)]}'
{"id":"openstack%2Fopenstack-ansible-os_keystone~804202","triplet_id":"openstack%2Fopenstack-ansible-os_keystone~master~I41bc0082f5ffce843f02ba34a97c7792b1ff16c3","project":"openstack/openstack-ansible-os_keystone","branch":"master","topic":"ssl_keys_from_remote_host","hashtags":[],"change_id":"I41bc0082f5ffce843f02ba34a97c7792b1ff16c3","subject":"use keystone custom certificates from remote host","status":"ABANDONED","created":"2021-08-11 06:21:51.000000000","updated":"2026-05-04 07:49:53.000000000","total_comment_count":0,"unresolved_comment_count":0,"has_review_started":true,"meta_rev_id":"665ccfd1d93ce24a5874ef8b0d5bbd16d4e7458f","_number":804202,"virtual_id_number":804202,"owner":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"actions":{},"labels":{"Verified":{"recommended":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"tag":"autogenerated:zuul:check","value":1,"date":"2021-08-11 14:38:59.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","value":1,"default_value":0,"optional":true},"Code-Review":{"disliked":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"all":[{"value":-1,"date":"2021-08-16 07:47:17.000000000","permitted_voting_range":{"min":-2,"max":2},"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","value":-1,"default_value":0,"optional":true},"Workflow":{"all":[{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true},"Backport-Candidate":{"all":[{"value":0,"permitted_voting_range":{"min":-1,"max":1},"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}],"values":{"-1":"Not A Backport Candidate"," 0":"Backport Review Needed","+1":"Proposed Backport"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"}],"CC":[{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2021-08-11 07:54:06.000000000","updated_by":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"reviewer":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"state":"CC"},{"updated":"2021-08-11 08:29:25.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"},{"updated":"2021-08-12 04:05:30.000000000","updated_by":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"reviewer":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"state":"CC"},{"updated":"2021-08-16 07:47:17.000000000","updated_by":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"reviewer":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"state":"REVIEWER"}],"messages":[{"id":"43f53f068b2b158bbd30cd09191c2880b6ff6b5d","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"date":"2021-08-11 06:21:51.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"4da13a3ffc4ae2274101ac52ac39594b7c3e9107","author":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"date":"2021-08-11 07:54:06.000000000","message":"Patch Set 1:\n\nHi Sven,\n\nI see you\u0027ve made several commits all looking related to keystone SSL setup in openstack-ansible. For this one in particular note that we have introduced a new ansible role ansible-role-pki in the Wallaby release, and as part of the current work for Xena will be replacing the code you are modifying here in this patch with something along the lines of this https://github.com/openstack/openstack-ansible-rabbitmq_server/commit/840f47f4b9e2874019630fd70a77fe31be6aacd0\n\nI\u0027m also not sure I understand what \u0027remote_src: true\u0027 would mean for an LXC deployment - where would the remote cert come from in that case?\n\nFor the commit messages in general it would be great to try to do them in 3 parts, title, explanation of whats currently broken, what this change does to fix it. Makes the patches much easier to review.","accounts_in_message":[],"_revision_number":1},{"id":"2b903967f7f12c1d72f52e485ed439dacbc79823","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-08-11 08:29:25.000000000","message":"Patch Set 1: Verified+1\n\nBuild succeeded (check pipeline).\n\n- openstack-ansible-linters-ubuntu-focal https://zuul.opendev.org/t/openstack/build/2ecc145141b04b6c870da17c807cda1e : SUCCESS in 19m 41s\n- openstack-ansible-deploy-aio_metal-debian-buster https://zuul.opendev.org/t/openstack/build/54ecd3562e5a4933a55a7d3f0799a8f8 : SUCCESS in 1h 16m 39s\n- openstack-ansible-deploy-aio_metal-debian-bullseye https://zuul.opendev.org/t/openstack/build/2dae6d00820a46b5adddfdf56d30b10b : SUCCESS in 1h 16m 30s (non-voting)\n- openstack-ansible-deploy-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/cb46dc9332c64ffc9c0dc9b7f6f4da1b : SUCCESS in 1h 25m 30s\n- openstack-ansible-deploy-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/0be96d8389a94847bae6837382c8eb23 : SUCCESS in 1h 20m 04s\n- openstack-ansible-deploy-aio_metal-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/85e07d6cb8a94d7a83818091779953f9 : SUCCESS in 1h 23m 14s\n- openstack-ansible-deploy-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/898f8b9df6244490aac89665a96ecfe1 : SUCCESS in 1h 18m 19s\n- openstack-ansible-upgrade-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/8ce4f48108fd4e3baf59a0ce0f5b3e40 : SUCCESS in 2h 00m 02s (non-voting)\n- openstack-ansible-upgrade-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/292c55ec102f457fbab525b550e16faa : SUCCESS in 1h 40m 48s\n- openstack-ansible-deploy-aio_distro_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/46ab24629558410b96694704b8430580 : FAILURE in 51m 02s (non-voting)\n- openstack-ansible-deploy-aio_distro_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/7c936d7f30584b60a6dbb1e05819c8d4 : SUCCESS in 59m 00s\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/4768aec9e3af4868abab57ebf2f97e60 : SUCCESS in 8m 42s\n- openstack-ansible-uw_apache-centos-8 https://zuul.opendev.org/t/openstack/build/9a9e6101130e4c28a165f6b1126962ff : SUCCESS in 48m 27s\n- openstack-ansible-uw_apache-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/928fa6d06d5347db80f9461db2bcd082 : SUCCESS in 42m 57s\n- openstack-ansible-uw_apache-ubuntu-focal https://zuul.opendev.org/t/openstack/build/6992ea7ca1a941388df09273b92bba14 : SUCCESS in 44m 28s","accounts_in_message":[],"_revision_number":1},{"id":"6ddd818e3edf0c926bea931c61b9c464501dbcaa","author":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"date":"2021-08-11 08:48:27.000000000","message":"Patch Set 1:\n\n\u003e Patch Set 1:\n\u003e \n\u003e Hi Sven,\n\u003e \n\u003e I see you\u0027ve made several commits all looking related to keystone SSL setup in openstack-ansible. For this one in particular note that we have introduced a new ansible role ansible-role-pki in the Wallaby release, and as part of the current work for Xena will be replacing the code you are modifying here in this patch with something along the lines of this https://github.com/openstack/openstack-ansible-rabbitmq_server/commit/840f47f4b9e2874019630fd70a77fe31be6aacd0\n\u003e \n\u003e I\u0027m also not sure I understand what \u0027remote_src: true\u0027 would mean for an LXC deployment - where would the remote cert come from in that case?\n\u003e \n\u003e For the commit messages in general it would be great to try to do them in 3 parts, title, explanation of whats currently broken, what this change does to fix it. Makes the patches much easier to review.\n\nHi Jonathan,\nthank you for your review. I would like to apologize for the bad commit \nmessage. Its my first contribution to openstack.  What is the best way to fix \nthis mistake?\n\nIn our case, we have a own self implemented company PKI systems which \ngenerates/copies certificates to the destination host and not the machine where \nthe ansible-playbook job is running. \n\nAt the Moment the os_keystone role can not handle this. It will always copy \nthe keys from the machine, where the ansible-playbook job is run.\n\nIf remote_src is yes (default no), the key will be copied from the remote \nmachine. \n\nSee copy module doc: https://docs.ansible.com/ansible/latest/collections/\nansible/builtin/copy_module.html\n\nBest Regards\nSven Anders","accounts_in_message":[],"_revision_number":1},{"id":"52fd4a909ec549152bc12790e797565faa880bda","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"date":"2021-08-11 12:44:07.000000000","message":"Patch Set 2: Commit message was updated.","accounts_in_message":[],"_revision_number":2},{"id":"93e4ae77c7e0207d99471f1f6f92721bf4de8ab5","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-08-11 14:38:59.000000000","message":"Patch Set 2: Verified+1\n\nBuild succeeded (check pipeline).\n\n- openstack-ansible-linters-ubuntu-focal https://zuul.opendev.org/t/openstack/build/afd6e6fa7e0d4201be68316c0203999b : SUCCESS in 13m 42s\n- openstack-ansible-deploy-aio_metal-debian-buster https://zuul.opendev.org/t/openstack/build/9e98088f01ad4376bd846de43184b980 : SUCCESS in 1h 16m 02s\n- openstack-ansible-deploy-aio_metal-debian-bullseye https://zuul.opendev.org/t/openstack/build/12a6400fc45a45edac686d69c51ddac4 : SUCCESS in 1h 16m 07s (non-voting)\n- openstack-ansible-deploy-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/c5398166a38e415383812cdd2b18e2c2 : SUCCESS in 1h 25m 39s\n- openstack-ansible-deploy-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/f39ba48b67924276a6d22ffe00e00937 : SUCCESS in 1h 22m 51s\n- openstack-ansible-deploy-aio_metal-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/0e0a1e56efd346239f0636d26dbe83b0 : SUCCESS in 1h 17m 11s\n- openstack-ansible-deploy-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/7fbae66b592d4204bab74578e64d02be : SUCCESS in 1h 07m 22s\n- openstack-ansible-upgrade-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/e9a21453765f4441be9ddada5e4059ec : SUCCESS in 1h 50m 40s (non-voting)\n- openstack-ansible-upgrade-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/3c732f2ef3dc444f8484669ec5f6d042 : SUCCESS in 1h 47m 16s\n- openstack-ansible-deploy-aio_distro_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/99ee3c2fbbed4f42812776b6b69aedfb : FAILURE in 42m 49s (non-voting)\n- openstack-ansible-deploy-aio_distro_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/938e3ee991574fc08d6296d38aa20260 : SUCCESS in 55m 39s\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/e4afba19cb244eba90247a6b5b4ef0c4 : SUCCESS in 7m 01s\n- openstack-ansible-uw_apache-centos-8 https://zuul.opendev.org/t/openstack/build/f9db53054ba84a1383cd8dfdcea6a4a1 : SUCCESS in 1h 00m 58s\n- openstack-ansible-uw_apache-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/446c010e72994ebbb9f98581866dd3b0 : SUCCESS in 41m 05s\n- openstack-ansible-uw_apache-ubuntu-focal https://zuul.opendev.org/t/openstack/build/43dbfd884b9c4f00893e7ef3fba08cad : SUCCESS in 39m 34s","accounts_in_message":[],"_revision_number":2},{"id":"d0af3ddd8856e19a6f2cf55c14e6a4718e1e8dc9","author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"date":"2021-08-12 04:05:30.000000000","message":"Patch Set 2:\n\nHey,\n\nWhile I see what you\u0027re trying to achive, I agree with jrosser that keystone role should leverage our PKI blueprint https://specs.openstack.org/openstack/openstack-ansible-specs/specs/wallaby/ssl-root-ca.html and be changed to use https://opendev.org/openstack/ansible-role-pki instead. I believe this should solve your user story as well since you will be able to set pki_setup_host as a host where certs are located.\n\n\nIt would be awesome if you could look through that pki role and make a change to os_keystone to switch to using it.","accounts_in_message":[],"_revision_number":2},{"id":"67059ac435886ea848648bba607eb042a876ddb9","author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"date":"2021-08-16 07:47:17.000000000","message":"Patch Set 2: Code-Review-1","accounts_in_message":[],"_revision_number":2},{"id":"665ccfd1d93ce24a5874ef8b0d5bbd16d4e7458f","tag":"autogenerated:gerrit:abandon","author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"date":"2026-05-04 07:49:53.000000000","message":"Abandoned\n\nI believe this should be already supported and fixed with the PKI role we use.","accounts_in_message":[],"_revision_number":2}],"current_revision_number":2,"current_revision":"0a4da4503bbd2fcfd8c75b5aa7e9ef17cd98f0ea","revisions":{"10db170cdf18c94b7aae49ff9aae32b51ae48e20":{"kind":"REWORK","_number":1,"created":"2021-08-11 06:21:51.000000000","uploader":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"ref":"refs/changes/02/804202/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible-os_keystone","ref":"refs/changes/02/804202/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/1"}}},"commit":{"parents":[{"commit":"eeef3a48f413a702a1c0eb8c4b40db9a5f9d85bb","subject":"Merge \"Fix shibboleth compatibility for ubuntu 18.04\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/eeef3a48f413a702a1c0eb8c4b40db9a5f9d85bb"}]}],"author":{"name":"Sven Anders","email":"sanders@scaleuptech.com","date":"2021-08-10 15:28:59.000000000","tz":120},"committer":{"name":"Sven Anders","email":"sanders@scaleuptech.com","date":"2021-08-11 06:21:39.000000000","tz":120},"subject":"use keystone custom certificates from remote host","message":"use keystone custom certificates from remote host\n\nChange-Id: I41bc0082f5ffce843f02ba34a97c7792b1ff16c3\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/10db170cdf18c94b7aae49ff9aae32b51ae48e20"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/10db170cdf18c94b7aae49ff9aae32b51ae48e20"}]},"branch":"refs/heads/master"},"0a4da4503bbd2fcfd8c75b5aa7e9ef17cd98f0ea":{"kind":"NO_CODE_CHANGE","_number":2,"created":"2021-08-11 12:44:07.000000000","uploader":{"_account_id":33872,"name":"Sven Anders","email":"sanders@scaleuptech.com","username":"tabacha"},"ref":"refs/changes/02/804202/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible-os_keystone","ref":"refs/changes/02/804202/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible-os_keystone refs/changes/02/804202/2"}}},"commit":{"parents":[{"commit":"eeef3a48f413a702a1c0eb8c4b40db9a5f9d85bb","subject":"Merge \"Fix shibboleth compatibility for ubuntu 18.04\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/eeef3a48f413a702a1c0eb8c4b40db9a5f9d85bb"}]}],"author":{"name":"Sven Anders","email":"sanders@scaleuptech.com","date":"2021-08-10 15:28:59.000000000","tz":120},"committer":{"name":"Sven Anders","email":"sanders@scaleuptech.com","date":"2021-08-11 08:49:42.000000000","tz":0},"subject":"use keystone custom certificates from remote host","message":"use keystone custom certificates from remote host\n\nIn our case, we have a own self implemented company PKI systems which \ngenerates/copies certificates to the destination host and not the machine where \nthe ansible-playbook job is running. \n\nAt the Moment the os_keystone role can not handle this. It will always copy \nthe keys from the machine, where the ansible-playbook job is run.\n\nIf remote_src is yes (default no), the key will be copied from the remote \nmachine. \n\nChange-Id: I41bc0082f5ffce843f02ba34a97c7792b1ff16c3\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/0a4da4503bbd2fcfd8c75b5aa7e9ef17cd98f0ea"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible-os_keystone/commit/0a4da4503bbd2fcfd8c75b5aa7e9ef17cd98f0ea"}]},"branch":"refs/heads/master","description":"Edit commit message"}},"requirements":[],"submit_records":[],"submit_requirements":[{"name":"Verified","description":"Verified in gate by CI","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Verified\u003dMAX AND -label:Verified\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Verified\u003dMAX","label:Verified\u003dMIN"],"atom_explanations":{"label:Verified\u003dMAX":"","label:Verified\u003dMIN":""}}},{"name":"Backport-Candidate","description":"Backport candidate status","status":"NOT_APPLICABLE","is_legacy":false,"applicability_expression_result":{"fulfilled":false,"status":"FAIL"},"submittability_expression_result":{"expression":"is:true","fulfilled":true,"status":"NOT_EVALUATED","passing_atoms":[],"failing_atoms":[],"atom_explanations":{}}},{"name":"Code-Review","description":"Code reviewed by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Code-Review\u003dMAX AND -label:Code-Review\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Code-Review\u003dMAX","label:Code-Review\u003dMIN"],"atom_explanations":{"label:Code-Review\u003dMAX":"","label:Code-Review\u003dMIN":""}}},{"name":"Workflow","description":"Approved for gate by core reviewer","status":"UNSATISFIED","is_legacy":false,"submittability_expression_result":{"expression":"label:Workflow\u003dMAX AND -label:Workflow\u003dMIN","fulfilled":false,"status":"FAIL","passing_atoms":[],"failing_atoms":["label:Workflow\u003dMAX","label:Workflow\u003dMIN"],"atom_explanations":{"label:Workflow\u003dMAX":"","label:Workflow\u003dMIN":""}}}]}
