Upload Software Bill of Materials (SBOM) files manually.
시작하기 전에
Starting with version 4.0, SBOM Core supports:
- XML and JSON in versions 1.0 - 1.6 of CycloneDX.
- JSON in versions 2.2 - 2.3 of SPDX.
Role required: sn_sbom_core.sbom_ingest
프로시저
-
Upload files manually.
The method you use to upload your files depends on whether you have the SBOM Core or SBOM Response applications installed.
| Option | Description |
|---|
| If you have installed SBOM Core |
- Navigate to .
- On the Bill of Materials list select New.
- Select the Click to add link.
You can upload one SBOM file at a time.
- Select Choose file and locate the file you want.
The file name is displayed on the Choose an attachment file page.
- Select OK.
|
| If you have installed SBOM Response starting with v4.0 |
- Navigate to .
- Select Upload BOM.
The Upload SBOM file modal is displayed.
- Select the Attach file link.
- Locate the file you want and select Open.
After your file uploads, a link for the file is displayed along with three icons that provide you with the following options:
- Download the file.
- Edit the file name.
- Delete the file from the upload.
- Select Upload to continue.
You can upload one SBOM file at a time.
- (Optional) Select a Business application and a Product model from the lists.
These values help you associate this SBOM to a business application or product model in your organization. This information is displayed on the BOM entity record after upload.
- Select Upload.
The BOM queue page is displayed and the file is listed on the SBOM ingestion section along with upload status other information about the file.
|
- 옵션:
Upload SBOM files imported by the Veracode Vulnerability Integration.
주: You can upload
Veracode files in CycloneDX (JSON and XML) and SPDX (XML) formats only if you have installed and activated the
Veracode integration with
Application Vulnerability Response. See the
Veracode Vulnerability Integration for more information.
결과
After an SBOM is successfully processed, where you view the upload status depends on the applications you are using.
- If you are using SBOM Response, the BOM Entity record is displayed on the SBOM Ingestion Status list in the BOM Queue module in the SBOM Workspace.
- If you are using SBOM Core, navigate to .