19:05:28 #startmeeting Ansible Lockdown Working Group 19:05:28 Meeting started Thu Jun 18 19:05:28 2020 UTC. 19:05:28 This meeting is logged and archived in a public location. 19:05:28 The chair is cyberpear. Information about MeetBot at http://wiki.debian.org/MeetBot. 19:05:28 Useful Commands: #action #agreed #halp #info #idea #link #topic. 19:05:28 The meeting name has been set to 'ansible_lockdown_working_group' 19:05:31 #topic Roll Call 19:05:34 .hello2 19:05:35 cyberpear: cyberpear 'James Cassell' 19:06:01 who's here today? 19:06:09 I'm here 19:06:18 hi xgeorgex! 19:06:29 #topic agenda 19:06:38 what's to talk about today? 19:07:06 I started work on the RHEL8 STIG yesterday 19:07:19 I have cat1 completed and almost done with cat3 19:07:26 nice 19:07:28 The meat of it is cat2 though 19:07:31 Like 200+ controls there 19:07:52 I figured I would tackle the two small sections first 19:07:55 per usual 19:08:02 xgeorgex: how'd you handle the encryption one? 19:08:14 Which is the encryption one? 19:08:20 Fips? 19:09:24 no, Disk Encryption 19:09:40 I didn't 19:09:48 maybe that wasn't CAT 1 19:09:50 There are two in section 1 that I was going to circle back to and that was one 19:10:13 Actually that's the only one I skipped in cat 1 that I need to circle back through 19:10:22 Once I get cat3 done I'm going to go back to it 19:11:38 I only have a few controls left in cat3 so I will probably be back at that one either tonight or tomor 19:11:40 Tomorrow morning 19:11:41 might be kind of like the "partitioning" ones where you can otly tell the user to fix it themselves 19:12:13 Yeah, I poked around for a bit on it but before I gave up and just messaged out a warning I wanted to really look deep 19:12:31 Visually it's easier for me to see it's not done if I leave it as /bin/true 19:13:30 #topic Open Floor 19:13:47 I didn't have anything new for today. 19:13:55 Was dfed able to handle the pr stuff you added last week? 19:14:07 I sent it his way and it sounded like he was going to handle it then 19:14:25 yeah, they got merged. thanks! 19:14:32 Sweet! 19:14:50 The only other thing on my side is I diverted from my apache cis stuff to work on rhel8 stig 19:14:59 So I'm not sure of an eta on that now 19:15:03 the person who reported the issue followed up and said there's still a typo, and I said "PR's welcome", but it's just a cosmetic typo 19:15:08 I'm about 70% done with the apache stuff 19:16:24 cool 19:16:47 I guess I should follow up on my Red Hat case asking for python3-passlib in RHEL 8 19:16:50 I hate those cosmetic typos when they are mine. If it's mine and there it makes my eye twitch each time I see it 19:16:51 do you have a similar case open? 19:17:17 related to https://github.com/MindPointGroup/RHEL7-STIG/issues/286 19:17:18 I don't but David mght 19:17:58 some companies seem to have much more pull to get RH to do stuff than others 19:18:29 Yeah and I don't know where we fall in that 19:18:46 I'm not sure if we have more pull or are just one of the little guys 19:19:00 (I asked for SSSD certmap support in RHEL 7, and they said "get lost, use RHEL 8", but someone else asks, and it looks like it's going to actually happen) 19:19:18 hahaha 19:20:04 anyway, I think that's all from me today... anything else to discuss? 19:20:42 Same here 19:21:08 thanks. will end the meeting in a minute unless anything comes up 19:37:41 #endmeeting