X-Git-Url: https://osm.etsi.org/gitweb/?p=osm%2FNBI.git;a=blobdiff_plain;f=osm_nbi%2Fnbi.cfg;h=383b462469d1bbe0c7d03a424678e89805d80fbd;hp=3e8463a5e1d004ca3299bb73201520e1150bc899;hb=544a2ae8b0b950b55f29c3f0a223ffe4874285e5;hpb=1b23c36a5f050609ac7c16e8f38e337259214174 diff --git a/osm_nbi/nbi.cfg b/osm_nbi/nbi.cfg index 3e8463a..383b462 100644 --- a/osm_nbi/nbi.cfg +++ b/osm_nbi/nbi.cfg @@ -92,7 +92,7 @@ loglevel: "DEBUG" group_id: "nbi-server" [authentication] -backend: "keystone" # internal or keystone +backend: "keystone" # internal or keystone or tacacs # for keystone backend a comma separated list of user adn project _domain_name list can ba provided. # NBI will try authenticate with all of then if domain is not provided in the content of a POST token # user_domain_name: "default,ldap" @@ -110,5 +110,15 @@ backend: "keystone" # internal or keystone # user_not_authorized: "admin" # project_not_authorized: "admin" +# TACACS configuration +# tacacs_host: "" +# tacacs_secret: "" +# tacacs_port: 49 # Default value +# tacacs_timeout: 10 # Default value + +# Password expiry configuration +# pwd_expiry_check: True # Uncomment to enable the password expiry check +# days: 30 # Default value + [rbac] # roles_to_operations: "roles_to_operations.yml" # initial role generation when database