Tuesday, 2018-02-06

*** edmondsw has joined #openstack-security00:21
*** edmondsw has quit IRC00:25
*** sailyang has joined #openstack-security00:30
*** chyka has quit IRC00:37
*** dave-mccowan has joined #openstack-security00:42
*** chyka has joined #openstack-security01:01
*** chyka has quit IRC01:06
*** liverpooler has joined #openstack-security01:23
*** liujiong has joined #openstack-security01:34
*** sailyang has quit IRC01:40
*** salv-orlando has joined #openstack-security01:45
*** sailyang has joined #openstack-security01:46
*** sailyang has left #openstack-security01:46
*** sailyang has joined #openstack-security01:46
*** sailyang has left #openstack-security01:47
*** chyka has joined #openstack-security01:50
*** chyka has quit IRC01:55
*** edmondsw has joined #openstack-security02:09
*** liujiong has quit IRC02:10
*** liujiong has joined #openstack-security02:11
*** edmondsw has quit IRC02:14
*** markvoelker has joined #openstack-security02:22
*** markvoelker has quit IRC02:24
*** markvoelker has joined #openstack-security02:31
*** salv-orlando has quit IRC02:33
*** salv-orlando has joined #openstack-security02:33
*** salv-orlando has quit IRC02:38
*** dave-mccowan has quit IRC02:48
*** markvoelker has quit IRC02:56
*** markvoelker has joined #openstack-security02:59
*** dave-mccowan has joined #openstack-security03:09
*** markvoelker has quit IRC03:11
*** markvoelker has joined #openstack-security03:14
*** d0ugal_ has joined #openstack-security03:16
*** d0ugal has quit IRC03:19
*** markvoelker has quit IRC03:25
*** liverpooler has quit IRC03:27
*** gyee has quit IRC03:29
*** markvoelker has joined #openstack-security03:30
*** dave-mccowan has quit IRC03:33
*** chyka has joined #openstack-security03:39
*** markvoelker has quit IRC03:42
*** chyka has quit IRC03:44
*** edmondsw has joined #openstack-security03:58
*** edmondsw has quit IRC04:02
*** dhruba has joined #openstack-security04:55
*** chyka has joined #openstack-security05:22
*** daidv has quit IRC05:26
*** edmondsw has joined #openstack-security05:46
*** edmondsw has quit IRC05:50
*** d0ugal_ has quit IRC06:14
*** chyka has quit IRC06:15
*** d0ugal_ has joined #openstack-security06:24
*** threestrands has quit IRC06:40
*** dhruba_m has joined #openstack-security06:52
*** dhruba has quit IRC06:54
*** liujiong has quit IRC07:03
*** liujiong has joined #openstack-security07:03
*** macermak has joined #openstack-security07:14
*** AlexeyAbashkin has joined #openstack-security07:32
*** rcernin has quit IRC07:37
*** AlexeyAbashkin has quit IRC07:39
*** AlexeyAbashkin has joined #openstack-security07:48
*** v12aml has quit IRC08:04
*** v12aml has joined #openstack-security08:05
*** pcaruana has joined #openstack-security08:14
*** tesseract has joined #openstack-security08:22
*** dhruba_m has quit IRC08:24
*** sxc731 has joined #openstack-security08:42
*** d0ugal_ has quit IRC08:57
*** d0ugal has joined #openstack-security08:57
*** d0ugal has quit IRC08:57
*** d0ugal has joined #openstack-security08:57
*** threestrands has joined #openstack-security09:06
openstackgerritYandy Sun proposed openstack/syntribos master: modify keystone spelling errors  https://review.openstack.org/54119209:06
*** threestrands has quit IRC09:21
*** edmondsw has joined #openstack-security09:22
*** edmondsw has quit IRC09:27
*** liujiong has quit IRC09:59
*** sxc731 has quit IRC10:38
*** chyka has joined #openstack-security10:52
*** chyka has quit IRC10:56
*** edmondsw has joined #openstack-security11:10
*** sxc731 has joined #openstack-security11:12
*** edmondsw has quit IRC11:15
*** sxc731 has quit IRC11:52
*** fyxim has quit IRC12:11
*** fyxim has joined #openstack-security12:11
*** Ulver has quit IRC12:25
*** Ulver has joined #openstack-security12:28
*** AlexeyAbashkin has quit IRC12:59
*** AlexeyAbashkin has joined #openstack-security13:01
*** liverpooler has joined #openstack-security13:04
*** edmondsw has joined #openstack-security13:13
*** AlexeyAbashkin has quit IRC13:25
*** AlexeyAbashkin has joined #openstack-security13:27
*** dave-mccowan has joined #openstack-security13:30
*** dave-mccowan has quit IRC13:35
*** dave-mcc_ has joined #openstack-security13:36
*** AlexeyAbashkin has quit IRC13:38
openstackgerritPetr Kovar proposed openstack/security-doc master: Remove LVM "shred" volume_clear option  https://review.openstack.org/54090013:50
*** chyka has joined #openstack-security14:23
*** liverpooler has quit IRC14:24
*** liverpooler has joined #openstack-security14:25
*** chyka has quit IRC14:28
*** AlexeyAbashkin has joined #openstack-security14:35
*** sweston has quit IRC14:54
*** sweston has joined #openstack-security14:54
*** macermak has quit IRC14:58
*** mnaser has quit IRC15:11
*** mnaser has joined #openstack-security15:12
*** pcaruana has quit IRC15:51
*** salv-orlando has joined #openstack-security15:57
*** salv-orlando has quit IRC16:03
*** salv-orlando has joined #openstack-security16:03
openstackgerritMerged openstack/bandit master: Sort the complete plugin list  https://review.openstack.org/54017016:25
*** vds_ has joined #openstack-security16:31
*** vds has quit IRC16:31
*** vds_ has quit IRC16:46
*** chyka has joined #openstack-security16:49
*** vds_ has joined #openstack-security16:53
*** salv-orlando has quit IRC16:54
*** salv-orlando has joined #openstack-security16:55
*** chyka_ has joined #openstack-security16:56
*** chyka has quit IRC16:57
*** salv-orlando has quit IRC16:59
*** gyee has joined #openstack-security17:02
*** salv-orlando has joined #openstack-security17:04
*** vds_ has quit IRC17:08
*** vds_ has joined #openstack-security17:23
*** AlexeyAbashkin has quit IRC17:25
*** AlexeyAbashkin has joined #openstack-security17:25
*** AlexeyAbashkin has quit IRC17:29
*** tesseract has quit IRC18:00
*** salv-orlando has quit IRC18:07
*** salv-orlando has joined #openstack-security18:07
*** salv-orlando has quit IRC18:12
*** browne has joined #openstack-security18:38
openstackgerritMerged openstack/bandit master: Add more_info URL to the YAML output  https://review.openstack.org/54017618:50
*** AlexeyAbashkin has joined #openstack-security19:00
*** jessegler has joined #openstack-security19:03
*** ehooo has joined #openstack-security19:05
ehoooHi19:06
ehoooi want to add new requirements in Bandit19:06
ehooohttps://github.com/ehooo/bandit/branches19:06
ehooocould someone explain me who could i do it from github? or is not posible from there?19:07
gagehugoehooo: https://review.openstack.org/#/q/project:openstack/bandit changes are submitted to gerrit19:08
ehoooThanks gagehugo19:09
ehooowhat is the name of the branch related with the spec?19:09
gagehugowhich spec?19:11
ehooohttps://blueprints.launchpad.net/bandit/+spec/django-sql-injection19:11
ehoooi want to add this19:11
ehooohttps://blueprints.launchpad.net/bandit/+spec/django-xss19:11
ehooohttps://blueprints.launchpad.net/bandit/+spec/django-cve19:11
gagehugoprobably something like "bp/django-sql-injection"19:12
ehoooi'm not sure i you will want to add one new group for CVE related with python apps19:12
gagehugohmm19:13
ehooohttps://github.com/ehooo/bandit/tree/django_cve19:14
gagehugonot sure if you can reference your branches from github19:18
gagehugoother than changing the remote to git.openstack.org19:18
*** jafeha has quit IRC19:21
*** salv-orlando has joined #openstack-security19:28
openstackgerritVictor proposed openstack/bandit master: Add support for django SQL injection  https://review.openstack.org/54141319:29
*** salv-orlando has quit IRC19:30
openstackgerritVictor proposed openstack/bandit master: Improve deteccion for mark_safe - Add introspection to detect static strings in order to minimize the false positives.  https://review.openstack.org/54141819:41
ehooogagehugo i don't have acess to push in git.openstack19:43
ehooobut is just add the new remote as gerrit19:43
ehoooand then git review19:43
gagehugoehooo you may have to create a gerrit account19:48
gagehugoor login19:48
gagehugohttps://wiki.openstack.org/wiki/How_To_Contribute#If_you.27re_a_developer19:49
*** austin987 has quit IRC19:51
*** austin987 has joined #openstack-security19:54
*** jafeha has joined #openstack-security20:00
*** browne has quit IRC20:03
*** browne has joined #openstack-security20:04
*** browne has quit IRC20:09
*** browne has joined #openstack-security20:10
*** jessegler has quit IRC20:28
*** chyka_ has quit IRC20:49
*** browne has quit IRC20:54
*** browne has joined #openstack-security20:58
*** browne has quit IRC20:59
*** AlexeyAbashkin has quit IRC21:21
*** salv-orlando has joined #openstack-security21:30
*** threestrands has joined #openstack-security21:32
*** salv-orlando has quit IRC21:33
*** jessegler has joined #openstack-security21:37
*** dave-mcc_ has quit IRC21:41
*** jafeha__ has joined #openstack-security21:42
*** jafeha has quit IRC21:44
*** browne has joined #openstack-security21:49
*** salv-orlando has joined #openstack-security22:05
*** openstackgerrit has quit IRC22:16
*** salv-orlando has quit IRC22:17
*** rcernin has joined #openstack-security22:28
*** chyka has joined #openstack-security22:35
*** edmondsw has quit IRC22:37
*** edmondsw has joined #openstack-security22:38
*** edmondsw has quit IRC22:42
*** ssathaye has quit IRC22:44
*** ssathaye has joined #openstack-security22:44
*** salv-orlando has joined #openstack-security22:47
*** openstackgerrit has joined #openstack-security22:53
openstackgerritVictor proposed openstack/bandit master: Add support for django SQL injection  https://review.openstack.org/54148322:53
*** browne has quit IRC22:54
*** Trident has quit IRC23:18
*** browne has joined #openstack-security23:20
*** M4g1c5t0rM has joined #openstack-security23:26
*** M4g1c5t0rM has quit IRC23:31
browneHi all.  Regarding Bandit, can we discuss maybe moving the project out of OpenStack and into pycqa?  It can wait till the next security meeting, but I feel that it would be better as part of the Python Code Quality Authority and in return get more contribution and attention.23:32
ehoooi think is better for contrib use github23:38
browneehooo: yep, that would involve moving from Gerrit to Github23:39
ehooobrowne i will try to fix all your comments as soon as can, tomorrow evening i thought23:45
ehooothanks for you comments XD23:45
brownesounds good. thanks ehooo23:46
ehooonow i'm fighting with gerrit XD23:46
browneha yeah, it's a different workflow that takes some getting used to23:46
ehoooso i think better tomorrow23:46
*** ehooo has quit IRC23:47

Generated by irclog2html.py 2.15.3 by Marius Gedminas - find it at mg.pov.lt!