Mappings

Rename values while SBOMs are indexed, for example to merge spellings of one supplier.

A mapping replaces a component name, a supplier name, or a supplier identifier with another value while SBOMs are indexed. Use one when SBOMs spell the same supplier or component differently, or when a name has changed, so that both end up as one entry in the index.

Configure mappings

Add mappings under Settings → Data Model. Each mapping is a pattern and a replacement. The pattern is a plain string matched exactly, or a regular expression; the replacement is a plain string. An exact match is used before any regular expression. After a replacement, the mappings run again on the new value, until the value stops changing.

Mappings only take effect during indexing (importing SBOMs). Changing a mapping doesn't affect already-imported SBOMs; archive and re-import to apply it to indexed data.

SBOM Observer uses the Go flavor of regular expressions.

Example: consolidate suppliers

Three SBOMs name the same supplier as Microsoft, Microsoft Inc., and Microsoft Corporation. Without a mapping, the index has three suppliers. A mapping from the pattern [mM]icrosoft.* to microsoft turns all three into one.

Supplier Name Mapping dialog mapping the pattern [mM]icrosoft.* to microsoft