Hi Gary We have a query as follows. We have third party/RTOS vendor supplied shared libraries, binaries, archives for which we dont have source code. But the third party/RTOS vendor declares license details for each of the binary file. for e.g.
File name License details version info -- /usr/lib/libc.so GPL 2.0, BSD 2.5 /usr/bin/pwd GPL 2.0 4.0 /usr/lib/libxx.a GPL 3.0 6.5 we would like to create a .spdx/ or .rdf file for each of above binary. we will take SPDXSpreadsheetTemplate.xls for each of binary and fill up mandatary details. For e.g. for libc.so Sheet - PackageInfo PackageName - libc PackageFileName - libc.zip Package Version - 2.5 Package Supplier - RTOS vendor - here we dont have information on Package Checksum, and PackageVerfication code. How do we generate this information?? Sheet - PerFileInfo FileName - libc.so FileType - BINARY License info from file - GPL 2.0, BSD How do we generate FileChecksum?? Do we need to refer some standard way to generate file check sum? will that work? Please help. regards Kotrappa The information contained in this electronic message and any attachments to this message are intended for the exclusive use of the addressee(s) and may contain proprietary, confidential or privileged information. If you are not the intended recipient, you should not disseminate, distribute or copy this e-mail. Please notify the sender immediately and destroy all copies of this message and any attachments. WARNING: Computer viruses can be transmitted via email. The recipient should check this email and any attachments for the presence of viruses. The company accepts no liability for any damage caused by any virus transmitted by this email. www.wipro.com
_______________________________________________ Spdx-tech mailing list [email protected] https://lists.spdx.org/mailman/listinfo/spdx-tech
