====================================================================================================== #fedora-meeting: Security Team Meeting - Agenda: https://fedoraproject.org/wiki/Security_Team_meetings ====================================================================================================== Meeting started by Sparks at 14:00:57 UTC. The full logs are available at http://meetbot.fedoraproject.org/fedora-meeting/2015-09-24/fedora_security_team.2015-09-24-14.00.log.html . Meeting summary --------------- * Roll Call (Sparks, 14:01:02) * LINK: https://lists.fedoraproject.org/pipermail/security-team/2015-September/000368.html (mhayden, 14:06:07) * Participants are reminded to make liberal use of #info #link #help in order to make the minutes "more better" (Sparks, 14:09:53) * Follow up on last week's tasks (Sparks, 14:09:59) * Outstanding BZ Tickets (Sparks, 14:12:01) * Thursday's numbers: Critical 0 (0), Important 42 (-2), Moderate 409 (+7), Low 152 (-4), Total 603 (Sparks, 14:12:10) * The recent BZ upgrade has broken my script so I'll need to get that worked out OR I can just start using/relying on mhayden's script. (Sparks, 14:12:42) * IDEA: Use mhayden's script to create a dashboard and host it somewhere (fedorapeople?) (Sparks, 14:16:54) * IDEA: Somehow push information to fedmsg (Sparks, 14:17:18) * LINK: https://github.com/major/fedora-meeting-report (mhayden, 14:17:57) * LINK: https://github.com/major/fedora-meeting-report (Sparks, 14:18:06) * ACTION: Sparks to add "issues" to fedora-meeting-report on github (Sparks, 14:19:25) * Handling embargoed issues (Sparks, 14:23:25) * We now have security@fp.o going to security-private@l.fp.o and we have a few people subscribed to security-private@l.fp.o. (Sparks, 14:24:19) * FabioOlive Started a discussion on security-team@l.fp.o regarding moving the FST into a more proactive role of handling security bugs. (Sparks, 14:25:33) * 1,639 views on the fedoramag blog post about the security team (mhayden, 14:26:54) * It appears we *could* create a GPG key and put it on several Yubikeys and hand those out. (Sparks, 14:27:17) * ACTION: Sparks to talk with mattdm regarding private security tickets in BZ. (Sparks, 14:38:19) * Open floor discussion/questions/comments (Sparks, 14:51:06) * https://sparkslinux.wordpress.com/?s=keysigning (Sparks, 14:57:00) * ACTION: Sparks to start a discussion on the FST list regarding an online video GPG key signing event. (Sparks, 14:57:51) Meeting ended at 15:00:08 UTC. Action Items ------------ * Sparks to add "issues" to fedora-meeting-report on github * Sparks to talk with mattdm regarding private security tickets in BZ. * Sparks to start a discussion on the FST list regarding an online video GPG key signing event. Action Items, by person ----------------------- * Sparks * Sparks to add "issues" to fedora-meeting-report on github * Sparks to talk with mattdm regarding private security tickets in BZ. * Sparks to start a discussion on the FST list regarding an online video GPG key signing event. * **UNASSIGNED** * (none) People Present (lines said) --------------------------- * Sparks (97) * FabioOlive (24) * mhayden (22) * Astradeus (20) * zodbot (5) * threebean (3) * d-caf (2) * Southern_Gentlem (2) * CRob (1) Generated by `MeetBot`_ 0.1.4 .. _`MeetBot`: http://wiki.debian.org/MeetBot