Skip to content

Generate SBOM in builds#4468

Merged
zivkan merged 9 commits intodevfrom
dev-zivkan-sbom
Feb 25, 2022
Merged

Generate SBOM in builds#4468
zivkan merged 9 commits intodevfrom
dev-zivkan-sbom

Conversation

@zivkan
Copy link
Copy Markdown
Member

@zivkan zivkan commented Feb 18, 2022

Bug

Fixes: https://github.com/NuGet/Client.Engineering/issues/1418

Regression? No

Description

To comply with new compliance requirements. SBOM = Software Bill Of Materials.

  • Copy Arcade yaml, and use from our Build_And_UnitTest job
  • Update MicroBuild swixproj plugin, and tell it where to find the SBOM
  • Change BuildTools vsix/vsman to generate in a single pass, rather than two.

PR Checklist

  • PR has a meaningful title

  • PR has a linked issue.

  • Described changes

  • Tests

    • Automated tests added
    • OR
    • Test exception
    • OR
    • N/A
  • Documentation

    • Documentation PR or issue filled
    • OR
    • N/A

@zivkan zivkan requested a review from a team as a code owner February 18, 2022 23:35
@zivkan zivkan marked this pull request as draft February 21, 2022 13:58
@zivkan
Copy link
Copy Markdown
Member Author

zivkan commented Feb 21, 2022

Moving to draft because VS bootstrapper fails to install. Reported to VSEng and waiting for response.

@zivkan zivkan marked this pull request as ready for review February 25, 2022 01:43
@zivkan
Copy link
Copy Markdown
Member Author

zivkan commented Feb 25, 2022

@NuGet/nuget-client this is ready for review now

@zivkan zivkan merged commit ace46ed into dev Feb 25, 2022
@zivkan zivkan deleted the dev-zivkan-sbom branch February 25, 2022 19:10
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants