Comments (3)
with syft seems already promising. I get a full list of OS level + golang binary mod dependency list at file level. I'd say that would cover all the above:
syft:
FROM anchore/syft:latest
SAVE ARTIFACT /syft syft
image-sbom:
FROM +docker
WORKDIR /build
COPY +version/VERSION ./
ARG VERSION=$(cat VERSION)
ARG FLAVOR
COPY +syft/syft /usr/bin/syft
RUN syft / -o json=sbom.syft.json -o spdx-json=sbom.spdx.json
SAVE ARTIFACT /build/sbom.syft.json sbom.syft.json AS LOCAL core-${FLAVOR}-${VERSION}-sbom.syft.json
SAVE ARTIFACT /build/sbom.spdx.json sbom.spdx.json AS LOCAL core-${FLAVOR}-${VERSION}-sbom.spdx.json
core-debian-v1.6.0-14-g193c740-dirty-sbom.s.zip
from kairos.
#998 covers kairos-io/kairos. we need to do the same for kairos-io/provider-kairos
from kairos.
opened kairos-io/provider-kairos#256 for provider-kairos
from kairos.
Related Issues (20)
- Display only images on upgrade HOT 9
- UKI: Immucore fails identifying if we are booting with SecureBoot HOT 1
- Latest releases of k3s are not picked up by kairos-standard builds HOT 1
- Uki: kairos-agent bootentry does not work in livecd mode HOT 2
- Uki: longhorn pod container is not able to start up due to open /proc/self/fd: no such file or directory: unknown HOT 8
- Possible wrong image in raspberry pi tutorial HOT 3
- Multi nodes to HA HOT 1
- `kairos-agent config get` header and debug information contaminates the standard output HOT 1
- `config_url` in kernel cmdline ignored in v3.0.0 HOT 1
- The deployment of the OVA results in an endless reboot loop
- Fix security scan pipeline [retro action item] HOT 1
- Add a check for UKI image sizes [retro action item]
- Focus on Ubuntu uki [retro action item] HOT 1
- Uki test is failing HOT 1
- Building rockylinux 9 fails, with missing packages HOT 1
- Kairos-agent upgrade failing for UKI provider image HOT 4
- Uki: installer went into black screen and then reboot without any installation HOT 8
- kairos cluster v3.0.0 not created when setting e.g. MTUBytes=1450 in /etc/systemd/network/ .network file HOT 8
- Longhorn CSI not working in FDE image, the driver and Longhorn manager fails to start. HOT 4
- Test UKI using Ubuntu instead of Fedora HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from kairos.