The ntp package has been replaced by ntpsec. The Debian default for the system clock is now systemd-timesyncd. We also inclde chrony and openntpd. #ReleasingDebianBookworm#Debian12#Debian https://t.co/pfHccrJJUb
Live demoing how to use @OpenPolicyAgent Gatekeeper external data feature together with Ratify to validate license and vulnerabilities on app deployment. @jrrickard
A bug report is one way to know someone is using your open-source software.
That's what happened to us, #redis, when the OpenAi team found this issue in #ChatGPT.
https://t.co/9EXU8QBN54
@hlalvesbr@brunoborges This is what I thought, too. There are plenty of tools that check if the templates are valid, but few that check if they are consistent with architecture or business goals.
@puerco@nscur0 Honest Q: isn’t the first part of strcat(“this is my SBOM”, “schema, verify it with this”) what we have today? If so, does this help get clueboms to the guessboms?
@arkadiyt Here are some examples: https://t.co/yjgaAV3aLl but when it comes to the SCA comparison I think most people are thinking of https://t.co/Qgg7Eehw1m and https://t.co/TnD3Yj0uWU. The specs (and even things like SARIF) have room for a lot of specialized semantics.
@jdorfman@fedora ...full applications like OpenERP, Drupal, Alfresco, etc. But pep8 brought more Plone and Trac into focus. OBS got me thinking about Koji so at the intersection of all of that was Bodhi. Confirmed by Dockerfile :) (2/x)
@jdorfman@fedora This was a fun puzzle. Of course I built upon other's suspicions of Python and OBS. Seeing the shift in filetype prevalence first made me think of a project that changed its templating on a major release so I was going to look it up on CHANGELOG and I thought of... (1/x)
🎉🎉🎉 So excited to see this land. It's been great collaborating with @OCI_ORG on getting the specs updated to facilitate the storage and distribution of signatures, SBOMs and software supply chain security artifacts. Try it out today on ACR https://t.co/PbrqHCPKap
ORAS 0.15 has evolved into a fully functional OCI registry client. It provides fine-grained capabilities to alter the content of @OCI_ORG supply chain artifacts. Check out this blog by @FeynmanZhou and Yi to learn how to convert Docker image to OCI image:
https://t.co/bSjhNhZBUo
This MIT CS class teaches you things that all the other classes don't teach you, like...
🖥️ Shell tools and scripting
🖥️ Vim
🖥️ Data wrangling
🖥️ Command-line environment
🖥️ Version control
Watch all 11 lectures for free here: https://t.co/oc0tr2z07V