Re: Access to ACS security issues

2015-06-10 Thread John Kinsella
Wilder - sorry, I don’t see in my inbox/spam folder. :( Could ya forward to me directly? URLs or bug numbers would be handy, just so we know we’re looking at same thing... John > On Jun 10, 2015, at 1:09 PM, Wilder Rodrigues > wrote: > > Hi John, > > I sent the not to the security list, ha

Re: Access to ACS security issues

2015-06-10 Thread Wilder Rodrigues
Hi John, I sent the not to the security list, haven’t got an reply yet. Do you need to know which issues did Glenn create? Please, let me know and we will provide you the URLs. Thanks in advance. Cheers, Wilder > On 10 Jun 2015, at 19:00, John Kinsella wrote: > > +1. We can run queries for

Re: Access to ACS security issues

2015-06-10 Thread John Kinsella
+1. We can run queries for security issues, but that requires a more proactive stance than (at least some of us) honestly have. Send a note to the list mentioned…we don’t bite. :) John > On Jun 10, 2015, at 5:20 AM, David Nalley wrote: > > Any chance we can get Glenn to follow our security vu

Re: Access to ACS security issues

2015-06-10 Thread David Nalley
Any chance we can get Glenn to follow our security vulnerability reporting procedure? https://cloudstack.apache.org/security.html The issue with creating 'private Jiras' is that no one gets notified. Indeed, this email is the first notice that any of us have about these issues. --David On Wed, J

Re: Access to ACS security issues

2015-06-10 Thread Daan Hoogland
The mail list is called security@! On Wed, Jun 10, 2015 at 10:54 AM, Daan Hoogland wrote: > Wilder, > > We can add you to the security group? Subscribe at least to > s...@cloudstack.apache.org I¹ll see if I can give you rights to the jira > group. > > On 10/06/15 10:22, "Wilder Rodrigues" >

Re: Access to ACS security issues

2015-06-10 Thread Daan Hoogland
Wilder, We can add you to the security group? Subscribe at least to s...@cloudstack.apache.org I¹ll see if I can give you rights to the jira group. On 10/06/15 10:22, "Wilder Rodrigues" wrote: >Hi all, > >Our colleague Glenn reate some security issues under the ACS Jira with >private visibility

Access to ACS security issues

2015-06-10 Thread Wilder Rodrigues
Hi all, Our colleague Glenn reate some security issues under the ACS Jira with private visibility. I would like to have a look at those issues, but unfortunately I do not have access even to browse those. How could we get that solved? Is that possible to give me access? Thanks in advance. Che