In our last Yocto Tech Tips, Ming helped us understand the importance of a software bill of materials (SBOM) and correctly implementing one in your Yocto build. But why would you need an SBOM in the first place?
A couple of reasons are vulnerability tracking and ensuring license compliance.
In this Tech Tips, Ming will walk us through:
* An overview of licenses and what they mean in terms of how you can use them (GPL v2, v3, MIT, Apache, etc.)
* Ensuring your code is license-compliant
* Collecting all the licenses in your Yocto distribution
* Automating the checking of all your packages against the CVE database
* Tools that make working with licenses and vulnerabilities easier
It all starts Thursday, September 26th at 15:00 UTC.
We hope to see you there!