14:09:48 <lhinds> #startmeeting Security Group 20-04 14:09:48 <collabot> Meeting started Wed Apr 20 14:09:48 2016 UTC. The chair is lhinds. Information about MeetBot at http://wiki.debian.org/MeetBot. 14:09:48 <collabot> Useful Commands: #action #agreed #help #info #idea #link #topic. 14:09:48 <collabot> The meeting name has been set to 'security_group_20_04' 14:10:28 <lhinds> #link https://etherpad.opnfv.org/p/opnfv-sec-meetings 14:10:41 <lhinds> I need to leave about 30 minutes past, but we should be fine 14:10:54 <lhinds> ok, any topics to add Sona? 14:11:07 <Sona> it is ok 14:11:18 <lhinds> ok functest update... 14:11:43 <Sona> I am trying to understan Openscap 14:11:43 <lhinds> I merged my code in, and will be integrating it with the functest framework next. 14:11:55 <lhinds> any q's? Sona? 14:12:10 <lhinds> I will likely not work on it for a week, as its austin next week 14:12:16 <Sona> where do you get the ds (data stream)? 14:12:30 <Sona> download the SCAP data stream files from the National Vulnerability Database (NVD) download page Web site? 14:13:06 <Sona> there are a lot feed there, how do you know which one? 14:13:34 <lhinds> most of them on on git hub or available in an RPM for Centos 14:14:00 <lhinds> openscap-security-guide is the pkg name 14:14:25 <Sona> ok, I am running on Ubuntu and couldn't find this package 14:14:32 <lhinds> this is the scap content for ubuntu : https://github.com/GovReady/ubuntu-scap 14:14:40 <Sona> I will build this tool myself or test on Redahat 14:14:41 <lhinds> but its not been updated for two years 14:14:49 <Sona> good thanks 14:15:17 <Sona> so openscap would be a security test for functest? 14:15:30 <Sona> OPNFV platform would run this? 14:15:45 <lhinds> https://wiki.debian.org/SCAPGuide 14:15:58 <Sona> thanks Luke 14:16:21 <Sona> I will read more an if I have questions I will send email 14:16:28 <lhinds> functest will run it, all the tests launch from a docker container 14:16:33 <Sona> let's move on 14:16:39 <lhinds> ok 14:17:06 <lhinds> one other test'y type thing is I made a tool to audit all the prjects 14:17:23 <lhinds> you can see it here https://asciinema.org/a/7jk0jb9j01bjzrlzu976m084c 14:17:26 <lhinds> #link https://asciinema.org/a/7jk0jb9j01bjzrlzu976m084c 14:17:47 <lhinds> ok, anything for the badge program? 14:18:29 <Sona> one question 14:18:30 <Sona> https://github.com/lukehinds/opnfv-audit 14:18:40 <lhinds> yep? 14:18:49 <Sona> is there any readme file about this? 14:19:07 <lhinds> not yet, only in the jira issue 14:19:07 <Sona> I didn't see in the github 14:19:40 <Sona> ok, it would be good to create a README file in github to explain what it is and how to use it :) 14:19:46 <lhinds> https://jira.opnfv.org/browse/SECURITY-22?focusedCommentId=14756&page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel#comment-14756 14:20:09 <Sona> good thanks :) 14:20:15 <lhinds> I wil try to do that, or your welcome to make a push request 14:20:25 <Sona> ok, I can do it 14:20:28 <lhinds> cool 14:20:41 <Sona> let's move to summit 14:20:51 <lhinds> k.. 14:21:00 <aripie> hi, sorry for late arrvial, stuck in a meeting 14:21:08 <lhinds> so main thing I had, is that I will be going there now, so won't be around next week 14:21:09 <Sona> Hi Ari 14:21:11 <lhinds> hi aripie 14:21:35 <lhinds> just need someone to chair next week, or we cancel it for a week 14:21:46 <Sona> we can cancel 14:21:55 <lhinds> k, sounds good to me 14:22:01 <aripie> np 14:22:20 <lhinds> k, that's us I believe, that should be all 14:22:42 <lhinds> short'n'to the point 14:23:08 <aripie> have a good summit! 14:23:47 <Sona> Do we need to prepare for summit in Berlin? with presentation? 14:24:09 <Sona> we have plenty of time :) 14:24:27 <lhinds> Sona, we have time still. We should think about starting to get something ready around 3rd week of may 14:24:36 <lhinds> last time, I sent mine in a few days before 14:24:43 <Sona> ok :) 14:24:49 <lhinds> right, thanks * 14:25:04 <lhinds> have to take my daughter to Ballet now :) 14:25:14 <Sona> ok, have fun 14:25:21 <aripie> good luck 14:25:27 <lhinds> \endmeeting 14:25:39 <Sona> bye 14:25:42 <aripie> bye 14:25:44 <lhinds> #endmeeting