Friday, 2015-09-04

openstackgerritJamie Finnigan proposed openstack/bandit: Adding "hardcoded_tmp_directory" documentation  https://review.openstack.org/20848200:03
openstackgerritStanislaw Pitucha proposed openstack/anchor: Add fixups configuration / processing  https://review.openstack.org/20213400:04
*** markvoelker has quit IRC00:06
openstackgerritBrant Knudson proposed openstack/bandit: Fix running when empty config file  https://review.openstack.org/22035500:06
*** y_sawai has joined #openstack-security00:07
*** hyakuhei_ has joined #openstack-security00:08
*** y_sawai has quit IRC00:08
*** hyakuhei has quit IRC00:10
*** hyakuhei_ is now known as hyakuhei00:10
*** sigmavirus24 is now known as sigmavirus24_awa00:10
*** tmcpeak has quit IRC00:17
*** bknudson has quit IRC00:18
*** michaelxin has quit IRC00:20
*** browne has quit IRC00:21
*** tkelsey has quit IRC00:25
*** markvoelker has joined #openstack-security01:07
*** markvoelker_ has joined #openstack-security01:08
*** y_sawai has joined #openstack-security01:11
*** markvoelker has quit IRC01:12
*** y_sawai has quit IRC01:13
*** hyakuhei has quit IRC01:14
*** markvoelker_ has quit IRC01:16
*** y_sawai has joined #openstack-security01:32
*** sdake has joined #openstack-security01:33
*** y_sawai has quit IRC01:35
*** nkinder has quit IRC01:37
*** y_sawai has joined #openstack-security01:48
*** sigmavirus24_awa is now known as sigmavirus2402:21
*** sdake_ has joined #openstack-security02:23
*** y_sawai has joined #openstack-security02:27
*** sdake has quit IRC02:27
*** sdake__ has joined #openstack-security02:27
*** y_sawai has quit IRC02:29
*** sdake_ has quit IRC02:30
*** sdake__ is now known as sdake02:33
*** markvoelker has joined #openstack-security02:35
*** markvoelker has quit IRC02:49
*** enot305 has joined #openstack-security02:50
*** enot305 has left #openstack-security02:50
*** markvoelker has joined #openstack-security02:50
*** Kimberly1 has joined #openstack-security02:55
*** Kimberly1 has quit IRC02:55
*** markvoelker has quit IRC03:06
*** openstackgerrit_ has joined #openstack-security03:11
*** sigmavirus24 is now known as sigmavirus24_awa03:15
*** browne has joined #openstack-security03:17
*** dave-mccowan has quit IRC03:20
*** sdake_ has joined #openstack-security03:20
*** tkelsey has joined #openstack-security03:22
*** sdake has quit IRC03:25
*** sigmavirus24_awa has quit IRC03:28
*** sigmavirus24_awa has joined #openstack-security03:35
*** sdake_ is now known as sdake03:40
*** sdake_ has joined #openstack-security03:44
*** sdake_ has quit IRC03:45
*** sdake_ has joined #openstack-security03:45
*** sdake has quit IRC03:48
*** markvoelker has joined #openstack-security03:53
*** markvoelker_ has joined #openstack-security03:57
*** markvoelker has quit IRC03:58
*** markvoelker_ has quit IRC03:58
*** openstackgerrit_ has quit IRC04:14
*** tkelsey has quit IRC04:51
openstackgerritStanislaw Pitucha proposed openstack/anchor: Replace extension instead of adding duplicate  https://review.openstack.org/22039304:52
openstackgerritStanislaw Pitucha proposed openstack/anchor: Add fixup enforcing SAN extension  https://review.openstack.org/22039404:52
openstackgerritStanislaw Pitucha proposed openstack/anchor: Remove old validator  https://review.openstack.org/22039505:01
*** sdake_ is now known as sdake05:09
*** jamielennox is now known as jamielennox|away05:35
*** sdake has quit IRC05:39
*** hyakuhei has joined #openstack-security05:42
*** y_sawai has joined #openstack-security05:46
*** jamielennox|away is now known as jamielennox05:58
*** sdake has joined #openstack-security06:10
*** tkelsey has joined #openstack-security06:19
*** tkelsey has quit IRC06:24
*** hyakuhei has quit IRC06:26
*** y_sawai has quit IRC06:26
*** tjt263 has quit IRC06:28
*** quie has joined #openstack-security06:48
*** quie2 has joined #openstack-security06:51
*** quie has quit IRC06:52
*** jamielennox is now known as jamielennox|away07:08
*** shohel has joined #openstack-security07:09
openstackgerritStanislaw Pitucha proposed openstack/anchor: Add rfc based validators  https://review.openstack.org/22041607:09
*** sdake_ has joined #openstack-security07:11
*** sdake has quit IRC07:13
*** sdake__ has joined #openstack-security07:14
*** sdake_ has quit IRC07:17
*** browne has quit IRC07:19
*** jamielennox|away is now known as jamielennox07:32
*** elo has joined #openstack-security07:34
*** sdake has joined #openstack-security08:11
*** sdake__ has quit IRC08:12
*** sdake_ has joined #openstack-security08:12
*** sdake has quit IRC08:16
*** tkelsey has joined #openstack-security08:20
*** tkelsey has quit IRC08:25
*** jbasalone has joined #openstack-security08:26
*** lexholden has joined #openstack-security08:27
*** alex_klimov has joined #openstack-security08:32
*** jbasalone has quit IRC08:34
*** quie has joined #openstack-security09:06
*** quie2 has quit IRC09:07
*** quie has quit IRC09:15
*** quie has joined #openstack-security09:15
*** dave-mccowan has joined #openstack-security10:06
*** quie2 has joined #openstack-security10:17
*** y_sawai has joined #openstack-security10:19
*** quie has quit IRC10:19
*** quie has joined #openstack-security10:22
*** quie2 has quit IRC10:22
*** quie has quit IRC10:26
*** y_sawai has quit IRC10:54
*** shohel has quit IRC11:05
*** shohel has joined #openstack-security11:29
*** tjt263 has joined #openstack-security11:38
*** y_sawai has joined #openstack-security11:53
*** sigmavirus24_awa is now known as sigmavirus2412:32
*** edmondsw has joined #openstack-security12:33
*** sigmavirus24 is now known as sigmavirus24_awa12:39
*** tjt263 has quit IRC12:51
*** tjt263 has joined #openstack-security12:53
*** tjt263 has quit IRC12:55
*** VivCheri has joined #openstack-security13:24
VivCheriHi13:24
VivCheriGood Evening.13:24
*** LelouchV has joined #openstack-security13:26
*** tkelsey has joined #openstack-security13:34
*** tkelsey has quit IRC13:39
*** edmondsw has quit IRC13:42
*** JAHoagie has joined #openstack-security13:45
*** sdake has joined #openstack-security13:49
*** sdake_ has quit IRC13:51
*** localloop127 has joined #openstack-security14:06
*** sdake_ has joined #openstack-security14:06
*** sigmavirus24_awa is now known as sigmavirus2414:08
*** sdake has quit IRC14:10
*** JAHoagie has quit IRC14:11
*** edmondsw has joined #openstack-security14:13
*** browne has joined #openstack-security14:20
*** LelouchV has quit IRC14:30
*** y_sawai has quit IRC14:35
*** dave-mccowan has quit IRC14:43
*** y_sawai has joined #openstack-security14:45
openstackgerritShellee Aragon proposed openstack/security-doc: OSSN - Cached Keystone Tokens  https://review.openstack.org/21992214:46
*** dave-mccowan has joined #openstack-security15:00
*** shohel has quit IRC15:08
*** sigmavirus24 is now known as sigmavirus24_awa15:13
*** y_sawai has quit IRC15:15
*** y_sawai has joined #openstack-security15:15
*** y_sawai has quit IRC15:16
*** lexholden has quit IRC15:16
*** dwyde has joined #openstack-security15:18
*** sdake has joined #openstack-security15:21
*** tmcpeak has joined #openstack-security15:22
*** sdake_ has quit IRC15:24
*** sdake has quit IRC15:25
*** tkelsey has joined #openstack-security15:26
*** y_sawai has joined #openstack-security15:29
*** timkennedy has joined #openstack-security15:30
openstackgerritJamie Finnigan proposed openstack/bandit: Adding "hardcoded_sql_expressions" documentation  https://review.openstack.org/20848015:34
*** y_sawai has quit IRC15:34
*** JAHoagie has joined #openstack-security15:37
tkelseychair6: thanks for patching up the docs mate15:40
*** browne has quit IRC15:48
openstackgerritRobert Clark proposed openstack/anchor: Changes to allow sphinx to build correctly  https://review.openstack.org/22028915:49
openstackgerritMerged openstack/bandit: Adding "hardcoded_tmp_directory" documentation  https://review.openstack.org/20848215:52
openstackgerritMerged openstack/bandit: Adding "hardcoded_password" documentation  https://review.openstack.org/20847915:52
openstackgerritMerged openstack/bandit: Adding assert_used documentation  https://review.openstack.org/20710415:52
*** jian5397 has joined #openstack-security15:55
*** dave-mccowan has quit IRC15:56
*** y_sawai has joined #openstack-security15:59
*** browne has joined #openstack-security16:00
chair6tkelsey: no worries .. thinking i might write a little script to check for docs coverage against the plugins we have defined :)16:05
tkelseynice, though the placeholder files may mess with that16:05
*** dave-mccowan has joined #openstack-security16:08
openstackgerritMerged openstack/bandit: Adding "hardcoded_sql_expressions" documentation  https://review.openstack.org/20848016:27
openstackgerritMichael Xin proposed openstack/security-doc: Adding an OSSN for bug 1456228 - Trusted VM powered on untrusted host  https://review.openstack.org/22026316:31
openstackbug 1456228 in OpenStack Security Notes "Trusted vm can be powered on untrusted host" [Medium,Confirmed] https://launchpad.net/bugs/1456228 - Assigned to Michael Xin (michael-xin)16:31
*** alex_klimov has quit IRC16:34
*** edmondsw has quit IRC16:38
*** bknudson has joined #openstack-security16:44
*** sigmavirus24_awa is now known as sigmavirus2416:49
openstackgerritMichael Xin proposed openstack/security-doc: Adding an OSSN for bug 1456228 - Trusted VM powered on untrusted host  https://review.openstack.org/22026316:58
openstackbug 1456228 in OpenStack Security Notes "Trusted vm can be powered on untrusted host" [Medium,Confirmed] https://launchpad.net/bugs/1456228 - Assigned to Michael Xin (michael-xin)16:58
*** dwyde has quit IRC17:01
*** openstackgerrit_ has joined #openstack-security17:02
*** edmondsw has joined #openstack-security17:03
*** sdake has joined #openstack-security17:19
openstackgerritCharles Neill proposed openstack/bandit: Adding HTML formatter  https://review.openstack.org/22059217:23
ccneill_tmcpeak: just submitted a patch for HTML formatting - https://review.openstack.org/#/c/220592/17:24
tmcpeakccneill_: awesome, we'll check it out17:24
ccneill_it doesn't let you customize it as much as bandit-buddy because I wasn't sure how much would be reasonable to add to bandit.yaml17:24
ccneill_but if it's something people would like, I can have it link to Github like bandit-buddy, using a config option17:25
openstackgerritEric Brown proposed openstack/bandit: Merge the two weak_cryptographic_key checks  https://review.openstack.org/22059417:25
ccneill_oops, silly me17:25
ccneill_didn't run pep8 on it first17:25
*** jian5397 is now known as michaelxin17:27
michaelxinccneill_: Good job17:27
ccneill_thanks michaelxin17:27
*** ccneill_ is now known as ccneill17:27
*** elo has quit IRC17:31
*** VivCheri has quit IRC17:34
*** tmcpeak has quit IRC17:36
*** LelouchV has joined #openstack-security17:37
openstackgerritEric Brown proposed openstack/bandit: Merge the two weak_cryptographic_key checks  https://review.openstack.org/22059417:39
*** hyakuhei has joined #openstack-security17:42
hyakuheielmiko: https://review.openstack.org/#/c/220289/17:44
hyakuheiInstallation seems broken -17:44
hyakuheielmiko: Infra runs this to gen the docs: “tox -e venv python setup.py build_sphinx”17:49
*** y_sawai has quit IRC17:53
openstackgerritNathaniel Dillon proposed openstack/security-doc: Adding OSSN-0052  https://review.openstack.org/21990318:01
*** dwyde has joined #openstack-security18:04
*** b10n1k_ has quit IRC18:06
openstackgerritTim Kelsey proposed openstack/bandit: Simplifying Result Store  https://review.openstack.org/21995518:17
*** JAHoagie has quit IRC18:27
*** b10n1k_ has joined #openstack-security18:33
openstackgerritMerged openstack/anchor: Changes to allow sphinx to build correctly  https://review.openstack.org/22028918:45
*** sdake has quit IRC18:45
*** JAHoagie has joined #openstack-security18:46
*** dave-mccowan has quit IRC18:51
openstackgerritCharles Neill proposed openstack/bandit: Adding HTML formatter  https://review.openstack.org/22059218:52
ccneillI believe my latest patch takes care of all the comments Eric Brown made on the first version if anyone has time to take a look18:54
*** y_sawai has joined #openstack-security18:54
*** y_sawai_ has joined #openstack-security18:56
browneccneill: jenkins -1'd i believe due to you introducing Pygments (not found in g-r)_18:57
ccneillhmm, just saw that18:58
ccneillpardon my ignorance, but what is g-r?18:58
browneyou're gonna want to try to avoid any change to g-r nowadays.  changes are pretty much closed18:58
brownesorry, g-r = global requirements18:58
ccneillah gotcha18:58
*** y_sawai has quit IRC18:58
ccneillis there a where might I find the list of supported requirements?18:59
ccneillis there a place*19:00
brownehttps://github.com/openstack/requirements19:00
*** y_sawai_ has quit IRC19:01
ccneillso I see what you were saying about Pygments now.. it's in upper-constraints but not g-r19:02
ccneillweird19:02
openstackgerritbruce-benjamin proposed openstack/security-doc: [security-guide] Ephemeral encryption setup  https://review.openstack.org/21895619:05
*** sdake has joined #openstack-security19:07
openstackgerritTim Kelsey proposed openstack/bandit: Simplifying Result Store  https://review.openstack.org/21995519:09
openstackgerritTim Kelsey proposed openstack/bandit: Dont create files if we did not ask for them  https://review.openstack.org/22062919:09
openstackgerritCharles Neill proposed openstack/bandit: Adding HTML formatter  https://review.openstack.org/22059219:18
ccneilllet's see if it'll take Pygments==2.0.219:18
ccneillreplaced pyquery with beautifulsoup19:18
*** dave-mccowan has joined #openstack-security19:19
ccneill(╯°□°)╯︵ ┻━┻19:21
openstackgerritTim Kelsey proposed openstack/bandit: Dont create files if we did not ask for them  https://review.openstack.org/22062919:25
openstackgerritEric Brown proposed openstack/bandit: Add known weak ciphers to blacklisted calls  https://review.openstack.org/22063219:27
*** ccneill_ has joined #openstack-security19:32
*** ccneill has quit IRC19:35
*** ccneill_ has quit IRC19:39
*** localloop127 has quit IRC19:44
openstackgerritTim Kelsey proposed openstack/bandit: Dont create files if we did not ask for them  https://review.openstack.org/22062919:49
*** timkennedy has quit IRC19:55
openstackgerritbruce-benjamin proposed openstack/security-doc: [security-guide] Ephemeral encryption setup  https://review.openstack.org/21895619:56
*** y_sawai has joined #openstack-security19:56
*** JAHoagie has quit IRC19:59
*** y_sawai has quit IRC20:03
*** openstackgerrit_ has quit IRC20:03
*** openstackgerrit_ has joined #openstack-security20:04
openstackgerritEric Brown proposed openstack/bandit: Add known weak ciphers to blacklisted calls  https://review.openstack.org/22063220:10
*** sigmavirus24 is now known as sigmavirus24_awa20:11
*** chair6_ has joined #openstack-security20:12
*** chair6 has quit IRC20:16
openstackgerritbruce-benjamin proposed openstack/security-doc: [security-guide] Ephemeral encryption setup  https://review.openstack.org/21895620:19
*** chair6_ is now known as chair620:22
*** sigmavirus24_awa is now known as sigmavirus2420:25
hyakuheielmiko: https://review.openstack.org/#/c/216366/20:42
*** openstackgerrit_ has quit IRC20:47
*** openstackgerrit_ has joined #openstack-security20:47
*** openstackgerrit_ has quit IRC20:48
*** openstackgerrit_ has joined #openstack-security20:48
openstackgerritEric Brown proposed openstack/bandit: Check for insecure cipher modes  https://review.openstack.org/22065920:51
*** openstackgerrit_ has quit IRC20:53
*** y_sawai has joined #openstack-security20:59
openstackgerritEric Brown proposed openstack/bandit: Skip '/tests/' by default  https://review.openstack.org/22066220:59
*** y_sawai has quit IRC21:04
*** dwyde has quit IRC21:07
*** bknudson has quit IRC21:08
*** y_sawai has joined #openstack-security21:10
*** michaelxin has quit IRC21:10
*** whydidyoustealmy has quit IRC21:11
*** jian5397 has joined #openstack-security21:13
openstackgerritMerged openstack/bandit: Skip '/tests/' by default  https://review.openstack.org/22066221:14
*** y_sawai has quit IRC21:15
*** whydidyoustealmy has joined #openstack-security21:18
*** tkelsey has quit IRC21:21
*** LelouchV has quit IRC21:32
*** tkelsey has joined #openstack-security21:37
openstackgerritEric Brown proposed openstack/bandit: bad_file_permissions check: Use correct filename  https://review.openstack.org/22068421:47
openstackgerritEric Brown proposed openstack/bandit: bad_file_permissions check: Use correct filename  https://review.openstack.org/22068421:58
*** y_sawai has joined #openstack-security22:11
*** sigmavirus24 is now known as sigmavirus24_awa22:12
*** sdake_ has joined #openstack-security22:15
*** y_sawai has quit IRC22:15
*** sdake has quit IRC22:18
*** y_sawai has joined #openstack-security22:22
*** y_sawai has quit IRC22:22
brownetkelsey: https://review.openstack.org/#/c/220241/22:25
*** bpokorny has joined #openstack-security22:28
openstackgerritMerged openstack/bandit: Fix manager having no attribute '_init_logger'  https://review.openstack.org/22024122:33
*** entertainment_ has joined #openstack-security22:44
entertainment_can anyone help me in understand how openvpn can be used22:47
hyakuheiIn what context entertainment_  ?22:49
entertainment_never mind got it22:50
openstackgerritRobert Clark proposed openstack/anchor: Made some changes to the README.md to better install  https://review.openstack.org/22069522:52
*** entertainment_ has quit IRC22:55
*** bpokorny_ has joined #openstack-security22:57
*** bpokorny has quit IRC22:59
*** jian5397 has quit IRC23:04
*** hyakuhei has quit IRC23:05
*** browne has quit IRC23:06
*** tkelsey has quit IRC23:08
openstackgerritMerged openstack/anchor: Made some changes to the README.md to better install  https://review.openstack.org/22069523:12
*** jamielennox is now known as jamielennox|away23:13
*** edmondsw has quit IRC23:19
*** y_sawai has joined #openstack-security23:23
*** y_sawai has quit IRC23:28

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!