public inbox for devel@edk2.groups.io
 help / color / mirror / Atom feed
* [edk2-devel] SBOM template for edk2
@ 2024-12-12 11:32 Leif Lindholm via groups.io
  2024-12-12 15:02 ` Dick Wilkins via groups.io
  0 siblings, 1 reply; 3+ messages in thread
From: Leif Lindholm via groups.io @ 2024-12-12 11:32 UTC (permalink / raw)
  To: devel, discuss; +Cc: Richard Hughes, Kinney, Michael D, Andrew Fish

Hi all,

Richard submitted a PR to add an SBOM .cdx.json template to the main repository:
https://github.com/tianocore/edk2/pull/6455

This is a good thing, but I think we could do with some feedback from
some of our
downstream consumers.

I know there has been work ongoing inside UEFI forum around SBOM for
UEFI firmware,
and it might be useful for some of the people that have been more
involved there to pitch
in. Mike, do you know some appropriate people to ping?

/
    Leif


-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.
View/Reply Online (#120898): https://edk2.groups.io/g/devel/message/120898
Mute This Topic: https://groups.io/mt/110078030/7686176
Group Owner: devel+owner@edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub [rebecca@openfw.io]
-=-=-=-=-=-=-=-=-=-=-=-



^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: [edk2-devel] SBOM template for edk2
  2024-12-12 11:32 [edk2-devel] SBOM template for edk2 Leif Lindholm via groups.io
@ 2024-12-12 15:02 ` Dick Wilkins via groups.io
  2024-12-16  7:50   ` Richard Hughes via groups.io
  0 siblings, 1 reply; 3+ messages in thread
From: Dick Wilkins via groups.io @ 2024-12-12 15:02 UTC (permalink / raw)
  To: devel@edk2.groups.io, leif.lindholm@oss.qualcomm.com,
	discuss@edk2.groups.io
  Cc: Richard Hughes, Kinney, Michael D, Andrew Fish

[-- Attachment #1: Type: text/plain, Size: 1479 bytes --]

This is an ongoing discussion in the UEFI SBOM sub-team working group and we are aware of this PR. If you want feedback from that team, you can send email to usbt@uefi.org .

Dick
SBOM WG Vice-Chair

From: devel@edk2.groups.io <devel@edk2.groups.io> On Behalf Of Leif Lindholm via groups.io
Sent: Thursday, December 12, 2024 6:33 AM
To: devel@edk2.groups.io; discuss@edk2.groups.io
Cc: Richard Hughes <richard@hughsie.com>; Kinney, Michael D <michael.d.kinney@intel.com>; Andrew Fish <afish@apple.com>
Subject: [edk2-devel] SBOM template for edk2


[Caution, this message was sent from an external sender.]

Hi all,

Richard submitted a PR to add an SBOM .cdx.json template to the main repository:
https://github.com/tianocore/edk2/pull/6455

This is a good thing, but I think we could do with some feedback from
some of our
downstream consumers.

I know there has been work ongoing inside UEFI forum around SBOM for
UEFI firmware,
and it might be useful for some of the people that have been more
involved there to pitch
in. Mike, do you know some appropriate people to ping?

/
Leif





-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.
View/Reply Online (#120899): https://edk2.groups.io/g/devel/message/120899
Mute This Topic: https://groups.io/mt/110078030/7686176
Group Owner: devel+owner@edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub [rebecca@openfw.io]
-=-=-=-=-=-=-=-=-=-=-=-



[-- Attachment #2: Type: text/html, Size: 4749 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: [edk2-devel] SBOM template for edk2
  2024-12-12 15:02 ` Dick Wilkins via groups.io
@ 2024-12-16  7:50   ` Richard Hughes via groups.io
  0 siblings, 0 replies; 3+ messages in thread
From: Richard Hughes via groups.io @ 2024-12-16  7:50 UTC (permalink / raw)
  To: Dick Wilkins
  Cc: devel@edk2.groups.io, leif.lindholm@oss.qualcomm.com,
	discuss@edk2.groups.io, Kinney, Michael D, Andrew Fish

Hi all,

If anyone wants a quick overview of where things are, and where things are heading -- there's some fairly self-explanatory slides in https://docs.google.com/presentation/d/1OPBHYZAr9SWDrmXpistJrVqd8wdN94oOfDfFXoEjTxg/edit?usp=sharing

If anyone does want me to explain all that in more detail please just ask, I'd be happy to explain the bigger picture -- or join the UEFI SBOM sub-team after Christmas and then you can ask questions to us all directly. :)

Richard

On Thursday, 12 December 2024 at 15:02, Dick Wilkins <Dick_Wilkins@phoenix.com> wrote:

> This is an ongoing discussion in the UEFI SBOM sub-team working group and we are aware of this PR. If you want feedback from that team, you can send email to usbt@uefi.org .
> 
> Dick
> 
> SBOM WG Vice-Chair
> 
> From: devel@edk2.groups.io <devel@edk2.groups.io> On Behalf Of Leif Lindholm via groups.io
> Sent: Thursday, December 12, 2024 6:33 AM
> To: devel@edk2.groups.io; discuss@edk2.groups.io
> Cc: Richard Hughes <richard@hughsie.com>; Kinney, Michael D <michael.d.kinney@intel.com>; Andrew Fish <afish@apple.com>
> Subject: [edk2-devel] SBOM template for edk2
> 
> [Caution, this message was sent from an external sender.]
> 
> Hi all,
> 
> Richard submitted a PR to add an SBOM .cdx.json template to the main repository:
> https://github.com/tianocore/edk2/pull/6455
> 
> This is a good thing, but I think we could do with some feedback from
> some of our
> downstream consumers.
> 
> I know there has been work ongoing inside UEFI forum around SBOM for
> UEFI firmware,
> and it might be useful for some of the people that have been more
> involved there to pitch
> in. Mike, do you know some appropriate people to ping?
> 
> /
> Leif
> 
> 
> 


-=-=-=-=-=-=-=-=-=-=-=-
Groups.io Links: You receive all messages sent to this group.
View/Reply Online (#120925): https://edk2.groups.io/g/devel/message/120925
Mute This Topic: https://groups.io/mt/110078030/7686176
Group Owner: devel+owner@edk2.groups.io
Unsubscribe: https://edk2.groups.io/g/devel/unsub [rebecca@openfw.io]
-=-=-=-=-=-=-=-=-=-=-=-



^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2024-12-20 23:01 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2024-12-12 11:32 [edk2-devel] SBOM template for edk2 Leif Lindholm via groups.io
2024-12-12 15:02 ` Dick Wilkins via groups.io
2024-12-16  7:50   ` Richard Hughes via groups.io

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox