SW360 Component Management

Slides:



Advertisements
Similar presentations
Enabling Technology Innovation using Open Source Software
Advertisements

Business Development Suit Presented by Thomas Mathews.
Common HL7 Interface Implementation Issues
DEV-2: Getting Started with OpenEdge® Architect – Part I
© 2004 Visible Systems Corporation. All rights reserved. 1 (800) 6VISIBLE Holistic View of the Enterprise Business Development Operations.
Lecture 2b: Software Project Management CSCI102 - Introduction to Information Technology B ITCS905 - Fundamentals of Information Technology.
Accelerate Business Success With CRM CRM Interoperability.
© 2006 IBM Corporation SOA on your terms and our expertise Discovering the Value of SOA SOA In Action SOA & End-2-End Business Driven Development using.
U-Mail System Design Specification Joseph Woo, Chris Hacking, Alex Benson, Elliott Conant, Alex Meng, Michael Ratanapintha April 28,
Federated Searching Pre-Conference Workshop - The federated searching cookbook Qin Zhu HP Labs Research Library February 18, 2007.
» Explain the way that electronic mail ( ) works » Configure an client » Identify message components » Create and send messages.
Computer Associates Solutions Managing eBusiness Catalin Matei, April 12, 2005
Software Architecture in Practice (3rd Ed) Introduction
Managing Offender’s Personal Property Corrections Technology Association Charleston, SC Tuesday May 8, 2007.
Framework for Automated Builds Natalia Ratnikova CHEP’03.
Global Customer Partnership Council Forum | 2008 | November 18 1IBM - GCPC MeetingIBM - GCPC Meeting IBM Lotus® Sametime® Meeting Server Deployment and.
Copyright © IBM Corp., All rights reserved; made available under the EPL v1.0 | March 20, 2008 | Short Talk Standards based systems management: An.
WP 9 (former Task 1b of WP 1): Data infrastructure Robert Huber UNI-HB Esonet 2nd all regions workshop, Paris
Nicholas LoulloudesMarch 3 rd, 2009 g-Eclipse Testing and Benchmarking Grid Infrastructures using the g-Eclipse Framework Nicholas Loulloudes On behalf.
Using the Open Metadata Registry (openMDR) to create Data Sharing Interfaces October 14 th, 2010 David Ervin & Rakesh Dhaval, Center for IT Innovations.
Module 9 Configuring Messaging Policy and Compliance.
Microsoft SharePoint Server 2010 for the Microsoft ASP.NET Developer Yaroslav Pentsarskyy
KMS Products By Justin Saunders. Overview This presentation will discuss the following: –A list of KMS products selected for review –The typical components.
Module 7 Planning and Deploying Messaging Compliance.
A. Aimar - EP/SFT LCG - Software Process & Infrastructure1 SPI Software Process & Infrastructure for LCG Project Overview LCG Application Area Internal.
WebDat: A Web-based Test Data Management System J.M.Nogiec January 2007 Overview.
NOTE: To change the image on this slide, select the picture and delete it. Then click the Pictures icon in the placeholder to insert your own image. Documents.
 A content management system ( CMS ) is a system providing a collection of procedures used to manage work flow in a collaborative environment. These.
1 Geospatial Standards for Canada Proposed blueprint for Jean Brodeur and Cindy Mitchell.
MasterCard Global Marketing Center An Alfresco Case Study Jay Mandel, MasterCard International Mike Vertal, Rivet Logic Corporation 15 November 2012.
1 ECM APPLICATIONS AND SOLUTIONS - PART 1 MODULE 8 ECM SPECIALIST COURSE 1 Copyright AIIM.
InfoFINIUM for SIMR Jan 2015 Archives Metadata Transparency 21 June 2016 At Protect Association Event.
1 © 2010 Quest Software, Inc. ALL RIGHTS RESERVED Quest® Storage Maximizer for SharePoint Doug Davis Product Director – SharePoint Product Group
6 Copyright © 2010, Oracle and/or its affiliates. All rights reserved. Site Hub User Role – Managing Sites.
Why Freelance Developers Are Switching To Econtracts
Eclipse Vorto Alexander Edelmann.
CHAPTER TEN OVERVIEW SECTION ENTERPRISE RESOURCE PLANNING
Overview – TI Services November-2015.
GeoNetwork OpenSource: Geographic data sharing for everyone
Internet Business Associate v2.0
Regional Operations Centres Core infrastructure Centres
Proposed IT Infrastructure for TOP OS project
SowiDataNet - A User-Driven Repository for Data Sharing and Centralizing Research Data from the Social and Economic Sciences in Germany Monika Linne, 30.
Servicenow Admin Certification Training
SERVICENOW ADMIN & ADVANCED ONLINE TRAINING
API Documentation Guidelines
Content Management Systems
AWS DevOps Engineer - Professional dumps.html Exam Code Exam Name.
2018 Amazon AWS DevOps Engineer Professional Dumps - DumpsProfessor
RMS with Microsoft SharePoint
HP Quality Center 10 Hottest Features and Project Harmonization
MANAGING KNOWLEDGE FOR THE DIGITAL FIRM
PSC Group, LLc Office 365/SharePoint Online Migration traps and tricks
CHAPTER TEN OVERVIEW SECTION ENTERPRISE RESOURCE PLANNING
SISAI STATISTICAL INFORMATION SYSTEMS ARCHITECTURE AND INTEGRATION
HingX Project Overview
Overview of Oracle Site Hub
Metadata The metadata contains
Dynamicweb PIM General introduction Innovia 2018.
BMC Automation Portal Update
EUDAT Site and Service Registry
Software interoperability in the NGN Service layer
Personal Data Usage Monitor
ServiceDesk 7 Preview.
Contract Management Software 100% Cloud-Based ContraxAware provides you with a deep set of easy to use contract management features.
Contract Management Software from ContraxAware Simplify Your Contract Management Process.
DOE Review of the LCLS Project 7-9 February 2006
SAP Enable Now Web Assistant content strategy
Presentation transcript:

SW360 Component Management … why fossology actually, will give a coupleof simple resons

! ? Problem Domain Software Product Software Product Component License Liveliness Quality Expertise Component License Liveliness Quality Expertise Component Component Component License License ? ! Liveliness Liveliness Quality Quality Expertise Expertise License Liveliness Quality Expertise Component License Liveliness Quality Expertise Component Component Component License License Liveliness Liveliness Quality Quality Expertise Expertise

Developers and Experts Use Cases and Roles Architects Ensure Compliance Maintain Assets Share Knowledge Quality Managers Legal Counsels R&D Managers Sec Officer Developers and Experts Project Managers

Central Hub Vulnerability Management Project BOM Management License Scanner SW360 Vulnerability Management Code Quality Checker Artefact Repository Source Code Scanner

Eclipse SW360 SW360 is … Tech Specs Storage: CouchDB Search: Lucene An Eclipse foundation incubator project Eclipse Public License 1.0 – EPL-1.0 A portal application A catalogue of components, releases A catalogue of your projects / products A store for attachments of these A end user front end to FOSSology Storage: CouchDB Search: Lucene Services: Thrift Container: Tomcat Prerequisite: Liferay UI: Alloy github.com/sw360 Hammering the most important points in

Foundation Component Project Release Vendor Licenses

The Data Model is Important Goals and Motivation Reduction of duplicate entries. Separating vendor from components names and release tags brings clarity to component naming. Interoperation with other systems. As such we need to support the CPE standard which also implement this 3-parts separation. Having the clear modeling of data enables better search and filtering abilities.

How it Works 1 Create a Component Entry Add Release Entry Add Package (Upload) to Release A component is a container for releases Just creating a component alone creates an empty shell Release = Version A component can have multiple releases It make sense to group them Now a vendor can be assigned Multiple open source packages of the same releases: multiple releases actually There should be just one upload per release

How it Works Create a Project Entry Add Releases, Subprojects Review and Manage BOM Items A project is a structure to main a BOM Can represent product, service, delivery Release = Version of component Projects can contain other projects Allows for building blocks Send to analysis Upload analysis results Generate product level documentation

Vulnerability Database SW360 Core Features Source Code Bundle Protex™ Projects with used 3rd party components BOM Service Clearing Workflow and Tool Integration Clearing Service Disclosure Document generate Developer FOSSology BOM Represent. inform BAT Quality Project Manager License Texts with Obligations Management License Service Catalogue of 3rd Party Components Component Service Obligations Contacts notify Clearing Info Configuration Management License issues Vulnerabilities OS Officer Vulnerability Database trigger retrieve map import Sec Officer Open Hub® External Tool Integration Operated on Local Infrastructure with Access Control and Identity Management …

It is Open Source Big Picture www.github.com/sw360/sw360portal Open source = good distrubuted systems development, but the softare can be also used by anybody

Thank you for your attention! Michael C. Jaeger Siemens AG Corporate Technology D-80200 Munich, Germany michael.c.jaeger@siemens.com Johannes Kristan Bosch Software Innovations GmbH D-10785 Berlin, Germany johannes.kristan@bosch-si.com Project site: https://github.com/sw360/sw360portal Eclipse project information: https://projects.eclipse.org/projects/technology.sw360