*** ljfisher has quit IRC | 00:00 | |
*** bknudson has quit IRC | 00:01 | |
*** nkinder has joined #openstack-security | 00:06 | |
*** salv-orlando has quit IRC | 00:07 | |
*** salv-orlando has joined #openstack-security | 00:07 | |
*** tmcpeak has quit IRC | 00:52 | |
*** salv-orlando has quit IRC | 00:55 | |
*** bdpayne has quit IRC | 01:00 | |
*** mohitsharma has joined #openstack-security | 01:01 | |
*** mohitsha_ has joined #openstack-security | 01:03 | |
*** mohitsharma has quit IRC | 01:06 | |
*** _amrith_ is now known as amrith | 01:36 | |
*** salv-orlando has joined #openstack-security | 01:58 | |
*** bpokorny_ has quit IRC | 02:02 | |
*** salv-orlando has quit IRC | 02:02 | |
*** amrith is now known as _amrith_ | 02:14 | |
*** salv-orlando has joined #openstack-security | 02:16 | |
*** salv-orlando has quit IRC | 02:21 | |
*** _amrith_ is now known as amrith | 02:56 | |
*** salv-orlando has joined #openstack-security | 03:03 | |
*** salv-orlando has quit IRC | 03:04 | |
*** Kinokoio has quit IRC | 03:30 | |
*** mohitsha_ has quit IRC | 03:34 | |
*** mohitsharma has joined #openstack-security | 03:47 | |
*** amrith is now known as _amrith_ | 04:05 | |
*** mohitsha_ has joined #openstack-security | 04:11 | |
*** mohitsharma has quit IRC | 04:14 | |
*** mohitsha_ has quit IRC | 04:39 | |
*** mohitsharma has joined #openstack-security | 05:08 | |
*** mohitsha_ has joined #openstack-security | 06:27 | |
*** mohitsharma has quit IRC | 06:27 | |
*** nkinder has quit IRC | 06:32 | |
*** mohitsha_ has quit IRC | 06:58 | |
*** mohitsharma has joined #openstack-security | 06:59 | |
*** mohitsharma has quit IRC | 07:40 | |
*** mohitsharma has joined #openstack-security | 07:54 | |
*** mohitsharma has quit IRC | 07:58 | |
*** mohitsharma has joined #openstack-security | 08:08 | |
*** mohitsharma has quit IRC | 08:09 | |
*** mohitsharma has joined #openstack-security | 08:19 | |
*** jamielennox is now known as jamielennox|away | 08:28 | |
*** mohitsharma has quit IRC | 09:11 | |
*** mohitsharma has joined #openstack-security | 09:15 | |
*** vozcelik has quit IRC | 09:29 | |
openstackgerrit | Merged openstack/security-doc: Change git to Git https://review.openstack.org/148228 | 09:57 |
---|---|---|
*** mohitsharma has quit IRC | 10:07 | |
*** mohitsharma has joined #openstack-security | 10:08 | |
*** mohitsha_ has joined #openstack-security | 10:20 | |
*** mohitsharma has quit IRC | 10:20 | |
*** tkelsey has joined #openstack-security | 10:36 | |
*** mohitsha_ has quit IRC | 11:07 | |
*** mohitsharma has joined #openstack-security | 11:13 | |
*** mohitsharma has quit IRC | 11:25 | |
*** Kinokoio has joined #openstack-security | 11:32 | |
*** _amrith_ is now known as amrith | 12:07 | |
*** pcaruana has joined #openstack-security | 12:17 | |
*** salv-orlando has joined #openstack-security | 12:43 | |
*** salv-orlando has quit IRC | 13:17 | |
*** salv-orlando has joined #openstack-security | 13:24 | |
*** salv-orlando has quit IRC | 13:24 | |
*** salv-orlando has joined #openstack-security | 13:25 | |
*** Kinokoio has quit IRC | 13:29 | |
*** amrith is now known as _amrith_ | 13:31 | |
*** salv-orlando has quit IRC | 13:31 | |
*** salv-orlando has joined #openstack-security | 13:32 | |
*** ljfisher has joined #openstack-security | 13:49 | |
*** paulmo has joined #openstack-security | 14:12 | |
*** mvangund has joined #openstack-security | 14:31 | |
*** mvangund is now known as singlethink | 14:31 | |
*** _amrith_ is now known as amrith | 14:39 | |
*** tmcpeak has joined #openstack-security | 14:43 | |
*** dave-mccowan has joined #openstack-security | 15:03 | |
*** mohitsharma has joined #openstack-security | 15:07 | |
*** tmcpeak has quit IRC | 15:11 | |
*** tmcpeak has joined #openstack-security | 15:16 | |
*** voodookid has joined #openstack-security | 15:18 | |
*** voodookid has quit IRC | 15:23 | |
*** mohitsharma has quit IRC | 15:24 | |
*** voodookid has joined #openstack-security | 15:38 | |
*** sicarie has joined #openstack-security | 16:00 | |
*** bknudson has joined #openstack-security | 16:39 | |
openstackgerrit | OpenStack Proposal Bot proposed openstack/security-doc: Updated from openstack-manuals https://review.openstack.org/148659 | 17:17 |
*** bdpayne has joined #openstack-security | 17:38 | |
*** openfly has joined #openstack-security | 17:58 | |
openfly | Are the OSSA's available anywhere in a db or parseable format? | 17:58 |
*** bknudson has left #openstack-security | 17:59 | |
*** bknudson has joined #openstack-security | 17:59 | |
*** pcaruana has quit IRC | 18:00 | |
tmcpeak | openfly: good question, not that I know of | 18:03 |
*** bpokorny has joined #openstack-security | 18:04 | |
openfly | i did up to 2012 for a summit talk in 2012... | 18:07 |
openfly | but it ended up being a lot of manual data entry | 18:07 |
openfly | the emails were not programatically parseable | 18:07 |
openfly | maybe they have gotten better =/ | 18:07 |
tmcpeak | openfly: yeah, would be a cool idea for a summit talk | 18:08 |
tmcpeak | AFAIK it has not improved | 18:08 |
tmcpeak | probably still a lot of manual effort | 18:08 |
openfly | =/ | 18:08 |
tmcpeak | build one? | 18:09 |
tmcpeak | :) | 18:09 |
openfly | still have the json for up to 2012 | 18:09 |
openfly | just... it took me like 2 days to compile that far last time | 18:09 |
openfly | it's a total time sink | 18:09 |
tmcpeak | I bet, it's probably way worse this time | 18:09 |
openfly | probably | 18:09 |
openfly | 3 more years with a lot of vulns reported... | 18:09 |
tmcpeak | yeah, OpenStack has a lot more traction so I think vulns are accelerating | 18:10 |
openfly | yes and no | 18:10 |
openfly | early dev work generated a LOT of nasty vulns | 18:10 |
openfly | keystone for a while there was just privilege escalation after escalation and failure to lock out accounts | 18:11 |
openfly | we'd know if we could parse the data =P | 18:11 |
tmcpeak | hmm, yeah good point. Devs gaining experience and learning from mistakes | 18:11 |
openstackgerrit | Merged openstack/security-doc: Updated from openstack-manuals https://review.openstack.org/148659 | 18:12 |
openfly | man i'm going to have to grab one of the lists the OSSAs are posted to and cull them all. | 18:12 |
openfly | i guess maybe announce will be best | 18:12 |
openfly | oh shit | 18:12 |
tmcpeak | time to hack up a script :) | 18:12 |
openfly | list came through | 18:12 |
openfly | http://git.openstack.org/cgit/openstack/ossa/tree/ossa | 18:12 |
tmcpeak | oh nice! | 18:13 |
openfly | ftr ossa's are only a subset of openstack vulnerabilities | 18:17 |
openfly | some of the distros have their own problems as do supporting software stacks | 18:18 |
openfly | and they don't end up in OSSAs | 18:18 |
openfly | =/ | 18:18 |
tmcpeak | yeah, still - at least having the OSSA's in one place and parseable is nice | 18:19 |
openfly | yup | 18:21 |
openfly | now to parse em and get some fun graphs! | 18:21 |
*** Kinokoio has joined #openstack-security | 18:21 | |
*** bpokorny_ has joined #openstack-security | 18:31 | |
*** bknudson has quit IRC | 18:32 | |
*** bpokorny has quit IRC | 18:34 | |
openfly | heh exactly 100 OSSAs | 18:39 |
openfly | we should have a cake or something. | 18:39 |
*** bpokorny has joined #openstack-security | 18:40 | |
*** tkelsey has quit IRC | 18:43 | |
*** bpokorny_ has quit IRC | 18:43 | |
*** Kinokoio has quit IRC | 18:51 | |
*** tmcpeak has quit IRC | 19:30 | |
*** bdpayne has quit IRC | 19:51 | |
*** ljfisher has quit IRC | 19:52 | |
*** ljfisher has joined #openstack-security | 19:52 | |
*** bdpayne has joined #openstack-security | 20:13 | |
*** bknudson has joined #openstack-security | 20:29 | |
*** ljfisher has quit IRC | 20:41 | |
*** salv-orlando has quit IRC | 20:45 | |
*** Mister has joined #openstack-security | 20:47 | |
*** Mister has left #openstack-security | 20:48 | |
*** bpokorny_ has joined #openstack-security | 21:00 | |
*** bpokorny has quit IRC | 21:03 | |
*** salv-orlando has joined #openstack-security | 21:08 | |
*** salv-orlando has quit IRC | 21:09 | |
*** salv-orlando has joined #openstack-security | 21:10 | |
*** amrith is now known as _amrith_ | 21:10 | |
*** tmcpeak has joined #openstack-security | 21:20 | |
*** paulmo has quit IRC | 21:48 | |
tmcpeak | openfly: lol | 21:48 |
*** jeblair has quit IRC | 21:51 | |
*** dave-mccowan has quit IRC | 22:07 | |
*** bpokorny has joined #openstack-security | 22:25 | |
*** bpokorny_ has quit IRC | 22:29 | |
*** gabriela has joined #openstack-security | 22:56 | |
gabriela | holaz | 22:58 |
*** gabriela has left #openstack-security | 22:58 | |
*** sicarie has quit IRC | 23:00 | |
*** bknudson has quit IRC | 23:26 | |
*** jamielennox|away is now known as jamielennox | 23:36 | |
*** singlethink has quit IRC | 23:52 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!