Tuesday, 2015-03-10

*** bdpayne has quit IRC00:45
*** fletcher has quit IRC00:50
*** browne has quit IRC01:25
*** bpokorny_ has quit IRC01:28
*** bpokorny has joined #openstack-security01:49
*** vozcelik has joined #openstack-security01:56
*** vozcelik has quit IRC02:04
*** vozcelik has joined #openstack-security02:06
*** vozcelik has quit IRC02:07
*** salv-orlando has quit IRC02:20
*** vozcelik has joined #openstack-security02:27
*** bpokorny has quit IRC02:33
*** browne has joined #openstack-security02:37
*** vozcelik has quit IRC02:38
*** pdesai has joined #openstack-security02:39
*** vozcelik has joined #openstack-security02:40
*** pdesai has quit IRC02:40
*** vozcelik has quit IRC02:42
*** bpokorny has joined #openstack-security02:42
*** vozcelik has joined #openstack-security02:44
*** vozcelik has quit IRC02:47
*** markvoelker has joined #openstack-security02:51
*** bpokorny has quit IRC02:53
*** bpokorny has joined #openstack-security02:53
*** dave-mccowan has joined #openstack-security03:00
*** dave-mcc_ has joined #openstack-security03:01
*** dave-mccowan has quit IRC03:04
*** openfly_ has quit IRC03:09
*** salv-orlando has joined #openstack-security03:21
*** salv-orlando has quit IRC03:26
*** pdesai has joined #openstack-security03:38
*** dave-mcc_ has quit IRC03:39
*** tmcpeak has quit IRC03:39
*** markvoelker has quit IRC03:53
*** markvoelker has joined #openstack-security03:53
*** markvoelker has quit IRC03:57
*** salv-orlando has joined #openstack-security04:01
*** salv-orlando has quit IRC04:14
*** markvoelker has joined #openstack-security04:24
*** markvoelker has quit IRC04:41
*** openfly_ has joined #openstack-security05:06
*** salv-orlando has joined #openstack-security05:13
*** salv-orlando has quit IRC05:19
*** salv-orlando has joined #openstack-security05:22
*** salv-orlando has quit IRC05:26
*** markvoelker has joined #openstack-security05:38
*** salv-orlando has joined #openstack-security06:08
*** salv-orlando has quit IRC06:08
*** salv-orlando has joined #openstack-security06:28
*** salv-orlando has quit IRC06:38
*** salv-orlando has joined #openstack-security06:54
*** salv-orlando has quit IRC06:59
*** pdesai has quit IRC07:04
*** browne has quit IRC07:11
*** elo1 has joined #openstack-security07:19
*** tkelsey has joined #openstack-security07:33
*** openstackgerrit has quit IRC07:35
*** openstackgerrit has joined #openstack-security07:35
*** tkelsey has quit IRC07:38
*** tkelsey has joined #openstack-security07:39
*** hyakuhei has joined #openstack-security07:55
*** hyakuhei has quit IRC07:55
*** hyakuhei has joined #openstack-security08:02
*** hyakuhei has quit IRC08:24
*** hyakuhei has joined #openstack-security08:26
*** salv-orlando has joined #openstack-security08:42
*** salv-orlando has quit IRC08:46
*** elo1 has quit IRC08:48
*** markvoelker has quit IRC09:22
*** hyakuhei has quit IRC09:25
*** hyakuhei has joined #openstack-security09:42
*** hyakuhei has left #openstack-security10:30
*** tmcpeak has joined #openstack-security10:36
*** salv-orlando has joined #openstack-security10:48
*** markvoelker has joined #openstack-security10:53
*** salv-orlando has quit IRC10:53
*** salv-orlando has joined #openstack-security10:55
*** Krast has quit IRC11:09
openstackgerritTim Kelsey proposed stackforge/anchor: Fixes the "No handler for logger ..." message spam  https://review.openstack.org/16297812:12
*** markvoelker has quit IRC12:38
*** markvoelker has joined #openstack-security12:39
openstackgerritTim Kelsey proposed stackforge/anchor: Adding more tests against X509 certificate code  https://review.openstack.org/15852112:40
*** markvoelker has quit IRC12:43
*** bknudson has joined #openstack-security12:56
*** markvoelker has joined #openstack-security13:13
openstackgerritTim Kelsey proposed stackforge/anchor: Adding more tests against X509 certificate code  https://review.openstack.org/15852113:26
*** singlethink has joined #openstack-security13:34
*** salv-orlando has quit IRC13:46
*** salv-orlando has joined #openstack-security13:48
*** vozcelik has joined #openstack-security14:26
*** voodookid has joined #openstack-security14:33
*** markvoelker has quit IRC14:37
*** markvoelker has joined #openstack-security14:37
*** voodookid has quit IRC14:38
*** markvoelker has quit IRC14:42
*** markvoelker has joined #openstack-security14:49
*** voodookid has joined #openstack-security14:54
*** dwyde has joined #openstack-security14:55
*** bpokorny has quit IRC14:57
*** elo1 has joined #openstack-security15:01
openstackgerritMerged stackforge/anchor: Fixes the "No handler for logger ..." message spam  https://review.openstack.org/16297815:03
*** sicarie has joined #openstack-security15:05
*** bpokorny has joined #openstack-security15:08
tmcpeaknkinder: you around?15:11
*** browne has joined #openstack-security15:12
openstackgerritTravis McPeak proposed openstack/security-doc: Add OSSN-0045 for FREAK attack on TLS connections  https://review.openstack.org/16304115:15
*** markvoelker has quit IRC15:59
*** markvoelker has joined #openstack-security16:00
*** elo1 has quit IRC16:00
*** markvoelker has quit IRC16:05
*** tkelsey has quit IRC16:07
*** browne has quit IRC16:08
*** Manj-811-Xfce3 has joined #openstack-security16:32
*** Manj-811-Xfce3 has quit IRC16:34
*** bdpayne has joined #openstack-security16:40
*** browne has joined #openstack-security16:50
*** dwyde has quit IRC16:52
sicariebdpayne: you around?17:02
bdpaynehey, yeah17:02
*** markvoelker has joined #openstack-security17:09
*** markvoelker has quit IRC17:19
*** markvoelker has joined #openstack-security17:19
openstackgerritTravis McPeak proposed openstack/security-doc: Add OSSN-0045 for FREAK attack on TLS connections  https://review.openstack.org/16304117:19
*** markvoelker_ has joined #openstack-security17:21
*** markvoelker has quit IRC17:24
openstackgerritTravis McPeak proposed openstack/security-doc: Add OSSN-0045 for FREAK attack on TLS connections  https://review.openstack.org/16304117:26
*** dave-mccowan has joined #openstack-security17:28
*** sicarie has quit IRC17:46
*** pdesai has joined #openstack-security17:55
*** pdesai has quit IRC17:58
*** pdesai has joined #openstack-security18:02
*** pdesai1 has joined #openstack-security18:03
*** sicarie has joined #openstack-security18:03
*** bpokorny_ has joined #openstack-security18:04
*** pdesai2 has joined #openstack-security18:06
*** pdesai has quit IRC18:06
*** bpokorny has quit IRC18:06
*** pdesai1 has quit IRC18:09
*** dwyde has joined #openstack-security18:09
openstackgerritTravis McPeak proposed openstack/security-doc: Add OSSN-0045 for FREAK attack on TLS connections  https://review.openstack.org/16304118:12
*** dave-mccowan has quit IRC18:13
openstackgerritTravis McPeak proposed openstack/security-doc: Add OSSN-0045 for FREAK attack on TLS connections  https://review.openstack.org/16304118:16
*** bpokorny has joined #openstack-security18:17
*** dave-mccowan has joined #openstack-security18:20
*** bpokorny_ has quit IRC18:20
*** pdesai has joined #openstack-security18:22
*** pdesai has quit IRC18:25
*** pdesai2 has quit IRC18:26
*** pdesai has joined #openstack-security18:26
*** pdesai has quit IRC18:30
*** pdesai has joined #openstack-security18:37
*** bpokorny_ has joined #openstack-security18:43
openstackgerritNathaniel Dillon proposed openstack/security-doc: Moving case study for Secure Communication to the end of the chapter  https://review.openstack.org/16312918:46
*** bpokorny has quit IRC18:46
*** bpokorny has joined #openstack-security18:56
*** bpokorny_ has quit IRC18:59
*** markvoelker_ has quit IRC19:01
openstackgerritNathaniel Dillon proposed openstack/security-doc: Moving System documentation intro 'up' to chapter file  https://review.openstack.org/16314019:02
*** dave-mccowan has quit IRC19:04
nkindertmcpeak: hey, missed your ping earlier19:51
nkindertmcpeak: what's up?19:52
nkindertmcpeak: I have your OSSN review on my list to go through today19:52
tmcpeaknkinder: cool, I was going to check and see if you know any resources I can point people to to configure Horizon supported crypto19:55
tmcpeaklink I sent is ok but not great19:55
nkindertmcpeak: well, it's just going to be httpd config (mod_ssl most likely)19:56
nkindertmcpeak: basics of cipher config are here - http://httpd.apache.org/docs/2.4/ssl/ssl_howto.html19:58
tmcpeaknkinder: cool, thank you20:06
tmcpeaknkinder: ok, I think this information is already on the link that I included20:06
nkindertmcpeak: ah, ok.  Didn't get into all of your links yet20:07
tmcpeaksure no worries20:08
tmcpeakif there is any better links that you know of please drop them in the review :)20:08
openstackgerritDavid Wyde proposed stackforge/bandit: Fix a leftover tuple unpacking in reporting code  https://review.openstack.org/16316920:36
*** pdesai1 has joined #openstack-security21:00
*** pdesai has quit IRC21:01
*** bknudson has quit IRC22:04
*** dwyde has quit IRC22:06
*** dwyde has joined #openstack-security22:13
*** sicarie has left #openstack-security22:20
*** singlethink has quit IRC22:31
*** fletcher has joined #openstack-security22:35
fletcherheyo22:35
fletcherany bandit peeps around?22:35
fletchertmcpeak ^22:35
dwydefletcher: I’m not sure if I qualify :-)22:40
fletcherhey! dwyde, most definitely, I didn't see ya there22:40
fletcherIt ends up bandit is smarter than I am so It's fairly moot, but22:41
chair6i'm here too, kinda :)22:41
fletcherI was confused as to why this was flagging random as bad22:41
fletcherhttp://pastebin.com/1ZCBCXex22:41
fletcherchair6! it's always hard to say since you're lways here :)22:41
chair6professional idler is my secondary title22:42
fletcherlol22:42
dwydemy understanding is that the random.Random() class is not cryptographically secure22:42
dwydeand random.<func> uses that22:42
fletcheryep, that's exactly it22:42
dwyderandom.SecureRandom() is cryptographically secure22:42
fletcherI didn't realize choice was from random22:42
fletcherso I was confused22:42
dwydegotcha22:43
chair6yeah, we could better explain that difference in the warning that the test generates22:44
*** pdesai1 has quit IRC22:51
*** pdesai has joined #openstack-security22:54
*** dwyde has quit IRC23:11
*** voodookid has quit IRC23:18
*** bdpayne_ has joined #openstack-security23:26
*** ChanServ sets mode: +o bdpayne23:26
*** pdesai has quit IRC23:27
*** bdpayne_ has quit IRC23:28
*** bdpayne has quit IRC23:29
*** fletcher has quit IRC23:30
*** pdesai has joined #openstack-security23:33
*** pdesai has quit IRC23:37

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!