[SCITT] Announcement from Exiger

Dick Brooks <dick@reliableenergyanalytics.com> Tue, 16 May 2023 16:14 UTC

Return-Path: <dick@reliableenergyanalytics.com>
X-Original-To: scitt@ietfa.amsl.com
Delivered-To: scitt@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A358FC15C501 for <scitt@ietfa.amsl.com>; Tue, 16 May 2023 09:14:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.798
X-Spam-Level:
X-Spam-Status: No, score=-2.798 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=reliableenergyanalytics.com header.b="kwt+Zkz7"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="jt7rYm6a"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rB43Mwv4Yqrh for <scitt@ietfa.amsl.com>; Tue, 16 May 2023 09:14:01 -0700 (PDT)
Received: from out3-smtp.messagingengine.com (out3-smtp.messagingengine.com [66.111.4.27]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F0303C157B45 for <scitt@ietf.org>; Tue, 16 May 2023 09:14:00 -0700 (PDT)
Received: from compute2.internal (compute2.nyi.internal [10.202.2.46]) by mailout.nyi.internal (Postfix) with ESMTP id ED38C5C01E9; Tue, 16 May 2023 12:13:59 -0400 (EDT)
Received: from mailfrontend1 ([10.202.2.162]) by compute2.internal (MEProxy); Tue, 16 May 2023 12:13:59 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= reliableenergyanalytics.com; h=cc:content-type:content-type:date :date:from:from:in-reply-to:message-id:mime-version:reply-to :reply-to:sender:subject:subject:to:to; s=fm1; t=1684253639; x= 1684340039; bh=U/aIy2kkgNSc7Epq2gRahKDMYtm3l1ddsKzVlwEYqTM=; b=k wt+Zkz7OqJ8lAvYU50+0zB8rju0L3NPI5oGG3qhEhHuOnWtuC3t6Y2QtQ7jeKbxp H9Vlg1OMgU195BxeGKaxJjz3Q/zMr9VahlVXfvPvXNo2qGoNL6kR59XuMTDb8wF4 MQvrstVBLPLJpHNarXiHAFLN9krzFIv4jDMuG6kwUj4oN9BUWgGiTE96CD7BwvZQ XX5Eu72C60VmLqHuSon0wq/1CsFI9PBkseVnz35Qytc+gBgNGfKNtSERCGJXykz1 kRR/5kr3BY6Dhekm/M2s1e/qPsyankDQfMcsTcjRBI3bx6GagutJuLkp1mcUfATr 2rGqNH2xNmqGEk4p//D4Q==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-type:content-type:date:date :feedback-id:feedback-id:from:from:in-reply-to:message-id :mime-version:reply-to:reply-to:sender:subject:subject:to:to :x-me-proxy:x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s= fm1; t=1684253639; x=1684340039; bh=U/aIy2kkgNSc7Epq2gRahKDMYtm3 l1ddsKzVlwEYqTM=; b=jt7rYm6aPFHKWGmjd0Sq31bPBNxUeMc0NXTwuJu9i5g2 3zxjTy1roi0fyUEJZ7H0teHhM0xld+pGZE8krRtImWwl7ADT3zf3btXQ9FbKHVqK hsB7vwVcrXkCJU5MQL3Dt6PRAqKgWlkb2gmui+ZlWQU0070miN5k9+ptYKKisq3S RYCGKLkgbFGks21kSsm4I0g7JB6QNPo9lO4tX5UtDnwJPT27yJdUC2exvUknqbxz /jXbJI56PcOfZYVvHa0XDwH0pDASwpwYu5jkI7VHTAIscuCaKlT6dipHOAW8sRD6 Hu8hNi2g0HVA6u05R0pc4S78WohPHpY9fRpCqFWRmg==
X-ME-Sender: <xms:x6tjZMNifuQ0seAjsTnOYkMKWt-n1KGBzjI0qQuw4WNLUC3FT40U5A> <xme:x6tjZC9bRURdri7vela3eI5GJovPmq6luuIb28tbg7ZLDtTzFf2O37wTtbM2Gsw1N merppkm9qABbuEdyQ>
X-ME-Received: <xmr:x6tjZDRlKCpPxBFTO3GdQfNyoAJ3xtt0FDHv0Ktj_PisbN2iYpk_LsQ>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrfeehledgleejucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucgfrhhlucfvnfffucdlqddutddmnecujfgurheprh fhvffuffhokfggtgfothesrhdtghepvddtvdenucfhrhhomhepfdffihgtkhcuuehrohho khhsfdcuoeguihgtkhesrhgvlhhirggslhgvvghnvghrghihrghnrghlhihtihgtshdrtg homheqnecuggftrfgrthhtvghrnheptddvgfeuieelueetffelvdevveehteetheetlefg uedvfeehjeeiheffheehffeunecuffhomhgrihhnpehlihhnkhgvughinhdrtghomhdpnh hishhtrdhgohhvpdhrvghlihgrsghlvggvnhgvrhhghigrnhgrlhihthhitghsrdgtohhm necuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhhomhepughitg hksehrvghlihgrsghlvggvnhgvrhhghigrnhgrlhihthhitghsrdgtohhm
X-ME-Proxy: <xmx:x6tjZEs78-Zz18aE6Om13ka00suqENcihQCNzx1MaTo8-Pa32NYJGQ> <xmx:x6tjZEdlPcyRSn-2OdBNRgtHwNl939YlEpMGk_9c1Iip4SVqOEEPdg> <xmx:x6tjZI2FfI8mR26treJTpM_J_uNmbZMtmiVgxhkPtFcKQ56vMuzwyQ> <xmx:x6tjZMl04ZoAChtg9XSf8tGOECSZYekaDlz0iLHdExp93jjq322ytw>
Feedback-ID: i57d944d0:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA; Tue, 16 May 2023 12:13:59 -0400 (EDT)
Reply-To: dick@reliableenergyanalytics.com
From: Dick Brooks <dick@reliableenergyanalytics.com>
To: spdx@lists.spdx.org, scitt@ietf.org
Date: Tue, 16 May 2023 12:13:57 -0400
Organization: Reliable Energy Analytics LLC
Message-ID: <296401d98811$6c412310$44c36930$@reliableenergyanalytics.com>
MIME-Version: 1.0
Content-Type: multipart/related; boundary="----=_NextPart_000_2965_01D987EF.E5309480"
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdmIENWb2+R8VhaORTurUmkz3f4cvA==
Content-Language: en-us
Archived-At: <https://mailarchive.ietf.org/arch/msg/scitt/t1whvZK1Hy-b-MZY0_L8UBwpVQA>
Subject: [SCITT] Announcement from Exiger
X-BeenThere: scitt@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Supply Chain Integrity, Transparency, and Trust" <scitt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scitt>, <mailto:scitt-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scitt/>
List-Post: <mailto:scitt@ietf.org>
List-Help: <mailto:scitt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scitt>, <mailto:scitt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 May 2023 16:14:05 -0000

Hello Everyone,

 

Consolidation of the SBOM market space continues at pace with this
announcement of Ion Channel being acquired by Exiger.

https://www.linkedin.com/posts/bob-kolasky-92ab554_exiger-acquires-industry-
leading-software-activity-7064238244292358145-6nAx?utm_source=share
<https://www.linkedin.com/posts/bob-kolasky-92ab554_exiger-acquires-industry
-leading-software-activity-7064238244292358145-6nAx?utm_source=share&utm_med
ium=member_desktop> &utm_medium=member_desktop

 

This is not surprising given the US Government requirements for software
suppliers and vendors to attest to implementing NIST Guidance that includes
SBOM in order to sell products to the US Government.

FYI: Ion Channel is one of the SBOM Special Interest Group members that
filed comments with NIST:

https://www.nist.gov/document/responses-enhancing-software-supply-chain-secu
rity-sbom 

 

Thanks,

 

Dick Brooks

  

Active Member of the CISA Critical Manufacturing Sector, 

Sector Coordinating Council - A Public-Private Partnership

 

 <https://reliableenergyanalytics.com/products> Never trust software, always
verify and report! T

 <http://www.reliableenergyanalytics.com/>
http://www.reliableenergyanalytics.com

Email:  <mailto:dick@reliableenergyanalytics.com>
dick@reliableenergyanalytics.com

Tel: +1 978-696-1788