Wednesday, 2016-06-15

*** edtubill has joined #openstack-security00:05
*** mvaldes has joined #openstack-security00:10
*** mvaldes1 has joined #openstack-security00:11
*** mvaldes has quit IRC00:14
*** rcernin has joined #openstack-security00:17
*** sdake has quit IRC00:18
*** rcernin has quit IRC00:22
*** browne has quit IRC00:28
*** edtubill has quit IRC00:34
*** tkelsey has joined #openstack-security00:41
*** mvaldes1 has quit IRC00:45
*** tkelsey has quit IRC00:45
*** edtubill has joined #openstack-security00:45
*** edtubill has quit IRC00:46
*** zul_ has joined #openstack-security00:47
*** rcernin has joined #openstack-security00:48
*** vinaypotluri has quit IRC00:51
*** rcernin has quit IRC00:53
*** diazjf has quit IRC00:54
*** bpokorny_ has joined #openstack-security00:57
*** ccneill has quit IRC00:59
*** bpokorny has quit IRC01:00
*** bpokorny_ has quit IRC01:01
*** rcernin has joined #openstack-security01:05
*** rcernin has quit IRC01:10
*** sdake has joined #openstack-security01:28
*** sdake has quit IRC01:32
*** vinaypotluri has joined #openstack-security01:32
*** browne has joined #openstack-security02:16
*** nkinder has quit IRC02:23
*** nkinder has joined #openstack-security02:23
*** zul_ has quit IRC02:43
*** diazjf has joined #openstack-security02:48
*** browne has quit IRC02:48
*** yuanying has quit IRC02:50
*** yuanying has joined #openstack-security02:53
*** tkelsey has joined #openstack-security03:42
*** tkelsey has quit IRC03:47
*** yuanying_ has joined #openstack-security03:48
*** jose2 has joined #openstack-security03:49
*** jose2 has left #openstack-security03:49
*** yuanying has quit IRC03:49
*** diazjf has left #openstack-security04:21
*** salv-orl_ has quit IRC04:54
*** salv-orlando has joined #openstack-security04:54
*** salv-orlando has quit IRC05:17
*** salv-orlando has joined #openstack-security05:17
*** salv-orl_ has joined #openstack-security05:29
*** salv-orlando has quit IRC05:32
*** yuanying has joined #openstack-security06:03
*** yuanying_ has quit IRC06:05
*** openstackgerrit has quit IRC06:18
*** openstackgerrit has joined #openstack-security06:18
*** yuanying has quit IRC06:21
*** salv-orlando has joined #openstack-security06:24
*** yuanying has joined #openstack-security06:28
*** salv-orl_ has quit IRC06:28
*** salv-orlando has quit IRC06:29
*** rcernin has joined #openstack-security06:29
*** tkelsey has joined #openstack-security06:45
*** tkelsey has quit IRC06:49
*** tesseract has joined #openstack-security07:03
*** rcernin has quit IRC07:04
*** rcernin has joined #openstack-security07:04
*** yuanying has quit IRC07:05
*** yuanying has joined #openstack-security07:08
*** openstackgerrit has quit IRC07:33
*** openstackgerrit has joined #openstack-security07:33
*** salv-orlando has joined #openstack-security07:41
*** liverpooler has joined #openstack-security08:15
*** dmk0202 has joined #openstack-security08:22
*** tkelsey has joined #openstack-security08:55
*** unrahul has quit IRC09:22
*** vinaypotluri has quit IRC09:41
*** salv-orlando has quit IRC09:47
*** salv-orlando has joined #openstack-security09:48
openstackgerritMerged openstack/security-doc: Removed duplicate & out-dated template. Updated process  https://review.openstack.org/32965709:57
*** salv-orlando has quit IRC10:56
*** salv-orlando has joined #openstack-security10:57
*** dave-mccowan has quit IRC11:04
*** salv-orlando has quit IRC11:06
*** dave-mccowan has joined #openstack-security11:20
*** dave-mccowan has quit IRC11:47
*** edmondsw has joined #openstack-security12:43
*** davidjd-gh has joined #openstack-security12:50
*** davidjd-gh has left #openstack-security12:52
*** salv-orlando has joined #openstack-security12:56
*** salv-orlando has quit IRC12:56
*** salv-orlando has joined #openstack-security12:56
*** ibravo has joined #openstack-security13:02
*** davidjd-gh has joined #openstack-security13:05
*** davidjd-gh has left #openstack-security13:07
*** rcernin has quit IRC13:14
*** davidjd-gh has joined #openstack-security13:19
*** davidjd-gh has quit IRC13:25
*** davidjd-gh has joined #openstack-security13:26
*** jmckind has joined #openstack-security13:27
*** rcernin has joined #openstack-security13:28
*** sdake has joined #openstack-security13:29
davidjd-ghhola13:31
*** jmckind_ has joined #openstack-security13:31
*** jmckind has quit IRC13:34
*** davidjd-gh has left #openstack-security13:35
*** sdake_ has joined #openstack-security13:42
*** sdake has quit IRC13:45
*** rcernin has quit IRC13:54
*** ibravo2 has joined #openstack-security14:01
*** user154752 has joined #openstack-security14:03
*** ibravo has quit IRC14:05
*** mvaldes has joined #openstack-security14:05
*** rcernin has joined #openstack-security14:09
*** user154752 has quit IRC14:10
*** Unterd0g has quit IRC14:13
*** Unterd0g has joined #openstack-security14:16
*** rcernin has quit IRC14:18
*** sigmavirus24_awa is now known as sigmavirus2414:18
*** user154752 has joined #openstack-security14:21
*** user154752 has quit IRC14:27
*** rcernin has joined #openstack-security14:31
*** catintheroof has joined #openstack-security14:32
*** user154752 has joined #openstack-security14:33
*** mvaldes has quit IRC14:38
*** edtubill has joined #openstack-security14:42
*** catintheroof has quit IRC15:08
*** sdake_ has quit IRC15:08
*** unrahul has joined #openstack-security15:09
*** sdake has joined #openstack-security15:10
*** sdake has quit IRC15:11
*** mvaldes has joined #openstack-security15:18
*** user154752 has quit IRC15:21
*** browne has joined #openstack-security15:27
openstackgerritEric Brown proposed openstack/bandit: Allow output to default to stdout using argparse  https://review.openstack.org/32614815:32
*** pcaruana has quit IRC15:50
*** dmk0202 has quit IRC15:52
*** rcernin has quit IRC15:53
*** tesseract has quit IRC15:55
*** sdake has joined #openstack-security16:05
*** krotscheck is now known as krotscheck_dcm16:09
*** ccneill has joined #openstack-security16:21
*** aimeeu has joined #openstack-security16:26
*** mvaldes has quit IRC16:27
*** austin987 has quit IRC16:40
*** sdake has quit IRC16:42
*** bpokorny has joined #openstack-security16:47
*** bpokorny has quit IRC16:47
*** bpokorny has joined #openstack-security16:48
*** austin987 has joined #openstack-security16:52
*** browne has quit IRC16:53
*** mvaldes has joined #openstack-security17:17
*** pcaruana has joined #openstack-security17:21
*** ccneill has quit IRC17:43
*** ccneill has joined #openstack-security17:43
*** mvaldes has quit IRC18:02
*** mvaldes has joined #openstack-security18:02
*** browne has joined #openstack-security18:17
openstackgerritEric Brown proposed openstack/bandit: Allow output to default to stdout using argparse  https://review.openstack.org/32614818:24
*** aimeeu has quit IRC18:39
*** salv-orlando has quit IRC18:43
*** salv-orlando has joined #openstack-security18:44
*** aimeeu has joined #openstack-security18:47
*** salv-orl_ has joined #openstack-security18:55
*** salv-orlando has quit IRC18:58
*** openstackgerrit has quit IRC19:33
*** openstackgerrit has joined #openstack-security19:33
*** sdake has joined #openstack-security19:36
*** sdake_ has joined #openstack-security19:40
*** ccneill has quit IRC19:41
*** ccneill has joined #openstack-security19:41
*** sdake has quit IRC19:42
*** salv-orl_ has quit IRC19:45
*** salv-orlando has joined #openstack-security19:45
*** tkelsey has quit IRC19:56
*** krotscheck_dcm is now known as krotscheck20:00
ccneillruh roh20:01
ccneillhttp://blog.blindspotsecurity.com/2016/06/advisory-http-header-injection-in.html20:01
*** sdake_ has quit IRC20:07
*** sdake has joined #openstack-security20:07
*** sdake_ has joined #openstack-security20:11
*** sdake has quit IRC20:12
*** mdong has joined #openstack-security20:16
*** unrahul has quit IRC20:22
browneccneill: not good20:22
ccneillindeed20:22
ccneill:(20:22
ccneillparticularly fun: While the fix has been available for a while in the latest versions, the lack of follow-though by Python Security means many stable OS distributions likely have not had back patches applied to address it. At least Debian Stable, as of this writing, is still vulnerable.20:23
browneyeah, Ubuntu trusty is still using Python 2.7.6 which lacks TLS 1.1/1.220:24
ccneillyep20:24
ccneillv_v20:24
ccneillas pip reminds me constantly20:24
ccneilltried fixing it. there be dragons. unfixed.20:24
browneso sad20:24
*** sdake_ has quit IRC20:27
*** mvaldes has quit IRC20:51
*** bpokorny has quit IRC20:57
*** mvaldes has joined #openstack-security21:08
*** bpokorny has joined #openstack-security21:14
*** bpokorny has quit IRC21:28
*** bpokorny has joined #openstack-security21:29
*** bpokorny_ has joined #openstack-security21:31
*** mvaldes has quit IRC21:33
*** bpokorny has quit IRC21:34
*** bpokorny_ has quit IRC21:39
*** bpokorny has joined #openstack-security21:40
*** edtubill has quit IRC21:58
openstackgerritMichael Dong proposed openstack/syntribos: Added command line option for reporting by issue rather than by test  https://review.openstack.org/33024422:00
*** openstackgerrit has quit IRC22:02
*** unrahul has joined #openstack-security22:04
*** catintheroof has joined #openstack-security22:04
*** openstackgerrit has joined #openstack-security22:05
*** ibravo2 has quit IRC22:08
*** salv-orlando has quit IRC22:25
*** salv-orlando has joined #openstack-security22:26
*** edmondsw has quit IRC22:40
*** catintheroof has quit IRC22:41
*** woodburn has quit IRC22:53
*** mdong has quit IRC22:53
*** woodburn has joined #openstack-security22:55

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!