Re: [FOSSology] Fossology Obligation feature improvement - export to csv and run on scanner results

2020-06-09 Thread Woźnicki Paweł - Partner Hurt via lists . fossology . org
Hello Michael, Jeremiah

Yes. This is exactly what I meant
RAG policies applied per use case, distribution type. 
In our case we use different policies depending on the software type: mobile, 
frontend, backend, standalone software but still current functionality is not 
working as I would imagine it.

So if you are ok I could take in charge the proposition of changes to deliver 
the FR1 and FR2


Paweł Woźnicki, Współpracownik Kontrahenta
IT Obszaru Rozwiązań Cyfrowych, Wydział Zarządzania Jakością Aplikacji i 
Architektury Integracji
Tel.: +48 22 527 06 56, 
Orange Polska, Aleje Jerozolimskie 160, 02-326 Warszawa
http://www.orange.pl

-Original Message-
From: Michael C. Jaeger [mailto:m...@mcj.de] 
Sent: Tuesday, June 2, 2020 11:52 PM
To: Jeremiah C. Foster
Cc: Woźnicki Paweł - Partner Hurt; fossol...@fossology.org
Subject: Re: [FOSSology] Fossology Obligation feature improvement - export to 
csv and run on scanner results

Hi,

right now the idea is to have RAG per FOSSology server instance, meaning how 
the administrator of an instance wants to set it to.

However, even this might be still inflexible, because "red" licenses or 
obligations are even not a good category for an entire organisation, but maybe 
per case.

Maybe the future for fossology will not be about the RAG for obligations, but 
the use cases for files and RAG for these accordingly. ( a file can be green or 
red, depending on whatever analysis result)

Regarding the colouring in the reporting, I think it is just a matter of "no 
one did it so far". So, one solution could be to write issue and work on it:

https://github.com/fossology/fossology/issues/1727

Kind regards,
  Michael



> On 2. Jun 2020, at 17:57, Jeremiah C. Foster  wrote:
> 
> On Mon, 2020-06-01 at 10:51 +, Woźnicki Paweł - Partner Hurt via 
> lists.fossology.org wrote:
>> Hello All
>>  
>> Have you ever thought about improving functionality of Fossology Obligation 
>> feature
>> Currently Fossology 3.8.0 allows to configure obligations on a specific 
>> conditions and provides a possibility to mark the findings in a proper way 
>> (RED, GREEN colour in the Doc report) but at the moment it is not quite 
>> handy.
>> The obligations in the output Unified report are not coloured and I think it 
>> would be also interesting to export obligation results also to another 
>> reports like CSV in a form of additional column indicating obligation state 
>> (Approved, Denied, to Verify)
>> 
> 
> My personal view is that colors in the report is a good idea. I do wonder 
> about how to do this however. Firstly, the usual 'RAG' (Red, Amber, Green) 
> colors are likely not flexible enough, but this is bikeshedding. What is 
> likely really important is for FOSSology users to have their own colors in 
> conjunction with their own policy. After all, some companies will mark as 
> "red" those licenses that other companies considerd "green". If there is a 
> flexible, rules-based policy engine then the various colors can be assigned 
> based on the policy on a per organization basis. Is this part of your 
> intended implementation?
> 
> Regards,
> 
> Jeremiah
> 
> 
> 
> This e-mail and any attachment(s) are intended only for the recipient(s) 
> named above and others who have been specifically authorized to receive them. 
> They may contain confidential information. If you are not the intended 
> recipient, please do not read this email or its attachment(s). Furthermore, 
> you are hereby notified that any dissemination, distribution or copying of 
> this e-mail and any attachment(s) is strictly prohibited. If you have 
> received this e-mail in error, please immediately notify the sender by 
> replying to this e-mail and then delete this e-mail and any attachment(s) or 
> copies thereof from your system. Thank you.
> 


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#3370): https://lists.fossology.org/g/fossology/message/3370
Mute This Topic: https://lists.fossology.org/mt/74630198/21656
Group Owner: fossology+ow...@lists.fossology.org
Unsubscribe: https://lists.fossology.org/g/fossology/unsub  
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [FOSSology] Fossology Obligation feature improvement - export to csv and run on scanner results

2020-06-02 Thread Jeremiah C. Foster
On Tue, 2020-06-02 at 23:52 +0200, Michael C. Jaeger wrote:
> Hi,
>
> right now the idea is to have RAG per FOSSology server instance,
> meaning how the administrator of an instance wants to set it to.

Seems flexible.

> However, even this might be still inflexible, because "red" licenses
> or obligations are even not a good category for an entire
> organisation, but maybe per case.

Good point. I know that this is sometimes the case in the organizations
I work with.

> Maybe the future for fossology will not be about the RAG for
> obligations, but the use cases for files and RAG for these
> accordingly. ( a file can be green or red, depending on whatever
> analysis result)

+1

> Regarding the colouring in the reporting, I think it is just a matter
> of "no one did it so far". So, one solution could be to write issue
> and work on it:
>
> https://github.com/fossology/fossology/issues/1727
>
> Kind regards,
>   Michael

Regards,

Jeremiah

> > On 2. Jun 2020, at 17:57, Jeremiah C. Foster 
> > wrote:
> >
> > On Mon, 2020-06-01 at 10:51 +, Woźnicki Paweł - Partner Hurt
> > via lists.fossology.org wrote:
> > > Hello All
> > >
> > > Have you ever thought about improving functionality of Fossology
> > > Obligation feature
> > > Currently Fossology 3.8.0 allows to configure obligations on a
> > > specific conditions and provides a possibility to mark the
> > > findings in a proper way (RED, GREEN colour in the Doc report)
> > > but at the moment it is not quite handy.
> > > The obligations in the output Unified report are not coloured and
> > > I think it would be also interesting to export obligation results
> > > also to another reports like CSV in a form of additional column
> > > indicating obligation state (Approved, Denied, to Verify)
> > >
> >
> > My personal view is that colors in the report is a good idea. I do
> > wonder about how to do this however. Firstly, the usual 'RAG' (Red,
> > Amber, Green) colors are likely not flexible enough, but this is
> > bikeshedding. What is likely really important is for FOSSology
> > users to have their own colors in conjunction with their own
> > policy. After all, some companies will mark as "red" those licenses
> > that other companies considerd "green". If there is a flexible,
> > rules-based policy engine then the various colors can be assigned
> > based on the policy on a per organization basis. Is this part of
> > your intended implementation?
> >
> > Regards,
> >
> > Jeremiah
> >
> >
> >
> > This e-mail and any attachment(s) are intended only for the
> > recipient(s) named above and others who have been specifically
> > authorized to receive them. They may contain confidential
> > information. If you are not the intended recipient, please do not
> > read this email or its attachment(s). Furthermore, you are hereby
> > notified that any dissemination, distribution or copying of this e-
> > mail and any attachment(s) is strictly prohibited. If you have
> > received this e-mail in error, please immediately notify the sender
> > by replying to this e-mail and then delete this e-mail and any
> > attachment(s) or copies thereof from your system. Thank you.
> > 



This e-mail and any attachment(s) are intended only for the recipient(s) named 
above and others who have been specifically authorized to receive them. They 
may contain confidential information. If you are not the intended recipient, 
please do not read this email or its attachment(s). Furthermore, you are hereby 
notified that any dissemination, distribution or copying of this e-mail and any 
attachment(s) is strictly prohibited. If you have received this e-mail in 
error, please immediately notify the sender by replying to this e-mail and then 
delete this e-mail and any attachment(s) or copies thereof from your system. 
Thank you.

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#3369): https://lists.fossology.org/g/fossology/message/3369
Mute This Topic: https://lists.fossology.org/mt/74630198/21656
Group Owner: fossology+ow...@lists.fossology.org
Unsubscribe: https://lists.fossology.org/g/fossology/unsub  
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [FOSSology] Fossology Obligation feature improvement - export to csv and run on scanner results

2020-06-02 Thread Michael C. Jaeger
Hi,

right now the idea is to have RAG per FOSSology server instance, meaning how 
the administrator of an instance wants to set it to.

However, even this might be still inflexible, because "red" licenses or 
obligations are even not a good category for an entire organisation, but maybe 
per case.

Maybe the future for fossology will not be about the RAG for obligations, but 
the use cases for files and RAG for these accordingly. ( a file can be green or 
red, depending on whatever analysis result)

Regarding the colouring in the reporting, I think it is just a matter of "no 
one did it so far". So, one solution could be to write issue and work on it:

https://github.com/fossology/fossology/issues/1727

Kind regards,
  Michael



> On 2. Jun 2020, at 17:57, Jeremiah C. Foster  wrote:
> 
> On Mon, 2020-06-01 at 10:51 +, Woźnicki Paweł - Partner Hurt via 
> lists.fossology.org wrote:
>> Hello All
>>
>> Have you ever thought about improving functionality of Fossology Obligation 
>> feature
>> Currently Fossology 3.8.0 allows to configure obligations on a specific 
>> conditions and provides a possibility to mark the findings in a proper way 
>> (RED, GREEN colour in the Doc report) but at the moment it is not quite 
>> handy.
>> The obligations in the output Unified report are not coloured and I think it 
>> would be also interesting to export obligation results also to another 
>> reports like CSV in a form of additional column indicating obligation state 
>> (Approved, Denied, to Verify)
>> 
> 
> My personal view is that colors in the report is a good idea. I do wonder 
> about how to do this however. Firstly, the usual 'RAG' (Red, Amber, Green) 
> colors are likely not flexible enough, but this is bikeshedding. What is 
> likely really important is for FOSSology users to have their own colors in 
> conjunction with their own policy. After all, some companies will mark as 
> "red" those licenses that other companies considerd "green". If there is a 
> flexible, rules-based policy engine then the various colors can be assigned 
> based on the policy on a per organization basis. Is this part of your 
> intended implementation?
> 
> Regards,
> 
> Jeremiah
> 
> 
> 
> This e-mail and any attachment(s) are intended only for the recipient(s) 
> named above and others who have been specifically authorized to receive them. 
> They may contain confidential information. If you are not the intended 
> recipient, please do not read this email or its attachment(s). Furthermore, 
> you are hereby notified that any dissemination, distribution or copying of 
> this e-mail and any attachment(s) is strictly prohibited. If you have 
> received this e-mail in error, please immediately notify the sender by 
> replying to this e-mail and then delete this e-mail and any attachment(s) or 
> copies thereof from your system. Thank you.
> 


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#3368): https://lists.fossology.org/g/fossology/message/3368
Mute This Topic: https://lists.fossology.org/mt/74630198/21656
Group Owner: fossology+ow...@lists.fossology.org
Unsubscribe: https://lists.fossology.org/g/fossology/unsub  
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-



Re: [FOSSology] Fossology Obligation feature improvement - export to csv and run on scanner results

2020-06-02 Thread Jeremiah C. Foster
On Mon, 2020-06-01 at 10:51 +, Woźnicki Paweł - Partner Hurt via 
lists.fossology.org wrote:
Hello All

Have you ever thought about improving functionality of Fossology Obligation 
feature
Currently Fossology 3.8.0 allows to configure obligations on a specific 
conditions and provides a possibility to mark the findings in a proper way 
(RED, GREEN colour in the Doc report) but at the moment it is not quite handy.
The obligations in the output Unified report are not coloured and I think it 
would be also interesting to export obligation results also to another reports 
like CSV in a form of additional column indicating obligation state (Approved, 
Denied, to Verify)

My personal view is that colors in the report is a good idea. I do wonder about 
how to do this however. Firstly, the usual 'RAG' (Red, Amber, Green) colors are 
likely not flexible enough, but this is bikeshedding. What is likely really 
important is for FOSSology users to have their own colors in conjunction with 
their own policy. After all, some companies will mark as "red" those licenses 
that other companies considerd "green". If there is a flexible, rules-based 
policy engine then the various colors can be assigned based on the policy on a 
per organization basis. Is this part of your intended implementation?

Regards,

Jeremiah




This e-mail and any attachment(s) are intended only for the recipient(s) named 
above and others who have been specifically authorized to receive them. They 
may contain confidential information. If you are not the intended recipient, 
please do not read this email or its attachment(s). Furthermore, you are hereby 
notified that any dissemination, distribution or copying of this e-mail and any 
attachment(s) is strictly prohibited. If you have received this e-mail in 
error, please immediately notify the sender by replying to this e-mail and then 
delete this e-mail and any attachment(s) or copies thereof from your system. 
Thank you.

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#3367): https://lists.fossology.org/g/fossology/message/3367
Mute This Topic: https://lists.fossology.org/mt/74630198/21656
Group Owner: fossology+ow...@lists.fossology.org
Unsubscribe: https://lists.fossology.org/g/fossology/unsub  
[arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-