++ openstack domain create --or-show --enable -f value -c id '--description=Service Domain for RegionOne/magnum' magnum + SERVICE_OS_DOMAIN_ID=d5abcabe4bf74681a50756400d518630 + openstack domain show d5abcabe4bf74681a50756400d518630 +-------------+-------------------------------------+ | Field | Value | +-------------+-------------------------------------+ | id | d5abcabe4bf74681a50756400d518630 | | name | magnum | | enabled | True | | description | Service Domain for RegionOne/magnum | | options | {} | +-------------+-------------------------------------+ ++ openstack user create --or-show --enable -f value -c id --domain=d5abcabe4bf74681a50756400d518630 --description 'Service User for RegionOne/magnum' --password=1ysNiBIhko3l6kZbH3LJBcHXVdaUJCX4 magnum-domain-RegionOne + SERVICE_OS_USERID=5399115fe2ac4216adf532189c0ebd47 + openstack user set --password=1ysNiBIhko3l6kZbH3LJBcHXVdaUJCX4 5399115fe2ac4216adf532189c0ebd47 + openstack user show 5399115fe2ac4216adf532189c0ebd47 +---------------------+-----------------------------------+ | Field | Value | +---------------------+-----------------------------------+ | default_project_id | None | | domain_id | d5abcabe4bf74681a50756400d518630 | | email | None | | enabled | True | | id | 5399115fe2ac4216adf532189c0ebd47 | | name | magnum-domain-RegionOne | | description | Service User for RegionOne/magnum | | password_expires_at | None | | options | {} | +---------------------+-----------------------------------+ ++ openstack role show -f value -c id admin + SERVICE_OS_ROLE_ID=e4e0d8dc95554b6c9ce0480742ddb4de + openstack role add --domain=d5abcabe4bf74681a50756400d518630 --user=5399115fe2ac4216adf532189c0ebd47 --user-domain=d5abcabe4bf74681a50756400d518630 e4e0d8dc95554b6c9ce0480742ddb4de + openstack role assignment list --role=e4e0d8dc95554b6c9ce0480742ddb4de --user-domain=d5abcabe4bf74681a50756400d518630 --user=5399115fe2ac4216adf532189c0ebd47 +----------------------------------+----------------------------------+-------+---------+----------------------------------+--------+-----------+ | Role | User | Group | Project | Domain | System | Inherited | +----------------------------------+----------------------------------+-------+---------+----------------------------------+--------+-----------+ | e4e0d8dc95554b6c9ce0480742ddb4de | 5399115fe2ac4216adf532189c0ebd47 | | | d5abcabe4bf74681a50756400d518630 | | False | +----------------------------------+----------------------------------+-------+---------+----------------------------------+--------+-----------+