18:02:21 #startmeeting OpenStack Security Group 18:02:22 Meeting started Thu Jul 25 18:02:21 2013 UTC. The chair is bdpayne. Information about MeetBot at http://wiki.debian.org/MeetBot. 18:02:23 Useful Commands: #action #agreed #help #info #idea #link #topic #startvote. 18:02:25 The meeting name has been set to 'openstack_security_group' 18:02:46 hi OSSG… who do we have here today? 18:03:12 hey 18:03:16 hello 18:03:30 hey guys 18:03:55 I'm hoping hyakuhei is around too 18:04:27 hello 18:04:55 alright, let's get started 18:05:11 #topic Previous Action Items 18:05:22 I heard from thomasbiege 18:05:46 he said that he wouldn't make it, but he has been pushing ahead with seeing how we can integrate more security testing into openstack 18:05:50 so that's great 18:06:19 I also heard from hyakuhei and he's making good progress on organizing the security issues from the book sprint 18:06:32 any other previous actions items that people can speak to? 18:06:55 none here 18:07:04 malini1 I believe you were going to work on an OSSN for libvirt authentication issues? 18:07:14 I have a little patch working its way to force authentication even on libvirt readonly connections 18:07:46 hopefully in a day or two it gets comitted -- but that might be famous last words! 18:07:48 is that a libvirt patch or a nova patch? 18:07:53 nova 18:07:59 got it 18:08:15 so will this also be written up as an OSSN? 18:08:21 cross checked with Danioel Berrange and Robert Clark that it would be a good thing to have before going ahead 18:08:38 should we? 18:08:49 not sure, I'm not as familiar with the issue involved 18:08:54 do you have a link to the code review? 18:09:16 https://review.openstack.org/#/c/38603/ 18:09:23 i have to add better commit comments 18:10:17 check on it later 18:10:23 ok, can do 18:10:25 BTW, I got my hard copies of the book 18:10:44 me too :-) 18:10:54 #topic OpenStack Summit 18:11:16 For anyone who is interested, the call for speakers is closing on July 31 18:11:23 http://www.openstack.org/summit/openstack-summit-hong-kong-2013/become-a-speaker/ 18:11:53 it's always good to have lots of security chatter at the summits 18:12:09 I know of several security talks submitted already 18:12:21 but, there's really no such thing as too many submissions 18:12:23 :-) 18:12:30 anyone else planning on submitting a talk? 18:12:57 this is for main session correct, design sessions will go a ways into Sept/Oct 18:12:58 we're thinking of doing another design session 18:13:04 APL is planning on a design session for the ephemeral disk encryption 18:13:10 correct, thanks for the clarification malini1 18:13:16 this is just for the main session 18:13:29 so there's still time on the design session 18:13:39 ephemeral disk encryption sounds nice 18:14:17 joel-coffman feel free to run ideas by the group here, or on the email list prior to your submission 18:14:19 Joel-coffman -- thinking a joint "workshop" with you guys and the barbican folks to set up and use key manager would be good for volume encryption 18:14:23 if that's helpful 18:14:46 once the swift folks did a workshop and it gets people familiar 18:14:47 that would be handy… a tutorial on volume encryption + key management 18:15:24 yes, that probably would be a good session 18:15:29 folks come in and leave with a VM with everything loaded kind of thing 18:15:58 BTW, I am thinking of doing one on geo-tagging -- design session 18:16:01 not sure if I can get it approved by our sponsor in time though 18:16:01 that would probably be something for the main conference, rather than a design session 18:16:19 sorry "that" was a reference to the encryption + key management tutorial 18:16:26 the volume encryption code is open source 18:16:39 bdpayne: agreed 18:16:57 I suspect that joel-coffman has additional gates to get permission to speak… even if the code is already out there 18:16:58 and key management open source, so it would not be more exposure t han doing the workshop 18:17:15 ah, :-( 18:17:31 joel-coffman one option could be to let someone else be listed on the talk and you could be a last minute addition if you get approval 18:17:48 yes, and our volume encryption code is still work in progress as we resolve some lingering issues on the Cinder side 18:17:51 yes, the workshop would be more for main conference 18:17:56 it is real working stuff 18:18:28 so... 18:18:50 #action malini1 and joel-coffman to sort out the idea of a main conference session on key management and volume encryption 18:19:02 sound reasonable? 18:19:17 yes 18:19:22 yes, sounds reasonable 18:19:32 great, thanks guys 18:19:43 #topic Open Discussion 18:19:51 I don't have anything else specific this week 18:20:00 Anyone else have something to discuss? 18:20:21 no, quiet week 18:20:32 I don't either 18:20:43 malini1? 18:20:48 nothing thank you 18:20:54 ok then 18:20:57 thanks everyone 18:20:59 bye 18:21:02 cheers 18:21:07 I'll be out next week, but I'll find someone to run the meeting 18:21:08 see you 18:21:12 so that's just an fyi 18:21:17 cheers 18:21:26 #endmeeting