Wednesday, 2017-01-11

openstackgerritMerged openstack/requirements: Bump ironic-lib to 2.4.0  https://review.openstack.org/41799100:07
*** jroll has quit IRC00:14
*** hongbin has quit IRC00:15
*** jroll has joined #openstack-requirements00:25
openstackgerritMerged openstack/requirements: update constraint for oslo.rootwrap to new release 5.3.1  https://review.openstack.org/41856101:01
*** dirk has joined #openstack-requirements01:33
prometheanfiretonyb: we need to update pysaml2, there's a vul in the versions we support02:17
prometheanfirevuln02:17
prometheanfireit's capped though :|02:17
tonybprometheanfire: Oh :(02:17
tonybprometheanfire: is there a public link for the details?02:18
prometheanfirehttps://github.com/rohe/pysaml2/issues/36602:19
prometheanfireya02:19
prometheanfirepatch does not apply cleanly02:20
prometheanfireso you know, I have that going for me, which is nice02:20
prometheanfiretonyb: you know of any tracker for pycryptome conversion?02:21
tonybprometheanfire: I don't know of one :(02:21
prometheanfireshould have had a tracker for that when it was capped :902:23
prometheanfire:(02:23
prometheanfiregentoo doesn't even have it packaged02:24
prometheanfireguess we can talk about this tomorrow02:27
prometheanfireor tonight for you02:27
prometheanfireI don't even know what the sha for the 4.0.2 tag is :|02:29
prometheanfireso, looking at the patch, it seems like it was already at least semi fixed...02:34
prometheanfiremaybe not02:34
prometheanfireseems to pass tests...02:56
prometheanfireand patch https://gist.github.com/1ea1da1375d31005e174f7e6df4037c103:03
tonybprometheanfire: Hmm I'm struggling to page all that in sorry.  go to bed so you can be at the meeting so we can talk about it ;P03:06
prometheanfiretonyb: our responce will depend on the distros really03:08
prometheanfireseems to pass most tests03:17
openstackgerritSteve Martinelli proposed openstack/requirements: Revert "Revert bumping upper constrains for openstacksdk"  https://review.openstack.org/41866303:39
tonybstevemar: really revert revert? my brain hurts ;P03:45
stevemartonyb: hehe03:46
stevemartonyb: well it'll be WIP for a while03:47
stevemarbah, it's in merge conflict03:47
tonybstevemar: I can fix the mergeconflict if you like.03:47
tonybstevemar: well if it's WiP I can just ignore it ;P03:47
openstackgerritSteve Martinelli proposed openstack/requirements: Revert "Revert bumping upper constrains for openstacksdk"  https://review.openstack.org/41866303:48
stevemartonyb: fixed it03:48
tonybstevemar: :) so you did :)03:49
openstackgerritSteve Martinelli proposed openstack/requirements: Revert "Revert bumping upper constrains for openstacksdk"  https://review.openstack.org/41866303:49
stevemarsorry, commit msg change03:49
stevemartonyb: since you're around, know what dirk was talking about here? https://review.openstack.org/#/c/418534/1 ?03:51
stevemartonyb: i don't follow where the stacktrace he mentions came from03:52
stevemarand the latest jenkins came up good, so *shrugs*03:52
tonybstevemar: It's probably somethign dirk is running outside the gate for extra security03:53
tonybstevemar: let me run up one in the gate ....03:54
tonybstevemar: https://review.openstack.org/41866603:56
stevemartonyb: hehe, that was going to be my next step03:57
tonybstevemar: I really shoudl make a script to generate the no-op changes04:01
stevemartonyb: $ echo "hello" >> README.rst :P04:04
tonybstevemar: :)   It needs to be a .py file otherwise some projects will redice the gate coverage04:05
tonybecho '# Nothing to see here' >> $(find -type f -name .py| head -n1)04:05
tonybgit commit -a -m "[DNM] Testing something\n\nDepends-On: $1" && git review04:06
tonybdone!04:06
prometheanfireok, sleeping now, catch you on the flip side04:43
stevemartonyb: there ya go!04:48
openstackgerritTony Breeds proposed openstack/requirements: update global requirement for os-vif to new release 1.4.0  https://review.openstack.org/41566004:57
stevemartonyb: cinderclient works *shrugs*05:10
tonybstevemar: Oh :(  we have a requirements meeting in a few hours I'll bring it up then05:11
stevemartonyb: rgr05:12
stevemartonyb: bugging cause i want to bump ksa reqs in keystonemiddleware and keystoneclient (so i don't have to re-release)05:13
tonybstevemar: ok.  We'll try to get it resolved this week so that all the duck line up next week for the final releases05:14
stevemartonyb: danke05:14
openstackgerritMerged openstack/requirements: pyroute2: Up the constraints for namespace improv  https://review.openstack.org/41830305:57
*** dims has quit IRC06:13
openstackgerritMerged openstack/requirements: pyroute2: up the global requirements  https://review.openstack.org/41845606:40
*** udesale has joined #openstack-requirements07:27
openstackgerritOpenStack Proposal Bot proposed openstack/requirements: Updated from generate-constraints  https://review.openstack.org/41875007:36
openstackgerritMerged openstack/requirements: Add construct lib for data parsing  https://review.openstack.org/41629307:45
openstackgerritTony Breeds proposed openstack/requirements: update constraint for os_vif to new release 1.4.0  https://review.openstack.org/41842107:46
prometheanfirestevemar: keystone right?08:04
openstackgerritTony Breeds proposed openstack/requirements: update constraint for os_vif to new release 1.4.0  https://review.openstack.org/41842108:05
*** strigazi_AFK is now known as strigazi08:13
prometheanfirestevemar: I ask because of pysaml2 cve08:15
openstackgerritFlavio Percoco proposed openstack/requirements: Update sphinx requirement  https://review.openstack.org/41877208:34
*** jpich has joined #openstack-requirements08:51
openstackgerritMerged openstack/requirements: update constraint for os-win to new release 1.3.0  https://review.openstack.org/41853209:13
openstackgerritMerged openstack/requirements: Add jsonmodels requirement  https://review.openstack.org/41516409:22
openstackgerritMerged openstack/requirements: Update Pillow uc to 4.0.0  https://review.openstack.org/41759209:36
openstackgerritMerged openstack/requirements: bump os-win to 1.3.0  https://review.openstack.org/41860509:36
openstackgerritDirk Mueller proposed openstack/requirements: Updated from generate-constraints  https://review.openstack.org/41875010:14
*** udesale has quit IRC10:17
*** sdague has joined #openstack-requirements11:15
*** dims has joined #openstack-requirements11:39
*** rtheis has joined #openstack-requirements12:09
openstackgerritAndreas Scheuring proposed openstack/requirements: Add zhmcclient to global-requirements  https://review.openstack.org/41368912:39
*** david-lyle has quit IRC13:56
*** david-lyle has joined #openstack-requirements13:59
openstackgerritMajor Hayden proposed openstack/requirements: Cap jinja2 at <2.9  https://review.openstack.org/41849414:13
openstackgerritMajor Hayden proposed openstack/requirements: Cap jinja2 at <2.9  https://review.openstack.org/41849414:15
*** david-lyle has quit IRC14:16
*** udesale has joined #openstack-requirements14:22
stevemarprometheanfire: o/ ?14:39
prometheanfirestevemar: the pycryptome email14:42
stevemarprometheanfire: ah updating to pycryptome from pycrypto14:43
stevemarprometheanfire: just getting to the ML today14:43
stevemarprometheanfire: what is it with projects renaming, happened with pep8 -> pycodestyle last year too14:46
prometheanfireI have no clue14:59
prometheanfireannoying though14:59
*** hongbin has joined #openstack-requirements15:06
*** udesale has quit IRC15:36
*** armax has joined #openstack-requirements15:52
openstackgerritgordon chung proposed openstack/requirements: kombu 4.0.0  https://review.openstack.org/41077416:35
stevemardirk: hi, have you investigated https://review.openstack.org/#/c/418534/1 further?16:50
dirkstevemar: no, I was caught up in way to many other things. let me look at it right now17:14
stevemardirk: cool, jenkins came back OK, and the cinderclient depends-on came back ok17:19
openstackgerritOpenStack Proposal Bot proposed openstack/requirements: update constraint for osc-lib to new release 1.3.0  https://review.openstack.org/41905717:19
dirkstevemar: I have seen that, but the jenkins test does something else17:21
dirkstevemar: it tests master state against the new dependency. I was testing new-release against latest cinderrelease17:21
dirkstevemar: ok, didn't take long, basically I'm missing this patch: https://review.openstack.org/#/c/400732/17:21
dirkso this is unrelated to keystoneauth1 but only apparently due to our bump of requests and urllib317:22
stevemar:)17:26
dirkstevemar: do you know anyone who could be pinged about doing a cinderclient release ?17:26
stevemardims: smcginnis i would assume? he's in -cinder17:27
* dims peeks17:27
dimslooks like you meant dirk ? :)17:27
stevemarwhoops!17:28
stevemarno cinderclient release during ocata yet?! https://github.com/openstack/releases/blob/master/deliverables/ocata/python-cinderclient.yaml17:28
stevemaror they use some other mechanism17:28
*** strigazi is now known as strigazi_AFK17:29
*** jpich has quit IRC17:46
stevemardirk: can you look at the bump too: https://review.openstack.org/#/c/418608/1 :)17:46
openstackgerritDirk Mueller proposed openstack/requirements: Update eventlet/greenlet to newest release  https://review.openstack.org/41759018:05
openstackgerritDirk Mueller proposed openstack/requirements: Update eventlet uc to 0.20.1  https://review.openstack.org/41759018:06
dirkstevemar: I'm ok with the min bump, just wanted to land the uc change for half a day and see that noone screams18:09
dirkstevemar: I'm just concerned about potential regressions of some sort, and minimum requirement bumps are sort of hard to get rid of18:09
*** david-lyle has joined #openstack-requirements18:16
openstackgerritMerged openstack/requirements: Updated from generate-constraints  https://review.openstack.org/41875018:58
stevemardirk: thats fine18:59
stevemardirk: keystoneauth is used by a lot of things18:59
openstackgerritMerged openstack/requirements: update constraint for keystoneauth1 to new release 2.17.0  https://review.openstack.org/41853419:13
*** mhayden has joined #openstack-requirements19:59
mhaydenprometheanfire: what verbiage would you prefer in the commit message for https://review.openstack.org/#/c/418494/ ?19:59
prometheanfiremhayden: look at the title19:59
prometheanfireit still says cap19:59
prometheanfire<2.920:00
prometheanfireI would state that it invalidates broken releases in the 2.9.* area20:00
prometheanfireor something20:00
prometheanfirebut like I said, minor20:00
prometheanfireI'm +W'ing now, was waiting for a passing run20:01
mhaydenah okay20:02
mhaydeni'll hold off then20:02
*** rtheis has quit IRC21:38
openstackgerritMerged openstack/requirements: update constraint for gnocchiclient to new release 2.8.0  https://review.openstack.org/41906322:02
openstackgerritMajor Hayden proposed openstack/requirements: Avoid Jinja2 versions 2.9.[0-4]  https://review.openstack.org/41849422:12
openstackgerritHongbin Lu proposed openstack/requirements: Request docker-py to be later than 1.8.0  https://review.openstack.org/41920223:54
hongbinhi requirement team, i tried to generate the upper_contraint.txt but failed with this error: http://paste.openstack.org/show/594643/23:55
hongbincould i get some helps to fix it?23:55

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!