)]}'
{"id":"openstack%2Fkeystone~666575","triplet_id":"openstack%2Fkeystone~master~I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42","project":"openstack/keystone","branch":"master","topic":"bug/1782922","hashtags":[],"change_id":"I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42","subject":"Enable LDAP _dn_to_id() for non-default ID attrs","status":"ABANDONED","created":"2019-06-20 13:30:00.000000000","updated":"2019-07-24 17:12:24.000000000","total_comment_count":6,"unresolved_comment_count":0,"has_review_started":true,"meta_rev_id":"d51b4d72c4c49bdc0ecadb1c187bbb7b329bb3f1","_number":666575,"virtual_id_number":666575,"owner":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"actions":{},"labels":{"Verified":{"disliked":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"date":"2019-07-02 14:56:41.000000000","_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},{"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},{"value":-1,"date":"2019-06-27 04:17:41.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"date":"2019-07-02 19:41:59.000000000","_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","value":-1,"default_value":0,"optional":true},"Code-Review":{"recommended":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"all":[{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},{"value":1,"date":"2019-06-26 20:02:33.000000000","permitted_voting_range":{"min":-1,"max":1},"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","value":1,"default_value":0,"optional":true},"Workflow":{"all":[{"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},{"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":0,"permitted_voting_range":{"min":-1,"max":0},"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},{"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2019-06-21 16:22:40.000000000","updated_by":{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},"reviewer":{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},"state":"REVIEWER"},{"updated":"2019-06-25 22:56:06.000000000","updated_by":{"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},"reviewer":{"_account_id":2424,"name":"Felipe Reyes","email":"felipe.reyes@canonical.com","username":"freyes"},"state":"REVIEWER"},{"updated":"2019-06-26 20:02:33.000000000","updated_by":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"reviewer":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"state":"REVIEWER"},{"updated":"2019-06-27 04:17:41.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"},{"updated":"2019-07-02 14:56:41.000000000","updated_by":{"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},"reviewer":{"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},"state":"REVIEWER"}],"messages":[{"id":"2fe29248ab7eec87c4ac25771721dd8fb0a8453b","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-20 13:30:00.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"836b7099bfe3ea5df69009aa650e59abf1201648","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-20 13:31:45.000000000","message":"Patch Set 1:\n\nI recognize this needs tests, however they are likely not trivial and I want to get input first as to whether this is a realistic fix or if there is a whole lot more to it. Thanks.","accounts_in_message":[],"_revision_number":1},{"id":"897df743ffc86eaa4a728d8ad5631d2b09685994","author":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"date":"2019-06-20 14:17:29.000000000","message":"Patch Set 1: Code-Review-1\n\n(3 comments)\n\nThank you for this work, Corey.\n\nThis function working as the configuration variables intend will be valuable for environments wanting to use uidNumber, employeeID, etc fields as their user_id_attribute, when those attributes are not the RDN unique-attribute key.\n\nThere is one functional issue which will need updating, but I also made some cosmetic recommendations.","accounts_in_message":[],"_revision_number":1},{"id":"f69391b0f1ba0c3f670d5f47801c44115a0b70af","author":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"date":"2019-06-20 14:47:52.000000000","message":"Patch Set 1:\n\n(1 comment)\n\nAdditional item noted from _ldap_res_to_model notes that we can\u0027t trust user_id_attribute entries with multiple results, so we must have a fallback to the old functioning of this function.\n\nAlso, it seems that it\u0027s highly probable that this will affect live environments that have been fortunate enough for their user_id_attribute values to match the left-most RDN attribute\u0027s value.","accounts_in_message":[],"_revision_number":1},{"id":"08fc0e0f1c74a3c2a7b3bd564912641de55f3687","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-20 18:13:17.000000000","message":"Uploaded patch set 2.","accounts_in_message":[],"_revision_number":2},{"id":"f5533a068a9c7fd40291af0746004ebf34887159","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-20 18:13:36.000000000","message":"Patch Set 1:\n\nDrew, thanks for the review. I\u0027ve made updates based on all of your comments.","accounts_in_message":[],"_revision_number":1},{"id":"f91589437774dab4dd7b00dec89f1e5e7d9cda0f","author":{"_account_id":24797,"name":"Matt Welch","email":"matt.welch@intel.com","username":"mattw4"},"date":"2019-06-20 18:32:44.000000000","message":"Patch Set 2:\n\npleaselooksgain","accounts_in_message":[],"_revision_number":2},{"id":"8db7b544f14bcbae009f6c384bc9aecf0e58e21e","author":{"_account_id":24797,"name":"Matt Welch","email":"matt.welch@intel.com","username":"mattw4"},"date":"2019-06-20 18:33:21.000000000","message":"Patch Set 2:\n\nApologies for erroneous comment above.  Trying to get Zuul running.  Please ignore me.","accounts_in_message":[],"_revision_number":2},{"id":"e42a221bc3c4cc4c4bb31e28bba698940142e5b0","author":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"date":"2019-06-20 19:44:47.000000000","message":"Patch Set 2: Code-Review-1\n\n(1 comment)\n\nThank you, Corey.\n\nI think we\u0027ll still have to have the fallback method inside this function for the group membership function that calls this from core.py to also fallback based on the same logic that it would have fallen back to in ldap_res_to_model.\n\nUnfortunately, I don\u0027t think there\u0027s any good way to resolve this safely for those who have blissfully unaware of being affected by this from the old routine without making another ldap config flag like CONF.ldap.dereference_group_member_dns (default to false). and basically fall back to _dn_to_rdn_id if dereference_group_member_dns \u003d false.\n\nI guess the keystone community needs to review lp#1782922 and make a determination if the function should be fully fleshed out as originally intended or if we\u0027ll need to keep it functioning as before with an additional config hack on top of the already existing \"group_members_are_ids\" variable to enable this functionality.","accounts_in_message":[],"_revision_number":2},{"id":"5d185af36d773123aa80e47670d6038fc31e22dd","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2019-06-21 02:08:27.000000000","message":"Patch Set 2: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttp://docs.openstack.org/infra/manual/developers.html#automated-testing\n\n\n- openstack-tox-cover http://logs.openstack.org/75/666575/2/check/openstack-tox-cover/a975330/ : FAILURE in 29m 16s\n- openstack-tox-lower-constraints http://logs.openstack.org/75/666575/2/check/openstack-tox-lower-constraints/3869737/ : FAILURE in 33m 09s\n- openstack-tox-pep8 http://logs.openstack.org/75/666575/2/check/openstack-tox-pep8/161811b/ : FAILURE in 5m 35s\n- openstack-tox-py27 http://logs.openstack.org/75/666575/2/check/openstack-tox-py27/74ea792/ : FAILURE in 24m 53s\n- openstack-tox-py36 http://logs.openstack.org/75/666575/2/check/openstack-tox-py36/dcb019e/ : TIMED_OUT in 41m 56s\n- openstack-tox-py37 http://logs.openstack.org/75/666575/2/check/openstack-tox-py37/42dde4f/ : TIMED_OUT in 41m 13s\n- openstack-tox-docs http://logs.openstack.org/75/666575/2/check/openstack-tox-docs/9e5b012/html/ : SUCCESS in 7m 50s\n- tempest-full http://logs.openstack.org/75/666575/2/check/tempest-full/89862c1/ : SUCCESS in 1h 39m 50s\n- neutron-grenade http://logs.openstack.org/75/666575/2/check/neutron-grenade/9b4f279/ : SUCCESS in 58m 36s\n- grenade-py3 http://logs.openstack.org/75/666575/2/check/grenade-py3/1cd21dd/ : SUCCESS in 58m 25s\n- tempest-full-py3 http://logs.openstack.org/75/666575/2/check/tempest-full-py3/ac8b8d3/ : SUCCESS in 1h 34m 56s\n- keystone-dsvm-functional http://logs.openstack.org/75/666575/2/check/keystone-dsvm-functional/754ab8c/ : SUCCESS in 1h 07m 49s\n- keystone-dsvm-py3-functional http://logs.openstack.org/75/666575/2/check/keystone-dsvm-py3-functional/aea5684/ : SUCCESS in 39m 28s\n- keystone-dsvm-functional-federation-opensuse15 http://logs.openstack.org/75/666575/2/check/keystone-dsvm-functional-federation-opensuse15/8ee1d9b/ : SUCCESS in 34m 00s (non-voting)\n- keystone-dsvm-py3-functional-federation-opensuse15 http://logs.openstack.org/75/666575/2/check/keystone-dsvm-py3-functional-federation-opensuse15/6aea315/ : SUCCESS in 49m 19s (non-voting)\n- keystoneclient-devstack-functional http://logs.openstack.org/75/666575/2/check/keystoneclient-devstack-functional/f2e2730/ : SUCCESS in 17m 13s (non-voting)\n- legacy-tempest-dsvm-ldap-domain-specific-driver http://logs.openstack.org/75/666575/2/check/legacy-tempest-dsvm-ldap-domain-specific-driver/7d5205b/ : SUCCESS in 1h 58m 12s (non-voting)","accounts_in_message":[],"_revision_number":2},{"id":"3eb7150272957b3441038df75bdfc85860491a34","author":{"_account_id":27944,"name":"Andrea Ieri","email":"andrea.ieri@canonical.com","username":"aieri"},"date":"2019-06-21 16:22:40.000000000","message":"Patch Set 2:\n\nFWIW I\u0027ve tested this patch in my test environment against a real production LDAP backend that exhibits the bad behavior (LP#1832766).\nThe patch works as expected: membership is now correct without having to touch anything in the DB.","accounts_in_message":[],"_revision_number":2},{"id":"814772afdc5bae6f841781fc3f6e0abd00b90bee","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-26 15:58:46.000000000","message":"Uploaded patch set 3.","accounts_in_message":[],"_revision_number":3},{"id":"4eacfb303f1dc2229ec448cfffed96efb6e6a9d4","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-26 16:01:38.000000000","message":"Uploaded patch set 4.","accounts_in_message":[],"_revision_number":4},{"id":"3e8872d99b69d865e95ca53a905d913a1de81d9d","author":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"date":"2019-06-26 16:09:58.000000000","message":"Patch Set 4: Code-Review-1\n\n(1 comment)\n\nquick comment, bad function call in updated _dn_to_id()","accounts_in_message":[],"_revision_number":4},{"id":"bfb792f8b7a0326f846fdf4fa75cf21419491fd0","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-26 16:10:14.000000000","message":"Uploaded patch set 5.","accounts_in_message":[],"_revision_number":5},{"id":"9a001c0f79a8f1d7c6ac5d13f1c67e25160c706a","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-06-26 16:33:47.000000000","message":"Uploaded patch set 6.","accounts_in_message":[],"_revision_number":6},{"id":"0ef7bdb7d9985f8845123606bfc35bd1a3816ec5","author":{"_account_id":25011,"name":"Drew Freiberger","email":"drew.freiberger@canonical.com","username":"afreiberger"},"date":"2019-06-26 20:02:33.000000000","message":"Patch Set 6: Code-Review+1\n\nLGTM, I would note that there are a couple possible bugs introduced by this:\n\n1. those sites who have previously benefited from the original bug\u0027s misconfiguration could find themselves needing to make a change to user_id_attribute to be the same as their left-most RDN field.\n\n2. Those users who initially have more than one value assigned to user_id_attribute who then have user_id_attribute values reduced to 1 or 0 will have issues with their accounts matching from LDAP to the database, though I think this is a currently existing risk in ldap_res_to_model.","accounts_in_message":[],"_revision_number":6},{"id":"bd0d8858001b107de623fc1891a93c9dbacdbe03","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2019-06-27 04:17:41.000000000","message":"Patch Set 6: Verified-1\n\nBuild failed (check pipeline).  For information on how to proceed, see\nhttp://docs.openstack.org/infra/manual/developers.html#automated-testing\n\n\n- openstack-tox-cover http://logs.openstack.org/75/666575/6/check/openstack-tox-cover/b299675/ : FAILURE in 35m 04s\n- openstack-tox-lower-constraints http://logs.openstack.org/75/666575/6/check/openstack-tox-lower-constraints/88e518f/ : FAILURE in 35m 27s\n- openstack-tox-pep8 http://logs.openstack.org/75/666575/6/check/openstack-tox-pep8/2c09349/ : SUCCESS in 5m 33s\n- openstack-tox-py27 http://logs.openstack.org/75/666575/6/check/openstack-tox-py27/4100d6f/ : FAILURE in 23m 10s\n- openstack-tox-py36 http://logs.openstack.org/75/666575/6/check/openstack-tox-py36/9ff4939/ : FAILURE in 28m 45s\n- openstack-tox-py37 http://logs.openstack.org/75/666575/6/check/openstack-tox-py37/dd17e1e/ : FAILURE in 23m 58s\n- openstack-tox-docs http://logs.openstack.org/75/666575/6/check/openstack-tox-docs/d30c602/html/ : SUCCESS in 7m 09s\n- tempest-full http://logs.openstack.org/75/666575/6/check/tempest-full/b64a495/ : SUCCESS in 1h 45m 55s\n- neutron-grenade http://logs.openstack.org/75/666575/6/check/neutron-grenade/3170261/ : SUCCESS in 1h 05m 13s\n- grenade-py3 http://logs.openstack.org/75/666575/6/check/grenade-py3/a1b57b9/ : SUCCESS in 55m 58s\n- tempest-full-py3 http://logs.openstack.org/75/666575/6/check/tempest-full-py3/0bc01b1/ : SUCCESS in 1h 47m 04s\n- keystone-dsvm-functional http://logs.openstack.org/75/666575/6/check/keystone-dsvm-functional/ff71cc8/ : SUCCESS in 35m 29s\n- keystone-dsvm-py3-functional http://logs.openstack.org/75/666575/6/check/keystone-dsvm-py3-functional/a95f7af/ : SUCCESS in 39m 52s\n- keystone-dsvm-functional-federation-opensuse15 http://logs.openstack.org/75/666575/6/check/keystone-dsvm-functional-federation-opensuse15/6463afe/ : SUCCESS in 42m 43s (non-voting)\n- keystone-dsvm-py3-functional-federation-opensuse15 http://logs.openstack.org/75/666575/6/check/keystone-dsvm-py3-functional-federation-opensuse15/2fc6138/ : SUCCESS in 36m 30s (non-voting)\n- keystoneclient-devstack-functional http://logs.openstack.org/75/666575/6/check/keystoneclient-devstack-functional/139eb86/ : SUCCESS in 16m 37s (non-voting)\n- legacy-tempest-dsvm-ldap-domain-specific-driver http://logs.openstack.org/75/666575/6/check/legacy-tempest-dsvm-ldap-domain-specific-driver/86ac18b/ : SUCCESS in 1h 43m 46s (non-voting)","accounts_in_message":[],"_revision_number":6},{"id":"0b4b86c93c2f5cb645c7cb7179dcdf548d3f6536","author":{"_account_id":8482,"name":"Colleen Murphy","email":"colleen@gazlene.net","username":"krinkle"},"date":"2019-07-02 14:56:41.000000000","message":"Patch Set 6:\n\nPossible duplicate of https://review.opendev.org/649177 ?","accounts_in_message":[],"_revision_number":6},{"id":"22913157bf4b3d4a0bc6dc0cedbcabd10742be33","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-07-02 19:41:59.000000000","message":"Patch Set 6:\n\n@Colleen yes it looks like it","accounts_in_message":[],"_revision_number":6},{"id":"6d20c2fef1e9a4cb3fc50ff17bce7172b3dc44c0","author":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"date":"2019-07-24 17:12:24.000000000","message":"Abandoned\n\nAbandoned in favor of https://review.opendev.org/649177","accounts_in_message":[],"_revision_number":6}],"current_revision_number":6,"current_revision":"4b47f6ae216f9d2d6992ed530de3d543db59592e","revisions":{"8b89509a65df9e81a0824d8f0768a33bce264982":{"kind":"REWORK","_number":1,"created":"2019-06-20 13:30:00.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/1"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 13:29:59.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/8b89509a65df9e81a0824d8f0768a33bce264982"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/8b89509a65df9e81a0824d8f0768a33bce264982"}]},"branch":"refs/heads/master"},"12f638dacae4094774da9fd2a79405102f7e043f":{"kind":"REWORK","_number":2,"created":"2019-06-20 18:13:17.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/2"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 18:13:12.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/12f638dacae4094774da9fd2a79405102f7e043f"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/12f638dacae4094774da9fd2a79405102f7e043f"}]},"branch":"refs/heads/master"},"64c078bb3f94959a0169ac42229a1f3c20d6d8da":{"kind":"REWORK","_number":3,"created":"2019-06-26 15:58:46.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/3","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/3","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/3 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/3 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/3 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/3"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-26 15:58:44.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/64c078bb3f94959a0169ac42229a1f3c20d6d8da"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/64c078bb3f94959a0169ac42229a1f3c20d6d8da"}]},"branch":"refs/heads/master"},"24101b57b46f3859e95ef7b6940a9afac8fc0871":{"kind":"REWORK","_number":4,"created":"2019-06-26 16:01:38.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/4","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/4","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/4 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/4 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/4 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/4"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-26 16:01:34.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/24101b57b46f3859e95ef7b6940a9afac8fc0871"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/24101b57b46f3859e95ef7b6940a9afac8fc0871"}]},"branch":"refs/heads/master"},"a2a52abd12f3ab7afca950401875656aed1e5d42":{"kind":"REWORK","_number":5,"created":"2019-06-26 16:10:14.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/5","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/5","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/5 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/5 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/5 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/5"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-26 16:08:56.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/a2a52abd12f3ab7afca950401875656aed1e5d42"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/a2a52abd12f3ab7afca950401875656aed1e5d42"}]},"branch":"refs/heads/master"},"4b47f6ae216f9d2d6992ed530de3d543db59592e":{"kind":"REWORK","_number":6,"created":"2019-06-26 16:33:47.000000000","uploader":{"_account_id":11805,"name":"Corey Bryant","email":"corey.bryant@canonical.com","username":"coreycb"},"ref":"refs/changes/75/666575/6","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/keystone","ref":"refs/changes/75/666575/6","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/6 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/6 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/keystone refs/changes/75/666575/6 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/keystone refs/changes/75/666575/6"}}},"commit":{"parents":[{"commit":"2b1a917e95b10064e1871ea215b0b8658e1d0c48","subject":"Merge \"Fix contributor doc of keystone\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/2b1a917e95b10064e1871ea215b0b8658e1d0c48"}]}],"author":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-20 00:45:30.000000000","tz":-240},"committer":{"name":"Corey Bryant","email":"corey.bryant@canonical.com","date":"2019-06-26 16:33:43.000000000","tz":-240},"subject":"Enable LDAP _dn_to_id() for non-default ID attrs","message":"Enable LDAP _dn_to_id() for non-default ID attrs\n\n_dn_to_id() currently always returns the left-most RDN. With the\ndefault setting for user_id_attribute/group_id_attribute (\u0027cn\u0027)\nthat works. However, the code currently doesn\u0027t support setting\nuser_id_attribute or group_id_attribute to another attribute.\n\nUpdate _dn_to_id() to perform a search using DN as the base and\nreturning the value of the uid attribute.\n\nChange-Id: I224acbb81393b23a4ce14bfde7cbcee7b5ab8e42\nCloses-Bug: #1782922\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/4b47f6ae216f9d2d6992ed530de3d543db59592e"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/keystone/commit/4b47f6ae216f9d2d6992ed530de3d543db59592e"}]},"branch":"refs/heads/master"}},"requirements":[],"submit_records":[],"submit_requirements":[]}
