coheigea opened a new pull request, #670: URL: https://github.com/apache/tomcat/pull/670
Other ASF projects like CXF that are built using the maven-bundle-plugin have the pom license automatically inserted into the manifest as "Bundle-License: https://www.apache.org/licenses/LICENSE-2.0.txt". This helps tools like syft determine the license when building an SBOM. This PR adds this to the Tomcat jars so that Syft can automatically determine the correct license. If approved please backport to 10.x + 9.x. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For queries about this service, please contact Infrastructure at: us...@infra.apache.org --------------------------------------------------------------------- To unsubscribe, e-mail: dev-unsubscr...@tomcat.apache.org For additional commands, e-mail: dev-h...@tomcat.apache.org