*** lamt has quit IRC | 00:00 | |
*** markvoelker has joined #openstack-security | 00:01 | |
ccneill | turns out I misinterpreted the comment from Andreas.. he was simply suggesting that we remove the "from the OpenStack Security Project" part from our blurbs | 00:03 |
---|---|---|
ccneill | I believe | 00:03 |
ccneill | I won't change it for bandit since it would just read "Security linter." without the OSSP mention, but might be worth landing a future patch | 00:04 |
*** markvoelker has quit IRC | 00:06 | |
openstackgerrit | Rahul U Nair proposed openstack/syntribos: Loading payload from remote URI https://review.openstack.org/385699 | 00:25 |
unrahul | ccneill: +1d it lets see what others say. | 00:27 |
*** ccneill has quit IRC | 00:46 | |
*** austin987 has joined #openstack-security | 00:53 | |
*** jamielennox is now known as jamielennox|away | 01:01 | |
*** jamielennox|away is now known as jamielennox | 01:08 | |
*** knangia has quit IRC | 01:12 | |
*** browne has quit IRC | 01:21 | |
*** gszafranski has quit IRC | 01:50 | |
*** zhihui has joined #openstack-security | 01:54 | |
*** markvoelker has joined #openstack-security | 02:03 | |
*** markvoelker has quit IRC | 02:08 | |
*** gouthamr has quit IRC | 02:21 | |
*** dave-mccowan has quit IRC | 02:26 | |
*** yuanying has quit IRC | 02:29 | |
*** jamielennox is now known as jamielennox|away | 03:01 | |
*** jamielennox|away is now known as jamielennox | 03:33 | |
*** browne has joined #openstack-security | 03:45 | |
*** browne has quit IRC | 03:48 | |
*** yuanying has joined #openstack-security | 03:49 | |
*** markvoelker has joined #openstack-security | 04:04 | |
*** markvoelker has quit IRC | 04:09 | |
*** markvoelker has joined #openstack-security | 04:41 | |
*** markvoelker_ has joined #openstack-security | 04:42 | |
*** markvoelker has quit IRC | 04:45 | |
*** yuanying has quit IRC | 04:54 | |
*** markvoelker_ has quit IRC | 04:58 | |
*** yuanying has joined #openstack-security | 05:00 | |
*** yuanying has quit IRC | 05:02 | |
*** markvoelker has joined #openstack-security | 05:13 | |
*** markvoelker_ has joined #openstack-security | 05:14 | |
*** agireud has quit IRC | 05:17 | |
*** markvoelker has quit IRC | 05:18 | |
*** agireud has joined #openstack-security | 05:26 | |
*** markvoelker_ has quit IRC | 05:45 | |
*** rcernin has joined #openstack-security | 06:01 | |
*** yuanying has joined #openstack-security | 06:01 | |
*** pcaruana has joined #openstack-security | 06:18 | |
*** tesseract has joined #openstack-security | 07:03 | |
*** tesseract is now known as Guest85855 | 07:03 | |
*** nkinder has quit IRC | 07:18 | |
*** nkinder has joined #openstack-security | 07:20 | |
*** tkelsey has joined #openstack-security | 07:22 | |
*** openstackgerrit has quit IRC | 08:04 | |
*** openstackgerrit has joined #openstack-security | 08:04 | |
*** Unterd0g has quit IRC | 08:43 | |
*** Unterd0g has joined #openstack-security | 08:49 | |
*** markvoelker has joined #openstack-security | 08:57 | |
*** Unterd0g has quit IRC | 08:57 | |
*** Unterd0g has joined #openstack-security | 09:02 | |
*** openstackgerrit has quit IRC | 09:04 | |
*** openstackgerrit has joined #openstack-security | 09:04 | |
*** zhihui has quit IRC | 09:20 | |
openstackgerrit | Merged openstack/security-doc: Volume wiping update https://review.openstack.org/384730 | 09:35 |
*** markvoelker has quit IRC | 09:38 | |
*** markvoelker has joined #openstack-security | 09:38 | |
*** markvoelker has quit IRC | 09:40 | |
*** zhihui has joined #openstack-security | 10:22 | |
*** zhihui has quit IRC | 10:23 | |
*** tkelsey has quit IRC | 10:30 | |
*** tkelsey has joined #openstack-security | 11:05 | |
*** markvoelker has joined #openstack-security | 11:10 | |
*** ayoung has quit IRC | 11:34 | |
*** gouthamr has joined #openstack-security | 11:48 | |
*** zul has quit IRC | 11:51 | |
*** markvoelker has quit IRC | 11:56 | |
*** qwertyco has joined #openstack-security | 12:04 | |
*** zul has joined #openstack-security | 12:06 | |
*** dave-mccowan has joined #openstack-security | 12:10 | |
*** markvoelker has joined #openstack-security | 12:12 | |
*** edmondsw has joined #openstack-security | 12:16 | |
*** B_Smith has quit IRC | 12:47 | |
*** markvoelker has quit IRC | 12:53 | |
*** B_Smith has joined #openstack-security | 13:00 | |
*** ayoung has joined #openstack-security | 13:01 | |
*** markvoelker has joined #openstack-security | 13:19 | |
*** dikonoor has joined #openstack-security | 13:20 | |
*** dikonoor has quit IRC | 13:22 | |
*** dikonoor has joined #openstack-security | 13:22 | |
*** B_Smith has quit IRC | 13:25 | |
*** B_Smith has joined #openstack-security | 13:26 | |
*** cleong has joined #openstack-security | 13:46 | |
*** qwertyco has quit IRC | 14:17 | |
*** dikonoor has quit IRC | 14:30 | |
*** mvaldes has joined #openstack-security | 14:33 | |
*** markvoelker has quit IRC | 14:34 | |
*** pbourke has joined #openstack-security | 14:35 | |
pbourke | hi all, is anyone aware of existing guidelines on redacting sensitive info from logs? | 14:35 |
*** tkelsey has quit IRC | 14:41 | |
*** jmckind has joined #openstack-security | 14:43 | |
*** jmckind_ has joined #openstack-security | 14:51 | |
*** jmckind has quit IRC | 14:52 | |
mvaldes | pbourke: i skimmed through the security and operations guide, but didnt notice anything | 14:52 |
mvaldes | it would depend on context and by environment | 14:53 |
mvaldes | http://docs.openstack.org/security-guide/ | 14:53 |
mvaldes | http://docs.openstack.org/ops/ | 14:53 |
*** kun_huang has quit IRC | 14:56 | |
*** diazjf has joined #openstack-security | 14:56 | |
*** kun_huang has joined #openstack-security | 14:59 | |
*** kun_huang has quit IRC | 15:04 | |
*** diazjf has quit IRC | 15:11 | |
*** tkelsey has joined #openstack-security | 15:13 | |
*** kun_huang has joined #openstack-security | 15:14 | |
*** diazjf has joined #openstack-security | 15:21 | |
*** mvaldes has quit IRC | 15:22 | |
*** edtubill has joined #openstack-security | 15:23 | |
*** mvaldes has joined #openstack-security | 15:27 | |
*** diazjf has quit IRC | 15:51 | |
*** ccneill has joined #openstack-security | 15:51 | |
*** diazjf has joined #openstack-security | 15:52 | |
*** diazjf has quit IRC | 15:57 | |
*** diazjf has joined #openstack-security | 16:05 | |
*** mdong has joined #openstack-security | 16:10 | |
*** browne has joined #openstack-security | 16:17 | |
*** markvoelker has joined #openstack-security | 16:19 | |
*** Guest85855 has quit IRC | 16:25 | |
*** dikonoor has joined #openstack-security | 16:28 | |
*** mvaldes has quit IRC | 16:34 | |
*** knangia has joined #openstack-security | 16:35 | |
*** ayoung has quit IRC | 16:42 | |
*** rcernin has quit IRC | 16:51 | |
*** mvaldes has joined #openstack-security | 16:51 | |
*** edtubill has quit IRC | 17:11 | |
*** diazjf has quit IRC | 17:14 | |
*** gszafranski has joined #openstack-security | 17:14 | |
*** gouthamr has quit IRC | 17:14 | |
*** datadog327 has joined #openstack-security | 17:16 | |
lhinds | pbourke / mvaldes: https://wiki.openstack.org/wiki/Security/Guidelines/logging_guidelines | 17:17 |
*** jmckind has joined #openstack-security | 17:18 | |
*** jmckind_ has quit IRC | 17:19 | |
*** gouthamr has joined #openstack-security | 17:19 | |
mvaldes | lhinds: wonderful | 17:22 |
lhinds | mvaldes: no worries, had it bookmarked from when I worked on some CADF stuff | 17:25 |
*** nikhil has quit IRC | 17:33 | |
*** johnsom has quit IRC | 17:33 | |
*** aimeeu has quit IRC | 17:33 | |
*** DuncanT has quit IRC | 17:33 | |
*** fyxim has quit IRC | 17:33 | |
*** Guest66666 has quit IRC | 17:33 | |
*** redrobot has quit IRC | 17:33 | |
*** dstufft has quit IRC | 17:33 | |
*** michaelxin has quit IRC | 17:33 | |
*** julian1 has quit IRC | 17:33 | |
*** mhayden has quit IRC | 17:33 | |
*** woodrow has quit IRC | 17:33 | |
*** sigmavirus has quit IRC | 17:33 | |
*** Guest66666 has joined #openstack-security | 17:33 | |
*** dstufft has joined #openstack-security | 17:33 | |
*** redrobot has joined #openstack-security | 17:33 | |
openstackgerrit | Doug Chivers proposed openstack/security-doc: Added section on security review https://review.openstack.org/356153 | 17:34 |
*** mhayden has joined #openstack-security | 17:34 | |
*** redrobot is now known as Guest41366 | 17:34 | |
*** julian1 has joined #openstack-security | 17:34 | |
*** _sigmavirus24 has joined #openstack-security | 17:35 | |
*** _sigmavirus24 is now known as sigmavirus | 17:36 | |
*** sigmavirus has quit IRC | 17:37 | |
*** sigmavirus has joined #openstack-security | 17:37 | |
*** nikhil has joined #openstack-security | 17:38 | |
*** johnsom has joined #openstack-security | 17:39 | |
*** woodrow has joined #openstack-security | 17:39 | |
*** _elmiko is now known as elmiko | 17:41 | |
*** aimeeu has joined #openstack-security | 17:41 | |
*** DuncanT has joined #openstack-security | 17:41 | |
*** johnsom has quit IRC | 17:42 | |
*** johnsom has joined #openstack-security | 17:43 | |
*** michaelxin has joined #openstack-security | 17:44 | |
openstackgerrit | Doug Chivers proposed openstack/security-doc: Added section on security review https://review.openstack.org/356153 | 17:44 |
*** fyxim has joined #openstack-security | 17:45 | |
*** ccneill has quit IRC | 17:46 | |
*** ccneill has joined #openstack-security | 17:46 | |
*** dikonoor has quit IRC | 18:10 | |
*** soyLuna has joined #openstack-security | 18:24 | |
*** soyLuna has quit IRC | 18:25 | |
*** edtubill has joined #openstack-security | 18:45 | |
*** diazjf has joined #openstack-security | 18:45 | |
*** pbourke has quit IRC | 18:47 | |
*** pbourke has joined #openstack-security | 18:47 | |
vinaypotluri | ccneill: mdong unrahul knangia HI , i uploaded a patch to create syntribos-openstack-templates projects but not sure which all jobs/checks to include in zuul. Any suggestions ? https://review.openstack.org/#/c/388171/ | 19:41 |
unrahul | Well ideally we would like to have our on job of parsing and checking the templates.. | 19:44 |
unrahul | but for now as a place holder you may add pep8 or python35 tests.. i guess. | 19:45 |
vinaypotluri | ok | 19:46 |
unrahul | just lets see what ccneill and mdong says as well. | 19:46 |
mdong | we shouldn’t even need the pep8 or python checks, right? cause it’s just templates, there’s no code for it to run on | 19:47 |
vinaypotluri | mdong: thats what i was thinking since its basically templates and no python code | 19:49 |
vinaypotluri | https://review.openstack.org/#/c/388171/1/zuul/layout.yaml | 19:49 |
unrahul | in the cr Andreas suggested to add something.. | 19:49 |
unrahul | either we can put it empty or do a palceholder | 19:49 |
mdong | I’d leave a comment explaining the situation | 19:50 |
vinaypotluri | cool | 19:50 |
unrahul | hmm yeah mdong lets see what he says.. then. | 19:50 |
vinaypotluri | will do that | 19:50 |
*** kun_huang has quit IRC | 19:52 | |
*** kun_huang has joined #openstack-security | 19:55 | |
ccneill | yeah.. I'm not sure what jobs they have already available for us, but I think anything we gate on will probably have to be custom | 19:55 |
ccneill | not sure how to go about that | 19:55 |
ccneill | maybe we can have it cross-check with syntribos and run the syntribos tests against the new templates/payloads to make sure they work | 19:56 |
ccneill | so that we don't have to ship a "test this repo" python file/tox config/etc. with every templates repo | 19:56 |
ccneill | but if we absolutely have to, it | 19:56 |
ccneill | it's not the end of the world, I guess. since we decided to lump all the openstack projects together | 19:57 |
openstackgerrit | Khanak Nangia proposed openstack/syntribos: Updating logging information for Syntribos https://review.openstack.org/387570 | 19:58 |
*** tkelsey has quit IRC | 19:58 | |
openstackgerrit | Khanak Nangia proposed openstack/syntribos: Updating logging information for Syntribos https://review.openstack.org/387570 | 20:03 |
*** dave-mccowan has quit IRC | 20:09 | |
*** diazjf has quit IRC | 20:17 | |
*** browne has quit IRC | 20:26 | |
*** jmckind_ has joined #openstack-security | 20:29 | |
*** jmckind has quit IRC | 20:30 | |
*** diazjf has joined #openstack-security | 20:40 | |
*** cleong has quit IRC | 20:44 | |
*** browne has joined #openstack-security | 20:51 | |
*** ayoung has joined #openstack-security | 20:51 | |
*** tkelsey has joined #openstack-security | 21:01 | |
*** tkelsey has quit IRC | 21:06 | |
*** kun_huang has quit IRC | 21:15 | |
*** kun_huang has joined #openstack-security | 21:16 | |
*** hyakuhei has quit IRC | 21:18 | |
openstackgerrit | Khanak Nangia proposed openstack/syntribos: Updating logging information for Syntribos https://review.openstack.org/387570 | 21:18 |
*** hyakuhei has joined #openstack-security | 21:19 | |
*** hyakuhei has quit IRC | 21:19 | |
*** hyakuhei has joined #openstack-security | 21:19 | |
*** hyakuhei has quit IRC | 21:19 | |
*** hyakuhei has joined #openstack-security | 21:19 | |
*** mihero has quit IRC | 21:22 | |
*** tmcpeak has joined #openstack-security | 21:23 | |
*** mihero has joined #openstack-security | 21:24 | |
openstackgerrit | Khanak Nangia proposed openstack/syntribos: Updating the README.rst file https://review.openstack.org/388223 | 21:28 |
*** diazjf has quit IRC | 21:29 | |
*** edtubill has quit IRC | 21:46 | |
*** diazjf has joined #openstack-security | 21:47 | |
openstackgerrit | Merged openstack/security-doc: Added section on security review https://review.openstack.org/356153 | 21:50 |
openstackgerrit | Rahul U Nair proposed openstack/syntribos: Loading payload from remote URI https://review.openstack.org/385699 | 21:58 |
vinaypotluri | Hi, I'm getting "line too long" error on line 2531 even though I never added/edited that line. Any clue what could be wrong? https://review.openstack.org/#/c/388174/ | 22:02 |
*** tkelsey has joined #openstack-security | 22:03 | |
*** jmckind_ has quit IRC | 22:03 | |
ccneill | vinaypotluri: looks like that job is non-voting at least | 22:04 |
ccneill | so I guess somebody accidentally checked something in that didn't pass, but it shouldn't affect your CR | 22:04 |
ccneill | maybe rebase and see if someone landed a fix | 22:05 |
vinaypotluri | cool | 22:05 |
*** tkelsey has quit IRC | 22:07 | |
*** diazjf has quit IRC | 22:08 | |
*** datadog327 has quit IRC | 22:09 | |
*** diazjf has joined #openstack-security | 22:10 | |
*** diazjf has quit IRC | 22:16 | |
*** mvaldes has quit IRC | 22:17 | |
vinaypotluri | ccneill: got to know that yamllint released a new version a few days back which is now checking the preexisting content in the repo. :) | 22:21 |
ccneill | ahhh, makes sense | 22:21 |
ccneill | maybe we can set up a similar job for our templates, though I think there's pressure not to have a huge number of unique jobs | 22:22 |
ccneill | ¯\_(ツ)_/¯ we'll see | 22:22 |
vinaypotluri | +1 | 22:22 |
*** dave-mccowan has joined #openstack-security | 22:25 | |
*** dave-mccowan has quit IRC | 22:34 | |
*** markvoelker has quit IRC | 22:41 | |
*** edmondsw has quit IRC | 22:42 | |
*** gouthamr has quit IRC | 22:56 | |
*** tkelsey has joined #openstack-security | 23:05 | |
*** tkelsey has quit IRC | 23:09 | |
*** dave-mccowan has joined #openstack-security | 23:19 | |
*** hongbin has quit IRC | 23:23 | |
*** elmiko is now known as _elmiko | 23:24 | |
*** tmcpeak has quit IRC | 23:27 | |
*** markvoelker has joined #openstack-security | 23:41 | |
*** markvoelker has quit IRC | 23:46 | |
*** knangia has quit IRC | 23:52 |
Generated by irclog2html.py 2.14.0 by Marius Gedminas - find it at mg.pov.lt!