Skip to content
This repository has been archived by the owner on May 14, 2020. It is now read-only.

Monthly Chat Agenda March (2020-03-02) #1683

Closed
dune73 opened this issue Feb 11, 2020 · 1 comment
Closed

Monthly Chat Agenda March (2020-03-02) #1683

dune73 opened this issue Feb 11, 2020 · 1 comment

Comments

@dune73
Copy link
Contributor

dune73 commented Feb 11, 2020

This is the Agenda for the Monthly CRS Chat.

The chat is going to happen on https://owasp.slack.com in the channel #coreruleset on Monday, March 2, at 20:30 CET.

Items on the Agenda:

PRs

In light of the planned migration or our github, cleaning out the open PRs would be welcome.

PRs on hold

Other items

  • GitHub migration scheduled for March 18 (unconfirmed). Migration team: @dune73, @lifeforms and @fzipi.
  • travis-ci status: We are still only working on a workaround. Yet @fzipi has been working on a replacement of our Travis integration with github actions. Status update?
  • Drop support for python 2 in FTW
  • General problem with newly discovered DoS issues in our rules

Feel free to add items as you see fit either above, or below as comments.

Open Issues

In January 2020, we decided to look into 10 issues at the chat every month. But only after the Other items. Pick the issues before the meeting and list them below.

If you are not yet on the OWASP Slack, here is your invite: https://join.slack.com/t/owasp/shared_invite/enQtNjExMTc3MTg0MzU4LWQ2Nzg3NGJiZGQ2MjRmNzkzN2Q4YzU1MWYyZTdjYjA2ZTA5M2RkNzE2ZjdkNzI5ZThhOWY5MjljYWZmYmY4ZjM .
Everybody is welcome to join our community chat.

@dune73
Copy link
Contributor Author

dune73 commented Mar 2, 2020

Decisions

PRs

PRs on hold

Other issues

  • @lifeforms is going to be release manager for 3.3.
  • Github migration is scheduled for March 18, confirmation with Trustwave pending. Migration team is @dune73, @lifeforms and @fzipi. The idea is to move our github to github.com/coreruleset and to let crs-support die.
  • FTW + Python 2: @fgsch is very close to a PR that moves FTP to Python 3. We will keep Python 2 for the upcoming CRS 3.3 release intact, but will drop afterwards.
  • There are more ReDoS issues with some our rules around. @airween has been trying to sort this out for some time. After the meeting, @allanrbo spoke up and immediately submitted some ideas in a PR at Perf issue with regexes that start with repeating digits #1708.

Issues

@dune73 dune73 closed this as completed Mar 4, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant