Overview
Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore how to generate accurate Software Bills of Materials (SBOMs) through hermetic builds in this 20-minute conference talk from the Linux Foundation. Learn about the limitations of current SBOM generation approaches, including "Source SBOM" tools that scan entire repositories for ingredients and "Analyzed SBOM" tools that attempt to reverse-engineer components from finished software. Discover how hermetic builds solve these problems by creating controlled, isolated build environments that ensure complete dependency tracking. Get introduced to Hermeto, a practical tool designed to implement hermetic builds in CI pipelines, enabling developers to achieve comprehensive and accurate software component inventories by "locking the chef in the kitchen" during the build process.
Syllabus
Lock the Chef in the Kitchen: Enabling Accurate SBOMs Via Hermetic Builds - Adam Cmiel, Red Hat
Taught by
Linux Foundation