Security News
New Python Packaging Proposal Aims to Solve Phantom Dependency Problem with SBOMs
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools oft miss.
Wrap any task with a Fcrepo instance:
FcrepoWrapper.wrap do |fedora_repo|
# Something that requires Fcrepo
end
To see a list of valid options when using fcrepo_wrapper to launch an Fcrepo instance from the command line:
$ fcrepo_wrapper -h
FcrepoWrapper.wrap( port: 8983, verbose: true, managed: true )
FcrepoWrapper can read configuration options from a YAML configuration file.
By default, it looks for configuration files at .fcrepo_wrapper
and ~/.fcrepo_wrapper
.
You can also specify a configuration file when launching from the command line as follows:
$ fcrepo_wrapper -config <path_to_config_file>
Option | Description |
---|---|
download_dir | Local path for storing the downloaded jar & md5 file |
env | (Hash) |
fcrepo_home_dir | Directory to store fedora repository data files |
fedora_options | (Hash) |
ignore_md5sum | (Boolean) suppress checksum error messages |
instance_dir | Directory to store the fedora jar file |
md5sum | Path/URL to MD5 checksum |
port | Port to run Fedora on |
url | URL of the jar file to download |
validate | (Boolean) download a new md5 and (re-)validate the jar file? (default: true) |
verbose | (Boolean) return verbose info when running fcrepo commands (default: false) |
version | Fedora version to download and install |
version_file | Local path to store the currently installed version number |
To clean out data that is being stored in you FcrepoWrapper explicitly run:
$ fcrepo_wrapper <configuration options> clean
Note You must use the same configuration options on the clean command as you do on the run command to clean the correct instance.
FAQs
Unknown package
We found that fcrepo_wrapper demonstrated a not healthy version release cadence and project activity because the last version was released a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
PEP 770 proposes adding SBOM support to Python packages to improve transparency and catch hidden non-Python dependencies that security tools oft miss.
Security News
Socket CEO Feross Aboukhadijeh discusses open source security challenges, including zero-day attacks and supply chain risks, on the Cyber Security Council podcast.
Security News
Research
Socket researchers uncover how threat actors weaponize Out-of-Band Application Security Testing (OAST) techniques across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.