This patch removes the bandit.yaml and just uses whatever Bandit defaults with in the scan. This cuts down on the maintenance of the burdensome bandit.yaml file. This patch also changes the severity level of the scan to just medium and high issues. Here are the results without the -ll to exclude low severity: http://paste.openstack.org/show/489898/ Change-Id: Ia063db516175f518cfa1c68902b8b74734f294c0
60 lines
1.3 KiB
60 lines
1.3 KiB
minversion = 1.6
envlist = py34,py27,pypy,pep8
skipsdist = True
usedevelop = True
install_command = pip install -U {opts} {packages}
whitelist_externals = find
setenv =
deps = -r{toxinidir}/requirements.txt
commands =
find . -type f -name "*.pyc" -delete
python setup.py testr --slowest --testr-args='{posargs}'
deps = -r{toxinidir}/test-requirements.txt
commands = bandit -r magnumclient -x tests -n5 -ll
deps = setuptools<3.2
commands = oslo_debug_helper -t magnumclient/tests {posargs}
basepython = python2.7
commands = oslo_debug_helper -t magnumclient/tests {posargs}
basepython = python3.4
commands = oslo_debug_helper -t magnumclient/tests {posargs}
commands =
# Run security linter
bandit -r magnumclient -x tests -n5 -ll
commands = {posargs}
commands = ./coverage.sh {posargs}
# E123, E125 skipped as they are invalid PEP-8.
show-source = True
ignore = E123,E125
builtins = _
import_exceptions = magnumclient.openstack.common._i18n