Wednesday, 2015-02-18

*** ljfisher has quit IRC00:00
*** ljfisher has joined #openstack-security00:02
openstackgerritTravis McPeak proposed stackforge/bandit: Adding meaningful exit codes to support use in gate  https://review.openstack.org/15682800:04
bknudsontmcpeak: find /opt/stack/keystone/keystone -path "/opt/stack/keystone/keystone/tests" -prune -o -name "*.py" -print0 | xargs -0 bandit -n 500:16
*** ljfisher has quit IRC00:18
*** ljfisher has joined #openstack-security00:19
tmcpeakyo00:20
*** tkelsey has joined #openstack-security00:21
hyakuheiSo the Geekdom people need this room back at 5pm, We need to wrap/tidy at 16:40 I guess00:26
openstackgerritJamie Finnigan proposed stackforge/bandit: New constants to support updated results structure  https://review.openstack.org/15684600:29
hyakuheichair6: Can you get Anchor posting information on changes here too ?00:33
hyakuheitkelsey: https://review.openstack.org/#/c/156839/00:33
*** hyakuhei has quit IRC00:35
openstackgerritMerged stackforge/bandit: Adding meaningful exit codes to support use in gate  https://review.openstack.org/15682800:36
*** markvoelker has quit IRC00:37
*** markvoelker has joined #openstack-security00:37
*** browne has quit IRC00:37
*** tmcpeak has quit IRC00:39
*** ljfisher has quit IRC00:39
*** PaulM has quit IRC00:41
*** bknudson has quit IRC00:41
*** markvoelker has quit IRC00:42
*** JAHoagie has joined #openstack-security00:45
*** fletcher has quit IRC00:45
*** sicarie has quit IRC00:45
*** ukbelch has quit IRC00:46
*** ukbelch has joined #openstack-security00:46
*** ukbelch has quit IRC00:46
*** ukbelch has joined #openstack-security00:46
*** bdpayne has quit IRC00:47
*** tkelsey has quit IRC00:48
*** ukbelch has quit IRC00:52
*** hyakuhei has joined #openstack-security01:02
*** bdpayne has joined #openstack-security01:07
*** ChanServ sets mode: +o bdpayne01:08
*** bdpayne has quit IRC01:12
*** JAHoagie has quit IRC01:13
*** tkelsey has joined #openstack-security01:16
openstackgerritMerged stackforge/bandit: New constants to support updated results structure  https://review.openstack.org/15684601:17
*** smu_ has quit IRC01:19
*** smu_ has joined #openstack-security01:21
*** bpokorny_ has quit IRC01:41
*** ukbelch has joined #openstack-security01:53
*** salv-orlando has quit IRC01:58
*** markvoelker has joined #openstack-security01:59
*** ukbelch has quit IRC02:12
*** bdpayne has joined #openstack-security02:35
*** tkelsey has quit IRC02:46
*** hyakuhei has quit IRC02:56
*** salv-orlando has joined #openstack-security02:59
*** browne has joined #openstack-security03:09
*** hyakuhei has joined #openstack-security03:48
*** salv-orlando has quit IRC03:51
*** bdpayne has quit IRC03:58
*** bpokorny has joined #openstack-security04:00
*** bpokorny has quit IRC04:01
*** bpokorny has joined #openstack-security04:02
*** tmcpeak has joined #openstack-security04:12
*** browne has quit IRC04:12
*** JAHoagie has joined #openstack-security04:39
chair6here you go, hyakuhei - https://review.openstack.org/#/c/156881/04:46
*** bdpayne has joined #openstack-security04:57
*** plsph has joined #openstack-security05:01
*** plsph has quit IRC05:14
*** bdpayne has quit IRC05:15
*** hyakuhei has quit IRC05:25
*** hyakuhei has joined #openstack-security05:27
*** salv-orlando has joined #openstack-security05:36
*** hyakuhei has quit IRC05:45
*** pdesai has joined #openstack-security05:46
*** AndroUser2 has joined #openstack-security05:47
*** pdesai has quit IRC05:50
openstackgerritOpenStack Proposal Bot proposed openstack/security-doc: Imported Translations from Transifex  https://review.openstack.org/15689106:01
*** tmcpeak has quit IRC06:03
*** markvoelker has quit IRC06:03
*** markvoelker has joined #openstack-security06:04
*** markvoelker has quit IRC06:08
*** bdpayne has joined #openstack-security06:15
*** jamielennox is now known as jamielennox|away06:17
*** AndroUser2 has quit IRC06:41
*** AndroUser2 has joined #openstack-security06:42
*** AndroUser2 has quit IRC06:45
*** AndroUser2 has joined #openstack-security06:45
*** markvoelker has joined #openstack-security06:53
*** markvoelker has quit IRC06:58
openstackgerritMerged openstack/security-doc: Imported Translations from Transifex  https://review.openstack.org/15689107:30
*** bdpayne has quit IRC07:41
*** salv-orlando has quit IRC07:51
*** markvoelker has joined #openstack-security07:54
*** markvoelker has quit IRC07:59
*** JAHoagie has quit IRC08:07
*** salv-orlando has joined #openstack-security08:48
*** markvoelker has joined #openstack-security08:55
*** markvoelker has quit IRC09:00
*** salv-orlando has quit IRC09:01
*** salv-orlando has joined #openstack-security09:01
*** salv-orlando has quit IRC09:10
*** salv-orlando has joined #openstack-security09:10
*** salv-orlando has quit IRC09:32
*** salv-orlando has joined #openstack-security09:32
*** salv-orlando has quit IRC09:35
*** salv-orlando has joined #openstack-security09:36
*** salv-orlando has quit IRC09:45
*** salv-orlando has joined #openstack-security09:46
*** salv-orl_ has joined #openstack-security09:49
*** salv-orl_ has quit IRC09:51
*** salv-orlando has quit IRC09:51
*** salv-orlando has joined #openstack-security09:51
*** salv-orlando has quit IRC09:56
*** markvoelker has joined #openstack-security09:56
*** salv-orlando has joined #openstack-security09:56
*** markvoelker has quit IRC10:02
openstackgerritKATO Tomoyuki proposed openstack/security-doc: Modify capitaliation of Identity  https://review.openstack.org/15693810:50
*** salv-orlando has quit IRC12:20
*** markvoelker has joined #openstack-security13:11
*** singlethink has joined #openstack-security13:22
*** salv-orlando has joined #openstack-security13:25
*** wdelnour has joined #openstack-security13:37
*** wdelnour has left #openstack-security13:38
*** singlethink has quit IRC14:12
*** amrith is now known as _amrith_14:29
*** JAHoagie has joined #openstack-security14:34
*** singlethink has joined #openstack-security14:34
*** salv-orlando has quit IRC15:00
*** salv-orlando has joined #openstack-security15:02
*** dave-mccowan has joined #openstack-security15:13
*** JAHoagie has quit IRC15:15
*** _amrith_ is now known as amrith15:18
*** tmcpeak has joined #openstack-security15:33
*** voodookid has joined #openstack-security15:36
*** JAHoagie has joined #openstack-security15:48
*** JAHoagie has quit IRC15:53
*** bpokorny has quit IRC15:53
*** bpokorny has joined #openstack-security16:24
*** JAHoagie has joined #openstack-security16:27
*** tmcpeak has quit IRC16:35
*** AndroUser2 has quit IRC16:38
*** qg_ has joined #openstack-security16:47
*** tmcpeak has joined #openstack-security17:05
*** ljfisher has joined #openstack-security17:08
*** dave-mccowan has quit IRC17:17
*** qg_ has left #openstack-security17:22
*** browne has joined #openstack-security17:27
*** bdpayne has joined #openstack-security17:31
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests, currently not used. Adjusts names of file to be more accurate.  https://review.openstack.org/15707717:32
*** sicarie has joined #openstack-security17:32
*** ukbelch has joined #openstack-security17:33
*** bknudson has joined #openstack-security17:33
*** hyakuhei has joined #openstack-security17:33
*** hyakuhei has joined #openstack-security17:33
hyakuheihttps://etherpad.openstack.org/p/ossg-security-practices17:33
*** tkelsey has joined #openstack-security17:34
hyakuheihttps://etherpad.openstack.org/p/ossg-security-practices17:34
*** fletcher has joined #openstack-security17:57
fletcherCan someone repaste the link for me? :)17:58
brownettps://etherpad.openstack.org/p/ossg-security-practices17:58
*** PaulM has joined #openstack-security17:59
hyakuheibdpayne: http://governance.openstack.org/resolutions/20141202-project-structure-reform-spec.html18:00
*** bpokorny_ has joined #openstack-security18:01
*** bpokorny has quit IRC18:04
*** ljfisher has quit IRC18:09
*** ljfisher has joined #openstack-security18:12
elmikobdpayne: how's the meetup?18:30
*** ukbelch has quit IRC18:31
*** ukbelch has joined #openstack-security18:31
PaulMhttps://github.com/hyakuhei/OSSG-Security-Practices/blob/master/template.md18:42
*** bdpayne has quit IRC18:49
*** bdpayne has joined #openstack-security18:50
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests, currently not used. Adjusts names of file to be more accurate  https://review.openstack.org/15707719:08
*** tmcpeak has quit IRC19:08
PaulMspeaking of recruiters... this is amazing http://losangeles.craigslist.org/lac/web/4894818972.html19:10
PaulMthe list of required experience... the big $12/hr... the answering of phones19:11
*** sicarie has quit IRC19:14
*** bknudson has quit IRC19:14
*** tmcpeak has joined #openstack-security19:15
PaulMshell injection doc https://github.com/hyakuhei/OSSG-Security-Practices/blob/master/shell_injection.md19:16
*** sicarie has joined #openstack-security19:16
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests.  https://review.openstack.org/15707719:18
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707719:26
openstackgerritMerged openstack/security-doc: Reworded the sentence to make it clearer and less choppy  https://review.openstack.org/15503619:33
*** singlethink has quit IRC19:34
openstackgerritMerged openstack/security-doc: Modify capitaliation of Identity  https://review.openstack.org/15693819:36
*** bpokorny has joined #openstack-security19:43
PaulMhttp://remarkjs.com/#119:43
PaulM^^ javascript/markdown slide deck creator that lets you focus on writing content19:44
*** bpokorny_ has quit IRC19:46
elmikoPaulM: very cool19:47
PaulMI really really like it19:48
elmikoi take it lives as a group of files on the local host?19:48
elmikoah, nice, just found it in the docs ;)19:49
PaulMyeah, you can either load it dynamically or locally19:50
*** ukbelch has quit IRC19:50
PaulMhttp://lmgtfy.com/?q=lmgtfy19:54
PaulMhttps://github.com/hyakuhei/OSSG-Security-Practices/blob/master/pipes_to_avoid_shells.md19:57
*** bknudson has joined #openstack-security19:59
*** sicarie has quit IRC20:11
*** ljfisher has quit IRC20:11
*** ljfisher has joined #openstack-security20:11
*** ljfisher has quit IRC20:12
*** ljfisher has joined #openstack-security20:13
*** sicarie has joined #openstack-security20:13
openstackgerritNathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details.  https://review.openstack.org/15596320:19
*** ubuntu has joined #openstack-security20:20
*** ubuntu is now known as ukbelch20:20
ukbelchCan I get the etherpad link please?20:20
*** dave-mccowan has joined #openstack-security20:21
sicarie#link https://etherpad.openstack.org/p/ossg-kilo-meetup20:21
ukbelchty20:21
ukbelchwait, the other link20:21
hyakuhei#link https://etherpad.openstack.org/p/ossg-security-practices20:22
hyakuheisicarie: ukbelch ^20:22
sicariethanks - I guess us doc guys aren't cool enough to have the 'security practices' link20:22
hyakuheistop wasting valuable spell checking time!20:25
openstackgerritNathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details.  https://review.openstack.org/15596320:34
*** singlethink has joined #openstack-security20:38
*** sicarie has quit IRC20:39
*** sicarie has joined #openstack-security20:45
*** tkelsey has quit IRC20:48
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707720:50
openstackgerritBryan D. Payne proposed openstack/security-doc: Update TLS config recommendations  https://review.openstack.org/15714621:05
openstackgerritGrant Murphy proposed stackforge/bandit: (WIP) Allow user supplied output format  https://review.openstack.org/15714821:11
openstackgerritNathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details.  https://review.openstack.org/15596321:12
openstackgerritDoug Chivers proposed openstack/security-doc: Cleaned up introduction to SSL/TLS section  https://review.openstack.org/15714921:12
*** tmcpeak has quit IRC21:14
*** tmcpeak has joined #openstack-security21:15
*** amrith is now known as _amrith_21:16
openstackgerritDoug Chivers proposed openstack/security-doc: Cleaned up introduction to SSL/TLS section  https://review.openstack.org/15714921:28
openstackgerritBryan D. Payne proposed openstack/security-doc: Update TLS config recommendations  https://review.openstack.org/15714621:30
*** dave-mccowan has quit IRC21:38
openstackgerritBryan D. Payne proposed openstack/security-doc: Update TLS config recommendations  https://review.openstack.org/15714621:47
bdpaynegmurphy I'd appreciate your eyes on https://review.openstack.org/157146, which aims to resolve a bug you opened on the security guide21:48
gmurphybdpayne: on it21:49
openstackgerritNathaniel Dillon proposed openstack/security-doc: Adding clarification to Networking's security guide references  https://review.openstack.org/15716221:50
openstackgerritTravis McPeak proposed stackforge/bandit: Removing warning about modules not installed in sys.path  https://review.openstack.org/15716321:51
*** jamielennox|away is now known as jamielennox21:51
PaulMhttp://longitudeoakland.com/21:54
bdpaynehyakuhei I'll need your eyes on this for a security core review: https://review.openstack.org/15714621:56
openstackgerritTravis McPeak proposed stackforge/bandit: Removing warning about modules not installed in sys.path  https://review.openstack.org/15716321:56
openstackgerritPriti Desai proposed openstack/security-doc: Adding Security Checklist  https://review.openstack.org/15716421:56
*** ljfisher has quit IRC21:57
*** ljfisher has joined #openstack-security21:57
*** ljfisher has quit IRC21:57
*** sicarie has quit IRC21:58
*** ljfisher has joined #openstack-security22:01
*** sicarie has joined #openstack-security22:03
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707722:03
*** hyakuhei has quit IRC22:14
*** hyakuhei has joined #openstack-security22:14
*** tmcpeak has quit IRC22:20
*** tmcpeak has joined #openstack-security22:20
*** sicarie has quit IRC22:20
openstackgerritTravis McPeak proposed stackforge/bandit: Removing warning about modules not installed in sys.path  https://review.openstack.org/15716322:24
*** sicarie has joined #openstack-security22:24
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707722:25
openstackgerritRob Fletcher proposed stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707722:30
hyakuheiSo I just found this dashboard in Gerrit which I’m sure isn’t new to many of you but was to me. It allows you to see things that need a final +2 etc https://review.openstack.org/#/projects/stackforge/anchor,dashboards/important-changes:review-inbox-dashboard22:43
openstackgerritMerged stackforge/bandit: Adds decorator methods for tests  https://review.openstack.org/15707722:44
brownehttps://github.com/openstack/nova/blob/master/etc/nova/rootwrap.d/compute.filters22:45
openstackgerritMerged stackforge/bandit: Removing warning about modules not installed in sys.path  https://review.openstack.org/15716322:46
*** bpokorny_ has joined #openstack-security22:48
*** bpokorny has quit IRC22:50
*** anteaya has joined #openstack-security22:51
*** openstackgerrit has quit IRC23:00
*** openstackgerrit has joined #openstack-security23:00
*** ukbelch has quit IRC23:05
*** tmcpeak has quit IRC23:05
*** tmcpeak has joined #openstack-security23:05
bknudsonhttps://etherpad.openstack.org/p/ossg-rootwrap23:08
*** pdesai has joined #openstack-security23:09
openstackgerritMerged stackforge/anchor: Refactor controller code to use RestController  https://review.openstack.org/15686923:10
openstackgerritMerged stackforge/anchor: Simplify auth code in POST /sign  https://review.openstack.org/15687423:11
openstackgerritMerged stackforge/anchor: Make certificate_ops use abort, not return values  https://review.openstack.org/15690123:11
*** singlethink has quit IRC23:11
*** bpokorny_ has quit IRC23:16
openstackgerritTravis McPeak proposed stackforge/bandit: Removing un-reachable code.  Since we require one or more arguments of files on the command line, this else condition was never reachable.  https://review.openstack.org/15718623:21
bknudsonhttps://review.openstack.org/#/c/15563123:21
*** fletcher has quit IRC23:24
openstackgerritTravis McPeak proposed stackforge/bandit: Removing un-reachable code  https://review.openstack.org/15718623:26
*** tkelsey has joined #openstack-security23:26
bdpaynehttps://python-jsonschema.readthedocs.org/en/latest/23:27
*** bpokorny has joined #openstack-security23:30
openstackgerritBryan D. Payne proposed stackforge/anchor: Make static password checking closer to constant time  https://review.openstack.org/15686023:32
*** ljfisher has quit IRC23:32
*** gmurphy has left #openstack-security23:34
*** ljfisher has joined #openstack-security23:35
brownehttps://wiki.openstack.org/wiki/Rootwrap23:37
openstackgerritPriti Desai proposed openstack/security-doc: Adding Security Checklist  https://review.openstack.org/15716423:44
*** pdesai has quit IRC23:59

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!