Loading…
June 7 - 9, 2022 | Mountain View, CA + Virtual
View More Details & Registration

Important: If you plan to attend Intro to Zephyr Day on Tuesday, June 7, pre-registration and session selection are required. 

Please note that all session times are listed below in Pacific Daylight Time (PDT).
To view the schedule at your preferred time, please choose your location on the right-hand navigation panel under “Timezone”.
Wednesday, June 8 • 11:10am - 11:40am
Next Steps for Software Bill of Materials (SBOM) Generation in Zephyr - Steve Winslow, Boston Technology Law

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Feedback form is now closed.
2021 saw a growing recognition of the need for software distributions to include Software Bills of Materials (SBOMs). In 2021, the Zephyr project gained the ability to generate SBOMs in SPDX format at build time. This enables downstream recipients of a Zephyr build to have greater visibility into specifically which source code files were compiled and linked into the final binary. In this session, Steve will begin by presenting details about how the Zephyr SBOM functionality leverages the underlying CMake infrastructure to create SPDX documents during a Zephyr build. He will discuss the assumptions currently made regarding how Zephyr builds are structured. The session will then open for broader discussion about whether those assumptions are appropriate, and whether there are alternative approaches to SPDX document generation that are more suitable for Zephyr users.

Speakers
avatar for Steve Winslow

Steve Winslow

Counsel, Boston Technology Law
Steve Winslow is Counsel at Boston Technology Law. Steve advises companies on software licensing, open source software development and use, data privacy, and other legal matters involving technology transactions and commercial contracts. Steve is also a contributor to SPDX, Zephyr... Read More →


Wednesday June 8, 2022 11:10am - 11:40am PDT
Boole
  Breakout Sessions