In this chapter, we will cover the concept of setting up multi-tenant isolation within your OpenStack cloud. Imagine the idea of being able to force strict segregation of your tenants and being able to assign each unshared resource. Well, out-of-the-box OpenStack offers this functionality. This can be accomplished using the combination of the identity, compute and block storage services. We will start this chapter explaining the building blocks of how to set up multi-tenant isolation. Once the concept is clear, we will review the steps required to automate this task. A special emphasis will be placed on explaining how automation of this level prevents incorrect configurations, missed steps, and provides an easily repeatable process. The chapter will end with us creating a fully working Ansible playbook, with roles to configure tenant creation with multi-tenant isolation enabled. In this chapter, we will cover the following topics:
Multi-tenant isolation...