Tuesday, 2015-05-12

*** bknudson has joined #openstack-security00:00
*** sdake has quit IRC00:01
*** bpokorny has quit IRC00:56
*** bpokorny has joined #openstack-security01:10
*** redrobot has quit IRC01:25
*** redrobot has joined #openstack-security01:26
*** redrobot is now known as Guest2030601:26
*** dstanek has quit IRC01:26
*** dstanek has joined #openstack-security01:26
*** browne has quit IRC01:39
*** bknudson has quit IRC02:08
*** browne has joined #openstack-security02:13
*** elo1 has quit IRC02:51
*** dstanek has quit IRC03:16
*** dstanek has joined #openstack-security03:19
*** bpokorny has quit IRC03:23
*** elo1 has joined #openstack-security03:49
*** bpokorny has joined #openstack-security03:57
*** elo1 has quit IRC03:59
*** dave-mccowan has quit IRC03:59
*** bpokorny has quit IRC04:03
*** bpokorny has joined #openstack-security04:21
*** bpokorny has quit IRC04:29
*** sdake_ has quit IRC04:37
*** markvoelker has joined #openstack-security04:54
*** dstanek has quit IRC06:08
*** dstanek has joined #openstack-security06:09
*** markvoelker has quit IRC06:15
*** markvoelker has joined #openstack-security06:18
*** hyakuhei has joined #openstack-security06:28
*** hyakuhei has quit IRC06:28
*** hyakuhei has joined #openstack-security06:28
*** hyakuhei has quit IRC06:32
*** sdake_ has joined #openstack-security06:38
*** elo1 has joined #openstack-security06:52
*** browne has quit IRC07:15
*** sdake_ has quit IRC07:23
*** tkelsey has joined #openstack-security07:28
*** openstack has joined #openstack-security07:54
openstackgerritvenkatamahesh proposed openstack/security-doc: Fix bug 1447302, sentences under Domain names were modified.  https://review.openstack.org/18183208:17
openstackbug 1447302 in openstack-manuals "Chapter 7. Dashboard in OpenStack Security Guide - Malformed Sentences" [Low,In progress] https://launchpad.net/bugs/1447302 - Assigned to venkatamahesh (venkatamaheshkotha)08:17
*** aswadr has joined #openstack-security09:51
*** BertrandN has joined #openstack-security09:56
*** BertrandN has left #openstack-security09:56
*** elo1 has quit IRC10:07
*** tmcpeak has joined #openstack-security10:23
*** dave-mccowan has joined #openstack-security12:26
*** singlethink has joined #openstack-security12:57
*** singlethink has quit IRC12:57
*** singlethink has joined #openstack-security13:00
*** sdake has joined #openstack-security13:01
*** sdake_ has joined #openstack-security13:03
*** sdake has quit IRC13:06
*** sdake_ is now known as sdake13:18
*** asrangne has joined #openstack-security13:47
*** browne has joined #openstack-security13:50
*** aswadr has quit IRC13:50
*** markvoelker has quit IRC13:53
*** bknudson has joined #openstack-security13:57
*** singlethink has quit IRC14:16
*** singlethink has joined #openstack-security14:20
*** Guest20306 is now known as redrobot14:39
*** elo1 has joined #openstack-security14:40
*** elo1 has quit IRC14:40
*** sdake_ has joined #openstack-security14:49
*** sdake has quit IRC14:52
*** browne has quit IRC15:00
*** aswadr has joined #openstack-security15:14
*** asrangne has quit IRC15:17
*** aswadr has quit IRC15:20
*** barra204 has joined #openstack-security15:21
*** shakamunyi has joined #openstack-security15:22
*** bpokorny has joined #openstack-security15:22
*** dwyde has joined #openstack-security15:33
*** dwyde_ has joined #openstack-security15:37
*** dwyde has quit IRC15:37
*** dwyde_ is now known as dwyde15:37
*** dwyde has left #openstack-security16:04
*** openstackgerrit_ has quit IRC16:11
*** browne has joined #openstack-security16:33
*** singleth_ has joined #openstack-security16:58
*** singlethink has quit IRC17:02
*** Guest31730 has quit IRC17:02
*** smu_ has joined #openstack-security17:04
*** smu_ is now known as Guest5618017:05
*** bpokorny has quit IRC17:07
*** bpokorny has joined #openstack-security17:08
*** sdake has joined #openstack-security17:11
*** dwyde has joined #openstack-security17:14
*** sdake_ has quit IRC17:14
*** dwyde has quit IRC17:24
*** dwyde has joined #openstack-security17:45
*** tkelsey has quit IRC18:22
gmurphydstufft: got a sec?18:49
*** dwyde has quit IRC18:54
dstufftgmurphy: sup19:04
gmurphyso i wanted to get your opinion on something..19:05
gmurphyi've been digging into warehouse a little.19:05
gmurphyand i'm interested in maybe adding the ability to track package versions with known vulnerabilities (e.g. with a CVE assigned)19:06
gmurphybut then i thought maybe this is something that would be better discussed as a PEP.19:06
gmurphybecause ideally it would be nice if the tooling e.g. pip would warn if you've pinned to a version of something with a known vuln19:08
gmurphydstufft: what are your thoughts around this?19:08
*** SunnyRainbow has joined #openstack-security19:09
gmurphyright now there are some efforts to try and track this information. e.g. https://github.com/victims/victims-cve-db/tree/master/database/python19:12
*** openstackgerrit_ has joined #openstack-security19:15
gmurphybut this is incomplete.. i feel like it would get more traction being included in the next generation of tooling..19:16
dstufftgmurphy: in the future I want to be able to do this, it'll likely not be on my personal radar until after Warehouse is done and we start working on a new API for pip to use19:16
gmurphysure. i guess my question is 'vulnerability tracking' something that would typically be pep worthy.. or should i just try to hack something together and submit a pr?19:19
gmurphynot overly familiar as to how such changes make there way into python core infrastructure etc..19:20
openstackgerritMichael Simo proposed openstack/security-doc: Fix grammatical errors in security-guide/networking-services  https://review.openstack.org/17801619:22
gmurphydw. i'll ask on python-list19:25
openstackgerritMichael Simo proposed openstack/security-doc: Fix grammatical errors in security-guide/networking-services  https://review.openstack.org/17801619:25
*** openstackgerrit_ has quit IRC19:25
*** shakamunyi has quit IRC19:35
*** barra204 has quit IRC19:36
*** dwyde has joined #openstack-security19:42
*** markvoelker has joined #openstack-security19:45
*** shakamunyi has joined #openstack-security19:49
*** barra204 has joined #openstack-security19:49
openstackgerritNathaniel Dillon proposed openstack/security-doc: Updating Alice's case studies for intro, communication, and docs  https://review.openstack.org/18144919:57
openstackgerritNathaniel Dillon proposed openstack/security-doc: Updating Alice's case studies for intro, communication, and docs  https://review.openstack.org/18144920:05
*** ignossi has joined #openstack-security20:07
*** singleth_ has quit IRC20:17
*** singlethink has joined #openstack-security20:24
*** markvoelker has quit IRC20:30
*** sicarie has joined #openstack-security20:30
*** openstackgerrit has quit IRC20:37
*** openstackgerrit has joined #openstack-security20:37
openstackgerritMerged openstack/security-doc: Fix grammatical errors in security-guide/networking-services  https://review.openstack.org/17801620:42
*** dwyde has left #openstack-security21:15
*** dwyde has joined #openstack-security21:15
*** dwyde has quit IRC21:15
*** elo1 has joined #openstack-security21:21
*** SunnyRainbow has quit IRC21:30
*** singlethink has quit IRC21:33
*** salv-orlando has quit IRC21:42
*** singlethink has joined #openstack-security22:05
openstackgerritNathaniel Dillon proposed openstack/security-doc: Updating Alice's case study for Networking  https://review.openstack.org/18206422:12
*** bknudson has quit IRC22:18
*** markvoelker has joined #openstack-security22:24
*** sdake_ has joined #openstack-security22:29
*** sdake has quit IRC22:33
*** sicarie has quit IRC22:35
*** singlethink has quit IRC22:38
*** salv-orlando has joined #openstack-security22:43
*** sdake has joined #openstack-security22:43
*** salv-orlando has quit IRC22:46
*** sdake_ has quit IRC22:46
*** tmcpeak has quit IRC22:52
*** tmcpeak has joined #openstack-security23:03
*** markvoelker has quit IRC23:08
*** SunnyRainbow has joined #openstack-security23:12
*** SunnyRainbow has quit IRC23:38

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!