openstackgerrit | Robert Clark proposed stackforge/anchor: Fixed Tox Errors and added validation of domain unit tests https://review.openstack.org/157200 | 00:02 |
---|---|---|
PaulM | http://amoffat.github.io/sh/ < this is very clever, and totally terrifying | 00:11 |
openstackgerrit | Merged stackforge/anchor: Fixed Tox Errors and added validation of domain unit tests https://review.openstack.org/157200 | 00:14 |
PaulM | http://www.cs.dartmouth.edu/~sergey/langsec/ | 00:16 |
*** markvoelker has quit IRC | 00:19 | |
hyakuhei | tkelsey: oi! | 00:19 |
*** voodookid has quit IRC | 00:20 | |
*** _amrith_ is now known as amrith | 00:23 | |
*** sicarie has quit IRC | 00:29 | |
*** tmcpeak has quit IRC | 00:33 | |
*** tmcpeak has joined #openstack-security | 00:35 | |
*** sicarie has joined #openstack-security | 00:36 | |
*** JAHoagie has quit IRC | 00:41 | |
*** bdpayne has quit IRC | 00:42 | |
*** tmcpeak has quit IRC | 00:43 | |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Tests for certificate_ops.parse_csr https://review.openstack.org/157215 | 00:45 |
*** tkelsey has quit IRC | 00:49 | |
*** hyakuhei has quit IRC | 00:51 | |
*** PaulM has left #openstack-security | 00:52 | |
*** markvoelker has joined #openstack-security | 00:52 | |
*** browne has quit IRC | 00:53 | |
*** ljfisher has quit IRC | 00:53 | |
*** sicarie has quit IRC | 00:55 | |
*** JAHoagie has joined #openstack-security | 00:56 | |
*** bknudson has quit IRC | 00:58 | |
*** markvoelker has quit IRC | 00:59 | |
*** JAHoagie has quit IRC | 01:14 | |
*** markvoelker has joined #openstack-security | 01:29 | |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Simple capitalization fix https://review.openstack.org/157229 | 02:01 |
*** salv-orlando has quit IRC | 02:40 | |
*** ljfisher has joined #openstack-security | 02:54 | |
*** bpokorny has quit IRC | 03:01 | |
*** hyakuhei has joined #openstack-security | 03:02 | |
*** salv-orlando has joined #openstack-security | 03:41 | |
*** fletcher has joined #openstack-security | 03:52 | |
openstackgerrit | Robert Clark proposed stackforge/anchor: Changed validator unit tests to use mock for network operations Also used textwrap to clean up certificate blocks https://review.openstack.org/157250 | 03:53 |
*** tkelsey has joined #openstack-security | 03:59 | |
openstackgerrit | Merged stackforge/anchor: Make static password checking closer to constant time https://review.openstack.org/156860 | 04:01 |
openstackgerrit | Robert Clark proposed stackforge/anchor: Changed validator unit tests to use mock for network operations Also used textwrap to clean up certificate blocks https://review.openstack.org/157250 | 04:04 |
openstackgerrit | Robert Clark proposed stackforge/anchor: Changed validator unit tests to use mock for network operations https://review.openstack.org/157250 | 04:05 |
openstackgerrit | Merged stackforge/anchor: Tests for certificate_ops.parse_csr https://review.openstack.org/157215 | 04:06 |
*** JAHoagie has joined #openstack-security | 04:15 | |
openstackgerrit | Jamie Finnigan proposed stackforge/bandit: Further decorator changes and plugin migration https://review.openstack.org/157252 | 04:19 |
*** salv-orlando has quit IRC | 04:31 | |
*** markvoelker has quit IRC | 04:42 | |
*** markvoelker has joined #openstack-security | 04:42 | |
openstackgerrit | Jamie Finnigan proposed stackforge/bandit: Further decorator changes and plugin migration https://review.openstack.org/157252 | 04:43 |
*** markvoelker has quit IRC | 04:46 | |
openstackgerrit | Merged stackforge/bandit: Removing un-reachable code https://review.openstack.org/157186 | 04:50 |
*** markvoelker has joined #openstack-security | 05:13 | |
*** tkelsey has quit IRC | 05:17 | |
*** markvoelker has quit IRC | 05:17 | |
*** JAHoagie has quit IRC | 05:46 | |
*** tkelsey has joined #openstack-security | 05:47 | |
openstackgerrit | Tim Kelsey proposed stackforge/anchor: Adding more tests against X509 certificates https://review.openstack.org/157260 | 05:50 |
openstackgerrit | Jamie Finnigan proposed stackforge/bandit: Further decorator changes and plugin migration https://review.openstack.org/157252 | 05:58 |
openstackgerrit | OpenStack Proposal Bot proposed openstack/security-doc: Imported Translations from Transifex https://review.openstack.org/157264 | 06:01 |
*** markvoelker has joined #openstack-security | 06:13 | |
*** salv-orlando has joined #openstack-security | 06:15 | |
*** markvoelker has quit IRC | 06:18 | |
*** tkelsey has quit IRC | 06:22 | |
*** ljfisher has quit IRC | 06:39 | |
openstackgerrit | Robert Clark proposed stackforge/anchor: Work correctly hmac.compare_digest isn't available https://review.openstack.org/157274 | 06:40 |
openstackgerrit | Robert Clark proposed stackforge/anchor: Work correctly if hmac.compare_digest isn't available https://review.openstack.org/157274 | 06:45 |
*** tkelsey has joined #openstack-security | 06:49 | |
openstackgerrit | Robert Clark proposed stackforge/anchor: Work correctly if hmac.compare_digest isn't available https://review.openstack.org/157274 | 06:51 |
*** tkelsey has quit IRC | 07:03 | |
*** JAHoagie has joined #openstack-security | 07:08 | |
*** JAHoagie has quit IRC | 07:12 | |
*** markvoelker has joined #openstack-security | 07:14 | |
*** hyakuhei has quit IRC | 07:16 | |
*** markvoelker has quit IRC | 07:19 | |
*** salv-orlando has quit IRC | 07:26 | |
*** fletcher has quit IRC | 07:30 | |
*** browne has joined #openstack-security | 07:41 | |
openstackgerrit | Merged openstack/security-doc: Imported Translations from Transifex https://review.openstack.org/157264 | 08:00 |
*** markvoelker has joined #openstack-security | 08:15 | |
*** markvoelker has quit IRC | 08:20 | |
*** browne has quit IRC | 08:20 | |
*** salv-orlando has joined #openstack-security | 08:25 | |
*** elo has joined #openstack-security | 08:32 | |
*** salv-orlando has quit IRC | 08:52 | |
*** salv-orlando has joined #openstack-security | 08:52 | |
*** JAHoagie has joined #openstack-security | 09:08 | |
*** JAHoagie has quit IRC | 09:13 | |
*** markvoelker has joined #openstack-security | 09:16 | |
*** markvoelker has quit IRC | 09:21 | |
*** salv-orlando has quit IRC | 09:29 | |
*** salv-orlando has joined #openstack-security | 09:33 | |
*** plsph has joined #openstack-security | 09:56 | |
*** markvoelker has joined #openstack-security | 10:17 | |
*** markvoelker has quit IRC | 10:22 | |
*** plsph has quit IRC | 11:01 | |
*** JAHoagie has joined #openstack-security | 11:08 | |
*** salv-orlando has quit IRC | 11:11 | |
*** salv-orlando has joined #openstack-security | 11:12 | |
*** JAHoagie has quit IRC | 11:12 | |
*** markvoelker has joined #openstack-security | 11:18 | |
*** markvoelker has quit IRC | 11:23 | |
*** plsph has joined #openstack-security | 11:30 | |
*** salv-orlando has quit IRC | 11:31 | |
*** salv-orlando has joined #openstack-security | 11:31 | |
*** JAHoagie has joined #openstack-security | 12:08 | |
*** JAHoagie has quit IRC | 12:13 | |
*** markvoelker has joined #openstack-security | 12:19 | |
*** plsph has quit IRC | 12:20 | |
*** markvoelker has quit IRC | 12:24 | |
*** salv-orlando has quit IRC | 12:31 | |
*** salv-orlando has joined #openstack-security | 12:31 | |
*** salv-orlando has quit IRC | 12:40 | |
*** salv-orlando has joined #openstack-security | 12:41 | |
*** salv-orlando has quit IRC | 12:49 | |
*** markvoelker has joined #openstack-security | 13:02 | |
*** JAHoagie has joined #openstack-security | 13:08 | |
*** JAHoagie has quit IRC | 13:12 | |
*** markvoelker_ has joined #openstack-security | 13:42 | |
*** markvoelker has quit IRC | 13:42 | |
*** salv-orlando has joined #openstack-security | 13:50 | |
*** dave-mccowan has joined #openstack-security | 13:58 | |
*** JAHoagie has joined #openstack-security | 14:08 | |
*** JAHoagie has quit IRC | 14:13 | |
*** JAHoagie has joined #openstack-security | 14:17 | |
*** browne has joined #openstack-security | 14:27 | |
*** markvoelker_ has quit IRC | 14:38 | |
*** salv-orlando has quit IRC | 14:39 | |
*** markvoelker has joined #openstack-security | 14:39 | |
*** salv-orlando has joined #openstack-security | 14:40 | |
*** singlethink has joined #openstack-security | 14:40 | |
*** browne has quit IRC | 14:56 | |
*** elo has quit IRC | 15:03 | |
*** hyakuhei has joined #openstack-security | 15:17 | |
*** JAHoagie has quit IRC | 15:17 | |
*** ljfisher has joined #openstack-security | 15:52 | |
*** plsph has joined #openstack-security | 15:54 | |
*** hyakuhei has quit IRC | 16:01 | |
*** plsph has quit IRC | 16:03 | |
*** elo has joined #openstack-security | 16:04 | |
*** JAHoagie has joined #openstack-security | 16:06 | |
*** tmcpeak has joined #openstack-security | 16:07 | |
*** bpokorny has joined #openstack-security | 16:08 | |
*** ljfisher has quit IRC | 16:11 | |
openstackgerrit | Merged stackforge/bandit: Further decorator changes and plugin migration https://review.openstack.org/157252 | 16:16 |
*** plsph has joined #openstack-security | 16:18 | |
*** plsph has quit IRC | 16:23 | |
*** tmcpeak has quit IRC | 16:24 | |
*** openstackgerrit has quit IRC | 16:36 | |
*** openstackgerrit has joined #openstack-security | 16:36 | |
*** ljfisher has joined #openstack-security | 16:49 | |
*** hyakuhei has joined #openstack-security | 16:50 | |
*** tkelsey has joined #openstack-security | 16:51 | |
*** salv-orlando has quit IRC | 16:52 | |
*** fletcher has joined #openstack-security | 17:02 | |
*** tmcpeak has joined #openstack-security | 17:06 | |
*** tmcpeak has quit IRC | 17:07 | |
*** tmcpeak1 has joined #openstack-security | 17:07 | |
*** gmurphy has joined #openstack-security | 17:09 | |
hyakuhei | Bad Lenovo - BAD! http://www.bbc.com/news/technology-31533028 | 17:10 |
*** browne has joined #openstack-security | 17:21 | |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Ensure constant time compare works on older Python https://review.openstack.org/157455 | 17:22 |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Fixes for grammatical errors https://review.openstack.org/157456 | 17:22 |
*** bknudson has joined #openstack-security | 17:26 | |
hyakuhei | https://etherpad.openstack.org/p/ossg-summit-abstracts | 17:31 |
*** bdpayne has joined #openstack-security | 17:31 | |
*** pdesai has joined #openstack-security | 17:32 | |
*** dg_ has joined #openstack-security | 17:32 | |
*** dave-mccowan has quit IRC | 17:33 | |
*** ukbelch has joined #openstack-security | 17:33 | |
hyakuhei | bdpayne: https://review.openstack.org/#/projects/openstack/security-doc,dashboards/important-changes:review-inbox-dashboard < I find this helps a lot | 17:37 |
openstackgerrit | Merged stackforge/anchor: Ensure constant time compare works on older Python https://review.openstack.org/157455 | 17:37 |
hyakuhei | bdpayne: https://etherpad.openstack.org/p/ossg-summit-abstracts | 17:38 |
bdpayne | Good times -- http://www.zdnet.com/article/lenovo-accused-of-pushing-superfish-self-signed-mitm-proxy/ | 17:39 |
chair6 | even gooder times .. http://blog.erratasec.com/2015/02/extracting-superfish-certificate.html | 17:43 |
*** salv-orlando has joined #openstack-security | 17:52 | |
*** bpokorny_ has joined #openstack-security | 17:58 | |
*** bpokorny has quit IRC | 18:01 | |
openstackgerrit | Merged stackforge/anchor: Changed validator unit tests to use mock for network operations https://review.openstack.org/157250 | 18:01 |
openstackgerrit | Merged openstack/security-doc: Simple capitalization fix https://review.openstack.org/157229 | 18:10 |
openstackgerrit | Merged openstack/security-doc: Cleaned up introduction to SSL/TLS section https://review.openstack.org/157149 | 18:10 |
openstackgerrit | Robert Clark proposed stackforge/anchor: Adding more tests against X509 certificates https://review.openstack.org/157260 | 18:11 |
*** dg_ has quit IRC | 18:16 | |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 18:17 |
*** dg_ has joined #openstack-security | 18:18 | |
bdpayne | hyakuhei Could you review https://review.openstack.org/#/c/157146/? | 18:26 |
openstackgerrit | Priti Desai proposed openstack/security-doc: Adding Security Checklist https://review.openstack.org/157164 | 18:27 |
chair6 | ooo, bandit has an lwn article.. http://lwn.net/SubscriberLink/633494/c8396b387347f9a5/ | 18:29 |
openstackgerrit | Tim Kelsey proposed stackforge/anchor: Wrapping test data more cleanly https://review.openstack.org/157483 | 18:33 |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Fixes for ambiguity in text https://review.openstack.org/157484 | 18:35 |
*** bpokorny has joined #openstack-security | 18:41 | |
hyakuhei | #link https://github.com/hyakuhei/OSSG-Security-Practices | 18:41 |
hyakuhei | #link https://etherpad.openstack.org/p/ossg-security-practices | 18:42 |
*** bpokorny_ has quit IRC | 18:44 | |
*** salv-orlando has quit IRC | 18:57 | |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 19:07 |
*** elo1 has joined #openstack-security | 19:13 | |
*** elo has quit IRC | 19:16 | |
*** bpokorny_ has joined #openstack-security | 19:18 | |
*** bpokorny has quit IRC | 19:21 | |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Fixes for grammatical errors https://review.openstack.org/157456 | 19:21 |
*** elo has joined #openstack-security | 19:27 | |
openstackgerrit | Merged openstack/security-doc: Update TLS config recommendations https://review.openstack.org/157146 | 19:27 |
*** ljfisher has quit IRC | 19:28 | |
*** elo1 has quit IRC | 19:29 | |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 19:29 |
*** elo1 has joined #openstack-security | 19:30 | |
*** bpokorny has joined #openstack-security | 19:31 | |
*** salv-orlando has joined #openstack-security | 19:32 | |
*** elo has quit IRC | 19:33 | |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Fixes for ambiguity in text https://review.openstack.org/157484 | 19:33 |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 19:33 |
*** ljfisher has joined #openstack-security | 19:34 | |
*** bpokorny_ has quit IRC | 19:34 | |
openstackgerrit | Nathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details. https://review.openstack.org/155963 | 19:41 |
*** nkinder is now known as nkinder_away | 19:46 | |
*** elo1 has quit IRC | 19:48 | |
*** elo1 has joined #openstack-security | 19:49 | |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 19:51 |
*** dg_ has quit IRC | 19:53 | |
*** bpokorny_ has joined #openstack-security | 20:03 | |
openstackgerrit | Nathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details. https://review.openstack.org/155963 | 20:04 |
*** bpokorny has quit IRC | 20:06 | |
*** dave-mccowan has joined #openstack-security | 20:12 | |
*** elo2 has joined #openstack-security | 20:14 | |
*** elo1 has quit IRC | 20:16 | |
*** coasterz is now known as coreybits | 20:19 | |
*** tkelsey has quit IRC | 20:20 | |
openstackgerrit | Nathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details. https://review.openstack.org/155963 | 20:21 |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 20:27 |
*** elo2 has quit IRC | 20:39 | |
ljfisher | Summary of our rootwrap discussions: https://etherpad.openstack.org/p/ossg-rootwrap | 20:41 |
*** tkelsey has joined #openstack-security | 20:42 | |
*** bpokorny has joined #openstack-security | 20:54 | |
*** bpokorny_ has quit IRC | 20:57 | |
*** dg_ has joined #openstack-security | 21:18 | |
dg_ | bdpayne http://bikebuilder.brompton.com/ | 21:18 |
bdpayne | dg_ don't tempt me | 21:24 |
*** dg_ has quit IRC | 21:39 | |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Tests for validate_csr in certificate_ops https://review.openstack.org/157541 | 21:51 |
openstackgerrit | Shellee Arnold proposed openstack/security-doc: Fix for lack of punctuation https://review.openstack.org/157544 | 21:54 |
*** sicarie has joined #openstack-security | 22:00 | |
sicarie | bdpayne: #link https://review.openstack.org/#/c/155963/ | 22:00 |
openstackgerrit | Michael McCune proposed openstack/security-doc: Adding data processing chapter https://review.openstack.org/155052 | 22:01 |
*** bpokorny has quit IRC | 22:01 | |
openstackgerrit | Priti Desai proposed openstack/security-doc: Enhancement with Additional ways to configure SSL https://review.openstack.org/157550 | 22:07 |
openstackgerrit | Nathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details. https://review.openstack.org/155963 | 22:08 |
openstackgerrit | Travis McPeak proposed stackforge/bandit: Adding file discovery and directory exclusion https://review.openstack.org/157552 | 22:09 |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Tests for validate_csr in certificate_ops https://review.openstack.org/157541 | 22:14 |
*** singlethink has quit IRC | 22:15 | |
*** tmcpeak1 has quit IRC | 22:16 | |
openstackgerrit | Eric Brown proposed stackforge/bandit: Add INFO check for any use of rootwrap https://review.openstack.org/157556 | 22:20 |
*** sicarie has quit IRC | 22:20 | |
*** tmcpeak has joined #openstack-security | 22:20 | |
*** sicarie has joined #openstack-security | 22:21 | |
*** bpokorny has joined #openstack-security | 22:21 | |
*** bpokorny has quit IRC | 22:22 | |
*** bpokorny has joined #openstack-security | 22:22 | |
openstackgerrit | Nathaniel Dillon proposed openstack/security-doc: Reworked filters section to highlight security details. https://review.openstack.org/155963 | 22:27 |
openstackgerrit | Travis McPeak proposed stackforge/bandit: Adding file discovery and directory exclusion https://review.openstack.org/157552 | 22:27 |
openstackgerrit | Eric Brown proposed stackforge/bandit: Add INFO check for any use of rootwrap https://review.openstack.org/157556 | 22:29 |
openstackgerrit | Eric Brown proposed stackforge/bandit: Add INFO check for any use of rootwrap https://review.openstack.org/157556 | 22:31 |
sicarie | #link https://defcon.org/images/defcon-22/dc-22-presentations/Mcmillan/DEFCON-22-Paul-Mcmillan-Attacking-the-IOT-Using-timing-attacks.pdf | 22:32 |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 22:36 |
openstackgerrit | Rob Fletcher proposed stackforge/bandit: Adds JSON output functionality https://review.openstack.org/157476 | 22:39 |
openstackgerrit | Priti Desai proposed openstack/security-doc: Enhancement - Additional ways to configure SSL https://review.openstack.org/157550 | 22:40 |
*** hyakuhei has quit IRC | 22:45 | |
*** hyakuhei has joined #openstack-security | 22:48 | |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Cleanup parse_csr code in certificate_ops module https://review.openstack.org/157570 | 22:52 |
*** hyakuhei has quit IRC | 22:54 | |
*** hyakuhei has joined #openstack-security | 22:56 | |
*** bpokorny has quit IRC | 23:17 | |
*** sicarie has quit IRC | 23:27 | |
*** bpokorny has joined #openstack-security | 23:28 | |
*** sicarie has joined #openstack-security | 23:28 | |
*** PaulM has joined #openstack-security | 23:29 | |
PaulM | https://github.com/PaulMcMillan/2014_ekoparty/tree/master/hue < code from the talk I just gave | 23:29 |
PaulM | the readme more or less tells you how to get things working, the presentation is a level up from that | 23:30 |
PaulM | This file is a good example of what a successful run looks like. You can see the KS values jumping around a bit, then settling down as they converge https://github.com/PaulMcMillan/2014_ekoparty/blob/master/preso/SUCCESS2 | 23:31 |
PaulM | https://github.com/PaulMcMillan/2014_ekoparty/blob/master/preso/SUCCESS2#L322-L350 - you can see here how the p-values for everything compared to guess 6 are low, while most of the other comparisons have fairly high values | 23:32 |
openstackgerrit | Merged stackforge/anchor: Adding more tests against X509 certificates https://review.openstack.org/157260 | 23:34 |
openstackgerrit | Merged stackforge/anchor: Tests for validate_csr in certificate_ops https://review.openstack.org/157541 | 23:34 |
openstackgerrit | Merged stackforge/anchor: Cleanup parse_csr code in certificate_ops module https://review.openstack.org/157570 | 23:34 |
*** bpokorny has quit IRC | 23:36 | |
*** salv-orlando has quit IRC | 23:39 | |
*** bdpayne has quit IRC | 23:39 | |
openstackgerrit | Merged stackforge/bandit: Add INFO check for any use of rootwrap https://review.openstack.org/157556 | 23:39 |
openstackgerrit | Bryan D. Payne proposed stackforge/anchor: Make tox flake8 setup a little more strict https://review.openstack.org/157598 | 23:40 |
*** salv-orlando has joined #openstack-security | 23:40 | |
openstackgerrit | Travis McPeak proposed stackforge/bandit: Adding file discovery and directory exclusion https://review.openstack.org/157552 | 23:45 |
*** PaulM has left #openstack-security | 23:46 | |
*** tmcpeak has quit IRC | 23:47 | |
*** markvoelker has quit IRC | 23:49 | |
*** hyakuhei has quit IRC | 23:49 | |
*** browne has quit IRC | 23:52 | |
*** ljfisher has quit IRC | 23:52 | |
*** sicarie has quit IRC | 23:53 | |
*** ukbelch has quit IRC | 23:53 | |
*** bknudson has quit IRC | 23:53 | |
*** tkelsey has quit IRC | 23:55 | |
*** fletcher has quit IRC | 23:57 | |
*** pdesai has quit IRC | 23:58 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!