|
100 | 100 | check_str=neutron_policy.policy_or( |
101 | 101 | 'not rule:network_device', |
102 | 102 | base.ADMIN_OR_SERVICE, |
103 | | - base.PROJECT_MANAGER, |
104 | 103 | base.NET_OWNER_MEMBER |
105 | 104 | ), |
106 | 105 | scope_types=['project'], |
|
119 | 118 | name='create_port:mac_address', |
120 | 119 | check_str=neutron_policy.policy_or( |
121 | 120 | base.ADMIN_OR_SERVICE, |
122 | | - base.PROJECT_MANAGER, |
123 | 121 | base.NET_OWNER_MEMBER), |
124 | 122 | scope_types=['project'], |
125 | 123 | description='Specify ``mac_address`` attribute when creating a port', |
|
136 | 134 | name='create_port:fixed_ips', |
137 | 135 | check_str=neutron_policy.policy_or( |
138 | 136 | base.ADMIN_OR_SERVICE, |
139 | | - base.PROJECT_MANAGER, |
140 | 137 | base.NET_OWNER_MEMBER, |
141 | 138 | 'rule:shared'), |
142 | 139 | scope_types=['project'], |
|
155 | 152 | name='create_port:fixed_ips:ip_address', |
156 | 153 | check_str=neutron_policy.policy_or( |
157 | 154 | base.ADMIN_OR_SERVICE, |
158 | | - base.PROJECT_MANAGER, |
159 | 155 | base.NET_OWNER_MEMBER), |
160 | 156 | scope_types=['project'], |
161 | 157 | description='Specify IP address in ``fixed_ips`` when creating a port', |
|
172 | 168 | name='create_port:fixed_ips:subnet_id', |
173 | 169 | check_str=neutron_policy.policy_or( |
174 | 170 | base.ADMIN_OR_SERVICE, |
175 | | - base.PROJECT_MANAGER, |
176 | 171 | base.NET_OWNER_MEMBER, |
177 | 172 | 'rule:shared'), |
178 | 173 | scope_types=['project'], |
|
191 | 186 | name='create_port:port_security_enabled', |
192 | 187 | check_str=neutron_policy.policy_or( |
193 | 188 | base.ADMIN_OR_SERVICE, |
194 | | - base.PROJECT_MANAGER, |
195 | 189 | base.NET_OWNER_MEMBER), |
196 | 190 | scope_types=['project'], |
197 | 191 | description=( |
|
258 | 252 | name='create_port:allowed_address_pairs', |
259 | 253 | check_str=neutron_policy.policy_or( |
260 | 254 | base.ADMIN_OR_NET_OWNER_MEMBER, |
261 | | - base.PROJECT_MANAGER, |
262 | 255 | base.SERVICE), |
263 | 256 | scope_types=['project'], |
264 | 257 | description=( |
|
276 | 269 | name='create_port:allowed_address_pairs:mac_address', |
277 | 270 | check_str=neutron_policy.policy_or( |
278 | 271 | base.ADMIN_OR_NET_OWNER_MEMBER, |
279 | | - base.PROJECT_MANAGER, |
280 | 272 | base.SERVICE), |
281 | 273 | scope_types=['project'], |
282 | 274 | description=( |
|
294 | 286 | name='create_port:allowed_address_pairs:ip_address', |
295 | 287 | check_str=neutron_policy.policy_or( |
296 | 288 | base.ADMIN_OR_NET_OWNER_MEMBER, |
297 | | - base.PROJECT_MANAGER, |
298 | 289 | base.SERVICE), |
299 | 290 | scope_types=['project'], |
300 | 291 | description=( |
|
496 | 487 | check_str=neutron_policy.policy_or( |
497 | 488 | 'not rule:network_device', |
498 | 489 | base.ADMIN_OR_SERVICE, |
499 | | - base.PROJECT_MANAGER, |
500 | 490 | base.NET_OWNER_MEMBER, |
501 | 491 | ), |
502 | 492 | scope_types=['project'], |
|
515 | 505 | name='update_port:mac_address', |
516 | 506 | check_str=neutron_policy.policy_or( |
517 | 507 | base.ADMIN_OR_SERVICE, |
518 | | - base.PROJECT_MANAGER |
| 508 | + base.NET_OWNER_MANAGER, |
519 | 509 | ), |
520 | 510 | scope_types=['project'], |
521 | 511 | description='Update ``mac_address`` attribute of a port', |
|
532 | 522 | name='update_port:fixed_ips', |
533 | 523 | check_str=neutron_policy.policy_or( |
534 | 524 | base.ADMIN_OR_SERVICE, |
535 | | - base.PROJECT_MANAGER, |
536 | 525 | base.NET_OWNER_MEMBER |
537 | 526 | ), |
538 | 527 | scope_types=['project'], |
|
550 | 539 | name='update_port:fixed_ips:ip_address', |
551 | 540 | check_str=neutron_policy.policy_or( |
552 | 541 | base.ADMIN_OR_SERVICE, |
553 | | - base.PROJECT_MANAGER, |
554 | 542 | base.NET_OWNER_MEMBER |
555 | 543 | ), |
556 | 544 | scope_types=['project'], |
|
571 | 559 | name='update_port:fixed_ips:subnet_id', |
572 | 560 | check_str=neutron_policy.policy_or( |
573 | 561 | base.ADMIN_OR_SERVICE, |
574 | | - base.PROJECT_MANAGER, |
575 | 562 | base.NET_OWNER_MEMBER, |
576 | 563 | 'rule:shared' |
577 | 564 | ), |
|
594 | 581 | name='update_port:port_security_enabled', |
595 | 582 | check_str=neutron_policy.policy_or( |
596 | 583 | base.ADMIN_OR_SERVICE, |
597 | | - base.PROJECT_MANAGER, |
598 | 584 | base.NET_OWNER_MEMBER |
599 | 585 | ), |
600 | 586 | scope_types=['project'], |
|
653 | 639 | name='update_port:allowed_address_pairs', |
654 | 640 | check_str=neutron_policy.policy_or( |
655 | 641 | base.ADMIN_OR_NET_OWNER_MEMBER, |
656 | | - base.PROJECT_MANAGER, |
657 | 642 | base.SERVICE), |
658 | 643 | scope_types=['project'], |
659 | 644 | description='Update ``allowed_address_pairs`` attribute of a port', |
|
668 | 653 | name='update_port:allowed_address_pairs:mac_address', |
669 | 654 | check_str=neutron_policy.policy_or( |
670 | 655 | base.ADMIN_OR_NET_OWNER_MEMBER, |
671 | | - base.PROJECT_MANAGER, |
672 | 656 | base.SERVICE), |
673 | 657 | scope_types=['project'], |
674 | 658 | description=( |
|
686 | 670 | name='update_port:allowed_address_pairs:ip_address', |
687 | 671 | check_str=neutron_policy.policy_or( |
688 | 672 | base.ADMIN_OR_NET_OWNER_MEMBER, |
689 | | - base.PROJECT_MANAGER, |
690 | 673 | base.SERVICE), |
691 | 674 | scope_types=['project'], |
692 | 675 | description=( |
|
0 commit comments