Thursday, 2015-09-10

*** markvoelker has quit IRC00:01
*** viraptor has joined #openstack-security00:04
*** JAHoagie has quit IRC00:13
*** dave-mccowan has joined #openstack-security00:50
*** markvoelker has joined #openstack-security00:58
*** tkelsey has joined #openstack-security01:00
*** markvoelker has quit IRC01:02
*** tkelsey has quit IRC01:05
*** jhfeng has joined #openstack-security01:47
*** bpokorny has quit IRC01:47
*** gabraham has joined #openstack-security02:02
*** gabraham has quit IRC02:04
*** Ulyssys has joined #openstack-security02:04
*** Ulyssys has quit IRC02:05
*** dave-mccowan has quit IRC02:16
*** jhfeng has quit IRC02:27
*** jian5397 has joined #openstack-security02:28
*** alejandrito has joined #openstack-security02:28
*** dave-mccowan has joined #openstack-security02:34
*** jhfeng has joined #openstack-security02:44
*** y_sawai has joined #openstack-security02:44
*** markvoelker has joined #openstack-security02:55
*** sdake_ has joined #openstack-security02:56
*** sdake__ has joined #openstack-security02:58
*** sdake has quit IRC02:58
*** sdake_ has quit IRC03:01
*** tkelsey has joined #openstack-security03:01
*** jian5397 has quit IRC03:02
*** dave-mccowan has quit IRC03:04
*** y_sawai has quit IRC03:06
*** tkelsey has quit IRC03:06
*** jbasalone has quit IRC03:09
*** alejandrito has quit IRC03:10
openstackgerritStanislaw Pitucha proposed openstack/anchor: Add NameConstraints extension support  https://review.openstack.org/22202103:18
*** jhfeng has quit IRC03:25
*** sigmavirus24 has quit IRC03:27
*** sdake__ is now known as sdake03:30
*** sigmavirus24 has joined #openstack-security03:30
*** dlitz has quit IRC03:33
*** sigmavirus24 is now known as sigmavirus24_awa03:39
*** bpokorny has joined #openstack-security03:39
*** elo1 has joined #openstack-security03:43
*** elo1 has quit IRC04:01
*** y_sawai has joined #openstack-security04:40
*** elo1 has joined #openstack-security04:52
*** markvoelker has quit IRC04:55
*** bpokorny has quit IRC05:11
*** sdake_ has joined #openstack-security05:12
*** sdake has quit IRC05:15
*** sdake_ has quit IRC05:16
*** sdake_ has joined #openstack-security05:18
*** sdake_ is now known as sdake05:21
*** elo1 has quit IRC05:26
*** sdake_ has joined #openstack-security05:29
*** sadaf2605_ has joined #openstack-security05:30
*** sdake has quit IRC05:30
*** sadaf2605_ has left #openstack-security05:30
*** jerrygb has joined #openstack-security05:53
*** markvoelker has joined #openstack-security05:56
*** markvoelker has quit IRC06:01
*** y_sawai has quit IRC06:05
*** sdake has joined #openstack-security06:08
*** sdake_ has quit IRC06:11
*** alex_klimov has joined #openstack-security06:17
*** jerrygb has quit IRC06:19
*** shohel has joined #openstack-security06:24
*** viraptor has quit IRC06:27
*** sdake has quit IRC06:28
*** sdake has joined #openstack-security06:29
*** edaught has quit IRC06:40
*** tkelsey has joined #openstack-security07:03
*** tkelsey has quit IRC07:07
*** browne has quit IRC07:08
*** tmcpeak has joined #openstack-security07:30
*** markvoelker has joined #openstack-security07:57
*** markvoelker has quit IRC08:02
*** sdake has quit IRC08:17
*** jerrygb has joined #openstack-security08:19
*** jerrygb has quit IRC08:24
*** tkelsey has joined #openstack-security08:25
*** tmcpeak1 has joined #openstack-security08:40
*** tmcpeak has quit IRC08:42
*** y_sawai has joined #openstack-security08:45
*** markvoelker has joined #openstack-security08:58
*** y_sawai has quit IRC09:02
*** markvoelker has quit IRC09:02
*** edaught has joined #openstack-security09:07
*** jerrygb has joined #openstack-security09:20
*** jerrygb has quit IRC09:26
*** tkelsey has quit IRC09:27
*** salv-orl_ has joined #openstack-security09:56
*** salv-orlando has quit IRC10:00
*** tmcpeak1 has quit IRC10:01
*** shohel has quit IRC10:03
*** shohel has joined #openstack-security10:04
*** salv-orl_ has quit IRC10:04
*** salv-orl_ has joined #openstack-security10:05
*** salv-orl_ has quit IRC10:10
*** salv-orlando has joined #openstack-security10:11
*** tmcpeak has joined #openstack-security10:13
*** salv-orl_ has joined #openstack-security10:13
*** salv-orlando has quit IRC10:16
*** salv-orlando has joined #openstack-security10:25
*** salv-orl_ has quit IRC10:26
*** alex_klimov has quit IRC10:31
*** shohel has quit IRC10:41
*** shohel has joined #openstack-security10:41
*** salv-orl_ has joined #openstack-security10:48
*** salv-orlando has quit IRC10:51
*** salv-orl_ has quit IRC10:51
*** salv-orlando has joined #openstack-security10:52
*** markvoelker has joined #openstack-security10:59
*** markvoelker has quit IRC11:04
*** alex_klimov has joined #openstack-security11:17
*** salv-orl_ has joined #openstack-security11:21
*** jerrygb has joined #openstack-security11:21
*** salv-orl_ has quit IRC11:24
*** salv-orl_ has joined #openstack-security11:24
*** salv-orlando has quit IRC11:25
*** jian5397 has joined #openstack-security11:25
*** jerrygb has quit IRC11:26
*** lexholden has joined #openstack-security11:27
*** jian5397 has quit IRC11:28
*** jian5397 has joined #openstack-security11:29
*** salv-orl_ has quit IRC11:34
*** jian5397 has quit IRC11:35
*** salv-orlando has joined #openstack-security11:35
*** jian5397 has joined #openstack-security11:35
*** dave-mccowan has joined #openstack-security11:38
*** lexholden has quit IRC11:42
*** jian5397 has quit IRC11:49
*** jamielennox is now known as jamielennox|away11:49
openstackgerritRobert Clark proposed openstack/anchor: Created a dockerfile that runs Anchor  https://review.openstack.org/22128511:52
*** markvoelker has joined #openstack-security11:55
openstackgerritStanislaw Pitucha proposed openstack/anchor: Restore long serial number  https://review.openstack.org/22215612:02
*** tmcpeak has quit IRC12:19
*** tmcpeak has joined #openstack-security12:20
*** lexholden has joined #openstack-security12:21
*** salv-orl_ has joined #openstack-security12:23
*** salv-orlando has quit IRC12:27
*** salv-orlando has joined #openstack-security12:29
*** salv-orl_ has quit IRC12:30
*** salv-orl_ has joined #openstack-security12:36
*** shohel has quit IRC12:36
*** salv-orlando has quit IRC12:36
*** jerrygb has joined #openstack-security12:40
*** jerrygb has quit IRC12:45
*** y_sawai has joined #openstack-security12:55
*** shohel has joined #openstack-security13:02
*** tjt263 has joined #openstack-security13:04
*** amsengup has joined #openstack-security13:08
*** edmondsw has joined #openstack-security13:12
*** bknudson has joined #openstack-security13:19
*** pots1 has joined #openstack-security13:36
*** pots1 has left #openstack-security13:36
*** browne has joined #openstack-security13:36
*** jerrygb has joined #openstack-security13:41
*** jerrygb has quit IRC13:45
*** browne has quit IRC13:48
*** jian5397 has joined #openstack-security13:51
*** sigmavirus24_awa is now known as sigmavirus2414:03
*** shohel has quit IRC14:03
*** browne has joined #openstack-security14:05
*** aswadr has joined #openstack-security14:13
*** jerrygb has joined #openstack-security14:15
*** jhfeng has joined #openstack-security14:22
*** y_sawai has quit IRC14:29
*** y_sawai has joined #openstack-security14:29
*** y_sawai has quit IRC14:29
*** y_sawai has joined #openstack-security14:41
*** salv-orl_ has quit IRC14:43
*** salv-orlando has joined #openstack-security14:43
*** salv-orlando has quit IRC14:44
*** salv-orlando has joined #openstack-security14:44
*** voodookid has joined #openstack-security14:54
*** lexholden has quit IRC14:58
*** dwyde has joined #openstack-security14:59
*** jhfeng has quit IRC15:00
*** jhfeng has joined #openstack-security15:03
*** jhfeng has quit IRC15:11
*** jhfeng has joined #openstack-security15:14
*** salv-orlando has quit IRC15:15
*** tjt263 has quit IRC15:25
openstackgerritRobert Clark proposed openstack/anchor: Created a dockerfile that runs Anchor  https://review.openstack.org/22128515:25
*** tjt263 has joined #openstack-security15:28
*** dave-mccowan has quit IRC15:30
*** ccneill has joined #openstack-security15:33
*** bpokorny has joined #openstack-security15:35
*** dave-mccowan has joined #openstack-security15:43
*** tmcpeak has quit IRC15:43
*** browne has quit IRC15:44
*** tmcpeak has joined #openstack-security16:04
*** jian5397 has quit IRC16:05
*** jbasalone has joined #openstack-security16:09
openstackgerritCharles Neill proposed openstack/bandit: Adding HTML formatter  https://review.openstack.org/22059216:10
*** jian5397 has joined #openstack-security16:14
*** browne has joined #openstack-security16:27
*** y_sawai has quit IRC16:39
*** alex_klimov has quit IRC16:47
openstackgerritCharles Neill proposed openstack/bandit: Adding HTML formatter  https://review.openstack.org/22059216:49
ccneillsorry for the spam, but I think the HTML formatter is finally ready for a merge. anyone want to disabuse me of this notion? :)16:50
*** jian5397 has quit IRC16:50
tmcpeakccneill: sure, we'll take a look, thanks16:51
*** aswadr has quit IRC16:51
*** jmckind has joined #openstack-security16:56
*** jian5397 has joined #openstack-security16:56
tmcpeakback at ya ccneill :)16:57
sigmavirus24tmcpeak: isn't this why we made plugins?16:57
sigmavirus24So we wouldn't be adding all of these different formatters to the tree?16:57
sigmavirus24If we're going to accept this, why wouldn't we accept subunit too?16:57
tmcpeakoh..16:58
tmcpeaksigmavirus24: good point16:58
ccneilltmcpeak: I have beautifulsoup4 in the test-reqs, which is what's in openstack's global reqs16:59
tmcpeakso that formatter should be in its own repo?16:59
ccneillsorry, gotta run to a meeting16:59
ccneillI'll check back in when I get back16:59
tmcpeaksigmavirus24: and yeah, I agree it should be consistent with subunit16:59
sigmavirus24tmcpeak: I'm not going to -2 it16:59
tmcpeakforgot about that :)16:59
sigmavirus24But we had wanted to keep formatters kind of small16:59
tmcpeaksigmavirus24: yeah, you're right16:59
tmcpeakso I guess these should just be in some git repo somewhere?16:59
tmcpeakwhere do we want to put bandit things that aren't in bandit?17:00
sigmavirus24Yeah unless we want to back off that decision17:00
sigmavirus24We can change our minds17:00
chair6html is a pretty standard format .. i'd be fine with including it in bandit17:00
sigmavirus24tmcpeak: the author can maintain them17:00
*** tkelsey has joined #openstack-security17:00
sigmavirus24chair6: subunit is too17:00
chair6sure, so let's include that too .. it's the more esoteric formatters that i'd push out17:00
sigmavirus24people can also maintain formatters that they want in their own repos and publish them as bandit-html17:01
*** jian5397 is now known as michaelxin17:01
sigmavirus24Then doing pip install bandit bandit-html will get them that formatter if they register everything correctly17:01
chair6'if they register everything correctly'17:01
chair6html seems vanilla enough that i'd say we just include it in bandit to bypass that 'if'..17:02
*** dwyde has quit IRC17:09
sigmavirus24if the package doesn't work, I'll help them setuptools17:10
sigmavirus24it's really like ... 5 lines?17:10
sigmavirus24which we have documented iirc17:10
sigmavirus24if we're going to suck things into bandit to keep developers from making mistakes with the plugin system we developed to deliberately avoid having to suck everything in, we can just tear out teh plugin logic and make bandit simpler17:11
chair6plugin system is great, it makes it easy for us and others to add checks/formatters to bandit17:17
tmcpeakyeah, plugins seems like a saner approach.  Where the plugins actually live is up for debate though17:17
tmcpeakit would be useful to formalize what does and does not go directly into the bandit repo17:17
chair6i think pushing things that 'most' users likely may use out into separate repos / packages has potential to over-complicate things though17:18
chair6i'd argue that html output is something that 'most' users will want at some point, so should stay with bandit itself17:18
*** jhfeng has quit IRC17:20
tmcpeakthat also sounds reasonable to me17:20
tmcpeaksubunit I could go either way on17:21
*** salv-orlando has joined #openstack-security17:24
*** amsengup has quit IRC17:27
*** salv-orlando has quit IRC17:29
*** salv-orlando has joined #openstack-security17:30
*** tjt263 has quit IRC17:30
*** jhfeng has joined #openstack-security17:31
*** ccneill has quit IRC17:34
*** dwyde has joined #openstack-security17:43
openstackgerritJamie Finnigan proposed openstack/bandit: Add unit tests for bandit.core.issue  https://review.openstack.org/22229917:43
sigmavirus24chair6: so saying "'most' will want at some point" doesn't convince me17:43
sigmavirus24it's like saying "'most' users will want PEP-0257 checking in flake8 at some point" but that's already a well supported feature by a third-party plugin17:44
sigmavirus24In fact, in my experience, most don't want PEP-0257 (docstring checking) by default17:44
sigmavirus24I don't know if any will want html output by default17:44
openstackgerritEric Brown proposed openstack/bandit: Remove tox envirnoment for pypy  https://review.openstack.org/22230117:45
*** salv-orlando has quit IRC17:48
chair6i can tell you that i have usecases for bandit where html output would be nice .. 'by default', if that means not having to setup separate repos/packaging etc, then sure17:51
*** michaelxin has quit IRC17:52
chair6i don't think it's worth telling ccneill to go setup his own process for managing an html formatter - easier for us to maintain it as part of bandit17:53
tmcpeakchair6: I agree17:54
tmcpeakI can't see many use cases for having Bandit specifically without that17:54
tmcpeakand why is it any lower class than XML?17:54
*** jian5397 has joined #openstack-security17:56
*** tmcpeak has quit IRC17:59
*** dave-mccowan has quit IRC18:00
*** jian5397 has quit IRC18:00
*** dave-mccowan has joined #openstack-security18:03
*** tjt263 has joined #openstack-security18:06
*** bknudson has quit IRC18:10
*** jian5397 has joined #openstack-security18:11
*** bknudson has joined #openstack-security18:16
brownewow, another PTL leaving HP for IBM - https://www.morganfainberg.com/blog/2015/09/09/openstack-career-act-3-scene-1/18:28
*** panbalag has joined #openstack-security18:34
panbalagHi..I'm trying to enable SSL and I get the error "Error finding address for https://X.X.X.X:9292/v1/images/detail?sort_key=name&sort_dir=asc&limit=20: [Errno 1] _ssl.c:504: error:14094410:SSL routines:SSL3_READ_BYTES:sslv3 alert handshake failure"..... Tried disabling SSLv3 in ssl.conf using "SSLProtocol all -SSLv2 -SSLv3"...but that doesn't help..18:36
panbalagAny idea what the issue here is?18:36
*** panbalag has left #openstack-security18:41
*** jian5397 has quit IRC18:45
*** tkelsey has quit IRC18:45
*** ccneill has joined #openstack-security18:45
*** jian5397 has joined #openstack-security18:53
*** jian5397 has quit IRC18:59
*** salv-orlando has joined #openstack-security19:04
*** salv-orlando has quit IRC19:12
*** jennyb has joined #openstack-security19:12
*** lexholden has joined #openstack-security19:13
*** jennyb has quit IRC19:14
*** jbasalone has quit IRC19:15
*** jbasalone has joined #openstack-security19:15
*** lexholden has quit IRC19:19
*** ccneill has quit IRC19:20
*** ccneill has joined #openstack-security19:28
ccneillsorry to just rejoin the conversation, but are there any other thoughts on html formatting?19:31
ccneillI saw a few comments going both ways19:31
ccneillI started the HTML formatter as an external thing, and I don't mind keeping it that way19:32
ccneilland if it doesn't have to be part of openstack, I can put pygments back in19:33
ccneilland also link to Github without adding more complication to bandit.yaml19:33
*** salv-orlando has joined #openstack-security19:46
*** alex_klimov has joined #openstack-security19:53
*** sdake has joined #openstack-security19:54
*** jerrygb has quit IRC19:58
*** sdake_ has joined #openstack-security20:02
*** sdake has quit IRC20:05
*** salv-orlando has quit IRC20:05
*** dave-mccowan has quit IRC20:09
*** salv-orlando has joined #openstack-security20:15
*** salv-orlando has quit IRC20:16
*** b10n1k__ has joined #openstack-security20:19
*** jerrygb has joined #openstack-security20:30
*** salv-orlando has joined #openstack-security20:31
*** dave-mccowan has joined #openstack-security20:31
*** jbasalone has quit IRC20:32
*** jbasalone has joined #openstack-security20:33
*** ccneill has quit IRC20:34
*** jbasalone has quit IRC20:43
*** jbasalone has joined #openstack-security20:44
*** jbasalone is now known as jbasalone-away20:45
*** jbasalone-away is now known as jbasalone20:46
*** ccneill has joined #openstack-security21:01
*** dave-mccowan has quit IRC21:06
*** dlitz has joined #openstack-security21:06
*** sdake_ has quit IRC21:13
*** edmondsw has quit IRC21:19
*** tjt263 has quit IRC21:23
*** sdake has joined #openstack-security21:26
*** jmckind has quit IRC21:33
*** jennyb has joined #openstack-security21:34
*** jbasalone has quit IRC21:38
*** jennyb has quit IRC21:57
*** jbasalone has joined #openstack-security21:59
*** bknudson has quit IRC22:04
*** alex_klimov has quit IRC22:05
*** dwyde has quit IRC22:11
*** sigmavirus24 is now known as sigmavirus24_awa22:18
*** dave-mccowan has joined #openstack-security22:39
*** ccneill has quit IRC22:52
*** ccneill has joined #openstack-security22:55
*** salv-orl_ has joined #openstack-security22:56
*** salv-orlando has quit IRC22:59
*** bknudson has joined #openstack-security23:05
*** voodookid has quit IRC23:12
*** browne has quit IRC23:20
*** ccneill has quit IRC23:34
*** dave-mccowan has quit IRC23:39
*** salv-orl_ has quit IRC23:43

Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!