*** bknudson has joined #openstack-security | 00:04 | |
*** tmcpeak has quit IRC | 00:23 | |
*** amrith has left #openstack-security | 00:29 | |
*** bdpayne has joined #openstack-security | 02:20 | |
*** dmccowan has quit IRC | 03:36 | |
*** gnef has joined #openstack-security | 04:52 | |
*** gnef has quit IRC | 04:52 | |
*** gnef has joined #openstack-security | 04:53 | |
*** gnef has quit IRC | 04:53 | |
*** gnef has joined #openstack-security | 04:53 | |
*** gnef has quit IRC | 04:54 | |
*** voodookid has joined #openstack-security | 04:55 | |
*** voodookid has quit IRC | 05:47 | |
*** bdpayne has quit IRC | 05:50 | |
*** bdpayne has joined #openstack-security | 05:54 | |
openstackgerrit | A change was merged to openstack/security-doc: Improve wording of Object Storage chapter para https://review.openstack.org/115152 | 06:36 |
---|---|---|
openstackgerrit | A change was merged to openstack/security-doc: Adding Server section and FIM to integrity lifestyle https://review.openstack.org/116697 | 06:36 |
*** bdpayne has quit IRC | 06:59 | |
openstackgerrit | OpenStack Proposal Bot proposed a change to openstack/security-doc: Updated from openstack-manuals https://review.openstack.org/116813 | 07:27 |
*** jamielennox is now known as jamielennox|away | 08:03 | |
*** fishcried has joined #openstack-security | 08:21 | |
*** fishcried has quit IRC | 08:30 | |
*** fishcried has joined #openstack-security | 08:31 | |
*** fishcried has left #openstack-security | 08:32 | |
*** fishcried has joined #openstack-security | 08:32 | |
*** fishcried has quit IRC | 08:33 | |
*** fishcried has joined #openstack-security | 08:49 | |
*** fishcried has quit IRC | 08:53 | |
*** fishcried has joined #openstack-security | 08:54 | |
*** fishcried has quit IRC | 10:04 | |
*** dmccowan has joined #openstack-security | 12:13 | |
*** dmccowan has quit IRC | 12:19 | |
*** dmccowan has joined #openstack-security | 12:20 | |
*** kaliya has joined #openstack-security | 12:57 | |
*** dmccowan_ has joined #openstack-security | 13:04 | |
*** dmccowan has quit IRC | 13:05 | |
*** dmccowan_ is now known as dmccowan | 13:05 | |
*** bknudson has quit IRC | 13:06 | |
*** nkinder has quit IRC | 13:18 | |
*** voodookid has joined #openstack-security | 13:25 | |
*** dmccowan has quit IRC | 13:36 | |
*** voodookid has quit IRC | 13:52 | |
*** dmccowan has joined #openstack-security | 13:54 | |
*** bknudson has joined #openstack-security | 14:10 | |
*** nkinder has joined #openstack-security | 14:12 | |
*** gnef has joined #openstack-security | 14:50 | |
*** voodookid has joined #openstack-security | 15:00 | |
*** dmccowan has quit IRC | 15:30 | |
*** tmcpeak has joined #openstack-security | 15:33 | |
*** bdpayne has joined #openstack-security | 16:12 | |
*** nkinder has quit IRC | 16:41 | |
bdpayne | I think we need some security people in this deck: http://www.metacloud.com/voting-ends-friday-people-openstack-card-deck-sneak-peek/ | 17:11 |
*** rlpple has joined #openstack-security | 17:18 | |
*** rlpple has quit IRC | 17:21 | |
*** rlpple has joined #openstack-security | 17:21 | |
*** dmccowan has joined #openstack-security | 17:25 | |
*** bdpayne has quit IRC | 18:04 | |
*** nkinder has joined #openstack-security | 18:04 | |
*** bdpayne has joined #openstack-security | 18:04 | |
*** dmccowan has quit IRC | 18:49 | |
tmcpeak | hey guys, want to share a design session? looks like there are only 6-9 | 19:12 |
tmcpeak | http://www.openstack.org/blog/2014/08/call-for-proposals-open-source-ecosystem-design-sessions-at-the-paris-summit/ | 19:12 |
tmcpeak | I'd like to do some gate test stuff, but doubt that would be enough to fill one of those slots alone | 19:12 |
tmcpeak | maybe: | 19:13 |
tmcpeak | "The wonderful things OSSG does for YOU" | 19:13 |
tmcpeak | 1) OSSN | 19:13 |
tmcpeak | 2) the guide | 19:13 |
tmcpeak | 3) threat modeling | 19:13 |
tmcpeak | 4) gate testing | 19:13 |
tmcpeak | hyakuhei_ nkinder bdpayne | 19:15 |
bdpayne | yes? | 19:15 |
tmcpeak | chair6 | 19:15 |
tmcpeak | ^ | 19:15 |
nkinder | tmcpeak: I do think gate tests should be at least a part of a session | 19:16 |
tmcpeak | yeah, they will be imminently useful going forward I think | 19:16 |
tmcpeak | I'm working on building out Bandit | 19:16 |
tmcpeak | going to add sudo without rootwrap tests soon | 19:17 |
nkinder | tmcpeak: cool, what are you adding right now? | 19:17 |
bdpayne | perhaps session on secure coding best practices | 19:17 |
tmcpeak | bdpayne: +1 | 19:17 |
nkinder | bdpayne: +1 That's a full session IMHO | 19:17 |
bdpayne | yeah, it is | 19:17 |
bdpayne | the issue that I have | 19:17 |
bdpayne | is that it isn't really a design session per se | 19:17 |
tmcpeak | it isn't? | 19:17 |
bdpayne | they tend to frown on people just getting up there and talking the whole time | 19:17 |
bdpayne | they typically go for no slides, and lots of white board / etherpad collaboration | 19:18 |
tmcpeak | ahhh | 19:18 |
bdpayne | though I think it would be valuable | 19:18 |
nkinder | tmcpeak: I would suggest running bandit against other python projects. I found a crash in bandit's wildcard injection test when running it against FreeIPA last week. | 19:18 |
bdpayne | might be worth chatting with someone like Thierry about it | 19:18 |
tmcpeak | nkinder: I found the same one Friday :) you beat me to a patch by about 3 days | 19:18 |
nkinder | Yeah, design sessions are typically collaborative | 19:18 |
tmcpeak | well then getting gate tests integrated into whatever project you hold close to your heart would be good for one, right? | 19:19 |
nkinder | tmcpeak: yes, though I hope to have that done before the summit | 19:20 |
tmcpeak | true | 19:20 |
tmcpeak | it sounds like description is "do things to help prepare for Kilo" | 19:20 |
tmcpeak | so maybe we could do a wrap up by then, which projects don't have them yet and why not | 19:20 |
tmcpeak | do things to prepare for Kilo: btw guys, here you you write secure code. Start doing it, mkay? | 19:21 |
tmcpeak | *here's how | 19:22 |
tmcpeak | my summit talk didn't make it so I dunno if I'll be there or not, but I'd love to help anyway | 19:23 |
*** use has joined #openstack-security | 19:30 | |
*** use has quit IRC | 19:30 | |
*** dmccowan has joined #openstack-security | 19:45 | |
*** dmccowan_ has joined #openstack-security | 19:49 | |
*** dmccowan has quit IRC | 19:49 | |
*** dmccowan_ is now known as dmccowan | 19:49 | |
*** gnef has quit IRC | 20:29 | |
tmcpeak | hey, do we have a preferred way to create file permissions? | 20:36 |
*** HimechiSama has joined #openstack-security | 20:41 | |
*** HimechiSama has quit IRC | 20:41 | |
*** rlpple has quit IRC | 20:58 | |
*** bknudson has quit IRC | 22:13 | |
*** chair6_ has joined #openstack-security | 22:21 | |
*** chair6 has quit IRC | 22:22 | |
*** tmcpeak has quit IRC | 22:23 | |
*** openstackgerrit has quit IRC | 22:43 | |
*** tmcpeak has joined #openstack-security | 22:58 | |
tmcpeak | bdpayne: what's the haps with the ops? | 22:58 |
tmcpeak | the reign of terror of Gabriela appears to have subsided momentarily, but it's probably just regaining strength | 22:59 |
bdpayne | tmcpeak Not clear... someone thought they added me, but I don't have privs | 23:00 |
bdpayne | we'll sort it out eventually | 23:00 |
tmcpeak | can you +o yourself? | 23:01 |
bdpayne | you say that like I know what you mean :-) | 23:03 |
bdpayne | seriously though... what does that mean? | 23:03 |
tmcpeak | bdpayne: there are commands | 23:03 |
tmcpeak | bdpayne: let me dig it up | 23:03 |
tmcpeak | bdpayne: /mode #mychan +oooo nick1 nick2 nick3 nick4 | 23:04 |
*** voodookid has quit IRC | 23:04 | |
bdpayne | So I got "#openstack-security You're not a channel operator" | 23:07 |
bdpayne | heh | 23:07 |
tmcpeak | bdpayne: how about this: /msg ChanServ ACCESS #openstack-security ADD bdpayne FOUNDER | 23:10 |
tmcpeak | from this page: http://wiki.foonetic.net/wiki/ChanServ_Commands | 23:10 |
bdpayne | "You are not allowed to set +FRis on bdpayne in #openstack-security." | 23:11 |
bdpayne | it looks like I'm just a regular guy | 23:11 |
tmcpeak | do the same with SOP instead of FOUNDER | 23:11 |
bdpayne | still no go | 23:14 |
*** Abby has joined #openstack-security | 23:15 | |
*** Abby is now known as Guest82930 | 23:15 | |
nkinder | bdpayne: I ran the command from the review, and I can see that you are on some admin list | 23:16 |
*** Guest82930 has quit IRC | 23:16 | |
nkinder | bdpayne: 11 bdpayne +Afortv [modified 21 hours, 8 minutes, 8 seconds ago] | 23:16 |
bdpayne | huh | 23:16 |
nkinder | bdpayne: don't use FOUNDER | 23:17 |
bdpayne | ok | 23:18 |
bdpayne | I tried SOP too, same result | 23:18 |
tmcpeak | well, going down the line we have "AOP" | 23:19 |
tmcpeak | that's the minimum for AutoOP which we want | 23:19 |
nkinder | yeah, AOP seems right | 23:19 |
bdpayne | AOP didn't give me an error | 23:28 |
bdpayne | I may need to log out and in to get the privs? | 23:28 |
tmcpeak | bdpayne: yeah | 23:29 |
tmcpeak | or even just leave the channel and come back should do it | 23:30 |
*** fishcried has joined #openstack-security | 23:30 | |
*** bdpayne has quit IRC | 23:33 | |
*** bdpayne has joined #openstack-security | 23:34 | |
bdpayne | hrm, still no privs | 23:35 |
*** bknudson has joined #openstack-security | 23:37 | |
*** fishcried has quit IRC | 23:37 | |
*** fishcried has joined #openstack-security | 23:38 | |
tmcpeak | hmm | 23:40 |
tmcpeak | bdpayne: strange | 23:40 |
tmcpeak | bdpayne: can you run this: /cs set #channel xop on | 23:41 |
bdpayne | invalid command | 23:42 |
tmcpeak | hmm, ok | 23:42 |
tmcpeak | bdpayne: /cs aop #channel add nickname | 23:42 |
bdpayne | s: /cs set #openstack-security xop on | 23:45 |
bdpayne | heh | 23:45 |
bdpayne | yeah, still seeing invalid commands | 23:46 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!