*** jhfeng has quit IRC | 00:08 | |
*** salv-orlando has quit IRC | 00:31 | |
*** edmondsw has quit IRC | 00:45 | |
*** bpokorny has quit IRC | 00:57 | |
*** browne has quit IRC | 01:12 | |
*** sdake_ has quit IRC | 01:15 | |
*** sdake has joined #openstack-security | 01:16 | |
*** salv-orlando has joined #openstack-security | 01:33 | |
*** salv-orlando has quit IRC | 01:41 | |
*** tjt263 has quit IRC | 01:43 | |
*** bpokorny has joined #openstack-security | 02:03 | |
*** wil1 has joined #openstack-security | 02:23 | |
*** wil1 has left #openstack-security | 02:25 | |
*** salv-orlando has joined #openstack-security | 02:40 | |
*** browne has joined #openstack-security | 02:41 | |
*** sdake has quit IRC | 02:48 | |
*** salv-orlando has quit IRC | 02:49 | |
*** pdesai has joined #openstack-security | 02:51 | |
*** pdesai has quit IRC | 02:52 | |
*** bpokorny has quit IRC | 02:53 | |
*** bpokorny has joined #openstack-security | 03:00 | |
*** sdake has joined #openstack-security | 03:16 | |
*** sdake_ has joined #openstack-security | 03:38 | |
*** sdake has quit IRC | 03:41 | |
*** salv-orlando has joined #openstack-security | 03:50 | |
*** bpokorny has quit IRC | 03:53 | |
*** salv-orl_ has joined #openstack-security | 03:57 | |
*** salv-orlando has quit IRC | 03:57 | |
*** salv-orl_ has quit IRC | 04:01 | |
*** bpokorny has joined #openstack-security | 04:03 | |
openstackgerrit | Eric Brown proposed openstack/bandit: Add a confidence filter https://review.openstack.org/207258 | 04:03 |
---|---|---|
*** pdesai has joined #openstack-security | 04:31 | |
*** bpokorny has quit IRC | 04:32 | |
*** elo has quit IRC | 04:37 | |
*** bpokorny has joined #openstack-security | 04:38 | |
*** bpokorny has quit IRC | 04:42 | |
*** tmcpeak has quit IRC | 04:57 | |
*** salv-orlando has joined #openstack-security | 05:00 | |
*** pdesai has quit IRC | 05:01 | |
*** pdesai has joined #openstack-security | 05:03 | |
openstackgerrit | Eric Brown proposed openstack/bandit: Add a confidence filter https://review.openstack.org/207258 | 05:07 |
*** salv-orlando has quit IRC | 05:13 | |
*** viraptor has joined #openstack-security | 05:19 | |
openstackgerrit | Eric Brown proposed openstack/bandit: NIT: Fix missing python 3 in classifier https://review.openstack.org/208805 | 05:32 |
*** ig0r_ has joined #openstack-security | 05:46 | |
*** pdesai has quit IRC | 06:03 | |
*** ig0r_ has quit IRC | 06:04 | |
*** salv-orlando has joined #openstack-security | 06:10 | |
*** ig0r_ has joined #openstack-security | 06:11 | |
openstackgerrit | OpenStack Proposal Bot proposed openstack/security-doc: Imported Translations from Transifex https://review.openstack.org/208819 | 06:16 |
*** salv-orlando has quit IRC | 06:21 | |
*** salv-orlando has joined #openstack-security | 06:22 | |
*** h00327910__ has joined #openstack-security | 07:01 | |
*** alex_klimov has joined #openstack-security | 07:11 | |
openstackgerrit | Stanislaw Pitucha proposed openstack/anchor: Update package description to include py3 https://review.openstack.org/208859 | 07:16 |
*** alex_klimov has quit IRC | 07:33 | |
*** alex_klimov has joined #openstack-security | 07:33 | |
*** browne has quit IRC | 07:36 | |
*** tjt263 has joined #openstack-security | 08:11 | |
*** shohel has joined #openstack-security | 08:12 | |
*** fubi has joined #openstack-security | 08:12 | |
*** tkelsey has joined #openstack-security | 08:43 | |
*** shohel has quit IRC | 08:47 | |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 09:38 |
*** openstackgerrit_ has joined #openstack-security | 09:53 | |
openstackgerrit | Merged openstack/anchor: Updated from global requirements https://review.openstack.org/205044 | 10:45 |
*** fubi has quit IRC | 10:57 | |
*** tjt263 has quit IRC | 11:10 | |
*** openstackgerrit has quit IRC | 11:31 | |
*** openstackgerrit_ is now known as openstackgerrit | 11:31 | |
*** openstackgerrit has quit IRC | 11:32 | |
*** openstackgerrit_ has joined #openstack-security | 11:32 | |
openstackgerrit_ | Stanislaw Pitucha proposed openstack/anchor: Implement new API format https://review.openstack.org/190473 | 11:32 |
*** openstackgerrit_ is now known as openstackgerrit | 11:32 | |
openstackgerrit | Stanislaw Pitucha proposed openstack/anchor: Move all plugins to stevedore https://review.openstack.org/208311 | 11:32 |
openstackgerrit | Stanislaw Pitucha proposed openstack/anchor: Move sample config for tests to one place https://review.openstack.org/207752 | 11:32 |
openstackgerrit | Stanislaw Pitucha proposed openstack/anchor: Allow configurable signing backends https://review.openstack.org/201394 | 11:32 |
*** openstackgerrit_ has joined #openstack-security | 11:33 | |
*** dave-mccowan has joined #openstack-security | 11:38 | |
*** sdake_ has quit IRC | 11:47 | |
*** viraptor has quit IRC | 11:51 | |
*** viraptor has joined #openstack-security | 11:51 | |
*** openstackgerrit has quit IRC | 12:16 | |
*** openstackgerrit has joined #openstack-security | 12:16 | |
*** edmondsw has joined #openstack-security | 12:27 | |
*** sdake has joined #openstack-security | 12:36 | |
*** rmarathu has joined #openstack-security | 12:40 | |
*** zul has joined #openstack-security | 12:53 | |
*** zul has quit IRC | 12:53 | |
*** zul has joined #openstack-security | 12:53 | |
*** bknudson has joined #openstack-security | 12:57 | |
*** shohel has joined #openstack-security | 13:07 | |
*** browne has joined #openstack-security | 13:07 | |
*** singlethink has joined #openstack-security | 13:27 | |
*** ig0r_ has quit IRC | 13:27 | |
*** browne has quit IRC | 13:30 | |
*** ig0r_ has joined #openstack-security | 13:30 | |
*** singleth_ has joined #openstack-security | 13:31 | |
*** singlethink has quit IRC | 13:34 | |
*** tmcpeak has joined #openstack-security | 13:36 | |
tmcpeak | Daviey: you around? | 13:47 |
openstackgerrit | Merged openstack/bandit: NIT: Fix missing python 3 in classifier https://review.openstack.org/208805 | 13:54 |
Daviey | tmcpeak: always | 13:56 |
*** viraptor has quit IRC | 13:56 | |
openstackgerrit | Merged openstack/bandit: Add a confidence filter https://review.openstack.org/207258 | 13:57 |
*** sigmavirus24_awa is now known as sigmavirus24 | 14:00 | |
*** ig0r_ has quit IRC | 14:00 | |
*** singlethink has joined #openstack-security | 14:00 | |
sigmavirus24 | Daviey: looking | 14:01 |
Daviey | sigmavirus24: ta | 14:02 |
Daviey | tmcpeak: wassup? | 14:02 |
*** singleth_ has quit IRC | 14:02 | |
openstackgerrit | Brant Knudson proposed openstack/bandit: Convert README to rst https://review.openstack.org/209082 | 14:13 |
*** salv-orlando has quit IRC | 14:20 | |
*** voodookid has joined #openstack-security | 14:21 | |
*** hyakuhei1 has joined #openstack-security | 14:25 | |
*** voodookid has quit IRC | 14:27 | |
*** salv-orlando has joined #openstack-security | 14:27 | |
*** hyakuhei has quit IRC | 14:28 | |
tmcpeak | Daviey: I was going to try to dispute your claim that this is a pbr issue, but I actually think I agree with you | 14:32 |
tmcpeak | so the idea is that despite homebrew installing Python packages etc in a different directory, pbr should ensure it's placed in that /Library path? | 14:33 |
tmcpeak | it meaning the config file? | 14:33 |
tmcpeak | hmm I guess let's walk through this | 14:34 |
openstackgerrit | Brant Knudson proposed openstack/bandit: Convert README to rst https://review.openstack.org/209082 | 14:35 |
tmcpeak | Daviey: so I install Bandit (prior to your change) and I'm using the config from the bandit/config/bandit.yaml directory | 14:36 |
tmcpeak | in roughly the same location is bandit/plugins | 14:37 |
tmcpeak | etc | 14:37 |
tmcpeak | can we add that path as an option to your change? as a last resort it looks relative to the installed location? | 14:37 |
tmcpeak | I agree though, pbr is supposed to ensure that data_files are placed elsewhere | 14:38 |
*** voodookid has joined #openstack-security | 14:40 | |
*** salv-orl_ has joined #openstack-security | 14:47 | |
*** salv-orlando has quit IRC | 14:49 | |
*** elo has joined #openstack-security | 15:00 | |
Daviey | tmcpeak: Yeah.. I think i'll add that path aswell as a last choice | 15:00 |
Daviey | For most people it shouldn't exist, but for $something broken (as in your case), it'll work | 15:00 |
Daviey | tmcpeak: thanks for following up on the bug btw | 15:01 |
sigmavirus24 | to be very clear | 15:01 |
sigmavirus24 | I don't think this is pbr's fault | 15:01 |
sigmavirus24 | I haven't had a chance to investigate yet | 15:01 |
Daviey | sigmavirus24: I think it is a brew bug personally | 15:01 |
sigmavirus24 | But pbr is merely translating setup.cfg to setuptools.setup parameters | 15:01 |
sigmavirus24 | Daviey: why? | 15:01 |
Daviey | sigmavirus24: I guess I don't understand the Cellar stuff enough.. but that feels like the variable in this. | 15:03 |
tmcpeak | Daviey: sounds good | 15:03 |
Daviey | sigmavirus24: if non-brew python is used, we see the right thing | 15:03 |
Daviey | sigmavirus24: If you have a cycle (and a mac) to help dig into this, i'd be really appreciative | 15:03 |
Daviey | It is a shame Apple don't provide dev vm images.. | 15:04 |
sigmavirus24 | Uh why are we concerned with Cellar? | 15:04 |
tmcpeak | sigmavirus24: the appdirs thing is not working correclty in my env | 15:05 |
tmcpeak | I used brew which means that my python directories are all rooted in cellar | 15:05 |
sigmavirus24 | Right but Cellar has nothing to do with install path of anything byt Python | 15:05 |
sigmavirus24 | tmcpeak: how did you reach that conclusion? | 15:05 |
sigmavirus24 | brew installed python should put everything in /usr/local/lib/python{version}/ | 15:06 |
sigmavirus24 | Cellar is where "python" itself is symlinked from | 15:06 |
tmcpeak | sigmavirus24: it does | 15:06 |
sigmavirus24 | If that's a problem for appdirs that's a bug in appdirs, not pbr, not brew | 15:06 |
tmcpeak | sigmavirus24: yeah, that was my thought as well | 15:06 |
tmcpeak | this seems like a bug in appdirs | 15:07 |
tmcpeak | appdirs is failing to take into account that for brew installed python stuff goes in /usr/local not /Library | 15:07 |
sigmavirus24 | If what's happening is that appdirs is looking in /usr/local/Cellar then yeah | 15:07 |
sigmavirus24 | that's appdirs problem, not python, not pbr, not setuptools, not pip, not homebrew | 15:07 |
sigmavirus24 | which python should be /usr/local/bin/python | 15:07 |
tmcpeak | it is | 15:08 |
tmcpeak | appdirs seems to expect /Library something | 15:08 |
sigmavirus24 | which means appdirs should be looking in /usr/local/lib/python{2.7,3.4,whatever}/ | 15:08 |
sigmavirus24 | hm | 15:08 |
sigmavirus24 | That's for OSX apps iirc | 15:08 |
tmcpeak | sigmavirus24: stock Apple Python is there too | 15:09 |
sigmavirus24 | And I suppose I can't test this in a virtualenv with appdirs because there it works perfectly | 15:09 |
sigmavirus24 | Yeah and stock Ruby I see | 15:09 |
tmcpeak | - /Library/Python/2.7/site-packages | 15:09 |
tmcpeak | that's where stock Apple stuff goes | 15:09 |
tmcpeak | that's what appdirs expects | 15:09 |
sigmavirus24 | So yeah, appdirs doesn't know about homebrew | 15:10 |
tmcpeak | yeah, that seems like the bug to me too | 15:10 |
sigmavirus24 | The documentation points to that because for site_config_dir tells you to look at site_data_dir which says "Mac OS X: /Library/Application Support/<AppName>" | 15:10 |
sigmavirus24 | because appdirs is primarily about "apps" that you'd install, e.g., Firefox, Chrome, etc. | 15:11 |
tmcpeak | but.. shouldn't data_files in pbr ensure that the bandit config is put somewhere special? | 15:11 |
sigmavirus24 | tmcpeak: it does | 15:11 |
sigmavirus24 | It puts it in the special place that *wheel* puts it | 15:11 |
sigmavirus24 | which iirc is /usr/local/etc | 15:11 |
tmcpeak | no, it isn't | 15:11 |
tmcpeak | it's putting it here | 15:11 |
tmcpeak | : | 15:11 |
tmcpeak | - /usr/local/lib/python2.7/site-packages/bandit/config/bandit.yaml | 15:12 |
tmcpeak | that's literally the same place every other file is going | 15:12 |
tmcpeak | the plugins, etc | 15:12 |
openstackgerrit | Michael McCune proposed openstack/security-doc: Trying to add numbers and orders to commands https://review.openstack.org/207721 | 15:13 |
sigmavirus24 | tmcpeak: are you using Daviey's patch, because that's the behaviour on Master | 15:14 |
tmcpeak | no, without Daviey's patch | 15:14 |
tmcpeak | Daviey's patch breaks my system | 15:14 |
sigmavirus24 | Right | 15:14 |
sigmavirus24 | tmcpeak: so we don't specify data_files in master iirc | 15:14 |
sigmavirus24 | package_data != data_files | 15:14 |
tmcpeak | oooh | 15:14 |
sigmavirus24 | package_data merely means "here is a non-python file that needs to be included in the package" | 15:15 |
tmcpeak | yeah, you're right | 15:15 |
tmcpeak | my ignorance is showing | 15:15 |
sigmavirus24 | no worries | 15:15 |
sigmavirus24 | I'm steeped in this tarpit | 15:15 |
tmcpeak | :D | 15:15 |
tmcpeak | ok so agreed then, doesn't seem like there is a pbr bug here | 15:15 |
tmcpeak | we should close that to not waste their cycles | 15:15 |
tmcpeak | this seems like an appdirs issue, and maybe an unsupported use case? | 15:15 |
sigmavirus24 | most likely unsupported usecase for appdirs | 15:16 |
sigmavirus24 | Then again, they might say "oh yes, that makes sense" | 15:16 |
sigmavirus24 | I would bet that appdirs is meant for people distributing dmg files for OSX which would likely go in /Library if built appropriately | 15:16 |
sigmavirus24 | Not for pip installable things | 15:16 |
tmcpeak | yeah | 15:17 |
tmcpeak | Daviey: looks like we might need a new approach rather than use appdirs | 15:17 |
tmcpeak | or you can try appdirs and just add the source path as a backup | 15:18 |
tmcpeak | sigmavirus24: thanks for lending your expertise on this :) | 15:20 |
sigmavirus24 | "expertise" | 15:23 |
sigmavirus24 | More like "pain and suffering in setuptools" | 15:23 |
*** edmondsw has quit IRC | 15:26 | |
*** browne has joined #openstack-security | 15:27 | |
*** singlethink has quit IRC | 15:31 | |
tmcpeak | fortunately I've avoided the setuptools bad touch to this point | 15:36 |
*** dwyde has joined #openstack-security | 15:38 | |
Daviey | sigmavirus24: Hmm.. data_files doesn't seem to be respected at all in tmcpeak's environment | 15:43 |
Daviey | As in, we are seeing the config file being installed with the rest of the python library | 15:43 |
Daviey | sigmavirus24: Are you saying that his environment is installing config files into the site-packages library path IS the right thing? | 15:44 |
sigmavirus24 | Daviey: installing from master -> yes it's working as intended | 15:44 |
sigmavirus24 | Because we're using package_data not data_files on master | 15:45 |
openstackgerrit | Michael McCune proposed openstack/security-doc: correcting link to attack types figure https://review.openstack.org/209143 | 15:45 |
Daviey | Right.. but.. data_files isn't being respected.. is it? | 15:45 |
Daviey | On Linux, local etc is treated as - '/usr/local/etc/bandit/bandit.yaml' | 15:45 |
tmcpeak | Daviey: it probably is, it's just that since your change refuses to look in the actual bandit directory I haven't tried it out | 15:47 |
Daviey | tmcpeak: As a fall back, i'm going to add that path.. but something which is not appdirs isn't doing its job properly | 15:48 |
tmcpeak | Daviey: I believe it is just appdirs | 15:48 |
Daviey | tmcpeak: No, because site-packages shouldn't ever be a config file location | 15:49 |
sigmavirus24 | Daviey: data_files should be /usr/local/etc (if using pip) | 15:50 |
sigmavirus24 | (and wheels) | 15:51 |
tmcpeak | Daviey: but prior to your change it wasn't using data_files | 15:51 |
sigmavirus24 | data_files I think has a different behaviour if you run `setup.py install` | 15:51 |
sigmavirus24 | Daviey: repeat after me: "package_data is not data_files" | 15:51 |
Daviey | tmcpeak: Yeah, but if you install from my branch.. then you should get a config file in /usr/local/etc | 15:51 |
tmcpeak | ok, I can verify that | 15:51 |
Daviey | sigmavirus24: I understand the difference between pkg_data and data_files | 15:51 |
Daviey | sigmavirus24: I'm not being dumb. | 15:52 |
Daviey | sigmavirus24: If tmcpeak did "pip install ." from my branch he should get a config file in /usr/local/etc/* | 15:52 |
sigmavirus24 | Right but he wasn't using your branch | 15:52 |
tmcpeak | yep, it's there | 15:52 |
Daviey | Huh | 15:52 |
tmcpeak | - /usr/local/etc/bandit/bandit.yaml | 15:53 |
Daviey | Now i am really confused | 15:53 |
Daviey | WTF | 15:53 |
tmcpeak | so data_files works | 15:53 |
tmcpeak | Appdir on mac does not allow it to search in that path | 15:53 |
Daviey | tmcpeak: So how was my branch broken to start with? | 15:53 |
sigmavirus24 | Daviey: the answer here is "just use linux" for bandit | 15:53 |
Daviey | Hah, indeed. | 15:53 |
* sigmavirus24 is not being serious | 15:53 | |
tmcpeak | because with data_files and PBR and appdir, now the Bandit installer puts bandit.yaml in /usr/local/etc/bandit/bandit.yaml, which thanks to appdir's lack of understanding of brew python locations is not a searched path | 15:54 |
Daviey | tmcpeak: You were testing my branch against a bastardization install of Master? | 15:54 |
tmcpeak | no, this ^ | 15:54 |
Daviey | Oh | 15:54 |
Daviey | tmcpeak: I thought we were just seeing the config file in site-packages which was wrong | 15:54 |
tmcpeak | apparently it installs it in both locations | 15:55 |
tmcpeak | actually, why does it install it in both? | 15:55 |
tmcpeak | that doesn't make any sense | 15:55 |
Daviey | Because it is in the module directory of the branch | 15:56 |
Daviey | bandit/* is shipped as a module.. Really the config file belongs outside of the module | 15:56 |
Daviey | (in git) | 15:56 |
tmcpeak | ahh ok | 15:56 |
tmcpeak | well thankfully it's there, otherwise brew Python is totally broken for Bandit | 15:57 |
sigmavirus24 | Until we have a solution for OSX users, I vote that it stays in bandit/config for now | 15:57 |
*** pdesai has joined #openstack-security | 15:59 | |
tmcpeak | we should reach out to appdirs and see if they have any plans to support this use case | 15:59 |
Daviey | Yeah, i've started writing a bug report | 16:02 |
tmcpeak | awesome, thanks Daviey | 16:02 |
Daviey | I'm trying to find an equivalent of FHS for Mac | 16:02 |
Daviey | http://www.filibeto.org/unix/macos/lib/dev/documentation/MacOSX/Conceptual/BPFileSystem/BPFileSystem.pdf | 16:03 |
tmcpeak | not opening a pdf from you and/or filibeto :P | 16:03 |
Daviey | tmcpeak: out of interest, does anything else have files in /usr/local/etc/ on your machine? | 16:03 |
tmcpeak | yeah, ansible, libvirt, qemu, openssl, redis.. others | 16:04 |
Daviey | tmcpeak: Flip a coin, either rickroll or goatse. | 16:04 |
Daviey | thanks | 16:04 |
tmcpeak | there's a 15:1 exchange rate on rickroll:goatse | 16:04 |
Daviey | Oh interesting. Mac spec *does* say local config should be in Library | 16:05 |
tmcpeak | yeah but they aren't taking brew into account? | 16:05 |
Daviey | I think brew has been exonerated.. this is pip (and friends) either doing the wrong thing by spec, OR appdirs being too too anal on spec | 16:08 |
tmcpeak | yeah, fair enough | 16:09 |
*** singlethink has joined #openstack-security | 16:13 | |
*** elmiko has quit IRC | 16:13 | |
*** elmiko has joined #openstack-security | 16:16 | |
sigmavirus24 | no pip is doing the right thing | 16:20 |
sigmavirus24 | dstanek: can confirm | 16:20 |
sigmavirus24 | err dstufft | 16:20 |
dstufft | wat | 16:20 |
sigmavirus24 | data_files being installed in /usr/local on homebrew pythong | 16:21 |
dstufft | data_files is kind of lol | 16:21 |
dstufft | it has different behaviors in different scenarios | 16:21 |
dstufft | but yes, pip should generally put it in /usr/local/etc | 16:21 |
dstufft | er | 16:22 |
dstufft | /usr/local | 16:22 |
dstufft | if something doesn't support /usr/local/etc then it doesn't really support the FHS | 16:23 |
*** alex_klimov has quit IRC | 16:24 | |
dstufft | data_files is... in a distutils setup.py it'll install to sys.prefix, in a setuptools setup.py it'll install alongside the package (more like package_data), and if installing from wheel it'll isntall to sys.prefix | 16:24 |
*** elmiko has quit IRC | 16:25 | |
*** elmiko has joined #openstack-security | 16:26 | |
*** elmiko has quit IRC | 16:27 | |
*** elmiko has joined #openstack-security | 16:27 | |
*** elmiko has quit IRC | 16:28 | |
*** openstackgerrit_ has quit IRC | 16:29 | |
*** rmarathu has quit IRC | 16:29 | |
*** elmiko has joined #openstack-security | 16:29 | |
Daviey | dstufft: Does Mac claim to be FHS compliant ? | 16:32 |
Daviey | dstufft: Mac's spec seems to claim that all local configs belong in /Library/Application Support/ | 16:32 |
Daviey | (which isn't FHS) | 16:32 |
dstufft | Oh, this is on a Mac? On a Mac I don't think the guidelines let you use "etc" at all, it should be in /Library/Application Support/ yea | 16:32 |
Daviey | http://www.filibeto.org/unix/macos/lib/dev/documentation/MacOSX/Conceptual/BPFileSystem/BPFileSystem.pdf | 16:33 |
dstufft | or in ~/Library/Application Support/ | 16:33 |
Daviey | right.. i was talking about local system, rather than user | 16:33 |
Daviey | dstufft: So.. is pip being rude in trying to force FHS on it.. or is a library to return paths being anal about FHS when we poll it for config paths? | 16:34 |
Daviey | (the library only returns (~)/Library/Application Support/ paths | 16:34 |
dstufft | well pip doesn't force FHS paths, it has no idea what you're putting in data_files, it's just dutifully putting whatever you put in there relative to sys.prefix | 16:35 |
Daviey | Ah, true. | 16:35 |
Daviey | fml | 16:36 |
*** singleth_ has joined #openstack-security | 16:37 | |
*** rmarathu has joined #openstack-security | 16:37 | |
dstufft | the appdirs library that pip embedded let us specify posix paths on OSX | 16:39 |
dstufft | fwiw | 16:40 |
*** singlet__ has joined #openstack-security | 16:40 | |
*** singlethink has quit IRC | 16:41 | |
*** dwyde has quit IRC | 16:41 | |
*** edmondsw has joined #openstack-security | 16:42 | |
*** singlethink has joined #openstack-security | 16:42 | |
*** dwyde has joined #openstack-security | 16:43 | |
*** singleth_ has quit IRC | 16:43 | |
*** singlet__ has quit IRC | 16:44 | |
openstackgerrit | Eric Brown proposed openstack/bandit: Update README with latest changes https://review.openstack.org/209179 | 16:46 |
Daviey | dstufft: Yeah, that is what we are doing... but... | 16:46 |
Daviey | dstufft: Oh wait. | 16:46 |
sigmavirus24 | Daviey: we're not using appdirs to specify the path, we're using it to search paths | 16:46 |
Daviey | dstufft: what appdirs do you mean? | 16:46 |
*** pdesai has quit IRC | 16:47 | |
Daviey | pip.utils.appdirs ? | 16:47 |
dstufft | it's a forked copy of something | 16:47 |
dstufft | appdirs on PyPI I think | 16:47 |
Daviey | Yeah, that is what we are using.. but it hardcodes Apple/Darwin to (*)/Library/ | 16:48 |
Daviey | TIL it is in pip aswell tho | 16:49 |
*** tkelsey has quit IRC | 17:01 | |
*** shohel has quit IRC | 17:13 | |
*** salv-orl_ has quit IRC | 17:26 | |
openstackgerrit | Merged openstack/security-doc: Updating Reference - Identity https://review.openstack.org/208051 | 17:49 |
*** pdesai has joined #openstack-security | 17:54 | |
*** dwyde has quit IRC | 18:12 | |
*** dwyde has joined #openstack-security | 18:13 | |
*** austin_laptop has joined #openstack-security | 18:34 | |
austin_laptop | hi there; I'm curious if a release date for the next bandit release is known/estimated? there's a fix I'd really like to use, wanting to know if I should backport it to 0.12.0 or wait for a tag to come soon :) | 18:56 |
*** salv-orlando has joined #openstack-security | 19:10 | |
*** webX44 has joined #openstack-security | 19:19 | |
*** webX44 has left #openstack-security | 19:22 | |
tmcpeak | austin_laptop we're working on getting one out this week | 19:22 |
austin_laptop | tmcpeak, fantastic, thanks | 19:23 |
tmcpeak | austin_laptop 0.13.0 should have lots of goodies :D | 19:24 |
austin_laptop | tmcpeak, excellent :). I was looking for https://git.openstack.org/cgit/openstack/bandit/commit/?id=c6a7f7948b7b6a8d0368c82227191640427011ff in particular | 19:25 |
tmcpeak | austin_laptop: oh right, yeah that was a good bug - I'm glad you found it | 19:35 |
*** rmarathu has quit IRC | 19:36 | |
austin_laptop | tmcpeak, thanks for fixing | 19:40 |
austin_laptop | saved me from having to script around it :) | 19:40 |
tmcpeak | austin_laptop: was a great catch, keep em coming :) | 19:42 |
austin_laptop | tmcpeak, https://bugs.launchpad.net/bandit/+bug/1480062 | 19:44 |
openstack | Launchpad bug 1480062 in Bandit "Please document where to report bugs/send patches in README" [Undecided,New] | 19:44 |
sigmavirus24 | austin_laptop: btw | 19:44 |
sigmavirus24 | gentoo should have bandit properly packaged for you now | 19:45 |
austin_laptop | sigmavirus24, cool | 19:45 |
sigmavirus24 | was actually done as of Friday night but haven't seen you since so | 19:45 |
austin_laptop | sigmavirus24, yeah, I was afk past few days | 19:46 |
sigmavirus24 | austin_laptop: no worries | 19:46 |
austin_laptop | sigmavirus24, I guess I should've sent my ebuild upstream to begin with :) | 19:47 |
sigmavirus24 | just a head's up that you don't need to package it yourself anymore | 19:47 |
sigmavirus24 | austin_laptop: no worries. As I said, the gentoo OpenStack package maintainer is a member of my team | 19:47 |
sigmavirus24 | It took him all of a few minutes to do it and upload it | 19:47 |
austin_laptop | sigmavirus24, sure. Ah, cool | 19:48 |
austin_laptop | yeah, it was a few minutes here as well, but good that I don't need to maintain anymore | 19:48 |
austin_laptop | well, until 0.13.0 comes out, at least ;) | 19:51 |
sigmavirus24 | hah | 19:51 |
sigmavirus24 | He has an RSS feed for package releases | 19:52 |
sigmavirus24 | He's on it usually rather quickly | 19:52 |
*** WaltBarnes has joined #openstack-security | 19:59 | |
*** WaltBarnes has quit IRC | 19:59 | |
*** pdesai has quit IRC | 20:15 | |
*** kutija_ has quit IRC | 20:19 | |
*** singleth_ has joined #openstack-security | 20:20 | |
*** singlethink has quit IRC | 20:23 | |
*** b10n1k has joined #openstack-security | 20:24 | |
*** kutija has joined #openstack-security | 20:28 | |
*** jmckind has joined #openstack-security | 20:56 | |
*** pdesai has joined #openstack-security | 20:56 | |
austin_laptop | well, I need a custom ebuild to apply that patch, for now | 21:14 |
*** jmckind has quit IRC | 21:24 | |
*** salv-orlando has quit IRC | 21:26 | |
*** jmckind has joined #openstack-security | 21:26 | |
*** alex_klimov has joined #openstack-security | 21:37 | |
*** salv-orlando has joined #openstack-security | 21:38 | |
*** b10n1k has quit IRC | 21:48 | |
tmcpeak | Daviey: still around? | 22:01 |
*** edmondsw has quit IRC | 22:02 | |
*** jmckind has quit IRC | 22:02 | |
*** dwyde has quit IRC | 22:12 | |
*** singleth_ has quit IRC | 22:19 | |
*** zul has quit IRC | 22:23 | |
*** sigmavirus24 is now known as sigmavirus24_awa | 22:25 | |
Daviey | tmcpeak: here | 22:27 |
*** viraptor has joined #openstack-security | 22:31 | |
*** alex_klimov has quit IRC | 22:36 | |
tmcpeak | Daviey: where we at on that change? | 22:36 |
tmcpeak | we still going ahead and you'll add the place it is as fallback? | 22:36 |
tmcpeak | we gotta move 13 out the door :D | 22:36 |
Daviey | tmcpeak: yeah, i'll add it now. | 22:36 |
tmcpeak | Daviey: ok cool | 22:36 |
Daviey | tmcpeak is the league against sleep | 22:37 |
tmcpeak | don't forget fun, I'm also against that | 22:37 |
tmcpeak | Daviey: I mean you can do it tomorrow ;) | 22:37 |
tmcpeak | pretty much donzo for the day | 22:37 |
tmcpeak | I doubt we'd get enough reviews to move it through anywa | 22:38 |
tmcpeak | y | 22:38 |
Daviey | Who am i kidding, the odds of going to bed at a reasonable hour... | 22:38 |
*** dwyde has joined #openstack-security | 22:38 | |
*** bknudson has quit IRC | 22:44 | |
*** dwyde has quit IRC | 22:54 | |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 22:57 |
Daviey | tmcpeak: Could you pull that down and give it a spin? | 22:57 |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 22:59 |
tmcpeak | Daviey: yeps | 22:59 |
Daviey | ta | 23:00 |
*** sdake has quit IRC | 23:00 | |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 23:02 |
tmcpeak | Daviey: oh, hrmm, ok now it's using /usr/local/etc/bandit/bandit.yaml | 23:02 |
Daviey | (rebase against master) | 23:02 |
Daviey | tmcpeak: that is what we want, right? | 23:02 |
tmcpeak | oh you hardcoded it :) | 23:02 |
tmcpeak | I thought you were able to calculate it in some way | 23:02 |
Daviey | Sometimes closed source software development is so much more attractive | 23:03 |
*** voodookid has quit IRC | 23:03 | |
Daviey | Sausage Factory. | 23:03 |
tmcpeak | yeah man | 23:03 |
tmcpeak | I heard closed source doesn't even really have security issues | 23:04 |
elmiko | lol | 23:04 |
tmcpeak | Daviey: stupid nit, then I'm +2 | 23:05 |
Daviey | tmcpeak: I nearly did this... but then decided it was stooopid - $ python -c 'import sys ; BASE_CONFIG = "/bandit.yaml" ; print "%s/local/etc/bandit%s" % (sys.prefix, BASE_CONFIG)' | 23:06 |
Daviey | /usr/local/etc/bandit/bandit.yaml | 23:06 |
tmcpeak | haha ok as long as your call it with shell=True it should be kwalitee | 23:07 |
tmcpeak | *you | 23:07 |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 23:08 |
Daviey | I started working on the improved mocking desired.. but TBH, i'm scared to change anything right now and get the branch nacked. | 23:10 |
Daviey | I just wanna land it now :) | 23:10 |
tmcpeak | yes | 23:11 |
tmcpeak | I think that is the proper course | 23:11 |
tmcpeak | there'll be plenty of time for living dangerously once 13 ships | 23:12 |
openstackgerrit | Dave Walker proposed openstack/bandit: Actually default to /etc/ rather than just claim https://review.openstack.org/203451 | 23:12 |
Daviey | sorry tmcpeak, i just updated the commit message to reference that other path | 23:13 |
Daviey | So another +2 pls. :) | 23:13 |
*** pdesai has quit IRC | 23:16 | |
tmcpeak | Daviey: thanks for all the work on this | 23:16 |
Daviey | tmcpeak: no, thank you for your patience with debugging it on mac - ( ‾ʖ̫‾) | 23:17 |
tmcpeak | lol | 23:18 |
*** jmckind has joined #openstack-security | 23:22 | |
*** jmckind has quit IRC | 23:23 | |
*** jmckind has joined #openstack-security | 23:24 | |
*** pillars3summit has joined #openstack-security | 23:25 | |
*** dave-mccowan has quit IRC | 23:28 | |
pillars3summit | join #openstack-101 | 23:31 |
*** dave-mccowan has joined #openstack-security | 23:32 | |
*** pillars3summit has left #openstack-security | 23:33 | |
*** pillars3summit has joined #openstack-security | 23:36 | |
*** pillars3summit has quit IRC | 23:43 | |
*** sdake has joined #openstack-security | 23:45 | |
*** dave-mccowan has quit IRC | 23:47 | |
*** sdake_ has joined #openstack-security | 23:48 | |
*** jamielennox|away is now known as jamielennox | 23:50 | |
*** sdake has quit IRC | 23:52 | |
*** salv-orlando has quit IRC | 23:57 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!