14:01:32 #startmeeting SEC Group p20/01/16 14:01:32 Meeting started Wed Jan 20 14:01:32 2016 UTC. The chair is LukeH. Information about MeetBot at http://wiki.debian.org/MeetBot. 14:01:32 Useful Commands: #action #agreed #help #info #idea #link #topic. 14:01:32 The meeting name has been set to 'sec_group_p20_01_16' 14:01:50 aripie sends apologies,he is in another meeting 14:01:56 ok 14:02:06 k, I think main topics are the security guide. 14:02:13 anything you wanted to cover at all? 14:02:43 I have started to work with security guide 14:03:19 security "Compute Security" 14:03:43 sounds good, and how are you getting on with gerrit / git? 14:03:51 I need to work a little more before I commit my work 14:04:06 that's ok. I have a lot pending commit here too. 14:04:13 I have never use gerrit so we sill see :) 14:04:38 I am still getting used to it as well, main thing, don't worry about messing up. I have a few times already 14:05:11 ok, good to know :) 14:05:19 I will try to get the new structure up this week, so you can include the compute sec materials 14:05:33 I think you said that you have been working on security guide, have you commited your changes? 14:06:00 Ari has also worked with security guide 14:06:28 i did an initial commit with quite a bit, but I have a lot more to go up, so I will do that this week. I just need to format it right, as gerrit complains about and wants whitespace instead 14:06:29 I will wait until you guys commit first 14:06:48 sure, I can do my push, then take a pull from that and copy / paste your mateial in 14:07:01 yes, that would be good 14:07:06 let me screencap what I have... 14:09:07 here we go... 14:09:11 #link http://i.imgur.com/yDTFiSS.png 14:09:17 quite a bit there. 14:10:07 don't worry about the compute section, you can merge it what you have 14:10:25 I think its mainly 'titles' more then content 14:11:06 Thanks, very good 14:12:03 like the SR-IOV, DPDK can go into your compute section.. 14:12:10 Do we have a section to put Monitoring Auditing stuff? 14:12:19 #link http://i.imgur.com/yI2nDG0.png 14:13:34 Sona, we can certainly add a section 14:13:56 stuff like syslog, and which log files to monitor etc? 14:16:20 good 14:17:36 k, I will add a section... 'Monitoring & Auditing' 14:18:00 #action Luke to add 'Monitoring & Auditing' to sec guide 14:19:15 ok, i think thats it for this week, unless you have EOB Sona? 14:19:31 Just wanted to mention CVE-list 14:19:33 https://docs.google.com/spreadsheets/d/1Eyfdd4bMOuenZDVH9zJP7EYG3EVdfWYieJuTnjQ9Z_Q/edit#gid=44532174 14:20:01 What do you think about this list? 14:20:33 it is not complete, still working on it 14:20:42 ahh yes, you're email. i recall now 14:20:50 I think we can add that as a footer page. 14:21:00 that would be good 14:21:22 s/you're/your 14:21:59 the goal is eventually we have a complete list of all CVEs detected and fixed in the OPNFV releases 14:22:21 yep, sounds good 14:22:37 good, I will continue to work with it 14:22:41 nice work 14:22:52 thanks 14:23:12 this was all from me 14:23:18 me too 14:23:39 I will make sure I put up minutes this week, I have been slacking there since late last year 14:23:48 #endmeeting