# Meeting notes for July 22, 2021

**URL:** <https://discourse.chef.io/t/meeting-notes-for-july-22-2021/20128>\
**Category:** Community Meetings\
**Created:** [July 22, 2021, 7:21pm UTC](https://discourse.chef.io/t/meeting-notes-for-july-22-2021/20128 "2021-07-22T19:21:47Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![bennyvasquez](https://sea2.discourse-cdn.com/flex016/user_avatar/discourse.chef.io/bennyvasquez/32/2559_2.png) [@bennyvasquez](https://discourse.chef.io/u/bennyvasquez)\
**Post date:** [July 22, 2021, 7:21pm UTC](https://discourse.chef.io/t/meeting-notes-for-july-22-2021/20128/1 "2021-07-22T19:21:47Z")

</div>

Below are the meeting notes for this week's Community Meeting, a text-based meeting held weekly in #Community Meetings on our community slack, which you can join: [https://community-slack.chef.io/](https://community-slack.chef.io/)

* * *

**DevRel/Community**

benny Vasquez shared

_The illustrious_ [_@Jonathan Pereira_](https://chefcommunity.slack.com/team/U01PQNUTQV9) _has finished yet another course for Learn Chef, this time focusing on teaching beginner bash._ [_https://learn.chef.io/courses/course-v1:chef+Bash101+Perpetual/about_](https://learn.chef.io/courses/course-v1:chef+Bash101+Perpetual/about) _If you’ve got someone on your team who’s not familiar, it’s a GREAT resource. I’m even going to test it on my 10-year-old nephew this weekend, though he doesn’t know it yet._

[_@damacus_](https://chefcommunity.slack.com/team/U1QLQQV5X) _also wrote up a blog post about the importance of Awesome Chef awards, and what you should be doing about it:_

> **[Nominate an Awesome Chef! - Chef Blog | Chef](https://www.chef.io/blog/nominate-an-awesome-chef)**
>
> Nominate someone in the Chef Community who is awesome

_(hint: it’s nominating your favorite awesome chefs)_

[_#chefconf_](https://chefcommunity.slack.com/archives/CQM00GNNL) _is moving right along, and the speakers have all been contacted. If you haven’t yet, please check your email and look for a message from your conference buddy! We’ve got work to do._

# This week’s releases

**Chef Automate**

benny Vasquez shared

_First, Automate had a release earlier this week that addressed a bunch of security concerns related to content sniffing, cross-site scripting, strict transport security header, and more. It also added delete and search capability in policy file view in Infra Server views and fixed some bugs around user preferences Details on discourse:_

> [@Automate 2 version 20210713164523 Released!](https://discourse.chef.io/t/automate-2-version-20210713164523-released/20102):
>
> We are delighted to announce the availability of version 20210713164523 of Chef Automate 2. New Features You can now search and delete the Policyfiles from Chef Infra Server. Navigate to the Policyfiles tab: Infrastructure \> Chef Infra Server \> Server Name \> Organization \> Policyfiles. ([#5321](https://github.com/chef/automate/pull/5321), [#5307](https://github.com/chef/automate/pull/5307)) Compliance Profile Updates Compliance profiles are updated to version 1.0.0/20210707133250, which includes the following profile ([#5297](https://github.com/chef/automate/pull/5297)): Server motd regular expression bug fix - centOS 8. Fi…

_Unfortunately, that release also introduced a bug when logging using SAML which was quickly corrected the next day with another release:_

> [@Automate 2 version 20210720135142 Released!](https://discourse.chef.io/t/automate-2-version-20210720135142-released/20107):
>
> We are delighted to announce the availability of version 20210720135142 of Chef Automate 2. Compliance Profile Updates Compliance profiles are updated to version 1.0.0/20210714100005, which includes the following profile ([#5356](https://github.com/chef/automate/pull/5356)): STIG Windows 10 v2.1.0 Fix for - ASLR check in CIS CentOS 8 Bug Fixes The black screen when logging in using SAML has been removed. ([#5368](https://github.com/chef/automate/pull/5368)) Chef Product Versions This release uses: Chef Habitat version: 1.6.181/20201030172917 Chef Habitat Builder version: 899…

**Chef Infra Server**

benny Vasquez shared

_We also had our Chef Infra Server release this week! TONS of great improvements here to maintenance mode, along with a few other CVE-related updates. This one also includes the much-anticipated Rails engine upgrade (from 4.2 to 6.0.3.2). Testing will be essential when upgrading here! The full notes for that one are here:_

> [@Chef Infra Server 14.6.32 Released!](https://discourse.chef.io/t/chef-infra-server-14-6-32-released/20106):
>
> We are delighted to announce the availability of version 14.6.32 of Chef Infra Server. Enhancements Maintenance Mode You can now place your Chef Infra Server into maintenance mode to block requests from Chef Infra Clients or tools like knife. Maintenance mode also allows you to specify allowed IP addresses for testing your Infra Server without allowing access to all clients. Turn on maintenance mode: chef-server-ctl maintenance on Turn off maintenance mode: chef-server-ctl maintenance off Add…

**Chef Infra Client**

benny Vasquez shared

_And for the Chef Infra Client release, I’m stealing almost all of_ [_@tas50_](https://chefcommunity.slack.com/team/U1CDF6JE6) _’s internal announcement:_  
_Chef Infra Client 17.3 is out. This is a big one. It has more new functionality than probably any minor release we’ve ever done and certainly much more than was included in 17.0. There’s a lot here to be aware of, so please take the time to read the release notes. Here’s the TLDR:_

- _6 new resources for installing and managing packages with Habitat on Chef Infra Client managed nodes (thanks_ [_@El Jeffe_](https://chefcommunity.slack.com/team/UHSBU8GQ6) _)_
- _New Windows resources that expand our security and patching capabilities. 2 resources for managing Windows Defender and a Windows Update settings resource that also allows you to setup a system to use WSUS_
- _New helpers to make working with YAML, JSON, and TOML configs files easier (thanks_ [_@El Jeffe_](https://chefcommunity.slack.com/team/UHSBU8GQ6) _)_
- _Solaris 11.4 packages along with macOS 12 packages for the M1 architecture (Thanks to our release engineering team)_
- _Significant improvements to Policyfiles that make it easier to bridge the gap between traditional Berks workflows and Policyfiles. If you are struggling with the move from Berks to Policyfiles this may be just what you need._
- _A **beta** of secrets manager integration with support for AWS Secrets Manager and Azure Key Vault. Emphasis on the beta here. **We’d love to hear more before we further build out that feature.** _

> [@Chef Infra Client 17.3 Released!](https://discourse.chef.io/t/chef-infra-client-17-3-released/20111):
>
> Hey Everyone, Today we released Chef Infra Client 17.3. This release is by far our largest "minor" release ever and it includes even more new functionality than we shipped in 17.0. Be sure to check out everything that's new, and let us know what you think on Community Slack. What's New in 17.3 Compliance Phase Improvements Chef InSpec 4.38 We've updated Chef InSpec from 4.37.23 to 4.38.3: New Features Added a new mongodb\_conf resource. Bug Fixes Changed the Windows local pipe server connec…

# Updates

**Chef Habitat**

mwrockx shared

_Hello From Habitat!_

_This week we have been working on:_

- _migrating log data from sumologic to datadog_
- _Core-plans team onboarding_
- _Continued work on core-plans refresh_
- _Investigating options around core-plans version bump automation_
- _Working on bumping builder and habitat cargo deps and eliminating any CVE exposure_
- _Addressing build pipeline issues_

**Chef Infra Client**

tas50 shared

_So obviously we released Chef Infra Client 17.3, which was a massive release for us. Big shout out to the Infra Client team for getting that out the door._

_We're circling back to Compliance Phase to work on the next phase (yep I went there) of that feature. This will enable you to ship compliance profiles and waivers directly in cookbooks and then include them just like you would with recipes. That way you can test everything in the same pipeline and easily locally test both infra and compliance code in Test Kitchen._

_With the first beta of our secrets manager integration out it's time to deliver more for the next release. We have a few minor improvements planned as well as investigation work for building out HashiCorp Vault and Akeyless Vault support there. Stay tuned and if you have feedback on the feature in general do let us know at_ [_secrets\_management\_beta@progress.com_](mailto:secrets_management_beta@progress.com)

_Work continues on moving the client.pem files to the Windows cert store. The PR to load the data from the cert store by default is complete. Next step is updating knife to bootstrap to the cert store. We're hoping that makes it into next month's release and we'll have some guidance on how to migrate existing pem files for anyone that wants to move off disk. Disk storage will continue to work though so there's user impact here._

**Chef Infra Server**

prajakta shared

_We released Chef Infra Server 14.6 (_ [Chef Infra Server Release Notes](https://docs.chef.io/release_notes_server/#whats-new-in-14632) _) in the last week.- We have been updating the gather logs command and getting it better aligned with Automate._

- _Updated the omniauth-gem in oc\_id (_ [Update oc-id omniauth gem to latest to resolve CVE-2015-9284 by antima-gupta · Pull Request #2653 · chef/chef-server · GitHub](https://github.com/chef/chef-server/pull/2653) _)_
- _We have been working on testing the postgres upgrade from 9.6 -\> 13.3That is the server team for this week!_

**Chef InSpec**

benny Vasquez shared

[_@cwolfe_](https://chefcommunity.slack.com/team/U7C4N32EQ) _wasn’t going to make the meeting this week, so I’ve got the InSpec update!_

_The Chef InSpec team is working on:_

- _Investigating an issue with SSH connections when_ PrintLastLog _is enabled_
- _Fixing an issue with apache\_conf when ServerRoot is not specified_
- _Suppressing the usage help output when inspec is invoked without a command but with_ --chef-license
- _Adding support for the IBM DB2 database_
- _Working on a new release_

**Chef Workstation**

Vikram Karve shared

_Hi All! thanks, benny, here are the updates from Workstation team-From last week, these are yet to be released. Planning for a workstation release soon!_

- _Update ruby version to 3.0.2_
- _Update deprecated schema in the chocolatey package_
- _Updated chef-cli to 5.3.1_
- _Update docker-api_
- _Updated curl to resolve CVEs_
- _(this week) Updated error message related to_ knife cookbook unshare _command_

_Work-in-progress_

- _Attempting to reproduce an_ [_issue_](https://github.com/chef/chef-workstation/issues/1989) _with Docker images 21.4.414 & onwards_
- _Adding further the unit test cases of the cobra library implementation in the workstation_
- _Dev changes to optimise_ chef -v _are nearly complete, resolving an issue found here in Windows_

**Sous Chefs**

ramereth shared

_Hello from Sous Chefs!_

_Here's the list of new releases in the past week:_

- _docker - 7.7.3:_
  - _Ensure_ docker\_image :load _is idempotent_

- _jenkins - 9.0.0:_
  - _Remove_ runit _dependency_
  - _Use systemd units instead of runit services_
  - _ **Breaking Changes / Deprecations** _
    - jenkins\_jnlp\_slave
      - _Renamed_ runit\_groups _property to_ service\_groups
      - _New service created -- old Runit service will need manual cleanup_

    - jenkins::\_master\_war
      - _New service created -- old Runit service will need manual cleanup_

- _nrpe - 4.0.0:_
  - _Enable_ unified\_mode _for Chef 17 compatibility_
  - _Bump minimum Chef version to 15.3_

- _pyenv - 3.5.0:_
  - _Add support for setting_ umask _for pip resource_

- _selinux - 4.0.0:_
  - _Sous Chefs adoption_
  - _Enable_ unified\_mode _for Chef 17 compatibility_
  - _Update test platforms_

- _trusted\_certificate - 4.0.2:_
  - _README updates_

_Special thanks to_ [_@Robert Detjens_](https://chefcommunity.slack.com/team/UUTQ3RB52) _who has been working on various cookbook updates_

_I'm planning on having him tackle selinux\_policy next and then try and merge those resources into selinux (but I need to talk with_ [_@tas50_](https://chefcommunity.slack.com/team/U1CDF6JE6) _first about that)_

**Cinc Updates**

ramereth shared

_Hello from the Cinc Project!_

_Cinc Server_

- _Working on resolving runtime issues with 14.6.32 related to chef-utils gem_
- _Been too busy to look into the fix for this but hope to get it resolve in the next week_

_Cinc Client_

- _Working on resolving build issues with 17.3.48 on Windows related to the ruby-shadow gem_
- _Hope to have that build out later today if I can figure out the build issue_

jgitlin shared

_Also Cinc Server: have started on new wordmark replacements, further updates next week!_

## **See you next week!**

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex016/uploads/chef/original/2X/b/b9c6cc2dba194e37f0fa44a13d1ad740b99aae03.png) [@system](https://discourse.chef.io/u/system)\
**Post date:** [July 25, 2021, 7:21pm UTC](https://discourse.chef.io/t/meeting-notes-for-july-22-2021/20128/2 "2021-07-25T19:21:48Z")

</div>

This topic was automatically closed after 3 days. New replies are no longer allowed.
