A role entity can now be specified as domain specific. Closes-bug: #1606105 Change-Id: I564cf3da1d61f5bfcf85be591480d2f5c8d694a0
2.1 KiB
role assignment
Identity v2, v3
role assignment list
List role assignments
role assignment list
os role assignment list
[--role <role>]
[--role-domain <role-domain>]
[--user <user>]
[--user-domain <user-domain>]
[--group <group>]
[--group-domain <group-domain>]
[--domain <domain>]
[--project <project>]
[--project-domain <project-domain>]
[--effective]
[--inherited]
[--names]
--role <role>
Role to filter (name or ID)
3
--role-domain <role-domain>
Domain the role belongs to (name or ID). This can be used in case collisions between role names exist.
3
--user <user>
User to filter (name or ID)
--user-domain <user-domain>
Domain the user belongs to (name or ID). This can be used in case collisions between user names exist.
3
--group <group>
Group to filter (name or ID)
3
--group-domain <group-domain>
Domain the group belongs to (name or ID). This can be used in case collisions between group names exist.
3
--domain <domain>
Domain to filter (name or ID)
3
--project <project>
Project to filter (name or ID)
--project-domain <project-domain>
Domain the project belongs to (name or ID). This can be used in case collisions between project names exist.
3
--effective
Returns only effective role assignments (defaults to False)
3
--inherited
Specifies if the role grant is inheritable to the sub projects
3
--names
Returns role assignments with names instead of IDs
--auth-user
Returns role assignments for the authenticated user.
--auth-project
Returns role assignments for the project to which the authenticated user is scoped.