Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

feat(sbom): migrate to CycloneDX v1.6 #6903

Merged
merged 4 commits into from
Jun 11, 2024

Conversation

DmitriyLewen
Copy link
Contributor

@DmitriyLewen DmitriyLewen commented Jun 11, 2024

Description

migrate to CycloneDX v1.6

validation:

➜  sbom-utility validate --input-file integration/testdata/fluentd-multiple-lockfiles.cdx.json.golden 
Welcome to the sbom-utility! Version `x.y.z` (unset) (linux/amd64)
==================================================================
[INFO] Loading (embedded) default schema config file: `config.json`...
[INFO] Loading (embedded) default license policy file: `license.json`...
[INFO] Attempting to load and unmarshal data from: `integration/testdata/fluentd-multiple-lockfiles.cdx.json.golden`...
[INFO] Successfully unmarshalled data from: `integration/testdata/fluentd-multiple-lockfiles.cdx.json.golden`
[INFO] Determining file's BOM format and version...
[INFO] Determined BOM format, version (variant): `CycloneDX`, `1.6` (latest)
[INFO] Matching BOM schema (for validation): schema/cyclonedx/1.6/bom-1.6.schema.json
[INFO] Loading schema `schema/cyclonedx/1.6/bom-1.6.schema.json`...
[INFO] Schema `schema/cyclonedx/1.6/bom-1.6.schema.json` loaded.
[INFO] Validating `integration/testdata/fluentd-multiple-lockfiles.cdx.json.golden`...
[INFO] BOM valid against JSON schema: `true`

Related issues

Checklist

  • I've read the guidelines for contributing to this repository.
  • I've followed the conventions in the PR title.
  • I've added tests that prove my fix is effective or that my feature works.
  • I've updated the documentation with the relevant information (if needed).
  • I've added usage information (if the PR introduces new options)
  • I've included a "before" and "after" example to the description (if the PR is a user interface change).

@DmitriyLewen DmitriyLewen self-assigned this Jun 11, 2024
@DmitriyLewen DmitriyLewen requested a review from knqyf263 as a code owner June 11, 2024 06:57
@DmitriyLewen DmitriyLewen marked this pull request as draft June 11, 2024 07:03
@DmitriyLewen DmitriyLewen marked this pull request as ready for review June 11, 2024 07:20
@knqyf263 knqyf263 added this pull request to the merge queue Jun 11, 2024
Merged via the queue into aquasecurity:main with commit 09e50ce Jun 11, 2024
13 checks passed
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

feat(sbom): migrate to CycloneDX v1.6
2 participants