Package: release.debian.org Severity: normal Tags: bookworm X-Debbugs-Cc: [email protected] Control: affects -1 + src:keystone User: [email protected] Usertags: pu
Hi, As comment from last time, filling one bug for Trixie p-u, and one for Bookworm p-u. [ Reason ] As per: https://bugs.launchpad.net/swift/+bug/2142138 with an app credential (that's supposed to be a restricted access to part of the OpenStack API, to be used by an app/script), it is currently possible to create a valid read/write access S3 token. [ Tests ] The usual unit tests when building the package, plus upstream CI. [ Risks ] The patch is very small, and only adds new API policy rules, so kind of easy to understand. [ Checklist ] [x] *all* changes are documented in the d/changelog [x] I reviewed all changes and I approve them [x] attach debdiff against the package in (old)stable [x] the issue is verified as fixed in unstable Please allow me to upload Keystone 22.0.2-0+deb12u2 to Bookworm p-u. Cheers, Thomas Goirand (zigo)
keystone_22.0.2-0+deb12u2.debdiff
Description: inode/empty

