openbmc.lists.ozlabs.org archive mirror
 help / color / mirror / Atom feed
* Security Working Group meeting - Wednesday September 18
@ 2019-09-17 23:32 Joseph Reynolds
  2019-09-18 20:51 ` Joseph Reynolds
  0 siblings, 1 reply; 5+ messages in thread
From: Joseph Reynolds @ 2019-09-17 23:32 UTC (permalink / raw)
  To: openbmc

This is a reminder of the OpenBMC Security Working Group meeting 
scheduled for this Wednesday September 18 at 10:00am PDT.

Current topics:
- Development work:
     1. IPMI authority question - 
https://lists.ozlabs.org/pipermail/openbmc/2019-August/017905.html

     2. Multiple admin security question - 
https://lists.ozlabs.org/pipermail/openbmc/2019-August/017910.html 

- OCP Secure Firmware Development Best Practices (goo.gl/uEoAh4) 

- Expired password design


Access, agenda, and notes are in the wiki:
https://github.com/openbmc/openbmc/wiki/Security-working-group

- Joseph

^ permalink raw reply	[flat|nested] 5+ messages in thread
* Security Working Group meeting - Wednesday September 18
@ 2021-08-18 13:54 Joseph Reynolds
  2021-08-18 17:33 ` Patrick Williams
  0 siblings, 1 reply; 5+ messages in thread
From: Joseph Reynolds @ 2021-08-18 13:54 UTC (permalink / raw)
  To: openbmc

This is a reminder of the OpenBMC Security Working Group meeting 
scheduled for this Wednesday September 18 at 10:00am PDT.

We'll discuss the following items on the agenda 
<https://docs.google.com/document/d/1b7x9BaxsfcukQDqbvZsU2ehMq4xoJRQvLxxsDUWmAOI/edit>, 
and anything else that comes up:

1. Wholesale changes to bitbake recipes were made.  See 
https://lore.kernel.org/openbmc/YQ1FD5q8KbhbXVBK@heinlein/T/#u 
<https://lore.kernel.org/openbmc/YQ1FD5q8KbhbXVBK@heinlein/T/#u>  My 
non-specific security concern (Joseph) is accidentally mis-configuring 
something with these changes.
2. Gerrit review - The BMCWeb session idle timeout changed to 30 minutes 
(was 60): https://gerrit.openbmc-project.xyz/c/openbmc/bmcweb/+/45658 
<https://gerrit.openbmc-project.xyz/c/openbmc/bmcweb/+/45658>
3. Yocto is planning a security configuration guide.  See 
https://bugzilla.yoctoproject.org/show_bug.cgi?id=14509 
<https://bugzilla.yoctoproject.org/show_bug.cgi?id=14509>

Access, agenda and notes are in the wiki:
https://github.com/openbmc/openbmc/wiki/Security-working-group 
<https://github.com/openbmc/openbmc/wiki/Security-working-group>

- Joseph

^ permalink raw reply	[flat|nested] 5+ messages in thread

end of thread, other threads:[~2021-08-18 19:13 UTC | newest]

Thread overview: 5+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2019-09-17 23:32 Security Working Group meeting - Wednesday September 18 Joseph Reynolds
2019-09-18 20:51 ` Joseph Reynolds
2021-08-18 13:54 Joseph Reynolds
2021-08-18 17:33 ` Patrick Williams
2021-08-18 19:12   ` Joseph Reynolds

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).