Open emalm opened 2 years ago
Thanks for the succinct issue description, @emalm
The first step for incorporating supply chain related files in bosh releases is currently being discussed here: https://github.com/cloudfoundry/bosh/discussions/2466
This is still revenant and the TOC plans to look into this.
@pburkholder raised this as a discussion topic during the 2022-05-10 TOC meeting. Capturing some of the discussion context here:
The TOC and the Working Groups should decide how far we would like the projects to go in supporting these emerging supply-chain standards, which standards to implement, and then assign responsibility to one or more bodies within the CFF to carry out the work.