-
Notifications
You must be signed in to change notification settings - Fork 685
Standup Notes 2019 05 23
Participants (alphabetical): Allie, Conor, Erik, Jen, John, Kevin, Mickael, Nina
Release update:
- Testing proceeding, done w/ upgrade testing for Mac Minis. Moving on to 1U upgrade testing.
- Please note: Change to add HTTP DELETE method does not show up on upgrade unless you run the playbooks. Only required for SecureDrop Workstation, which will require performing that step. -> Add note to release notes
- NUC5 upgrade testing is most critical missing test -- Mickael will take a stab atit
Potential eng meeting topics:
- 4.14 kernel migration
Everywhere else but SecureDrop we're using 4.14. 4.4 reaches EOL ~end of this year. Should upgrade soon. 4.14 has stronger security features, patches are backported more quickly. Config advantages -- we can re-use configuration across deployments. Hardware support will require a fair bit of testing.
- Yum repo strategy
- deb package publishing https://github.com/freedomofpress/securedrop-debian-packaging/issues/8#issuecomment-494042627 ^ can be with a small group
In both of these scenarios, we'd like to have a CD workflow where packages get built as changes are merged. Even with manual repo mgmt, we have a clobbering issue due to lack of state management.
Workstation CD issue: we'd also have to update pip mirror when dependencies are updates.
Priority will be workstation packaging CD. Need to update policy in all relevant workstation repos re: dependency management. Write script that increments versions. Package updates would be automatic. CircleCI job implementation. Set up LFS repos. Breakout conversations about infra architecture to come; SecureDrop work will be done in n+1 or n+2 sprint.
Yesterday:
- Worked on testing queue implementation
Today:
- Cont'd work on that, add test coverage
Blockers or Asks: None
Yesterday:
- SDW testing, will open tickets for 1) admin tooling and 2) using new template RPM in salt configs
- Brief review of WIP export flow
Today:
- Opening tickets in SDW
- Might take a stab at https://github.com/freedomofpress/securedrop-workstation/issues/205
- Otherwise, lots of backend tasks
Blockers or Asks:
- Interested in scheduling a CD conversation for SD packages (RPMs first, then debs); after release
Yesterday:
- Pre-release messaging done
- Work on workstation & UX/Qubes funding proposals
- SD support
Today:
- Work on UX/Qubes funding proposal
- SD support
Blockers or Asks: None
Yesterday:
- did a review pass through queue
- made small fix to first last name PR, merged it
- fixed up contributor PR from pyccon into core and merged it
Today:
- got mostly meetings today
- otherwise I owe some threat model review
Blockers or Asks:
- none
Yesterday:
- QA
- PR review - first name / last name
- added issue to address translator concerns about new messaging
Today:
- export
- docs PRs
Blockers or Asks:
- none
Yesterday:
- Upgrade testing for Mac Mini
- Small docs PR re: sudo usage
Today:
- Cont'd upgrade testing
Blockers or Asks: None
Today
- Reviewed SQLAlchemy 1.3.3 diff update and did not die (115k lines of source code level update)
Yesterday:
- Made progress on USB export flow, have something that more or less works!
Today:
- Check in with John on ^^
- Intel NUC5 testing
- Threat model review
Blockers or Asks: None
Yesterday:
- OTF proposal fun
- USENIX proposal(s) fun
- Reply/Network failure multi-stage rollout fun
Today:
- AWESOME UX meeting with David sharing learnings from field trainings
- Really annoying ~2hr errand
- Notes cleanup/share from above
- Possible design review on Reply/Network multi-stage failure oppties
- More OTF fun; include partner coordination summary for Erik
Blockers or Asks:
- Erik, Jen, Allie—any time today perhaps, we cd squeeze-in an adhoc design review? Too much awesome from David to permit for, in UX mtng