Tuesday, 2026-09-22

fricklergthiemonge: please check https://review.opendev.org/c/openstack/releases/+/1006610 when you have a moment06:54
gthiemongefrickler: ack07:35
fricklerty07:51
rm_workYeah it isn’t GOOD since heartbeat key could cause like … DoS?08:06
rm_workI don’t think there’s any other escalation though or leaks, we were pretty careful just design wise08:07
gthiemongerm_work: the amphora-agent TLS stuff can be retrieved too08:18
gthiemongerm_work: it also depends on the isolation of the management network, for instance in our downstream, it's totally isolated, but in other deployments it may give you access to the other internal networks08:19
rm_workTrue08:42
rm_workWell I left a comment on the bug, not that it matters 😅08:53
rm_workI remember we very specifically attempted to architect for a rogue amphora, and I’m glad we did 😇08:53
rm_workStill a real problem obviously, but I’d not be panicking as much as a deployer I think as otherwise08:55
gthiemongerm_work: thanks for adding the comment, yeah I agree the CVE score doesn't really reflect the severity of the issue09:06
rm_workI’d need to check to verify it’s still the case, but per our original design on paper, the amphora should only be able to get config for itself even if you can impersonate it11:52
rm_workI hope that’s still true11:53
gthiemongerm_work: the octavia services push the config (and TLS stuff) to the amps, an amphora cannot fetch anything from the control plane12:47
rm_workRight, I did think there was a “you should resend the config” trigger16:12
rm_workBut again, shouldn’t leak anything16:13
-opendevstatus- NOTICE: The Gerrit service on review.opendev.org will be offline momentarily while we upgrade to a new patch release, but should return within a few minutes23:01

Generated by irclog2html.py 4.1.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!