13:00:57 <witek> #startmeeting monasca 13:00:58 <openstack> Meeting started Tue Feb 18 13:00:57 2020 UTC and is due to finish in 60 minutes. The chair is witek. Information about MeetBot at http://wiki.debian.org/MeetBot. 13:00:59 <openstack> Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. 13:01:01 <openstack> The meeting name has been set to 'monasca' 13:01:03 <Dobroslaw> hi 13:01:07 <arseni-lipinski_> hi 13:01:09 <adriancz> hello 13:01:12 <witek> Hi there 13:01:22 <witek> nice to see you 13:01:25 <piotrowskim> hi 13:01:47 <witek> do we have some items for the agenda today? 13:01:57 <arseni-lipinski_> i have a topic to discuss 13:02:02 <arseni-lipinski_> regarding the plugin 13:02:16 <witek> filling in the agenda 13:02:43 <witek> #topic Kibana plugin 13:02:47 <arseni-lipinski_> okay 13:02:55 <arseni-lipinski_> so the situation is such 13:02:58 <witek> stage is yours 13:03:04 <arseni-lipinski_> kibana has a feature named console 13:03:23 <arseni-lipinski_> it allows to execute any ES query straight from Kibana 13:03:49 <arseni-lipinski_> and imo it's a security threat 13:04:20 <arseni-lipinski_> because well with multitenancy basically a ton of requests have to be checked so that users have access only to the info they're allowed to 13:04:35 <arseni-lipinski_> and there are a lot of different queries and all 13:04:47 <arseni-lipinski_> and imo console shouldn't even be accesible to the end user 13:05:02 <arseni-lipinski_> it's disableable in the config with no effort involved 13:05:24 <arseni-lipinski_> so i'm asking should it be disabled in the end? 13:05:50 <adriancz> I think we not need this feature 13:06:06 <witek> could you add some reference to documentation? 13:06:12 <arseni-lipinski_> https://www.elastic.co/guide/en/kibana/current/console-kibana.html - that's the page regarding the console 13:06:14 <adriancz> and we can disable this console 13:06:49 <witek> got it, it's described as a dev tool 13:06:53 <arseni-lipinski_> yes 13:06:55 <arseni-lipinski_> it's a dev tool basically, so i guess it's only logical 13:06:57 <arseni-lipinski_> to disable it 13:07:43 <witek> we shouldn't expose it to the users in any case 13:07:50 <arseni-lipinski_> understood 13:07:53 <arseni-lipinski_> so it's all good then 13:08:22 <arseni-lipinski_> basically, that's everything i needed to know 13:09:03 <witek> how is the work progressing? seems not to be straight forward 13:09:13 <arseni-lipinski_> almost completed 13:09:38 <arseni-lipinski_> i'll have to refactor some things, remove irrelevant code and add/rewrite tests 13:09:38 <witek> nice, waiting for patches 13:09:42 <arseni-lipinski_> and that should be it 13:09:57 <arseni-lipinski_> threre's already 38 :D 13:10:02 <witek> thanks for your work 13:11:25 <witek> do we have any other topics for today? 13:12:46 <witek> I'm still trying to figure out why the tempest test for auto-scaling are failing in OpenStack CI 13:13:00 <witek> https://review.opendev.org/700886 13:13:11 <witek> https://zuul.opendev.org/t/openstack/build/a5fabbf29082475ebf1cd45a46756d88 13:14:50 <witek> for some reason it cannot find monascaclient module 13:14:51 <witek> https://zuul.opendev.org/t/openstack/build/a5fabbf29082475ebf1cd45a46756d88/log/controller/logs/screen-h-eng.txt#64287 13:15:15 <witek> and the strange thing is, I cannot reproduce it in my own environment 13:16:02 <witek> the test passes here without problems 13:16:38 <witek> if there are no other topics for today, I 13:16:46 <witek> I'll be wrapping up 13:17:02 <witek> thanks for joining 13:17:13 <witek> and see you next week 13:17:16 <witek> bye bye 13:17:24 <arseni-lipinski_> bye 13:17:37 <witek> #endmeeting