/srv/irclogs.ubuntu.com/2013/08/26/#ubuntu-meeting.txt

=== freeflying is now known as freeflying_away
=== freeflying_away is now known as freeflying
=== freeflying is now known as freeflying_away
=== freeflying_away is now known as freeflying
=== psivaa is now known as psivaa-afk
=== freeflying is now known as freeflying_away
* barry waves15:00
* tumbleweed is here to chair a DMB meeting, if we do one15:06
tumbleweedbut it sounds like we have nothing to dicuss15:06
tumbleweedhttps://wiki.ubuntu.com/DeveloperMembershipBoard/Agenda15:06
barryi'm happy skipping it15:06
=== ayan is now known as Guest73351
=== ayan_ is now known as ayan
=== jasoncwarner__ is now known as jasoncwarner
jdstrandhi!16:31
jdstrand#startmeeting16:31
meetingologyMeeting started Mon Aug 26 16:32:03 2013 UTC.  The chair is jdstrand. Information about MeetBot at http://wiki.ubuntu.com/meetingology.16:31
meetingologyAvailable commands: #accept #accepted #action #agree #agreed #chair #commands #endmeeting #endvote #halp #help #idea #info #link #lurk #meetingname #meetingtopic #nick #progress #rejected #replay #restrictlogs #save #startmeeting #subtopic #topic #unchair #undo #unlurk #vote #voters #votesrequired16:31
jdstrandThe meeting agenda can be found at:16:31
jdstrand[LINK] https://wiki.ubuntu.com/SecurityTeam/Meeting16:31
jdstrand[TOPIC] Weekly stand-up report16:33
=== meetingology changed the topic of #ubuntu-meeting to: Weekly stand-up report
jdstrandI'll go first16:33
jdstrandI'm on triage this week16:33
jdstrandI have several pending updates I'm working on16:33
jdstrandI plan to test/sponsor tyhicks' saucy uploads this week16:34
jdstrandI have a couple of august work items to do16:34
jdstrandand participate in vUDS16:34
jdstrandmdeslaur is not here today. sbeattie, you're up16:34
sbeattieI'm again working on apparmor testing this week, looking at IPC issues16:35
sbeattieI need to review work items, and make sure I don't have anything outstanding16:35
sbeattieas well as attend vUDS.16:35
sbeattiethat's it for me, tyhicks?16:36
jdstrandsbeattie: how is the IPC testing going?16:36
sbeattieslow16:36
sbeattiemaking progress but slow.16:36
jdstrandsbeattie: you have one work item for august that I left for you. please focus on IPC16:37
sbeattiejdstrand: okay, will do16:37
tyhickssbeattie: are you writing tests? if so, do you plan on incorporating the simplified socketpair() testcase that I wrote last week?16:37
tyhicks(or should I do that?)16:37
jdstrandsbeattie: it is the device-specific accesses. I may try to do soemthing with that, but will likely want to discuss it with you16:37
sbeattietyhicks: yeah, I can take that.16:37
jdstrandmight just postpone the work item. we'll see16:37
jdstrandtyhicks: please proceed16:38
jdstrand(with your status update)16:38
tyhicksI'll be handing jdstrand a couple debdiffs and test results for saucy uploads this morning16:38
jdstrand\o/16:39
tyhicksthere's still one known bug in dbus, around how we're handling eavesdropping, I'll be working on fixing this this week16:39
tyhicksthen I'll probably take a look at the 'update apparmor_parser to add v3 open rules to v2 policy' work item16:40
tyhicksI also need to spend a little time getting ecryptfs ready for the next merge window16:41
jdstrandtyhicks: so, you addressed the dbus rules in abstractions issue with the tools?16:41
tyhicksand I need to test jj's fix for a socketpair() labeling bug that I came across last week16:41
tyhicksjdstrand: yes - I need to send that patch out to the list16:41
tyhicksjdstrand: apparmor - 2.8.0-0ubuntu24+dbusdev4 contains the fix16:42
jdstrandtyhicks: iirc, there were some test-dbus.py failures. is that the socketpair() issue?16:43
tyhicksjdstrand: that was one issue16:44
jdstrandok, let's back up16:44
tyhicksok16:44
jdstrandtyhicks: you are going to give me pacakges to upload. it sounds like there are bugs that are known to exist. what are they?16:44
tyhicksjdstrand: the known bug remaining is around eavesdropping16:45
tyhicksjdstrand: when we grant permissions in policy, we imply some permissions16:45
tyhicksjdstrand: so when you have permission to send a message, you implicitly have permissions to receive a method_return or error message from the peer that you can send a message to16:46
tyhicksjdstrand: our short-circuit code in dbus to allow the method_return or error messages to slip through is too loose16:46
jdstrandI see16:47
tyhicksjdstrand: it also allows eavesdroppers to see those messages16:47
jdstrandso no problem uploading to saucy. we'll just fix that in the next upload16:47
tyhicksexactly16:47
tyhicksthe only time that someone would see it is if they used dbus-monitor16:47
tyhicksit is a very important bug to fix, but it doesn't affect day to day use16:48
jdstrandyes16:48
jdstrandtyhicks: ok, I'm done. please proceed :)16:48
tyhicksI think that's it for me16:48
tyhicksjjohansen: you're up16:48
jjohansenI'm working on apparmor this week, specifically the ipc work items16:49
jdstrandtyhicks: btw, after we upload to saucy, can you file a bug on the eavesdropping issue?16:50
tyhicksjdstrand: yes16:50
jdstrandjjohansen: sorry for interrupting16:51
jjohansenjdstrand: heh thats fine16:52
* jjohansen will coordinate with tyhicks and sbeattie to get more testing of a couple of fixes I pushed out last week16:53
jjohansenI'll dump a bunch of kernel and parser patches for sarnold to review16:53
jjohansenhrmmm, I have some compatibility patches to update for 3.10, and 3.11 but some how I don't think I will get to that this week16:55
jjohansento preempt jdstrand's question on how ipc is going, its slow once I get a major crash bug fixed we should be able to start playing with several parts of it this week16:56
jdstrandwell, I wasn't going to ask this week-- you only worked last friday :)16:57
jjohansenthat is other people can start playing with16:57
jdstrandjjohansen: but thanks! that sounds agreat :)16:57
jjohansenoh? I did?16:57
jdstrandjjohansen: ok, I was only aware that you worked one day last week16:57
jdstrandjjohansen is a sneaky one16:58
jjohansenvacation was last week? sigh that is so depressing16:58
sarnoldtake two they're small16:58
jjohansenalright so it feels like Its been a few weeks since vacation, anyways thats it for me sarnold your up16:59
sarnoldI'm on community this week16:59
sarnoldI'm also on MIR duty this week, I'm the blocker for six or seven audits.17:00
sarnoldand I've got an apparmor parser patch to prepare for SRU for precise, the features buffer size problem -- and I'm curious if I should prepare packages for all releases or just precise, which is the current problem for kernel team preparing saucy-on-precise LTS kernels..17:01
jjohansensarnold: precise is the important one17:01
sarnoldjjohansen: okay, sounds good to me :)17:02
sarnoldwill any saucy-kernel installed on precise poke the problem?17:02
jjohansensarnold: if you find yourself without something to do poking the other releases would be nice17:02
jjohansensarnold: yes it will17:03
sarnoldjjohansen: oh I don't think I'll be in that position this week, feature freeze is soon and I owe a lot of people ACKs or NACKs on MIRs..17:03
sarnoldjjohansen: cool. thanks :)17:03
jjohansenerr, that is any saucy kernel after the alpha4 apparmor sync, so all future saucy kernels17:04
sarnoldjjohansen: would e.g.  3.11.0-3.8 do the job?17:05
jjohansensarnold: yes that kernel will cause things to fail nicely17:06
sarnoldjjohansen: woot! \o/17:06
sarnoldokay, I think that's me finished, and chrisccoulson has time'd out, so jdstrand, back to you17:07
jdstrandthanks, sorry, got pulled aside17:13
jdstrand[TOPIC] Highlighted packages17:13
=== meetingology changed the topic of #ubuntu-meeting to: Highlighted packages
jdstrandThe Ubuntu Security team will highlight some community-supported packages that might be good candidates for updating and or triaging. If you would like to help Ubuntu and not sure where to start, this is a great way to do so.17:13
jdstrandSee https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures for details and if you have any questions, feel free to ask in #ubuntu-security. To find out other ways of helping out, please see https://wiki.ubuntu.com/SecurityTeam/GettingInvolved.17:13
jdstrandnormally at this point I would provide a list of packages, but python-apt broke UCT so I don't have them atm.17:14
jdstrandI will update https://wiki.ubuntu.com/SecurityTeam/HighlightedPackages once I fix that17:14
jdstrand[TOPIC] Miscellaneous and Questions17:14
=== meetingology changed the topic of #ubuntu-meeting to: Miscellaneous and Questions
jdstrandDoes anyone have any other questions or items to discuss?17:14
jdstrandsbeattie, tyhicks, jjohansen, sarnold: thanks!17:24
jdstrand#endmeeting17:24
=== meetingology changed the topic of #ubuntu-meeting to: Ubuntu Meeting Grounds | Calendar/Scheduled meetings: http://fridge.ubuntu.com/calendar | Logs: https://wiki.ubuntu.com/MeetingLogs | Meetingology documentation: https://wiki.ubuntu.com/meetingology
meetingologyMeeting ended Mon Aug 26 17:24:46 2013 UTC.17:24
meetingologyMinutes (wiki):        http://ubottu.com/meetingology/logs/ubuntu-meeting/2013/ubuntu-meeting.2013-08-26-16.32.moin.txt17:24
meetingologyMinutes (html):        http://ubottu.com/meetingology/logs/ubuntu-meeting/2013/ubuntu-meeting.2013-08-26-16.32.html17:24
tyhicksthanks!17:24
jjohansenthanks jdstrand17:24
sarnoldthanks jdstrand! :)17:24
sbeattiethanks, jdstrand17:25
soreno/19:59
* soren checks calendar20:00
sorenhttps://wiki.ubuntu.com/TechnicalBoardAgenda is fairly out-of-date (very likely my fault), but today should be a meeting day.20:01
=== cjwatson_ is now known as cjwatson
stgrabersoren: 2013-08-05 + 2 weeks == 2013-08-19 (last week) + 2 weeks == 2013-09-02 (next week)20:27
sorenstgraber: Your arithmetic is impeccable.20:40
sorenstgraber: Unlike mine.20:40
=== freeflying_away is now known as freeflying

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!