Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Direct retrieval of SBOMs from PAR #53

Open
davaya opened this issue Apr 25, 2022 · 0 comments
Open

Direct retrieval of SBOMs from PAR #53

davaya opened this issue Apr 25, 2022 · 0 comments
Projects

Comments

@davaya
Copy link
Contributor

davaya commented Apr 25, 2022

Use case #50 suggests retrieving SBOMs through the PES using the Posture Evaluation actuator profile. This allows both direct retrieval of stored SBOMs and translation of SBOMs from stored format to desired retrieval formats.

An additional use case is to retrieve stored SBOMs directly from the PAR using the unspecified PAR API. This allows experimentation with candidate APIs without picking a winner at this time, and supports the scalability of direct database access.

There is consensus that only the PCS and PES shall be able to create/modify/delete information in the PAR. For external access, reading information directly from the PAR shall be subject to the same access control requirements as reading that information through the PES.

@slarchacki22 slarchacki22 added this to In progress in Hecate May 9, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Hecate
In progress
Development

No branches or pull requests

1 participant