You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
creates a different dependencies tree than the following command:
cyclonedx-win-x64.exe merge --input-files Second.xml First.xml --output-file sbom.json --output-format json
If name and version are omitted, it creates the dependency tree between the root component and the first file input sbom component.
Question
Is it correct it generates a different dependency tree? In my opinion, I guess it should create the same file except for the name and version parameter.
Also not sure if the root component shouldn't have a dependency to the input sboms (so the Test component should point to first and second component) but maybe for this reason I should use hierarchy parameter.
A depedendency tracker shows different dependency graph then.
A command:
cyclonedx-win-x64.exe merge --input-files Second.xml First.xml --name "Test" --version "1.0.0.0" --output-file sbom.json --output-format json
creates a different dependencies tree than the following command:
cyclonedx-win-x64.exe merge --input-files Second.xml First.xml --output-file sbom.json --output-format json
If name and version are omitted, it creates the dependency tree between the root component and the first file input sbom component.
Versus with a version or name parameter:
Question
Is it correct it generates a different dependency tree? In my opinion, I guess it should create the same file except for the name and version parameter.
Also not sure if the root component shouldn't have a dependency to the input sboms (so the Test component should point to first and second component) but maybe for this reason I should use hierarchy parameter.
A depedendency tracker shows different dependency graph then.
File contents:
First:
Second:
cyclonedx-win-x64.exe merge --input-files Second.xml First.xml --name "Test" --version "1.0.0.0" --output-file sbom.json --output-format json
cyclonedx-win-x64.exe merge --input-files Second.xml First.xml --output-file sbom.json --output-format json:
The text was updated successfully, but these errors were encountered: