Uploaded image for project: 'Red Hat Fuse'
  1. Red Hat Fuse
  2. ENTESB-12873 Improve manifesting for Product Security purposes
  3. ENTESB-12876

Have the Koji Build Finder generate a manifest for main deliverables

XMLWordPrintable

    • Icon: Sub-task Sub-task
    • Resolution: Done
    • Icon: Minor Minor
    • None
    • None
    • None
    • None

      The Koji Build Finder takes main deliverable zips (normally product distributions) and produces manifests and reports, there are three ways to use this tool.

      1. Manually with the kbf executable
      2. Using PiG
      3. Using CPaaS primitive

      Adding this to the process and producing a manifest and report is useful for the following reasons

      • It gives details of built from source percentage for prod gate checks
      • It provides a more accurate footprint of the product that customers receive
        • PS is able to quickly identify if something is used at runtime as opposed to build time

            sghosh7 Souvik Ghosh
            jochrist@redhat.com Jonathan Christison
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: