Cyborg Policy Configuration Guide¶
Cyborg, like most OpenStack projects, uses a policy language to restrict permissions on REST API actions.
Policy Concepts: In the Victoria release, Cyborg API policy defines new default roles with system scope capabilities. These new changes improve the security level and manageability of Cyborg API as they are richer in terms of handling access at system and project level token with ‘Read’ and ‘Write’ roles.
Policy Reference: A complete reference of all policy points in cyborg and what they impact.
Sample Policy File: A sample cyborg policy file with inline documentation.