN":""}}}]}
