On Mon, Apr 28, 2025 at 09:48:06AM +0000, Sahil Sharma D wrote:
> Hi team,
> 
> Could you please provide the SBOM for OpenLDAP version REL_ENG_2_6_4 ,
> or advise me on where I can locate the SBOMs for all versions?

Hi Sahil,
you can help provide one especially if you also provide the means to
keep it up to date without too much maintenance burden on the project
side to keep it accurate.

But I suspect you're also packaging OpenLDAP yourself and since OpenLDAP
project only releases source code (which can be built in wildly varying
configurations), it would be up to you, the packager/distributor, to
prepare an SBOM that fits what you deliver. Of course you're welcome to
propose tooling to help prospective packagers/distributors to do the
same.

If you have ideas how it could be managed or you've started working on
something already, let's continue the discussion here or in the
openldap-devel mailing list, both seem like a decent fit.

Thanks,

-- 
Ondřej Kuzník
Senior Software Engineer
Symas Corporation                       http://www.symas.com
Packaged, certified, and supported LDAP solutions powered by OpenLDAP

Reply via email to