Friday, 2015-04-03

*** tkelsey has joined #openstack-security00:32
*** tkelsey has quit IRC00:37
*** bknudson has joined #openstack-security00:43
*** redrobot has quit IRC00:59
*** redrobot has joined #openstack-security01:06
*** redrobot is now known as Guest4807401:06
*** bpokorny has quit IRC01:40
*** markvoelker has quit IRC02:01
*** markvoelker has joined #openstack-security02:03
*** ljfisher has joined #openstack-security02:05
*** tmcpeak has quit IRC02:34
*** ljfisher has quit IRC02:51
*** tkelsey has joined #openstack-security04:33
*** tkelsey has quit IRC04:38
*** dave-mccowan has quit IRC05:34
openstackgerritOpenStack Proposal Bot proposed openstack/security-doc: Imported Translations from Transifex  https://review.openstack.org/16962306:01
openstackgerritMerged openstack/security-doc: Imported Translations from Transifex  https://review.openstack.org/16962306:15
openstackgerritOpenStack Proposal Bot proposed openstack/security-doc: Updated from openstack-manuals  https://review.openstack.org/17028606:22
*** markvoelker has quit IRC06:29
*** aswadr has joined #openstack-security06:32
*** markvoelker has joined #openstack-security06:59
*** markvoelker has quit IRC07:04
*** markvoelker has joined #openstack-security08:00
*** markvoelker has quit IRC08:05
*** salv-orlando has quit IRC08:40
*** salv-orlando has joined #openstack-security08:57
*** markvoelker has joined #openstack-security09:01
*** markvoelker has quit IRC09:05
*** tkelsey has joined #openstack-security09:33
*** tkelsey has quit IRC09:38
*** markvoelker has joined #openstack-security10:02
*** markvoelker has quit IRC10:06
*** aswadr has quit IRC10:13
*** tmcpeak has joined #openstack-security10:13
*** markvoelker has joined #openstack-security11:02
*** markvoelker has quit IRC11:07
*** markvoelker has joined #openstack-security12:03
*** markvoelker has quit IRC12:08
*** markvoelker has joined #openstack-security12:21
*** dave-mccowan has joined #openstack-security12:36
*** singlethink has joined #openstack-security12:53
*** bknudson has quit IRC13:00
*** tmcpeak has quit IRC13:08
*** tmcpeak has joined #openstack-security13:10
*** bknudson has joined #openstack-security13:30
*** openstackgerrit has quit IRC13:36
*** openstackgerrit has joined #openstack-security13:36
*** tmcpeak has quit IRC13:38
*** tmcpeak has joined #openstack-security13:40
*** edmondsw has joined #openstack-security14:12
*** voodookid has joined #openstack-security14:32
*** voodookid has quit IRC14:37
*** openstackgerrit has quit IRC14:39
*** openstackgerrit has joined #openstack-security14:39
*** voodookid has joined #openstack-security14:42
*** dwyde has joined #openstack-security14:53
*** bpokorny has joined #openstack-security14:59
*** sicarie has joined #openstack-security15:04
*** salv-orlando has quit IRC15:20
openstackgerritNathaniel Dillon proposed openstack/security-doc: Adding new introudctions for chapters missing one  https://review.openstack.org/16488315:24
openstackgerritOpenStack Proposal Bot proposed openstack/security-doc: Updated from openstack-manuals  https://review.openstack.org/17028615:35
*** tkelsey has joined #openstack-security15:35
*** tkelsey has quit IRC15:40
bknudsonthe bandit experimental job ran on keystone: http://logs.openstack.org/30/157930/6/experimental/gate-keystone-tox-bandit/3674425/console.html15:41
bknudsontmcpeak: ^15:41
bknudsonit's an easter miracle.15:41
tmcpeakbknudson: sweeeeeet!15:41
tmcpeak:D15:42
tmcpeakbknudson: you know what's next right?15:42
tmcpeaktry to check in something bogus and see if it catches it :)15:43
bknudsony, I can post that as a follow-on to https://review.openstack.org/#/c/157930/15:43
tmcpeakI'd be really excited to see that :)15:45
tmcpeakbknudson: great work!!!15:45
bknudsontmcpeak: what's a good vulnerability? try to openssl something?15:46
bknudsonI mean open a pipe15:46
tmcpeakbknudson: you can do subprocess.Popen("xxx", shell=True)15:46
tmcpeakor…15:47
tmcpeaksubprocess.Popen("touch abc; cp abc /tmp", shell=True) should catch two things15:47
bknudsonI'll try it.15:48
tmcpeakbknudson: sweet15:48
bknudsonhttps://review.openstack.org/#/c/170547/ -- started check experimental on it so we'll see if it FAILS15:52
bknudsonif I can convince the rest of keystone that this is working then should be able to submit another infra change to make it part of the regular gate (nonvoting for now)15:56
tmcpeakbknudson: that would be amazing :)15:56
bknudsonit's happening.15:57
tmcpeak:D15:58
bknudsonis there an option to disable the escape codes in the output?15:58
bknudsonwould look better in the log output16:01
tmcpeakbknudson: yeah, one sec16:01
tmcpeakbknudson: hmm, don't see the obvious way that I thought there was to do that…16:05
tmcpeakmight have to add that16:05
bknudsonno problem16:06
bknudsonsomebody might ask about it... will just tell them I asked and it's not supported yet.16:06
tmcpeakbknudson: yeah, could have swore we had one but not finding it16:06
tmcpeakI can do some more digging in a bit..16:06
tmcpeakit's probably a very simple fix16:07
tmcpeakyou could just remove the color codes in config file, but that isn't a clean solution16:07
openstackgerritNathaniel Dillon proposed openstack/security-doc: Adding new introudctions for chapters missing one  https://review.openstack.org/16488316:46
*** gabriela has joined #openstack-security16:48
gabrielak16:49
*** ChanServ sets mode: +o tmcpeak16:49
tmcpeakbknudson: hurry up Bandit gate :D17:05
bknudsontmcpeak: the bandit part finished: https://jenkins04.openstack.org/job/gate-keystone-tox-bandit/1/console17:06
tmcpeakbknudson: nice!17:06
tmcpeakwe'll add a command line option to disable colors (I honestly thought we already had one), but meanwhile you can accomplish the same by going into Bandit config and just setting the colors to empty string17:07
bknudsontmcpeak: I added this topic to the keystone meeting next wk, so if they're ok with the results I'll post the change to make the job part of the regular gate (non-voting)17:07
tmcpeakbknudson: woooo!17:07
tmcpeakwhen was that again?17:07
tmcpeakI'll show up too17:07
tmcpeak1 PST?17:08
tmcpeakTues17:08
tmcpeakI guess I can google :)17:08
bknudsonTuesday -- should be 11 for you17:08
tmcpeakgot it :)17:08
dwydetmcpeak: I’m a little late here, but I think that color codes aren’t printed if you specify an output file. That might not help here, but that might be what you remembered :-)17:13
tmcpeakdwyde: ahh, yeah, that must be it17:14
bknudsonfigured I might as well post the infra change: https://review.openstack.org/#/c/170569/17:19
gabrielaam17:24
tmcpeakbknudson: you're on fire17:25
* bknudson dumps water on self17:25
openstackgerritMerged openstack/security-doc: Fix missing reference  https://review.openstack.org/16857517:26
*** jhonangel123 has joined #openstack-security17:31
*** gabriela has left #openstack-security17:32
*** jhonangel123 has quit IRC17:38
bknudsontmcpeak:17:38
bknudson(12:37:22 PM) morganfainberg: I do recommend clearly saying xxx following is a list of failures.17:38
bknudson(12:37:30 PM) morganfainberg: Not just "results"17:38
tmcpeakbknudson: we only output failures though17:39
*** jhonangel123 has joined #openstack-security17:39
tmcpeakthere will be no results without failures17:39
bknudsonI guess it's not obvious to everybody that results are failures.17:39
tmcpeakbknudson: hmm, interesting point17:39
tmcpeakwe should probably be more clear :)17:39
tmcpeakI'll add to the launchpad17:39
bknudsonthanks17:39
tmcpeakthank you17:40
bknudsonI wouldn't expect either of these are a requirement for the gate job.17:40
bknudsonget it in and then we can improve it.17:40
tmcpeakcool, yeah that's my general thinking too17:40
*** bknudson has quit IRC17:48
*** jhonangel123 has quit IRC17:58
*** dwyde has quit IRC17:58
*** jhonangel123 has joined #openstack-security17:58
*** bpokorny_ has joined #openstack-security18:02
*** bpokorny has quit IRC18:04
*** ChanServ sets mode: -o tmcpeak18:09
*** singlethink has quit IRC18:14
*** dwyde has joined #openstack-security18:36
*** jhonangel123 has quit IRC18:47
*** tmcpeak has quit IRC18:50
*** dwyde has left #openstack-security18:55
*** tmcpeak has joined #openstack-security18:55
openstackgerritOpenStack Proposal Bot proposed openstack/security-doc: Updated from openstack-manuals  https://review.openstack.org/17028619:03
*** ljfisher has joined #openstack-security19:11
*** mitz has quit IRC19:28
*** mitz has joined #openstack-security19:37
*** tkelsey has joined #openstack-security19:37
*** tkelsey has quit IRC19:42
*** dwyde has joined #openstack-security19:43
*** bpokorny has joined #openstack-security20:01
*** tmcpeak has quit IRC20:02
*** tmcpeak has joined #openstack-security20:04
*** bpokorny_ has quit IRC20:04
*** tmcpeak has quit IRC20:09
*** tmcpeak has joined #openstack-security20:10
*** tmcpeak has quit IRC20:16
*** tmcpeak has joined #openstack-security20:18
*** dwyde has quit IRC20:47
*** gabriela has joined #openstack-security20:49
gabrielan20:50
*** tmcpeak has quit IRC20:58
*** tmcpeak has joined #openstack-security21:01
sicarieljfisher: I started reworking the federal case study at the bottom of the etherpad21:06
*** dwyde has joined #openstack-security21:06
sicarieI'd be very interested in any input you might have on it21:07
gabrielahello21:21
*** dwyde has quit IRC21:37
*** gabriela has left #openstack-security21:45
*** edmondsw has quit IRC21:53
*** voodookid has quit IRC22:52
*** sicarie has left #openstack-security23:06
*** sicarie has quit IRC23:06
*** tmcpeak has quit IRC23:07
*** Viswanath has joined #openstack-security23:31
*** tkelsey has joined #openstack-security23:38
*** Viswanath has quit IRC23:40
*** tkelsey has quit IRC23:43
*** elo1 has joined #openstack-security23:44
*** elo1 has quit IRC23:49

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!