Tuesday, 2016-06-07

*** flerfb0rt has quit IRC00:01
*** jmckind has joined #openstack-security00:01
*** flerfb0rt has joined #openstack-security00:02
*** salv-orlando has quit IRC00:04
*** austin987 has quit IRC00:04
*** salv-orlando has joined #openstack-security00:05
*** sdake_ has quit IRC00:05
*** ccneill has quit IRC00:11
*** austin987 has joined #openstack-security00:18
*** markvoelker has joined #openstack-security00:20
*** markvoelker has quit IRC00:25
*** sdake has joined #openstack-security00:39
*** jmckind has quit IRC00:45
*** flerfb0rt has quit IRC00:51
*** salv-orlando has quit IRC00:53
*** salv-orlando has joined #openstack-security00:54
*** browne1 has quit IRC01:17
*** jmckind has joined #openstack-security01:25
*** jmckind has quit IRC01:29
*** sdake has quit IRC01:50
*** ronaldpguilmet has joined #openstack-security01:51
*** ronaldpguilmet has left #openstack-security01:51
*** sdake has joined #openstack-security02:11
*** jhfeng has joined #openstack-security02:13
*** browne has joined #openstack-security02:18
*** sdake_ has joined #openstack-security02:18
*** sdake has quit IRC02:20
*** markvoelker has joined #openstack-security02:21
*** markvoelker has quit IRC02:26
*** jamielennox is now known as jamielennox|away02:27
*** jamielennox|away is now known as jamielennox02:35
*** krishna has joined #openstack-security02:36
krishnahey guyz02:39
*** jhfeng has quit IRC02:43
*** krishna has quit IRC02:43
*** yuanying_ has joined #openstack-security02:51
*** yuanying has quit IRC02:51
*** sdake_ has quit IRC03:38
*** jamielennox is now known as jamielennox|away03:44
*** jamielennox|away is now known as jamielennox03:59
*** pcaruana has joined #openstack-security04:11
*** unrahul has quit IRC04:12
*** yuanying_ has quit IRC04:18
*** yuanying has joined #openstack-security04:21
*** markvoelker has joined #openstack-security04:22
*** pcaruana has quit IRC04:24
*** salv-orl_ has joined #openstack-security04:25
*** markvoelker has quit IRC04:26
*** salv-orlando has quit IRC04:27
*** pcaruana has joined #openstack-security04:34
*** dave-mccowan has quit IRC04:35
*** pcaruana has quit IRC04:40
*** diazjf has joined #openstack-security04:42
*** diazjf has quit IRC04:46
*** edtubill has joined #openstack-security04:58
*** markvoelker has joined #openstack-security05:23
*** markvoelker has quit IRC05:27
*** edtubill has quit IRC05:36
*** rcernin has joined #openstack-security05:36
*** salv-orl_ has quit IRC05:40
*** salv-orlando has joined #openstack-security05:40
*** edtubill has joined #openstack-security05:48
*** vinaypotluri has quit IRC06:10
*** edtubill has quit IRC06:20
*** salv-orlando has quit IRC07:04
*** salv-orlando has joined #openstack-security07:05
*** markvoelker has joined #openstack-security07:23
*** markvoelker has quit IRC07:28
*** liverpooler has joined #openstack-security07:28
*** liverpooler has quit IRC07:34
*** salv-orlando has quit IRC07:56
*** salv-orlando has joined #openstack-security07:56
*** aurelien__ has joined #openstack-security08:28
*** zul has quit IRC08:32
*** zul has joined #openstack-security08:45
*** tesseract has joined #openstack-security08:50
*** dmk0202 has joined #openstack-security09:05
*** aurelien__ has quit IRC09:17
*** markvoelker has joined #openstack-security09:24
*** markvoelker has quit IRC09:29
*** salv-orl_ has joined #openstack-security10:25
*** salv-orlando has quit IRC10:28
*** dave-mccowan has joined #openstack-security10:35
*** shohel has joined #openstack-security10:51
*** salv-orl_ has quit IRC11:04
*** salv-orlando has joined #openstack-security11:05
*** salv-orl_ has joined #openstack-security11:18
*** salv-orlando has quit IRC11:23
*** markvoelker has joined #openstack-security11:25
*** markvoelker has quit IRC11:29
*** salv-orl_ has quit IRC11:51
*** salv-orlando has joined #openstack-security11:52
*** salv-orlando has quit IRC11:58
*** salv-orlando has joined #openstack-security11:58
*** markvoelker has joined #openstack-security12:06
*** salv-orlando has quit IRC12:42
*** salv-orlando has joined #openstack-security12:43
*** flerfb0rt has joined #openstack-security12:48
*** flerfb0rt has left #openstack-security12:58
*** edmondsw has joined #openstack-security13:01
*** edtubill has joined #openstack-security13:09
*** jmckind has joined #openstack-security13:17
*** sdake has joined #openstack-security13:28
*** sdake_ has joined #openstack-security13:34
*** cleong has joined #openstack-security13:34
*** sdake has quit IRC13:36
*** edtubill has quit IRC13:39
*** jmckind has quit IRC13:47
*** jmckind has joined #openstack-security13:50
*** mvaldes has joined #openstack-security13:52
*** ametts has joined #openstack-security13:53
*** edtubill has joined #openstack-security14:09
*** edtubill has quit IRC14:13
*** tkelsey has joined #openstack-security14:23
*** shohel has quit IRC14:24
*** jhfeng has joined #openstack-security14:32
*** sdake_ has quit IRC14:36
*** flerfb0rt has joined #openstack-security14:41
*** vinaypotluri has joined #openstack-security14:44
*** mvaldes has quit IRC14:49
*** mvaldes has joined #openstack-security14:53
*** jmckind has quit IRC15:16
*** rcernin has quit IRC15:17
*** edtubill has joined #openstack-security15:19
*** sdake has joined #openstack-security15:28
*** jmckind has joined #openstack-security15:41
*** unrahul has joined #openstack-security15:45
*** ccneill has joined #openstack-security16:00
*** tesseract has quit IRC16:13
*** salv-orl_ has joined #openstack-security16:25
*** salv-orlando has quit IRC16:27
*** dmk0202 has quit IRC16:30
*** mdong has joined #openstack-security16:39
*** alejandro1 has joined #openstack-security17:03
alejandro1hola17:03
*** alejandro1 has left #openstack-security17:04
*** AJaeger has joined #openstack-security17:07
AJaegerhyakuhei: could you +1 https://review.openstack.org/#/c/325049/ , please? It will not merge without your approval...17:07
*** mvaldes has quit IRC17:12
*** jmckind has quit IRC17:29
*** salv-orl_ has quit IRC17:41
*** salv-orlando has joined #openstack-security17:41
*** tkelsey has quit IRC17:44
*** mvaldes has joined #openstack-security17:54
*** ccneill has quit IRC18:05
*** ccneill has joined #openstack-security18:16
*** ametts has quit IRC18:27
*** mdong has quit IRC18:36
*** mdong has joined #openstack-security18:38
*** ametts has joined #openstack-security18:40
*** jmckind has joined #openstack-security18:56
*** mhayden has quit IRC19:00
*** mhayden has joined #openstack-security19:00
*** mdong has quit IRC19:03
*** mvaldes has quit IRC19:19
*** diazjf has joined #openstack-security19:29
*** diazjf has quit IRC19:39
*** tkelsey has joined #openstack-security19:40
*** diazjf has joined #openstack-security19:41
*** tkelsey has quit IRC19:44
*** mvaldes has joined #openstack-security20:01
*** mdong has joined #openstack-security20:02
*** jmckind has quit IRC20:03
mdongccneill vinaypotluri unrahul: just a quick question on the SSL tests20:03
ccneillshoot20:03
mdongis there a reason why that’s in the fuzz test?20:03
ccneilldon't think so20:03
ccneillconvenience20:03
ccneillI think we agreed on it at the time, but it should likely be a separate (non-fuzz) test20:03
mdongOk. Does it make more sense as a seperate test altogether?20:03
mdongok20:04
ccneillthe problem is that we don't have the infrastructure in base test case at the moment that makes it easy to just add that on20:04
ccneillbut yeah, it should be a separate test I believe20:04
mdongI was thinking we just combine that one with the CORS test20:05
*** AJaeger has left #openstack-security20:05
ccneillmaybe..20:05
ccneillI don't know though20:05
unrahulshould we..?20:05
ccneillthat seems like 2 separate issues20:05
unrahulas SSL kinda checks the body returned and CORS is a strict HEADER tests.. so..20:06
ccneillthey're very simple, so I'm tempted to combine them just for simplicity, but if we're taking our "one test = one issue" thing seriously, we need a separate test20:06
mdongI don’t mean in the same test case20:06
unrahuloh..20:06
*** edtubill has quit IRC20:06
unrahulso like the same file, but two distinct issues..20:06
unrahul?20:06
mdongactually now that I’m looking at it maybe not, I was under the wrong impression the there was like a BaseCorsTestCase20:07
mdongthat we could repurpose to have the SSL test inherit off of20:07
unrahulna.. nop...20:07
ccneillmmm nah :/20:07
ccneillwe need to move more stuff from base fuzz to base test case20:08
ccneillfair amount of boilerplate required right now20:08
unrahulbut may be I guess.. it is better to add that check to see if the parent url is https and see if returns http.. to avoid false positives.20:08
ccneill^ that's what I was saying in the meeting, but I think mvaldes disagreed20:09
mdongright. well either way I think we should move the SSL test out from BaseFuzz, maybe into its own class20:09
ccneillnot sure what his thinking was on that. mvaldes?20:09
ccneillmdong: +120:09
mvaldesshhhh… i'm listening to vidyo20:09
unrahulyup agree.20:09
unrahul:D20:09
unrahulMatt,  I am gonna close that pull request, again. phew!.. :/20:10
*** diazjf has quit IRC20:13
*** jmckind has joined #openstack-security20:14
*** diazjf has joined #openstack-security20:18
*** diazjf has quit IRC20:28
*** jmckind has quit IRC20:38
*** cleong has quit IRC20:43
openstackgerritMerged openstack/syntribos: modified command injection timeout to read from config  https://review.openstack.org/32403320:43
*** diazjf has joined #openstack-security21:06
mvaldesccneill:  url should never be http21:08
*** edtubill has joined #openstack-security21:09
*** edtubill has quit IRC21:12
*** edtubill has joined #openstack-security21:13
*** flerfb0rt has quit IRC21:14
mvaldes /thread21:17
*** mvaldes has quit IRC21:17
*** diazjf has quit IRC21:33
*** diazjf has joined #openstack-security21:36
*** edtubill has quit IRC21:55
*** edtubill has joined #openstack-security21:57
openstackgerritEric Brown proposed openstack/bandit: Add man page for bandit command line  https://review.openstack.org/32488821:59
*** edtubill has quit IRC22:03
*** sdake_ has joined #openstack-security22:03
*** sdake has quit IRC22:06
*** diazjf has quit IRC22:06
*** sdake has joined #openstack-security22:06
*** sdake_ has quit IRC22:10
*** edtubill has joined #openstack-security22:11
*** salv-orl_ has joined #openstack-security22:24
*** mdong has quit IRC22:25
*** salv-orlando has quit IRC22:27
*** ametts has quit IRC22:30
*** sdake has quit IRC22:43
*** edmondsw has quit IRC22:47
*** jhfeng has quit IRC22:59
*** edtubill has quit IRC23:08
*** sdake has joined #openstack-security23:12
*** markvoelker has quit IRC23:13
*** salv-orl_ has quit IRC23:43
*** salv-orlando has joined #openstack-security23:43
*** sdake has quit IRC23:46

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!