*** salv-orlando has joined #openstack-security | 00:00 | |
*** salv-orlando has quit IRC | 00:06 | |
*** browne has quit IRC | 00:12 | |
*** austin987 has quit IRC | 00:13 | |
*** jass93 has quit IRC | 00:16 | |
*** tmcpeak has quit IRC | 00:17 | |
*** browne has joined #openstack-security | 00:17 | |
*** austin987 has joined #openstack-security | 00:21 | |
*** tmcpeak has joined #openstack-security | 00:25 | |
*** markvoelker_ has quit IRC | 00:53 | |
*** edmondsw has joined #openstack-security | 00:54 | |
*** jass93 has joined #openstack-security | 01:03 | |
*** mdong has joined #openstack-security | 01:10 | |
*** browne has quit IRC | 01:12 | |
*** rahulunair has quit IRC | 01:12 | |
*** edmondsw has quit IRC | 01:30 | |
*** mdong has quit IRC | 01:32 | |
*** bpokorny has quit IRC | 02:06 | |
*** tmcpeak has quit IRC | 02:24 | |
*** yuanying has quit IRC | 02:51 | |
*** bpokorny has joined #openstack-security | 03:09 | |
*** krotscheck is now known as krotscheck_vaca | 03:20 | |
*** markvoelker has joined #openstack-security | 03:47 | |
*** yuanying has joined #openstack-security | 03:49 | |
*** markvoelker_ has joined #openstack-security | 03:56 | |
*** markvoelker has quit IRC | 03:56 | |
*** jass93_ has joined #openstack-security | 04:02 | |
*** jass93 has quit IRC | 04:02 | |
*** bpokorny has quit IRC | 04:06 | |
*** markvoelker_ has quit IRC | 04:33 | |
*** markvoelker has joined #openstack-security | 04:33 | |
*** markvoelker has quit IRC | 04:38 | |
*** darrenwu has joined #openstack-security | 04:48 | |
*** darrenwu has left #openstack-security | 04:48 | |
*** rcernin has joined #openstack-security | 04:57 | |
*** tpeoples is now known as tpeoples_vacatio | 05:23 | |
*** tpeoples_vacatio is now known as tpeoplesvacation | 05:24 | |
*** markvoelker has joined #openstack-security | 05:29 | |
*** markvoelker has quit IRC | 05:37 | |
openstackgerrit | OpenStack Proposal Bot proposed openstack/security-doc: Imported Translations from Zanata https://review.openstack.org/300324 | 06:26 |
---|---|---|
*** browne has joined #openstack-security | 06:27 | |
*** browne has quit IRC | 06:32 | |
openstackgerrit | Merged openstack/security-doc: Imported Translations from Zanata https://review.openstack.org/300324 | 06:34 |
*** browne has joined #openstack-security | 06:39 | |
*** browne has quit IRC | 06:44 | |
*** browne has joined #openstack-security | 06:45 | |
*** browne has quit IRC | 06:49 | |
*** salv-orlando has joined #openstack-security | 07:05 | |
*** browne has joined #openstack-security | 07:08 | |
openstackgerrit | OpenStack Proposal Bot proposed openstack/security-doc: Updated from openstack-manuals https://review.openstack.org/300335 | 07:09 |
*** browne has quit IRC | 07:13 | |
*** jamielennox is now known as jamielennox|away | 07:17 | |
openstackgerrit | Merged openstack/security-doc: Updated from openstack-manuals https://review.openstack.org/300335 | 07:17 |
*** markvoelker has joined #openstack-security | 07:19 | |
*** salv-orl_ has joined #openstack-security | 07:23 | |
*** pcaruana has joined #openstack-security | 07:25 | |
*** markvoelker has quit IRC | 07:25 | |
*** salv-orlando has quit IRC | 07:26 | |
*** tesseract has joined #openstack-security | 07:56 | |
*** tesseract is now known as Guest90877 | 07:56 | |
*** tkelsey has joined #openstack-security | 07:58 | |
openstackgerrit | Tim Kelsey proposed openstack/bandit: Fixing a bug exposed with try, except, ... tests https://review.openstack.org/300068 | 08:42 |
*** amit213 has quit IRC | 08:49 | |
*** markvoelker has joined #openstack-security | 09:11 | |
*** markvoelker has quit IRC | 09:16 | |
*** markvoelker has joined #openstack-security | 10:06 | |
*** markvoelker has quit IRC | 10:12 | |
*** hyakuhei_ has joined #openstack-security | 10:29 | |
*** hyakuhei_ has quit IRC | 10:32 | |
*** hyakuhei has joined #openstack-security | 10:44 | |
hyakuhei | Sup ? | 10:56 |
*** markvoelker has joined #openstack-security | 11:02 | |
*** markvoelker has quit IRC | 11:06 | |
*** YoYo has joined #openstack-security | 11:18 | |
*** YoYo has quit IRC | 11:19 | |
*** ninag has joined #openstack-security | 12:08 | |
*** dave-mccowan has joined #openstack-security | 12:32 | |
*** ibravo has joined #openstack-security | 12:34 | |
*** edmondsw has joined #openstack-security | 12:53 | |
openstackgerrit | Robert Clark proposed openstack/security-doc: Adding OSSN-0064 https://review.openstack.org/300091 | 12:56 |
*** jmckind has joined #openstack-security | 12:59 | |
hyakuhei | ^ big rewrite, less jibberish now | 13:02 |
elmiko | aww, but i love jibberish =( | 13:03 |
tkelsey | elmiko: get my email? | 13:04 |
elmiko | tkelsey: yes, and i am aware of that issue | 13:06 |
elmiko | those hardcoded values are actually overridden by the call that sets the credentials | 13:06 |
elmiko | but... | 13:06 |
elmiko | we do have an issue with hardcoded passwords, i'm working through them as sec.bugs | 13:06 |
elmiko | thanks for bringing it up though =) | 13:07 |
tkelsey | ok cool, well the only ones bandit found were the one in the patch and that one | 13:07 |
elmiko | yea, the others are more sneaky | 13:07 |
tkelsey | no problem, happy to help (so long as its actually helpful lol) | 13:07 |
elmiko | it is | 13:07 |
elmiko | it's just difficult because we are interacting with a lot of services that are deployed to the clusters, and we haven't always done a good job of sanitizing all the defaults for those services | 13:08 |
tkelsey | i see, nothing is ever simple is it :) | 13:08 |
elmiko | right | 13:08 |
tkelsey | good luck getting into a good shape with it, if any good bandit tests come to mind im sure we can get them added to help | 13:09 |
tkelsey | until then we can leave that test disabled | 13:09 |
elmiko | ok, cool. or we can mark that case as nosec | 13:10 |
tkelsey | sure, that works to, its upto Sahara folks to asses if thats the right option. I didnt know enough when I looked at it | 13:10 |
tkelsey | it sounds like nosec would be fine here | 13:11 |
*** cleong has joined #openstack-security | 13:11 | |
elmiko | yea, we'll (probably i'll) take another look and mark those as necessary | 13:11 |
tkelsey | cool, thanks elmiko :) | 13:11 |
elmiko | thanks to you as well =) | 13:11 |
openstackgerrit | Robert Clark proposed openstack/security-doc: Adding OSSN-0064 https://review.openstack.org/300091 | 13:13 |
*** salv-orlando has joined #openstack-security | 13:23 | |
*** salv-orl_ has quit IRC | 13:26 | |
*** openstackgerrit has quit IRC | 13:33 | |
*** openstackgerrit has joined #openstack-security | 13:33 | |
*** salv-orlando has quit IRC | 13:35 | |
*** cjschaef has joined #openstack-security | 13:40 | |
*** markvoelker has joined #openstack-security | 13:47 | |
*** markvoelker has quit IRC | 13:51 | |
*** openstack has quit IRC | 13:58 | |
*** openstack has joined #openstack-security | 13:58 | |
*** mvaldes has joined #openstack-security | 13:59 | |
*** sigmavirus24_awa is now known as sigmavirus24 | 14:08 | |
openstackgerrit | KATO Tomoyuki proposed openstack/security-doc: Update the title and URL for admin guide https://review.openstack.org/300508 | 14:14 |
openstackgerrit | KATO Tomoyuki proposed openstack/security-doc: Update the title and URL for admin guide https://review.openstack.org/300508 | 14:26 |
*** markvoelker has joined #openstack-security | 14:41 | |
*** ametts has joined #openstack-security | 14:42 | |
openstackgerrit | Merged openstack/security-doc: Update the title and URL for admin guide https://review.openstack.org/300508 | 14:44 |
*** sigmavirus24 is now known as sigmavirus24_awa | 14:44 | |
*** sigmavirus24_awa is now known as sigmavirus24 | 14:45 | |
tkelsey | hey sigmavirus24, I updated https://review.openstack.org/#/c/300068/ as suggested, mind taking a look? | 14:45 |
*** markvoelker has quit IRC | 14:47 | |
sigmavirus24 | tkelsey: rogerwilco | 14:48 |
tkelsey | thanks man | 14:49 |
*** rahulunair has joined #openstack-security | 14:55 | |
*** markvoelker has joined #openstack-security | 15:05 | |
tkelsey | thanks sigmavirus24 | 15:11 |
tkelsey | chair6: are you around? | 15:11 |
*** browne has joined #openstack-security | 15:20 | |
tkelsey | heh just abandoned a patch from Oct 16, 2014 :P | 15:21 |
openstackgerrit | Robert Clark proposed openstack/security-doc: Adding OSSN-0064 https://review.openstack.org/300091 | 15:22 |
*** mdong has joined #openstack-security | 15:28 | |
*** mdong has quit IRC | 15:32 | |
*** mdong has joined #openstack-security | 15:34 | |
openstackgerrit | Merged openstack/bandit: Fixing a bug exposed with try, except, ... tests https://review.openstack.org/300068 | 15:35 |
*** bpokorny has joined #openstack-security | 15:36 | |
*** austin987 has quit IRC | 15:37 | |
browne | tkelsey: looks like we are very close now with the integrations. just sahara is failing. are you working on a fix. or maybe the sahara team? | 15:40 |
browne | ERRORUnknown test found in profile: hardcoded_password | 15:40 |
tkelsey | browne: fix is submitted here https://review.openstack.org/#/c/300416/ | 15:40 |
browne | tkelsey: oh cool! | 15:41 |
browne | very very close to bandit 1.0 then. yay | 15:42 |
tkelsey | yup yup :) | 15:44 |
*** Guest90877 has quit IRC | 15:44 | |
elmiko | tkelsey, browne, i'll try to point a few more sahara devs at that review | 15:45 |
browne | thx elmiko | 15:45 |
tkelsey | elmiko: awesome | 15:45 |
elmiko | should be able to get it merged soon | 15:45 |
tkelsey | :) | 15:45 |
*** austin987 has joined #openstack-security | 15:51 | |
*** ccneill has joined #openstack-security | 15:52 | |
chair6 | here now tkelsey, but looks like you got it merged.. | 15:54 |
tkelsey | chair6: ah yeah :) but thanks all the same | 15:55 |
tkelsey | pushing for 1.0 stuff hehe :) | 15:55 |
openstackgerrit | Rahul U Nair proposed openstack/syntribos: Added payloads for keystone API https://review.openstack.org/299032 | 15:57 |
elmiko | tkelsey: 300416 is workflowed | 16:07 |
*** ibravo has quit IRC | 16:08 | |
browne | cool. we might have a bandit release on April Fool's day | 16:09 |
chair6 | heh | 16:18 |
elmiko | seems appropriate ;) | 16:23 |
tkelsey | :) | 16:23 |
*** salv-orlando has joined #openstack-security | 16:25 | |
*** cjschaef has quit IRC | 16:31 | |
*** openstackgerrit has quit IRC | 16:31 | |
*** rcernin has quit IRC | 16:32 | |
*** jass93_ has quit IRC | 16:37 | |
*** mvaldes has left #openstack-security | 16:40 | |
*** pcaruana has quit IRC | 16:44 | |
*** openstackgerrit has joined #openstack-security | 16:45 | |
*** edmondsw has quit IRC | 16:50 | |
*** bpokorny has quit IRC | 16:57 | |
*** bpokorny has joined #openstack-security | 16:58 | |
*** bpokorny has quit IRC | 16:59 | |
*** bpokorny has joined #openstack-security | 17:00 | |
chair6 | http://lists.openstack.org/pipermail/openstack-dev/2016-April/091168.html | 17:00 |
chair6 | fuel adding bandit to their own fuel-infra gates.. | 17:00 |
*** ccneill has quit IRC | 17:19 | |
tkelsey | still waiting on Jenkins :( | 17:30 |
tkelsey | oh wait, if fule have added bandit we should d it to the integration tests as well | 17:32 |
tkelsey | *fuel | 17:32 |
sigmavirus24 | tkelsey: they're experimental | 17:32 |
sigmavirus24 | I would vote against adding them to the integration tests for now | 17:33 |
tkelsey | ok sounds good to me | 17:33 |
sigmavirus24 | Until they go full voting, I think it'll add noise to our gate jobs | 17:33 |
tkelsey | +1 | 17:33 |
*** salv-orlando has quit IRC | 17:36 | |
*** salv-orlando has joined #openstack-security | 17:45 | |
*** cjschaef has joined #openstack-security | 17:49 | |
browne | argh, 300416 failed on gate | 17:51 |
*** markvoelker has quit IRC | 17:52 | |
*** markvoelker has joined #openstack-security | 17:56 | |
*** cjschaef has quit IRC | 18:05 | |
*** bpokorny has quit IRC | 18:08 | |
*** bpokorny has joined #openstack-security | 18:10 | |
*** mvaldes has joined #openstack-security | 18:13 | |
*** mvaldes has left #openstack-security | 18:15 | |
*** ccneill has joined #openstack-security | 18:16 | |
*** jass93 has joined #openstack-security | 18:20 | |
*** mdong has quit IRC | 18:26 | |
*** mdong has joined #openstack-security | 18:28 | |
*** markvoelker has quit IRC | 18:31 | |
*** edmondsw has joined #openstack-security | 18:32 | |
*** tkelsey has quit IRC | 18:33 | |
*** elo has quit IRC | 18:49 | |
*** markvoelker has joined #openstack-security | 18:53 | |
*** markvoelker has quit IRC | 18:53 | |
*** markvoelker has joined #openstack-security | 18:54 | |
*** markvoelker has quit IRC | 18:54 | |
*** bpokorny has quit IRC | 18:54 | |
*** markvoelker has joined #openstack-security | 18:54 | |
*** cjschaef has joined #openstack-security | 19:03 | |
*** salv-orlando has quit IRC | 19:07 | |
*** mvaldes1 has joined #openstack-security | 19:11 | |
*** cleong has quit IRC | 19:35 | |
*** avarner__ has joined #openstack-security | 19:40 | |
*** timkennedy has quit IRC | 19:42 | |
*** avarner_ has quit IRC | 19:43 | |
*** elo has joined #openstack-security | 19:48 | |
*** salv-orlando has joined #openstack-security | 19:48 | |
*** avarner__ has quit IRC | 19:53 | |
*** avarner has joined #openstack-security | 19:57 | |
*** tkelsey has joined #openstack-security | 20:06 | |
*** bpokorny has joined #openstack-security | 20:07 | |
*** tkelsey has quit IRC | 20:10 | |
sigmavirus24 | browne: how did it fail on the gate? | 20:23 |
sigmavirus24 | It merged | 20:23 |
*** salv-orl_ has joined #openstack-security | 20:23 | |
sigmavirus24 | oh I should have read the timestamp :P | 20:24 |
*** salv-orlando has quit IRC | 20:26 | |
*** markvoelker has quit IRC | 20:37 | |
*** browne has quit IRC | 20:41 | |
*** browne has joined #openstack-security | 20:45 | |
*** jass93 has quit IRC | 20:48 | |
browne | https://review.openstack.org/#/c/281560/ is passing!!! | 20:55 |
browne | can I get some +A and +W love? | 20:55 |
cjschaef | lol | 20:56 |
browne | ^^ sigmavirus24 | 20:56 |
*** austin987 has quit IRC | 20:57 | |
chair6 | nice! | 20:57 |
sigmavirus24 | browne: hope my review comment wasn't too terrible :P | 20:57 |
browne | sigmavirus24: haha | 20:57 |
sigmavirus24 | I'll take that as a "how rude!" | 20:58 |
browne | nah, thick skin here | 20:58 |
*** elo has quit IRC | 21:00 | |
openstackgerrit | Merged openstack/bandit: Ensure error exit codes fail integrations https://review.openstack.org/281560 | 21:02 |
sigmavirus24 | lol | 21:02 |
sigmavirus24 | browne: ^^ | 21:02 |
*** jass93 has joined #openstack-security | 21:16 | |
browne | yay!!! | 21:22 |
browne | time to release bandit 1.0! | 21:22 |
sigmavirus24 | who does that? | 21:25 |
browne | tmcpeak i believe | 21:30 |
*** mvaldes1 has left #openstack-security | 21:33 | |
*** bpokorny has quit IRC | 21:43 | |
*** cjschaef has quit IRC | 21:53 | |
*** markvoelker_ has joined #openstack-security | 22:01 | |
*** tkelsey has joined #openstack-security | 22:07 | |
*** tkelsey has quit IRC | 22:11 | |
*** jmckind has quit IRC | 22:12 | |
*** sigmavirus24 is now known as sigmavirus24_awa | 22:13 | |
*** edmondsw has quit IRC | 22:15 | |
*** ninag has quit IRC | 22:16 | |
*** browne has quit IRC | 22:28 | |
*** ametts has quit IRC | 22:28 | |
*** jass93 has quit IRC | 22:37 | |
*** markvoelker_ has quit IRC | 22:39 | |
*** austin987 has joined #openstack-security | 22:53 | |
*** ccneill has quit IRC | 23:13 | |
*** avarner has quit IRC | 23:24 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!