in reply to Software Bill of Materials (SBOM) in Perl and CPAN
I didn't dig deep into the WP article and didn't listen to Salve's talk (again²), but this should produce a good reliably founded document for your SBOM.
I'd be interested to know on which grounds this would not meet your army's requirements.¹
After all these documents are mostly written by bureaucrats and BA bachelors who measure software quality by the size and design of accompanying PDFs
Cheers Rolf
(addicted to the Perl Programming Language :)
see Wikisyntax for the Monastery
¹) actually the article says
... so it's still vaporware 🤷🏻♂️
I wouldn't be surprised if someone charged with "implementing guidance" started googling now and stumbled over this post 🤔
²) I was in the audience, but don't remember much.
|
---|