Guidelines for the Creation of Interoperable Software Identification (SWID) Tags

From AcaWiki
Jump to: navigation, search

Citation: David Waltermire, Brant A. Cheikes, Larry Feldman, Greg Witte (2016) Guidelines for the Creation of Interoperable Software Identification (SWID) Tags.
DOI (original publisher): 10.6028/NIST.IR.8060
Semantic Scholar (metadata): 10.6028/NIST.IR.8060
Sci-Hub (fulltext): 10.6028/NIST.IR.8060
Internet Archive Scholar (search for fulltext): Guidelines for the Creation of Interoperable Software Identification (SWID) Tags
Wikidata (metadata): Q59403168
Download: https://nvlpubs.nist.gov/nistpubs/ir/2016/NIST.IR.8060.pdf
Tagged:

Summary

Overview of software identification (SWID) tags, which can be at the level of:

  • Corpus (pre-installation, eg package archives)
  • Primary
  • Patch
  • Supplemental

Each with various metadata encoded in the SWID's XML format.

As they are intended to be used by:

  • software providers
  • providers of software build, packaging, and installation tools
  • providers of inventory-based products and services
  • software consumers

And best practices for tag creators.