Comment 5 for bug 1311223

Revision history for this message
Randall Burt (randall-burt) wrote : Re: User's provider templates show up in listing of resource types globally across tenants

Thierry, if the provider template author doesn't have sufficient security around the url that the template is retrieved from, an attacker could have access to that user's provider template which *could* include lots of information (ssh keys, password, "secret sauce" server configuration, etc) that the user would rather not share and is otherwise protected data once it reaches Heat.