[Yahoo-eng-team] [Bug 1623488] Re: Documentation needed to clarify how to configure auth_endpoint for image signing

2017-09-11 Thread Dave McCowan
** No longer affects: barbican -- You received this bug notification because you are a member of Yahoo! Engineering Team, which is subscribed to OpenStack Compute (nova). https://bugs.launchpad.net/bugs/1623488 Title: Documentation needed to clarify how to configure auth_endpoint for image

[Yahoo-eng-team] [Bug 1545370] Re: pycryptodome breaks nova/barbican/glance/kite

2017-02-23 Thread Dave McCowan
** Changed in: barbican Status: Triaged => Fix Released -- You received this bug notification because you are a member of Yahoo! Engineering Team, which is subscribed to OpenStack Compute (nova). https://bugs.launchpad.net/bugs/1545370 Title: pycryptodome breaks

[Yahoo-eng-team] [Bug 1640239] [NEW] Unit test code installed in deployment

2016-11-08 Thread Dave McCowan
Public bug reported: It is Horizon's (and OpenStack's) practice to not install unit test code as part of deployment. It is also a security best practice to not install and expose test code to a end users of a deployment. Using the AppScan test suite, it was found that: GET

[Yahoo-eng-team] [Bug 1585831] [NEW] Horizon dashboard leaks internal information through cookies

2016-05-25 Thread Dave McCowan
Public bug reported: When horizon is configured where: 1) internalURL and publicURL are on different networks 2) horizon uses the internalURL endpoint for authentication The cookie "login_region" will be set to the value configured as OPENSTACK_KEYSTONE_URL. This URL contains the IP address of

[Yahoo-eng-team] [Bug 1558683] [NEW] Versions endpoint does not support X-Forwarded-Proto

2016-03-18 Thread Dave McCowan
Public bug reported: When a project is deployed behind a SSL terminating proxy, the version endpoint returns the wrong URLs. The returned protocol in the reponse URLs is http:// instead of the expected https://. This is because the response built by versions.py git the host information only

[Yahoo-eng-team] [Bug 1550127] [NEW] Wrong IP Address for error message in keystone.log

2016-02-25 Thread Dave McCowan
Public bug reported: When the keystone public endpoint sits behind a reverse proxy, messages written to keystone.log contain the IP address of the proxy, not the IP address of the client. For example: 2016-02-25 20:48:21.409 60 WARNING keystone.common.wsgi [-] Authorization failed. Could not

[Yahoo-eng-team] [Bug 1523646] Re: Nova/Cinder Key Manager for Barbican Uses Stale Cache

2016-01-04 Thread Dave McCowan
** Changed in: nova Assignee: yuntongjin (yuntongjin) => Dave McCowan (dave-mccowan) ** Also affects: ossn Importance: Undecided Status: New ** Changed in: ossn Assignee: (unassigned) => Dave McCowan (dave-mccowan) ** Changed in: castellan Assignee: (unassigned) =

[Yahoo-eng-team] [Bug 1523646] Re: Nova/Cinder Key Manager for Barbican Uses Stale Cache

2015-12-09 Thread Dave McCowan
** Also affects: castellan Importance: Undecided Status: New -- You received this bug notification because you are a member of Yahoo! Engineering Team, which is subscribed to OpenStack Compute (nova). https://bugs.launchpad.net/bugs/1523646 Title: Nova/Cinder Key Manager for

[Yahoo-eng-team] [Bug 1523646] [NEW] Nova/Cinder Key Manager for Barbican Uses Stale Cache

2015-12-07 Thread Dave McCowan
s these details.) (HTTP 401) (Request-ID: req-d2c52e0b-c16d-43ec-a7a0-7611113f1270) ** Affects: cinder Importance: Undecided Assignee: Dave McCowan (dave-mccowan) Status: In Progress ** Affects: nova Importance: Undecided Assignee: Dave McCowan (dave-mccowan)