)]}'
{"id":"openstack%2Fopenstack-ansible~818533","triplet_id":"openstack%2Fopenstack-ansible~master~Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061","project":"openstack/openstack-ansible","branch":"master","topic":"security-headers","attention_set":{},"removed_from_attention_set":{"31749":{"account":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"last_update":"2021-12-02 02:08:54.000000000","reason":"Change was submitted"},"28619":{"account":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"last_update":"2021-12-01 17:00:05.000000000","reason":"Dmitriy Rabotyagov replied on the change"},"25023":{"account":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"last_update":"2021-12-01 22:13:09.000000000","reason":"Jonathan Rosser replied on the change"}},"hashtags":[],"change_id":"Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061","subject":"Add security headers to HAProxy Horizon service","status":"MERGED","created":"2021-11-19 10:50:00.000000000","updated":"2021-12-02 02:52:26.000000000","submitted":"2021-12-02 02:08:54.000000000","submitter":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"total_comment_count":7,"unresolved_comment_count":1,"has_review_started":true,"submission_id":"818533-security-headers","meta_rev_id":"6beceed71a83ad3cbdce2119f4b48059b1ba9778","_number":818533,"virtual_id_number":818533,"owner":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"actions":{},"labels":{"Verified":{"approved":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"all":[{"value":0,"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"tag":"autogenerated:zuul:gate","value":2,"date":"2021-12-02 02:08:54.000000000","permitted_voting_range":{"min":2,"max":2},"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":0,"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}],"values":{"-2":"Fails","-1":"Doesn\u0027t seem to work"," 0":"No score","+1":"Works for me","+2":"Verified"},"description":"","default_value":0,"optional":true},"Code-Review":{"approved":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"all":[{"value":2,"date":"2021-12-01 17:00:05.000000000","permitted_voting_range":{"min":2,"max":2},"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"value":0,"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":2,"date":"2021-12-01 22:13:09.000000000","permitted_voting_range":{"min":2,"max":2},"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}],"values":{"-2":"Do not merge","-1":"This patch needs further work before it can be merged"," 0":"No score","+1":"Looks good to me, but someone else must approve","+2":"Looks good to me (core reviewer)"},"description":"","default_value":0,"optional":true},"Workflow":{"approved":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"all":[{"value":0,"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"value":0,"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":1,"date":"2021-12-01 22:13:09.000000000","permitted_voting_range":{"min":1,"max":1},"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}],"values":{"-1":"Work in progress"," 0":"Ready for reviews","+1":"Approved"},"description":"","default_value":0,"optional":true},"Backport-Candidate":{"all":[{"value":0,"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},{"value":0,"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"value":0,"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}],"values":{"-1":"Not A Backport Candidate"," 0":"Backport Review Needed","+1":"Proposed Backport"},"description":"","default_value":0,"optional":true}},"removable_reviewers":[],"reviewers":{"REVIEWER":[{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"}]},"pending_reviewers":{},"reviewer_updates":[{"updated":"2021-11-19 16:09:58.000000000","updated_by":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"reviewer":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"state":"CC"},{"updated":"2021-11-19 16:52:46.000000000","updated_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"reviewer":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"state":"REVIEWER"},{"updated":"2021-11-22 17:27:03.000000000","updated_by":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"reviewer":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"state":"CC"},{"updated":"2021-12-01 17:00:05.000000000","updated_by":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"reviewer":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"state":"REVIEWER"},{"updated":"2021-12-01 22:13:09.000000000","updated_by":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"reviewer":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"state":"REVIEWER"}],"messages":[{"id":"41f64904187eeb0a67a14e1a3dc4dff118126a9a","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"date":"2021-11-19 10:50:00.000000000","message":"Uploaded patch set 1.","accounts_in_message":[],"_revision_number":1},{"id":"e8617d27b4982b0244c236d65972d39918d51fe2","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"date":"2021-11-19 12:01:44.000000000","message":"Uploaded patch set 2.","accounts_in_message":[],"_revision_number":2},{"id":"b14569643d3548a708c836425b821e5227ce075c","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"date":"2021-11-19 14:14:58.000000000","message":"Uploaded patch set 3: Commit message was updated.","accounts_in_message":[],"_revision_number":3},{"id":"4c4d61e7a1088ed4c206713d333146ad052a036b","author":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"date":"2021-11-19 16:09:58.000000000","message":"Patch Set 3:\n\n(1 comment)","accounts_in_message":[],"_revision_number":3},{"id":"32738a28ae1720d1224325567265089578a37568","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-11-19 16:52:46.000000000","message":"Patch Set 3: Verified+1\n\nBuild succeeded (check pipeline).\n\n- openstack-ansible-linters-ubuntu-focal https://zuul.opendev.org/t/openstack/build/8dd7fc7711cf4294adea2a96ebdd7d4b : SUCCESS in 19m 36s\n- openstack-ansible-varstest-aio https://zuul.opendev.org/t/openstack/build/568a542d45754231b0f5e862546054cf : SUCCESS in 22m 31s\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/a2cc0dde1058406aac91e41efa0af4d4 : SUCCESS in 12m 00s\n- openstack-ansible-deploy-aio_lxc-centos-8 https://zuul.opendev.org/t/openstack/build/cac76e51f8544863b9ed1512049f6ecd : SUCCESS in 2h 19m 29s\n- openstack-ansible-deploy-aio_lxc-centos-8-stream https://zuul.opendev.org/t/openstack/build/a66ca31a1b0d4e1782b1ae76fee1d7c6 : SUCCESS in 2h 06m 55s\n- openstack-ansible-deploy-aio_lxc-debian-buster https://zuul.opendev.org/t/openstack/build/5fdee3bc45164b62b79842bc049537c7 : SUCCESS in 2h 12m 21s\n- openstack-ansible-deploy-aio_lxc-debian-bullseye https://zuul.opendev.org/t/openstack/build/3700d14bc4f040f08181c566732d0ee3 : SUCCESS in 1h 40m 26s\n- openstack-ansible-deploy-aio_lxc-ubuntu-focal https://zuul.opendev.org/t/openstack/build/014e81a7175c4939bfd18ede6e77e7a4 : SUCCESS in 2h 06m 54s\n- openstack-ansible-deploy-aio_metal-debian-buster https://zuul.opendev.org/t/openstack/build/bbc56bdf513d46bb8d77ec0195bc7e66 : SUCCESS in 1h 26m 23s\n- openstack-ansible-deploy-aio_metal-debian-bullseye https://zuul.opendev.org/t/openstack/build/fae996e96407487e88d90c27a6c66a4c : SUCCESS in 1h 07m 39s\n- openstack-ansible-deploy-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/01136be1a32947d9a29f45cc8fbbbe82 : SUCCESS in 1h 13m 50s\n- openstack-ansible-deploy-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/837c6080913d4ab6b8217e3b647f6850 : SUCCESS in 1h 27m 23s\n- openstack-ansible-deploy-aio_metal-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/cf75f76bfd5b43049c8fd32f3bce8292 : SUCCESS in 1h 41m 54s\n- openstack-ansible-deploy-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/161841cbc7644de5972ce5d8e311a37f : SUCCESS in 1h 27m 15s\n- openstack-ansible-upgrade-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/2f9e88bc13504f1d9827a7f8797ebc9e : SUCCESS in 2h 02m 10s (non-voting)\n- openstack-ansible-upgrade-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/31daaf3b5169437fa1e3f2c0ce0665ff : SUCCESS in 2h 02m 05s\n- openstack-ansible-deploy-aio_distro_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/65db2f5b3d294d198621c2ebdc63b153 : FAILURE in 56m 04s (non-voting)\n- openstack-ansible-deploy-aio_distro_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/92bdfb6227274e5099732ab5db7dea84 : SUCCESS in 1h 20m 14s\n- openstack-ansible-deploy-aio_ceph-ubuntu-focal https://zuul.opendev.org/t/openstack/build/376580525d974538ba053bdc0fc199b7 : SUCCESS in 2h 23m 17s\n- openstack-ansible-deploy-aio_proxy-ubuntu-focal https://zuul.opendev.org/t/openstack/build/cc8e02d3462f46779848a449ba1765b8 : SUCCESS in 1h 38m 10s\n- build-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/122e99de42a647a9887d5b30d27b20e4 : SUCCESS in 6m 24s","accounts_in_message":[],"_revision_number":3},{"id":"007fb5d6567a155a8443cf54ae0cbf80a84e0b6c","author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"date":"2021-11-22 17:27:03.000000000","message":"Patch Set 3:\n\n(3 comments)","accounts_in_message":[],"_revision_number":3},{"id":"a4be14b7a5ec75e386151a83c95c9e30f59740d2","tag":"autogenerated:gerrit:newPatchSet","author":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"date":"2021-12-01 16:58:40.000000000","message":"Uploaded patch set 4.","accounts_in_message":[],"_revision_number":4},{"id":"76455b85fea036071cc62dc4e86be23fe7022805","author":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"date":"2021-12-01 16:59:10.000000000","message":"Patch Set 3:\n\n(3 comments)","accounts_in_message":[],"_revision_number":3},{"id":"24fa04cea2bd1fcebe7978f18b48742d9d3bce8d","author":{"_account_id":28619,"name":"Dmitriy Rabotyagov","email":"noonedeadpunk@gmail.com","username":"noonedeadpunk"},"date":"2021-12-01 17:00:05.000000000","message":"Patch Set 4: Code-Review+2","accounts_in_message":[],"_revision_number":4},{"id":"f2e1466a1ce960543d4215c3c1342896edd8e4f9","tag":"autogenerated:zuul:check","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-01 19:45:24.000000000","message":"Patch Set 4: Verified+1\n\nBuild succeeded (check pipeline).\n\n- openstack-ansible-linters-ubuntu-focal https://zuul.opendev.org/t/openstack/build/3ec86350b26343d59f77a0fc71e6d80e : SUCCESS in 25m 54s\n- openstack-ansible-varstest-aio https://zuul.opendev.org/t/openstack/build/70b3620107e0497a93d8970e9a3ad193 : SUCCESS in 31m 05s\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/48e50891bc564aae8b0cf022c39b5be0 : SUCCESS in 11m 21s\n- openstack-ansible-deploy-aio_lxc-centos-8 https://zuul.opendev.org/t/openstack/build/b4efadf25a864539bac62a5da5b0cb3f : SUCCESS in 2h 36m 56s\n- openstack-ansible-deploy-aio_lxc-centos-8-stream https://zuul.opendev.org/t/openstack/build/e120022a8f6a4a4098626ec965652e6e : SUCCESS in 2h 06m 41s\n- openstack-ansible-deploy-aio_lxc-debian-buster https://zuul.opendev.org/t/openstack/build/61ed5c2aa1bc4380a308170b57b72434 : SUCCESS in 2h 11m 29s\n- openstack-ansible-deploy-aio_lxc-debian-bullseye https://zuul.opendev.org/t/openstack/build/6ba8de61192840688928b5de03414cf5 : SUCCESS in 1h 39m 59s\n- openstack-ansible-deploy-aio_lxc-ubuntu-focal https://zuul.opendev.org/t/openstack/build/9f85052975c744f18a64601f31a807b0 : SUCCESS in 2h 16m 57s\n- openstack-ansible-deploy-aio_metal-debian-buster https://zuul.opendev.org/t/openstack/build/6717dfbce1ef4629ac9b87ffa8226b01 : SUCCESS in 1h 36m 46s\n- openstack-ansible-deploy-aio_metal-debian-bullseye https://zuul.opendev.org/t/openstack/build/a9de02ba49984717b1ffa26370192687 : SUCCESS in 1h 21m 13s\n- openstack-ansible-deploy-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/187fedf270b948b48da87579f5d3cbd0 : SUCCESS in 1h 18m 26s\n- openstack-ansible-deploy-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/cd3075e0ccc14740900473a0b11d13cf : SUCCESS in 1h 15m 20s\n- openstack-ansible-deploy-aio_metal-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/1b3e771bbfb842d59d7e103473431b07 : SUCCESS in 1h 25m 05s\n- openstack-ansible-deploy-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/a8b4a10a3e4040408e0b1308f48cb025 : SUCCESS in 1h 30m 54s\n- openstack-ansible-upgrade-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/c1900743b34f4ecf87d37f9f067897d7 : SUCCESS in 1h 55m 27s (non-voting)\n- openstack-ansible-upgrade-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/cf92013c38734dc18dcadef0ee634af3 : SUCCESS in 1h 40m 08s\n- openstack-ansible-deploy-aio_distro_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/b8261302c4274bf1abd0e70457f75a07 : FAILURE in 41m 34s (non-voting)\n- openstack-ansible-deploy-aio_distro_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/b6e83d745b7045a983dbe4802428fcfb : SUCCESS in 1h 00m 16s\n- openstack-ansible-deploy-aio_ceph-ubuntu-focal https://zuul.opendev.org/t/openstack/build/ab385d463cf04a9d9db193e9e544d382 : SUCCESS in 2h 34m 48s\n- openstack-ansible-deploy-aio_proxy-ubuntu-focal https://zuul.opendev.org/t/openstack/build/036413ba927040a68d1900bb83ade4be : SUCCESS in 1h 43m 51s\n- build-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/a67bccbe473d4d729b09d55e50d12cc9 : SUCCESS in 6m 19s","accounts_in_message":[],"_revision_number":4},{"id":"4b9e3e3f169b8bd04d45677f299db8d0bbea0845","author":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"},"date":"2021-12-01 22:13:09.000000000","message":"Patch Set 4: Code-Review+2 Workflow+1","accounts_in_message":[],"_revision_number":4},{"id":"5d8d941b29b9b1364a81af3e4b1856eac63e6f03","tag":"autogenerated:zuul:gate","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-01 22:15:22.000000000","message":"Patch Set 4: -Verified\n\nStarting gate jobs.","accounts_in_message":[],"_revision_number":4},{"id":"99da4474567b67f9fa03f5826a1e0b3434194ff8","tag":"autogenerated:zuul:gate","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-01 23:52:19.000000000","message":"Patch Set 4:\n\nStarting gate jobs.","accounts_in_message":[],"_revision_number":4},{"id":"7f5fcdd1153a06a87da00737dea6ab788c114920","tag":"autogenerated:zuul:gate","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-02 02:08:54.000000000","message":"Patch Set 4: Verified+2\n\nBuild succeeded (gate pipeline).\n\n- openstack-ansible-linters-ubuntu-focal https://zuul.opendev.org/t/openstack/build/6fa0d8d5774243268a76a99301e829de : SUCCESS in 13m 59s\n- openstack-ansible-varstest-aio https://zuul.opendev.org/t/openstack/build/890c022b029744ddaecd7483611f01a9 : SUCCESS in 19m 36s\n- openstack-tox-docs https://zuul.opendev.org/t/openstack/build/43a420a5b0fe43e7b241497f99e4956e : SUCCESS in 9m 56s\n- openstack-ansible-deploy-aio_lxc-centos-8 https://zuul.opendev.org/t/openstack/build/9d61c47506de44bc988caa85c95a2746 : SUCCESS in 2h 14m 01s\n- openstack-ansible-deploy-aio_lxc-centos-8-stream https://zuul.opendev.org/t/openstack/build/f5d56e92b0454dcd80b2f31caf156585 : SUCCESS in 2h 14m 56s\n- openstack-ansible-deploy-aio_lxc-debian-buster https://zuul.opendev.org/t/openstack/build/bb78056f2d2049178acbbb8366ae935e : SUCCESS in 2h 09m 52s\n- openstack-ansible-deploy-aio_lxc-debian-bullseye https://zuul.opendev.org/t/openstack/build/70b9d6709fb54f9e9503cd9e96c5eeef : SUCCESS in 1h 45m 46s\n- openstack-ansible-deploy-aio_lxc-ubuntu-focal https://zuul.opendev.org/t/openstack/build/a47f77402e184e10a2adc3be35b329d1 : SUCCESS in 2h 07m 36s\n- openstack-ansible-deploy-aio_metal-debian-buster https://zuul.opendev.org/t/openstack/build/f5862f7aed3646e4b3ef1ee81897616c : SUCCESS in 1h 32m 29s\n- openstack-ansible-deploy-aio_metal-debian-bullseye https://zuul.opendev.org/t/openstack/build/9d64aaef850e482686ced5358f0aa9c7 : SUCCESS in 1h 13m 45s\n- openstack-ansible-deploy-aio_metal-centos-8 https://zuul.opendev.org/t/openstack/build/301a79a7266d4dcbae671235fc2d3cf7 : SUCCESS in 1h 45m 27s\n- openstack-ansible-deploy-aio_metal-centos-8-stream https://zuul.opendev.org/t/openstack/build/f759e1e4a20747d5a3b055e7b85d531c : SUCCESS in 1h 19m 06s\n- openstack-ansible-deploy-aio_metal-ubuntu-bionic https://zuul.opendev.org/t/openstack/build/d72aad7a953840639d0d21d0cb941284 : SUCCESS in 1h 24m 45s\n- openstack-ansible-deploy-aio_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/3cd1f192c63e4ab3b5e7c93ffa291543 : SUCCESS in 1h 43m 55s\n- openstack-ansible-deploy-aio_distro_metal-ubuntu-focal https://zuul.opendev.org/t/openstack/build/89b7b0313f334623a316fdabb9e8e6cc : SUCCESS in 1h 04m 51s\n- openstack-ansible-deploy-aio_ceph-ubuntu-focal https://zuul.opendev.org/t/openstack/build/e875669615f94680af1c1e33a4020d38 : SUCCESS in 2h 08m 05s\n- openstack-ansible-deploy-aio_proxy-ubuntu-focal https://zuul.opendev.org/t/openstack/build/1342aeb520a041088be33bd0f7429614 : SUCCESS in 2h 02m 11s\n- build-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/288719547f634fa08dd02ff2ad9b9b73 : SUCCESS in 5m 56s","accounts_in_message":[],"_revision_number":4},{"id":"312398d58d1545c2dca21b31cf08728124b3bea8","tag":"autogenerated:gerrit:merged","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-02 02:08:54.000000000","message":"Change has been successfully merged","accounts_in_message":[],"_revision_number":4},{"id":"6beceed71a83ad3cbdce2119f4b48059b1ba9778","tag":"autogenerated:zuul:promote","author":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]},"date":"2021-12-02 02:52:26.000000000","message":"Patch Set 4:\n\nBuild succeeded (promote pipeline).\n\n- promote-openstack-tox-docs https://zuul.opendev.org/t/openstack/build/4e4d3331c9de4f4489cd29bf66afab3e : SUCCESS in 3m 11s\n- promote-openstack-releasenotes https://zuul.opendev.org/t/openstack/build/97971b578215493aa715e922c1a131fb : SUCCESS in 2m 33s","accounts_in_message":[],"_revision_number":4}],"current_revision_number":4,"current_revision":"b6fe07ecf810ede06cd5007396fd5286937e6616","revisions":{"eb5b1c2aa9cdba62bbc1c0a02c273987af7c7c47":{"kind":"REWORK","_number":1,"created":"2021-11-19 10:50:00.000000000","uploader":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"ref":"refs/changes/33/818533/1","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible","ref":"refs/changes/33/818533/1","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/1 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/1 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/1 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/1"}}},"commit":{"parents":[{"commit":"098f00964dd46b1943a405237398e4082ec2bbd3","subject":"Merge \"Remove note about metal/horizon compatability\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/098f00964dd46b1943a405237398e4082ec2bbd3"}]}],"author":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 10:31:29.000000000","tz":0},"committer":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 10:31:29.000000000","tz":0},"subject":"Add security headers to HAProxy Horizon service","message":"Add security headers to HAProxy Horizon service\n\nSecurity headers are HTTP response headers, that when set increase the security\nof your application by restricting modern browsers from running easily\npreventable vulnerabilities.\n\nYou can inspect your site using https://securityheaders.com/\n\nThis patch implements the following headers:\n- strict-transport-security - HSTS enforces the use of HTTPS\n- x-content-type-options - Stops the browser from changing the Content-Type\n- referrer-policy - Control what information a browser includes when it\nnavigates from a page\n- content-security-policy - CSP protects sites from XSS attacks by controlling\nwhat resources a browser is able to load\n\nThere is the option to extend to all haproxy services in the future, but as the\nheaders are only used by browser there maybe limited benefit to doing this other\nthan for keystone and console services.\n\nEach of the headers set should have no effect on the operation of the site apart\nfrom the CSP header. As the CSP header restricts what resources a browser is\nallowed to load, if for example a Openstack instance is using federated login,\nCSP will block the redirect. To fix the the admin will need to override the CSP,\nusing `haproxy_horizon_csp` to set the allowed list of resources.\n\nChange-Id: Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/eb5b1c2aa9cdba62bbc1c0a02c273987af7c7c47"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/eb5b1c2aa9cdba62bbc1c0a02c273987af7c7c47"}]},"branch":"refs/heads/master"},"204fe21dd19ce4d531d4edcc32f7b70c6aff6235":{"kind":"REWORK","_number":2,"created":"2021-11-19 12:01:44.000000000","uploader":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"ref":"refs/changes/33/818533/2","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible","ref":"refs/changes/33/818533/2","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/2 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/2 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/2 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/2"}}},"commit":{"parents":[{"commit":"098f00964dd46b1943a405237398e4082ec2bbd3","subject":"Merge \"Remove note about metal/horizon compatability\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/098f00964dd46b1943a405237398e4082ec2bbd3"}]}],"author":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 10:31:29.000000000","tz":0},"committer":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 11:59:38.000000000","tz":0},"subject":"Add security headers to HAProxy Horizon service","message":"Add security headers to HAProxy Horizon service\n\nSecurity headers are HTTP response headers, that when set increase\nthe security of your application by restricting modern browsers from\nrunning easily preventable vulnerabilities.\n\nYou can inspect your site using https://securityheaders.com/\n\nThis patch implements the following headers:\n- strict-transport-security - HSTS enforces the use of HTTPS\n- x-content-type-options - Stops the browser from changing the Content-Type\n- referrer-policy - Control what information a browser includes\nwhen it navigates from a page\n- content-security-policy - CSP protects sites from XSS attacks by\ncontrolling what resources a browser is able to load\n\nOnly enable is HTTPS in use.\n\nThere is the option to extend to all haproxy services in the\nfuture, but as the headers are only used by browser there maybe\nlimited benefit to doing this other than for keystone and\nconsole services.\n\nEach of the headers set should have no effect on the operation of\nthe site apart from the CSP header. As the CSP header restricts\nwhat resources a browser is allowed to load, if for example a\nOpenstack instance is using federated login, CSP will block the\nredirect. To fix the the admin will need to override the CSP,\nusing `haproxy_horizon_csp` to set the allowed list of resources.\n\nChange-Id: Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/204fe21dd19ce4d531d4edcc32f7b70c6aff6235"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/204fe21dd19ce4d531d4edcc32f7b70c6aff6235"}]},"branch":"refs/heads/master"},"33f5876381c6ee1ecac290adf968c4364c340344":{"kind":"NO_CODE_CHANGE","_number":3,"created":"2021-11-19 14:14:58.000000000","uploader":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"ref":"refs/changes/33/818533/3","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible","ref":"refs/changes/33/818533/3","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/3 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/3 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/3 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/3"}}},"commit":{"parents":[{"commit":"098f00964dd46b1943a405237398e4082ec2bbd3","subject":"Merge \"Remove note about metal/horizon compatability\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/098f00964dd46b1943a405237398e4082ec2bbd3"}]}],"author":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 10:31:29.000000000","tz":0},"committer":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 14:14:19.000000000","tz":0},"subject":"Add security headers to HAProxy Horizon service","message":"Add security headers to HAProxy Horizon service\n\nSecurity headers are HTTP response headers, that when set increase\nthe security of your application by restricting modern browsers from\nrunning easily preventable vulnerabilities.\n\nYou can inspect your site using https://securityheaders.com/\n\nThis patch implements the following headers:\n- strict-transport-security - HSTS enforces the use of HTTPS\n- x-content-type-options - Stops the browser from changing the Content-Type\n- referrer-policy - Control what information a browser includes\nwhen it navigates from a page\n- content-security-policy - CSP protects sites from XSS attacks by\ncontrolling what resources a browser is able to load\n\nOnly enable is HTTPS in use.\n\nThere is the option to extend to all haproxy services in the\nfuture, but as the headers are only used by browser there maybe\nlimited benefit to doing this other than for keystone and\nconsole services.\n\nEach of the headers set should have no effect on the operation of\nthe site apart from the CSP header. As the CSP header restricts\nwhat resources a browser is allowed to load, if for example a\nOpenstack instance is using federated login, CSP will block the\nredirect. To fix the the admin will need to override the CSP,\nusing `haproxy_horizon_csp` to set the allowed list of resources.\n\nDepends-On: https://review.opendev.org/c/openstack/openstack-ansible-lxc_hosts/+/818532\n\nChange-Id: Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/33f5876381c6ee1ecac290adf968c4364c340344"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/33f5876381c6ee1ecac290adf968c4364c340344"}]},"branch":"refs/heads/master"},"b6fe07ecf810ede06cd5007396fd5286937e6616":{"kind":"REWORK","_number":4,"created":"2021-12-01 16:58:40.000000000","uploader":{"_account_id":31749,"name":"James Gibson","email":"james.gibson@bbc.co.uk","username":"jamesgibo"},"ref":"refs/changes/33/818533/4","fetch":{"anonymous http":{"url":"https://review.opendev.org/openstack/openstack-ansible","ref":"refs/changes/33/818533/4","commands":{"Checkout":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/4 \u0026\u0026 git checkout FETCH_HEAD","Cherry Pick":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/4 \u0026\u0026 git cherry-pick FETCH_HEAD","Format Patch":"git fetch https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/4 \u0026\u0026 git format-patch -1 --stdout FETCH_HEAD","Pull":"git pull https://review.opendev.org/openstack/openstack-ansible refs/changes/33/818533/4"}}},"commit":{"parents":[{"commit":"098f00964dd46b1943a405237398e4082ec2bbd3","subject":"Merge \"Remove note about metal/horizon compatability\"","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/098f00964dd46b1943a405237398e4082ec2bbd3"}]}],"author":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-11-19 10:31:29.000000000","tz":0},"committer":{"name":"James Gibson","email":"james.gibson@bbc.co.uk","date":"2021-12-01 16:56:38.000000000","tz":0},"subject":"Add security headers to HAProxy Horizon service","message":"Add security headers to HAProxy Horizon service\n\nSecurity headers are HTTP response headers, that when set increase\nthe security of your application by restricting modern browsers from\nrunning easily preventable vulnerabilities.\n\nYou can inspect your site using https://securityheaders.com/\n\nThis patch implements the following headers:\n- strict-transport-security - HSTS enforces the use of HTTPS\n- x-content-type-options - Stops the browser from changing the Content-Type\n- referrer-policy - Control what information a browser includes\nwhen it navigates from a page\n- content-security-policy - CSP protects sites from XSS attacks by\ncontrolling what resources a browser is able to load\n\nOnly enabled if HTTPS in use.\n\nThere is the option to extend to all haproxy services in the\nfuture, but as the headers are only used by browser there maybe\nlimited benefit to doing this other than for keystone and\nconsole services.\n\nEach of the headers set should have no effect on the operation of\nthe site apart from the CSP header. As the CSP header restricts\nwhat resources a browser is allowed to load, if for example a\nOpenstack instance is using federated login, CSP will block the\nredirect. To fix the the admin will need to override the CSP,\nusing `haproxy_horizon_csp` to set the allowed list of resources.\n\nDepends-On: https://review.opendev.org/c/openstack/openstack-ansible-lxc_hosts/+/818532\n\nChange-Id: Ia99da8e4687b0a1d440f86d1c8be723ce2bfe061\n","web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/b6fe07ecf810ede06cd5007396fd5286937e6616"}],"resolve_conflicts_web_links":[{"name":"gitea","tooltip":"Open in GitWeb","url":"https://opendev.org/openstack/openstack-ansible/commit/b6fe07ecf810ede06cd5007396fd5286937e6616"}]},"branch":"refs/heads/master"}},"requirements":[],"submit_records":[{"status":"CLOSED","labels":[{"label":"Verified","status":"OK","applied_by":{"_account_id":22348,"name":"Zuul","username":"zuul","tags":["SERVICE_USER"]}},{"label":"Code-Review","status":"OK","applied_by":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}},{"label":"Workflow","status":"OK","applied_by":{"_account_id":25023,"name":"Jonathan Rosser","email":"jonathan.rosser@rd.bbc.co.uk","username":"jrosser"}}]}],"submit_requirements":[{"name":"Verified","status":"SATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"label:Verified\u003dCustom-Rule","fulfilled":true,"status":"PASS","passing_atoms":["label:Verified\u003dCustom-Rule"],"failing_atoms":[],"atom_explanations":{}}},{"name":"Workflow","status":"SATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"label:Workflow\u003dCustom-Rule","fulfilled":true,"status":"PASS","passing_atoms":["label:Workflow\u003dCustom-Rule"],"failing_atoms":[],"atom_explanations":{}}},{"name":"Code-Review","status":"SATISFIED","is_legacy":true,"submittability_expression_result":{"expression":"label:Code-Review\u003dCustom-Rule","fulfilled":true,"status":"PASS","passing_atoms":["label:Code-Review\u003dCustom-Rule"],"failing_atoms":[],"atom_explanations":{}}}]}
