summaryrefslogtreecommitdiff
path: root/doc/source/cli/command-objects/trust.rst
diff options
context:
space:
mode:
Diffstat (limited to 'doc/source/cli/command-objects/trust.rst')
-rw-r--r--doc/source/cli/command-objects/trust.rst104
1 files changed, 10 insertions, 94 deletions
diff --git a/doc/source/cli/command-objects/trust.rst b/doc/source/cli/command-objects/trust.rst
index 28459bca..febef1c5 100644
--- a/doc/source/cli/command-objects/trust.rst
+++ b/doc/source/cli/command-objects/trust.rst
@@ -2,101 +2,17 @@
trust
=====
-Identity v3
+A **trust** provide project-specific role delegation between users, with
+optional impersonation. Requires the OS-TRUST extension. Applies to Identity v3.
-trust create
-------------
+.. autoprogram-cliff:: openstack.identity.v3
+ :command: trust create
-Create new trust
+.. autoprogram-cliff:: openstack.identity.v3
+ :command: trust delete
-.. program:: trust create
-.. code:: bash
+.. autoprogram-cliff:: openstack.identity.v3
+ :command: trust list
- openstack trust create
- --project <project>
- --role <role>
- [--impersonate]
- [--expiration <expiration>]
- [--project-domain <domain>]
- [--trustor-domain <domain>]
- [--trustee-domain <domain>]
- <trustor>
- <trustee>
-
-.. option:: --project <project>
-
- Project being delegated (name or ID) (required)
-
-.. option:: --role <role>
-
- Roles to authorize (name or ID) (repeat option to set multiple values, required)
-
-.. option:: --impersonate
-
- Tokens generated from the trust will represent <trustor> (defaults to False)
-
-.. option:: --expiration <expiration>
-
- Sets an expiration date for the trust (format of YYYY-mm-ddTHH:MM:SS)
-
-.. option:: --project-domain <project-domain>
-
- Domain the project belongs to (name or ID). This can be
- used in case collisions between user names exist.
-
-.. option:: --trustor-domain <trustor-domain>
-
- Domain that contains <trustor> (name or ID)
-
-.. option:: --trustee-domain <trustee-domain>
-
- Domain that contains <trustee> (name or ID)
-
-.. describe:: <trustor-user>
-
- User that is delegating authorization (name or ID)
-
-.. describe:: <trustee-user>
-
- User that is assuming authorization (name or ID)
-
-
-trust delete
-------------
-
-Delete trust(s)
-
-.. program:: trust delete
-.. code:: bash
-
- openstack trust delete
- <trust> [<trust> ...]
-
-.. describe:: <trust>
-
- Trust(s) to delete
-
-trust list
-----------
-
-List trusts
-
-.. program:: trust list
-.. code:: bash
-
- openstack trust list
-
-trust show
-----------
-
-Display trust details
-
-.. program:: trust show
-.. code:: bash
-
- openstack trust show
- <trust>
-
-.. describe:: <trust>
-
- Trust to display
+.. autoprogram-cliff:: openstack.identity.v3
+ :command: trust show