<?xml version="1.0" encoding="UTF-8"?>
<bom version="1" xmlns="http://cyclonedx.org/schema/bom/1.4">
  <metadata>
    <tools>
      <tool>
        <vendor>OWASP Foundation</vendor>
        <name>CycloneDX Maven plugin</name>
        <version>2.7.10</version>
        <hashes>
          <hash alg="MD5">1cc7f6a0382f8bb2f758d6a6ea401d1b</hash>
          <hash alg="SHA-1">a4297947a1f2d7d453105db542651614bbd37f38</hash>
          <hash alg="SHA-256">bd0fdd8f2f2116eee5e715aeac1580f19eb7a10ec2b6f805b53567067658e872</hash>
          <hash alg="SHA-512">9cde8352a427e10b96cae01348fc7cfe5d4aa9cd0a5e5dd93b414ce3bb7d112993c3b3004e53af52567fbfa16de0704ec59a5556a635ad70571fd124ae389f39</hash>
          <hash alg="SHA-384">93d7bf5b5c735347edfbfbd66810273ca840f9a322b816d22d44c3d8e8255c09e86570bb23712aeb0cade0f478be5aeb</hash>
        </hashes>
      </tool>
    </tools>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase/hbase-procedure@2.6.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase</group>
      <name>hbase-procedure</name>
      <version>2.6.0</version>
      <description>Procedure Framework</description>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase/hbase-procedure@2.6.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-build-configuration/hbase-procedure</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=hbase.git/hbase-build-configuration/hbase-procedure</url></reference></externalReferences>
    </component>
    <properties>
      <property name="maven.goal">makeBom</property>
      <property name="maven.scopes">compile,provided,runtime,system</property>
      <property name="cdx:reproducible">enabled</property>
    </properties>
  </metadata>
  <components>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase/hbase-logging@2.6.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase</group>
      <name>hbase-logging</name>
      <version>2.6.0</version>
      <description>Logging Support for HBase</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">8cce6afb9c62ce7c9d892b140f744d95</hash>
        <hash alg="SHA-1">f92726a59834fd5cfe8ec908e3ad75585148a968</hash>
        <hash alg="SHA-256">cb13270d81b95b22b939f5d6d361350bf0a440c03de0d2a2568fabf604b4009a</hash>
        <hash alg="SHA-512">24ee0e5dcd2a0e317e728febb44c1c94d3b5e0c67e5cac5d2f9f4711c5addc47854c2904497623a416f0f0af9c09b0350b4d2f7b4eb851260986295d3fcede12</hash>
        <hash alg="SHA-384">8dd81b1cba722670ae22e558af8f3a8d564590536983d809891cf17c824a0396bb0fcbe26e875f4b259e4dea6d0f85c2</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase/hbase-logging@2.6.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-build-configuration/hbase-logging</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=hbase.git/hbase-build-configuration/hbase-logging</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-gson@4.1.7?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase.thirdparty</group>
      <name>hbase-shaded-gson</name>
      <version>4.1.7</version>
      <description>Pulls down GSON, relocates it and makes a far jar.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">c68a531ef7c5592ea0b234ce8268f3db</hash>
        <hash alg="SHA-1">94476b06ce31d3db6be04cf36dc8babd104f06cf</hash>
        <hash alg="SHA-256">5ba930a0e2d83d7cd50de7f0d67e0e0fcf235009c7b932529937ac584880ef4f</hash>
        <hash alg="SHA-512">7e484003611606ef3e1b651781d37b96b7521d8bb84412f4663409d4d373a3b1e8d97238f2baa7f40234d1e8a3b77bb02524c405ffd242601746ea538441abef</hash>
        <hash alg="SHA-384">39b0d04098f26ef8b08e8333294aaeb5acc0f4a7a529400b2102c8481741e79c2b086fcfe61cc0e25103c7680a6ceece</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-gson@4.1.7?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-shaded-gson</url></reference><reference type="build-system"><url>http://hudson.zones.apache.org/hudson/view/HBase/job/HBase-TRUNK/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=hbase-thirdparty.git/hbase-shaded-gson</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-netty@4.1.7?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase.thirdparty</group>
      <name>hbase-shaded-netty</name>
      <version>4.1.7</version>
      <description>Pulls down netty.io, relocates nd then makes a fat new jar with them all in it.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">66e519b15079c7e3e385d64f605a16f1</hash>
        <hash alg="SHA-1">19c3464a5107660c038f50d8781efc7c1c2fa1a8</hash>
        <hash alg="SHA-256">0ea8476263e4d8cbfe2ed19c569559884ff0121c54b6e26be2cac203ca065321</hash>
        <hash alg="SHA-512">7f01e5060fce00aeef07e393fab6ccb4be32232234891aef60ac20ca064910284fd78b033c9a4a93738ac4364bb2f3d8475a56048b2304241f66b1593a34ec0d</hash>
        <hash alg="SHA-384">14b116c93fff0f990063242adce969a81af749021d32c76b2654edc084cae5bad641becd87d97c41abe462aeeb6f5b0a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-netty@4.1.7?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-shaded-netty</url></reference><reference type="build-system"><url>http://hudson.zones.apache.org/hudson/view/HBase/job/HBase-TRUNK/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=hbase-thirdparty.git/hbase-shaded-netty</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase.thirdparty/hbase-unsafe@4.1.7?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase.thirdparty</group>
      <name>hbase-unsafe</name>
      <version>4.1.7</version>
      <description>Wrap sun.misc.Unsafe to avoid referencing it in the main code base</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">37b1e92f98bcc084e2954ad7a1acdb5a</hash>
        <hash alg="SHA-1">020f5008e7b20bebcbe935d5d64e36d8a6f9801b</hash>
        <hash alg="SHA-256">922cb9300bb90c00e2b55e36b45108f04f7e8b11c317b5888bc226113c59be13</hash>
        <hash alg="SHA-512">15feaba3c93ccbfb5a8533d656b927dc99409672fc652c653d33ceb261f9d59d0f67ace2d7a2e0cd4b991e63bfe2a0790dff39e9da80485d2459e98f3ffc6192</hash>
        <hash alg="SHA-384">23888e15b365543252014cb6708bb102c5287192981f75ae89908e8043ef41ba45343d07fc36217cbe8eb9d70e4de085</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase.thirdparty/hbase-unsafe@4.1.7?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-unsafe</url></reference><reference type="build-system"><url>http://hudson.zones.apache.org/hudson/view/HBase/job/HBase-TRUNK/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=hbase-thirdparty.git/hbase-unsafe</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-codec</group>
      <name>commons-codec</name>
      <version>1.15</version>
      <description>The Apache Commons Codec package contains simple encoder and decoders for
     various formats such as Base64 and Hexadecimal.  In addition to these
     widely used encoders and decoders, the codec package also maintains a
     collection of phonetic encoding utilities.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">303baf002ce6d382198090aedd9d79a2</hash>
        <hash alg="SHA-1">49d94806b6e3dc933dacbd8acb0fdbab8ebd1e5d</hash>
        <hash alg="SHA-256">b3e9f6d63a790109bf0d056611fbed1cf69055826defeb9894a71369d246ed63</hash>
        <hash alg="SHA-512">da30a716770795fce390e4dd340a8b728f220c6572383ffef55bd5839655d5611fcc06128b2144f6cdcb36f53072a12ec80b04afee787665e7ad0b6e888a6787</hash>
        <hash alg="SHA-384">05d0506283716472175d44c2a4766523397bf8a007c18848f9c9a61718cc8aa437f9cb4b91771037ab29a960860b62a0</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-codec/commons-codec@1.15?type=jar</purl>
      <externalReferences><reference type="website"><url>https://commons.apache.org/proper/commons-codec/</url></reference><reference type="build-system"><url>https://builds.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/CODEC</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://github.com/apache/commons-codec</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-lang3</name>
      <version>3.9</version>
      <description>Apache Commons Lang, a package of Java utility classes for the
  classes that are in java.lang's hierarchy, or are considered to be so
  standard as to justify existence in java.lang.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">fa752c3cb5474b05e14bf2ed7e242020</hash>
        <hash alg="SHA-1">0122c7cee69b53ed4a7681c03d4ee4c0e2765da5</hash>
        <hash alg="SHA-256">de2e1dcdcf3ef917a8ce858661a06726a9a944f28e33ad7f9e08bea44dc3c230</hash>
        <hash alg="SHA-512">c6516ebaa0d83d3dfc421061a57d0f7eb30d0cf9ea05a0d5fa1c94b4d42bca211444ea9023de1a812533b88112be95cd5d9638e160afcb31c31d6570f95a9610</hash>
        <hash alg="SHA-384">6bee823962a2d92e9f5eae0d442e4ce5cd39ea1c2f89259e3aeb5ad94bb6321744955e6a412f9e1b9ad14b87a39a6512</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/proper/commons-lang/</url></reference><reference type="build-system"><url>https://builds.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/LANG</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=commons-lang.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-io/commons-io@2.11.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-io</group>
      <name>commons-io</name>
      <version>2.11.0</version>
      <description>The Apache Commons IO library contains utility classes, stream implementations, file filters,
file comparators, endian transformation classes, and much more.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">3b4b7ccfaeceeac240b804839ee1a1ca</hash>
        <hash alg="SHA-1">a2503f302b11ebde7ebc3df41daebe0e4eea3689</hash>
        <hash alg="SHA-256">961b2f6d87dbacc5d54abf45ab7a6e2495f89b75598962d8c723cea9bc210908</hash>
        <hash alg="SHA-512">5bd78eed456ede30119319c5bed8e3e4c443b6fd7bdb3a7a5686647bd83094d0c3e2832a7575cfb60e4ef25f08106b93476939d3adcfecf5533cc030b3039e10</hash>
        <hash alg="SHA-384">114f1e324d90ad887c177876d410f5787a8e8da6c48d4b2862d365802c0efded3a88cb24046976bf6276cadad3712f0f</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-io/commons-io@2.11.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://commons.apache.org/proper/commons-io/</url></reference><reference type="build-system"><url>https://builds.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/IO</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=commons-io.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.google.protobuf/protobuf-java@2.5.0?type=jar">
      <publisher>Google</publisher>
      <group>com.google.protobuf</group>
      <name>protobuf-java</name>
      <version>2.5.0</version>
      <description>Protocol Buffers are a way of encoding structured data in an efficient yet
    extensible format.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">a44473b98947e2a54c54e0db1387d137</hash>
        <hash alg="SHA-1">a10732c76bfacdbd633a7eb0f7968b1059a65dfa</hash>
        <hash alg="SHA-256">e0c1c64575c005601725e7c6a02cebf9e1285e888f756b2a1d73ffa8d725cc74</hash>
        <hash alg="SHA-512">10ea0baf440c78598eee2bff3742bc2f41b7e67847f8bb43a1f154d7649853ebd9eb86288aab65f4d1a196f4586bab16b656ec7940ec92a57b1c117b8f59abac</hash>
        <hash alg="SHA-384">33ad6e25b942b4076c8b9dfcc0aae8ca802b9028aa9939f86e4752b4847b35fb486f6d3efa81d38ad1edcbec6e614494</hash>
      </hashes>
      <licenses>
        <license>
          <id>BSD-3-Clause</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.google.protobuf/protobuf-java@2.5.0?type=jar</purl>
      <externalReferences><reference type="website"><url>http://code.google.com/p/protobuf</url></reference><reference type="distribution"><url>dav:https://google-maven-repository.googlecode.com/svn/repository/</url></reference><reference type="vcs"><url>http://code.google.com/p/protobuf/source/browse</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.opentelemetry/opentelemetry-api@1.15.0?type=jar">
      <group>io.opentelemetry</group>
      <name>opentelemetry-api</name>
      <version>1.15.0</version>
      <description>OpenTelemetry API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">1aea20bff65bf6ac57a070f1245b5bab</hash>
        <hash alg="SHA-1">549bf64119e092bb9917e73601e9ebb508b5a2e3</hash>
        <hash alg="SHA-256">765999a64656f71c5ae22ba5942993f117af0ee277ef3f08d6e90dc765a3ed57</hash>
        <hash alg="SHA-512">d3053a8967be564e9ce3baec664b5b09d10fba37f8e71731fa7b6895800d18acbd9c7dd9c2e6ba2619c96d99565566fb93dc786afab0818c895ebfd3762b106f</hash>
        <hash alg="SHA-384">d218e09901519e6a3c0ba634ef35f90365c879230efe7ee5afcece26bf2be6d1c8667e90f2e80b953e21db27a9881d9d</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.opentelemetry/opentelemetry-api@1.15.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/open-telemetry/opentelemetry-java</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.opentelemetry/opentelemetry-context@1.15.0?type=jar">
      <group>io.opentelemetry</group>
      <name>opentelemetry-context</name>
      <version>1.15.0</version>
      <description>OpenTelemetry Context (Incubator)</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">b88f1aae2566bde518fcd617c9536acb</hash>
        <hash alg="SHA-1">4401a67f7aef7af786012965408ecb5172f19e2f</hash>
        <hash alg="SHA-256">fa47bc74477de40b6654454f33819fc619389d1b9bdb914bf78eea36d13998c9</hash>
        <hash alg="SHA-512">60b1db0eb86406c119eb36b20fdaaebd22e1a2b2870393efe4a85cc4248b4e87b0fce4bcee61ea59922a43bf7299834a163d2cbc3bb8b411c557886c176294e3</hash>
        <hash alg="SHA-384">3e9fc7012921019e48d6373916d2c799986d575c8f1619885770049019d109cbead2a91491cc48d5a5fa8993fbb05b8e</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.opentelemetry/opentelemetry-context@1.15.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/open-telemetry/opentelemetry-java</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.opentelemetry/opentelemetry-semconv@1.15.0-alpha?type=jar">
      <group>io.opentelemetry</group>
      <name>opentelemetry-semconv</name>
      <version>1.15.0-alpha</version>
      <description>OpenTelemetry Semantic Conventions</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">95ffa50074738fbc2b587f27cee59d33</hash>
        <hash alg="SHA-1">ffbb3697b70da736b72bd55ed45005049dc8df54</hash>
        <hash alg="SHA-256">a9c5d6178299f82325da14334e08b7926e9525ed9aaca6323ce83786913ba369</hash>
        <hash alg="SHA-512">9a157d8da4e14abbf4c89992df5a656743b62d02231f1b8b8351bcc8f28a0b71e3ac62cac5fec52bbabf176bf00da373efb34ed60bfbb3487d84ad85d7cdf5db</hash>
        <hash alg="SHA-384">c03808d75be7aaf49b4257a22ae834f6b3e188cce821e5bd9341ae27dc0bd258ea88d90ad63a19d2bcce993236f94a5a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.opentelemetry/opentelemetry-semconv@1.15.0-alpha?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/open-telemetry/opentelemetry-java</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-crypto@1.1.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-crypto</name>
      <version>1.1.0</version>
      <description>Apache Commons Crypto is a cryptographic library optimized with AES-NI (Advanced Encryption
Standard New Instructions). It provides Java API for both cipher level and Java stream level.
Developers can use it to implement high performance AES encryption/decryption with the minimum
code and effort. Please note that Crypto doesn't implement the cryptographic algorithm such as
AES directly. It wraps to Openssl or JCE which implement the algorithms.

Features
--------

1. Cipher API for low level cryptographic operations.
2. Java stream API (CryptoInputStream/CryptoOutputStream) for high level stream encryption/decryption.
3. Both optimized with high performance AES encryption/decryption. (1400 MB/s - 1700 MB/s throughput in modern Xeon processors).
4. JNI-based implementation to achieve comparable performance to the native C/C++ version based on OpenSsl.
5. Portable across various operating systems (currently only Linux/MacOSX/Windows);
   Apache Commons Crypto loads the library according to your machine environment (it checks system properties, `os.name` and `os.arch`).
6. Simple usage. Add the commons-crypto-(version).jar file to your classpath.


Export restrictions
-------------------

This distribution includes cryptographic software.
The country in which you currently reside may have restrictions
on the import, possession, use, and/or re-export to another country,
of encryption software. BEFORE using any encryption software,
please check your country's laws, regulations and policies
concerning the import, possession, or use, and re-export of
encryption software, to see if this is permitted.
See &lt;http://www.wassenaar.org/> for more information.

The U.S. Government Department of Commerce, Bureau of Industry and Security (BIS),
has classified this software as Export Commodity Control Number (ECCN) 5D002.C.1,
which includes information security software using or performing
cryptographic functions with asymmetric algorithms.
The form and manner of this Apache Software Foundation distribution makes
it eligible for export under the License Exception
ENC Technology Software Unrestricted (TSU) exception
(see the BIS Export Administration Regulations, Section 740.13)
for both object code and source code.

The following provides more details on the included cryptographic software:

* Commons Crypto use [Java Cryptography Extension](http://docs.oracle.com/javase/8/docs/technotes/guides/security/crypto/CryptoSpec.html) provided by Java
* Commons Crypto link to and use [OpenSSL](https://www.openssl.org/) ciphers</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">c71451f3c4737ba6d84f9bd9e8f2400d</hash>
        <hash alg="SHA-1">4a8b4caa84032a0f1f1dad16875820a4f37524b7</hash>
        <hash alg="SHA-256">44dc28551cdba731658090d9b10d2eead9839c269d70cdcd7d56c0423df5227f</hash>
        <hash alg="SHA-512">62acf1d90ad667c8f3f9b267c6f4fefa57eb914ef57a24e10a7dc6ea7bf1f2a6933db831f836dc2ca0fe86aff84a6d1a0fb3c8bb34c7c24e3e1190778efb241d</hash>
        <hash alg="SHA-384">0d7c20964ab9cbde60d3d03ca92b481e30f969b30adc336b77ec8b8dcb660e327bfff8c98cb9c30163e7bdf5ffbae486</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-crypto@1.1.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://commons.apache.org/proper/commons-crypto/</url></reference><reference type="build-system"><url>https://builds.apache.org/search/?q=Commons-CRYPTO</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/CRYPTO</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=commons-crypto.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-protobuf@4.1.7?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase.thirdparty</group>
      <name>hbase-shaded-protobuf</name>
      <version>4.1.7</version>
      <description>Pulls down protobuf, patches it, compiles, and then relocates/shades.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">213f0df12f2294d747a2826d1328eb66</hash>
        <hash alg="SHA-1">82c7c8660a28543b9f89b2e791b6e8a86d342ef8</hash>
        <hash alg="SHA-256">1abe4b1d81c5f583ee2695e3475d1987cae785b9fe80ddf36edf435a697200e3</hash>
        <hash alg="SHA-512">1f53b94b9c85c70b75381f4a5ebd580da47a928a51ffb06a2feeea0bc1330851b5b2bc1ce7581e29e1ed2e050b52741d8cb8f9c5b999d16b41a61d42e6c2faf9</hash>
        <hash alg="SHA-384">40b2532f03d716a74e09f9ce051ed6ccebd215d71e920a2e52db638d208645c142a365f35ea8722260a4086ea1c1db55</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-protobuf@4.1.7?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-shaded-protobuf</url></reference><reference type="build-system"><url>http://hudson.zones.apache.org/hudson/view/HBase/job/HBase-TRUNK/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=hbase-thirdparty.git/hbase-shaded-protobuf</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase/hbase-protocol-shaded@2.6.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase</group>
      <name>hbase-protocol-shaded</name>
      <version>2.6.0</version>
      <description>Shaded protobuf protocol classes used by HBase internally.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">394cc167f869f83957d1dc969409f335</hash>
        <hash alg="SHA-1">6f0a071ee17ec0d9534fa032674dcc01627fb47d</hash>
        <hash alg="SHA-256">65d2c764d1ee833e0aa3d5529ca34d61bc3e6deb57fb4850d3121df1b29527ac</hash>
        <hash alg="SHA-512">aed781d637c274ba4f4748eeeec08450b430e40643f8e95f89a6ecad3a402d8b574b2f94510812dd3ff58584043e66f3b6db916688682c9beedc92e67cded067</hash>
        <hash alg="SHA-384">25d689253669e447cd10f31f5fdd3e348299d3d4308983874ebde27218df02fc3c480d625bcb63d5fdd81f1fde8ae3aa</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase/hbase-protocol-shaded@2.6.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-build-configuration/hbase-protocol-shaded</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=hbase.git/hbase-build-configuration/hbase-protocol-shaded</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase/hbase-common@2.6.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase</group>
      <name>hbase-common</name>
      <version>2.6.0</version>
      <description>Common functionality for HBase</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">939a058d4be5e3c80e876bd803f61d3a</hash>
        <hash alg="SHA-1">a2fea749e275f12fa4af967c49eb1e29001dd5fb</hash>
        <hash alg="SHA-256">d6f291160492f1bcfc5a034d7a9215b06eb27bd2a990de731053c4c5f5ac8a42</hash>
        <hash alg="SHA-512">a0a4444cecfb5c764fb4c8a6566a6a49a42b70b123a3f34fd0b0f3921971c7153f22cd090375e505addfca6259bc7205fa97cad83df09d0dd197e602128c6377</hash>
        <hash alg="SHA-384">cd87fac8ccab533ba9442f9eb529a5babe5ed5879afb173ea053538d9e6f78f679605148a3b867f772eadb2e97775cab</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase/hbase-common@2.6.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-build-configuration/hbase-common</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=hbase.git/hbase-build-configuration/hbase-common</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase.thirdparty</group>
      <name>hbase-shaded-miscellaneous</name>
      <version>4.1.7</version>
      <description>Pulls down a set of libs, relocates them and then makes a fat new jar with them all in it.
    See below for what this miscellaney includes.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">a8e5f7d99c88fc682aa548cd1ff12097</hash>
        <hash alg="SHA-1">6dc9163d2fbbf2ea03225046b97e9f5d80dd225e</hash>
        <hash alg="SHA-256">90767649f2ea9278feaa65d65ac592e9a28c1461ee61415165306df7266c8872</hash>
        <hash alg="SHA-512">ac53b6d97276c8f7e515a77c5dbdf8f06d8d12e66907eaec5094670b86f6388f1c171ebf8c41d6ccdf979eed1875316e1b064e74a28256802b0cfa6042c6ba7a</hash>
        <hash alg="SHA-384">d5ef0efdcbb5d2a54d21451143add46796ef98c429d2efddc279a9af396de9566959d98c31a8da46c2c076bdcbbc8757</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-shaded-miscellaneous</url></reference><reference type="build-system"><url>http://hudson.zones.apache.org/hudson/view/HBase/job/HBase-TRUNK/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=hbase-thirdparty.git/hbase-shaded-miscellaneous</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.google.errorprone/error_prone_annotations@2.26.1?type=jar">
      <publisher>Google LLC</publisher>
      <group>com.google.errorprone</group>
      <name>error_prone_annotations</name>
      <version>2.26.1</version>
      <description>Error Prone is a static analysis tool for Java that catches common programming mistakes at compile-time.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">64c623e550068e3b2708e5d901865c56</hash>
        <hash alg="SHA-1">c1fde57694bdc14e8618899aaa6e857d9465d7de</hash>
        <hash alg="SHA-256">de25f2d9a2156529bd765f51d8efdfc0dfa7301e04efb9cc75b7f10cf5d0e0fb</hash>
        <hash alg="SHA-512">b29d69c3f61084f26f23bc7da138519161f3b33584d97b38e7448c303a1c0b42299fa0371552ad7e1f0be65ca1c69f3b6958cc28ff208a4f49c6456a442ab6ee</hash>
        <hash alg="SHA-384">98c9da460debd77b7f60ad9ec4179913f93137f7116a597bd18bcd5bb7df4473176052e794228145cff2a6fc6c14e6e8</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.google.errorprone/error_prone_annotations@2.26.1?type=jar</purl>
      <externalReferences><reference type="website"><url>https://errorprone.info/error_prone_annotations</url></reference><reference type="vcs"><url>https://github.com/google/error-prone/error_prone_annotations</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar">
      <publisher>QOS.ch</publisher>
      <group>org.slf4j</group>
      <name>slf4j-api</name>
      <version>1.7.33</version>
      <description>The slf4j API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">de8684fca5e9042d0120cb3306e8278f</hash>
        <hash alg="SHA-1">d375aa1b98d34d5ddf73a3f19eaad66e98975b12</hash>
        <hash alg="SHA-256">336811855ee97fcd8413343dc42f4d26362502860e8a9193e4db305e3e8ef80a</hash>
        <hash alg="SHA-512">ccde4a938e90d683288f84375224ecd9b46aca20de7544c6300c82ef07780d25306239ea9c5565c3ff58038c9d5becc85c846df3c1809585ae33b20a32e6b8d9</hash>
        <hash alg="SHA-384">dd31ce1f4fa4c7a892388422b4694d8a51bac05e4f2789eb7be734cdb2738f9f796eb951cfe989834ec78a65d5d762b5</hash>
      </hashes>
      <licenses>
        <license>
          <id>MIT</id>
          <url>https://opensource.org/licenses/MIT</url>
        </license>
      </licenses>
      <purl>pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar</purl>
      <externalReferences><reference type="website"><url>http://www.slf4j.org</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/qos-ch/slf4j/slf4j-api</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.github.stephenc.findbugs/findbugs-annotations@1.3.9-1?type=jar">
      <group>com.github.stephenc.findbugs</group>
      <name>findbugs-annotations</name>
      <version>1.3.9-1</version>
      <description>A clean room implementation of the Findbugs Annotations based entirely on the specification provided
    by the javadocs and at http://findbugs.sourceforge.net/manual/annotations.html.</description>
      <scope>optional</scope>
      <hashes>
        <hash alg="MD5">70fda5202eb9d9ce4f250f2c2ba71152</hash>
        <hash alg="SHA-1">a6b11447635d80757d64b355bed3c00786d86801</hash>
        <hash alg="SHA-256">1e651066ed9ae35d7e3001d635d1dbba1c2965db0e4e33e2c14ad610543f225c</hash>
        <hash alg="SHA-512">34db789f9efcd342438d08699043d4bcc9da63d870b65b2d3f39b0f5de8f9db164869e7d7abae4046f56fbfea0aba7353811a04dc5ab4ca1f14af15d62b59407</hash>
        <hash alg="SHA-384">ef67d91fc78186eef839ea4a38e139b54cd54c192702343596923d28dbc918735b2519a5c59d7499087c45b09e469bde</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.github.stephenc.findbugs/findbugs-annotations@1.3.9-1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://stephenc.github.com/findbugs-annotations</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://github.com/stephenc/findbugs-annotations/issues</url></reference><reference type="vcs"><url>http://github.com/stephenc/findbugs-annotations/tree/master/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hbase/hbase-metrics-api@2.6.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.hbase</group>
      <name>hbase-metrics-api</name>
      <version>2.6.0</version>
      <description>HBase Metrics API descriptions</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">55a3e1d96e6b74aeea7a8b1c960e9a63</hash>
        <hash alg="SHA-1">50155645ac83c89a6269efba833135665700a63b</hash>
        <hash alg="SHA-256">3310b5986eec0d9181f446fef85d5824efa344dc1938d729918752179b3534b5</hash>
        <hash alg="SHA-512">0629b2413f4a49f43aa9decca603a258543f6be9d50921abf3251e1ce537f5faa1630d036dfbb2b4875d34c19be0dcc832653eae766398e993f0108d777edd63</hash>
        <hash alg="SHA-384">e8d29dddd6bad4d47363d356d4a12b2c2a26be25bf6263185f33446ac060a34af51c2a053114b1df8ec08423fd3af70a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hbase/hbase-metrics-api@2.6.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://hbase.apache.org/hbase-build-configuration/hbase-metrics-api</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/HBASE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hbase-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=hbase.git/hbase-build-configuration/hbase-metrics-api</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/net.bytebuddy/byte-buddy@1.12.19?type=jar">
      <group>net.bytebuddy</group>
      <name>byte-buddy</name>
      <version>1.12.19</version>
      <description>Byte Buddy is a Java library for creating Java classes at run time.
        This artifact is a build of Byte Buddy with all ASM dependencies repackaged into its own name space.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">cc20a18acdf6e02a5650cb2712da27fe</hash>
        <hash alg="SHA-1">178d26e6a95e50502ae16673e08269797f8b254a</hash>
        <hash alg="SHA-256">030704139e46f32c38d27060edee9e0676b0a0fff8a8be53461515154ba8a7be</hash>
        <hash alg="SHA-512">27d993effe7c574d70d9f31f716a533a2e2361c9a0f4ae6f058b31bed4b01c8d97a215848cc4c2ad2d1c76e5ad1ec572448345ba48ce86bad04187fb4db09d26</hash>
        <hash alg="SHA-384">ec8410ce1f2f5f09228583753d77d19eb2ac3e911be438c978fe532243a691e3fab3a863ded462e2c2e824089705c612</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/net.bytebuddy/byte-buddy@1.12.19?type=jar</purl>
      <externalReferences><reference type="website"><url>https://bytebuddy.net/byte-buddy</url></reference><reference type="distribution"><url>https://s01.oss.sonatype.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://github.com/raphw/byte-buddy/issues</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hadoop/hadoop-common@2.10.2?type=jar">
      <publisher>Apache Software Foundation</publisher>
      <group>org.apache.hadoop</group>
      <name>hadoop-common</name>
      <version>2.10.2</version>
      <description>Apache Hadoop Common</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">0e701d9a254fa21128f4a5a33aff13de</hash>
        <hash alg="SHA-1">fd5786fcd0228073e7c9c4ba5739519eceb55ddb</hash>
        <hash alg="SHA-256">fe93812dc299e17ebcfc12921bd3162c79ecfab84d120d51d4ddc275c7414ff9</hash>
        <hash alg="SHA-512">abce060bc87b2ed21b8b19c16db1dc5927c35e810189109bff58eaa5adfd048892af809ebd78913bf5c6b01d28f6809bade08f3b2042e1beb247b9eedeae64ea</hash>
        <hash alg="SHA-384">54ad68c163b4383bf10b88e7aee2e9bba5c36d42416812a675679eb5f030a22a5f651b8d2a5e9b8923833d88861be9f3</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hadoop/hadoop-common@2.10.2?type=jar</purl>
      <externalReferences><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hadoop/hadoop-annotations@2.10.2?type=jar">
      <publisher>Apache Software Foundation</publisher>
      <group>org.apache.hadoop</group>
      <name>hadoop-annotations</name>
      <version>2.10.2</version>
      <description>Apache Hadoop Annotations</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">a3ff551c2ea8a5e17c3042ee46f1f763</hash>
        <hash alg="SHA-1">5b406750215dcbd8d322d57696cd52fdb796e528</hash>
        <hash alg="SHA-256">c47d615be08cb6631985188489ba17d376577b67e3690d6de1eb9d0d611f35e3</hash>
        <hash alg="SHA-512">a139640e5f7077610e72b939494825ff95c3d6d18c7c121d5d198bd0ba99bb399116633ee25149d915c3474d0afb9ebe101b48cce28d6f5903a233ceebd7cc6b</hash>
        <hash alg="SHA-384">6dbe2290de667a3f3dab7e3f4a4327010329bd36e0c50a709f01a41b2c9252475237255318f8b174a625cea17f860d7a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hadoop/hadoop-annotations@2.10.2?type=jar</purl>
      <externalReferences><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/jdk.tools/jdk.tools@1.8?type=jar">
      <group>jdk.tools</group>
      <name>jdk.tools</name>
      <version>1.8</version>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">94058d59a1e75a266a99271ef26917a8</hash>
        <hash alg="SHA-1">9e3c1d0622fce0fd819b55ef634d75077f4ec0d4</hash>
        <hash alg="SHA-256">99ae2c54e5da504051d0300286caefb8811ad9cc155bb89952d09728e5445a70</hash>
        <hash alg="SHA-512">800799fbb4e4efa0522bb46d61220d531ca041bb20e0117c3cb06e1577ad61740b71908ebee83113916d9fcc3cb0907d2b061861cd70196d1518dc05c441baba</hash>
        <hash alg="SHA-384">dcaca957f4d887f3d096a3014cd19e6ccecbd7eb18188b4e5e3b054a45de43c7d8ff9b0bb784b0e87f8410d30480b7a0</hash>
      </hashes>
      <purl>pkg:maven/jdk.tools/jdk.tools@1.8?type=jar</purl>
    </component>
    <component type="library" bom-ref="pkg:maven/com.google.guava/guava@11.0.2?type=jar">
      <group>com.google.guava</group>
      <name>guava</name>
      <version>11.0.2</version>
      <description>Guava is a suite of core and expanded libraries that include
    utility classes, google's collections, io classes, and much
    much more.

    This project is a complete packaging of all the Guava libraries
    into a single jar.  Individual portions of Guava can be used
    by downloading the appropriate module and its dependencies.

    Guava (complete) has only one code dependency - javax.annotation,
    per the JSR-305 spec.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">bed5977336ea1279d2bad3bb258dc8c3</hash>
        <hash alg="SHA-1">35a3c69e19d72743cac83778aecbee68680f63eb</hash>
        <hash alg="SHA-256">e144a0ec7f5139c58d4f3729ccfb4240f9c576a1aa43790e4090e09316129ee1</hash>
        <hash alg="SHA-512">392ae7e0c1b0da2ae91f0e5e022dbcd4bca3861242d57599f563e3a6561592df7baca18fe62000fcd701e1b81cb4ae6987698a5695358127fe4f74ff39776eb5</hash>
        <hash alg="SHA-384">e9f119ad115dddc4fe076dde2fe5c2fffec092ed4766b24055c234098096c8ccfabcfd351df7a0c382f0a6c62cd9a099</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.google.guava/guava@11.0.2?type=jar</purl>
      <externalReferences><reference type="website"><url>http://code.google.com/p/guava-libraries/guava</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://code.google.com/p/guava-libraries/issues</url></reference><reference type="vcs"><url>http://code.google.com/p/guava-libraries/source/browse/guava</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-cli/commons-cli@1.5.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-cli</group>
      <name>commons-cli</name>
      <version>1.5.0</version>
      <description>Apache Commons CLI provides a simple API for presenting, processing and validating a Command Line Interface.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">6c3b2052160144196118b1f019504388</hash>
        <hash alg="SHA-1">dc98be5d5390230684a092589d70ea76a147925c</hash>
        <hash alg="SHA-256">bc8bb01fc0fad250385706e20f927ddcff6173f6339b387dc879237752567ac6</hash>
        <hash alg="SHA-512">b78ac2b418e9e9e7d0bc866664577199d320408a6f03151b3789bac365c986dd526df853599e633d7e50fe136cbf3eb9ce50c9cfa0ad38c3cc8d8ee416f61c40</hash>
        <hash alg="SHA-384">a7a2daa807c4007c506b5100f0a9b526c0052c4e1f6b699904ef9d2aba8195b6003dc4d47ca133b15e2f3e830bdbe6c4</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-cli/commons-cli@1.5.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://commons.apache.org/proper/commons-cli/</url></reference><reference type="build-system"><url>https://builds.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/CLI</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=commons-cli.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-math3@3.6.1?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-math3</name>
      <version>3.6.1</version>
      <description>The Apache Commons Math project is a library of lightweight, self-contained mathematics and statistics components addressing the most common practical problems not immediately available in the Java programming language or commons-lang.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">5b730d97e4e6368069de1983937c508e</hash>
        <hash alg="SHA-1">e4ba98f1d4b3c80ec46392f25e094a6a2e58fcbf</hash>
        <hash alg="SHA-256">1e56d7b058d28b65abd256b8458e3885b674c1d588fa43cd7d1cbb9c7ef2b308</hash>
        <hash alg="SHA-512">8bc2438b3b4d9a6be4a47a58410b2d4d0e56e05787ab24badab8cbc9075d61857e8d2f0bffedad33f18f8a356541d00f80a8597b5dedb995be8480d693d03226</hash>
        <hash alg="SHA-384">95d1186d9ca06a3ea2e6437ddec3a55698e2493d3e72f6f554746b74fa929892bd71a2ab501a4e7b1ce56b7cd64e7ab4</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-math3@3.6.1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/proper/commons-math/</url></reference><reference type="build-system"><url>https://continuum-ci.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/MATH</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=commons-math.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/xmlenc/xmlenc@0.52?type=jar">
      <group>xmlenc</group>
      <name>xmlenc</name>
      <version>0.52</version>
      <description>xmlenc Library</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">c962b6bc3c8de46795b0ed94851fa9c7</hash>
        <hash alg="SHA-1">d82554efbe65906d83b3d97bd7509289e9db561a</hash>
        <hash alg="SHA-256">282ae185fc2ff27da7714af9962897c09cfefafb88072219c4a2f9c73616c026</hash>
        <hash alg="SHA-512">3a1f30f2bcebca32fce505185cfda1cd90fc2dc8c60fe41584f764fc2b4004422462b32ec88b70c93165ecc45201f8834fc16feb067812daa0759d2096b4a63f</hash>
        <hash alg="SHA-384">3ed1606ddd4995ffb15ef504195fa4ee73f536b1a232d18532cb53f10f9f8e418fc5e91bf47834bc98a4331981301755</hash>
      </hashes>
      <licenses>
        <license>
          <id>BSD-4-Clause</id>
        </license>
      </licenses>
      <purl>pkg:maven/xmlenc/xmlenc@0.52?type=jar</purl>
      <externalReferences><reference type="website"><url>http://xmlenc.sourceforge.net</url></reference><reference type="vcs"><url>http://xmlenc.cvs.sourceforge.net/xmlenc/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.httpcomponents</group>
      <name>httpclient</name>
      <version>4.5.13</version>
      <description>Apache HttpComponents Client</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">40d6b9075fbd28fa10292a45a0db9457</hash>
        <hash alg="SHA-1">e5f6cae5ca7ecaac1ec2827a9e2d65ae2869cada</hash>
        <hash alg="SHA-256">6fe9026a566c6a5001608cf3fc32196641f6c1e5e1986d1037ccdbd5f31ef743</hash>
        <hash alg="SHA-512">3567739186e551f84cad3e4b6b270c5b8b19aba297675a96bcdff3663ff7d20d188611d21f675fe5ff1bfd7d8ca31362070910d7b92ab1b699872a120aa6f089</hash>
        <hash alg="SHA-384">093ac3e2dde58e34aa70309c7305eb3c9b5be2509a9293f1672494da55479a86bd112e83326746dc7a32855472952b99</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar</purl>
      <externalReferences><reference type="website"><url>http://hc.apache.org/httpcomponents-client</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HTTPCLIENT</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hc-httpclient-users/</url></reference><reference type="vcs"><url>https://github.com/apache/httpcomponents-client/tree/4.5.13/httpclient</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.httpcomponents/httpcore@4.4.13?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.httpcomponents</group>
      <name>httpcore</name>
      <version>4.4.13</version>
      <description>Apache HttpComponents Core (blocking I/O)</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">e07a248f61c52776a2366c075dcd4963</hash>
        <hash alg="SHA-1">853b96d3afbb7bf8cc303fe27ee96836a10c1834</hash>
        <hash alg="SHA-256">e06e89d40943245fcfa39ec537cdbfce3762aecde8f9c597780d2b00c2b43424</hash>
        <hash alg="SHA-512">23430cde8b9bed33c91474ba49f1143284135df1b25fdcbc37bc3bb7e9549e77b3918eb40250093db652ae200367e87316129b23b4f6987e94939d60f467498d</hash>
        <hash alg="SHA-384">b776d57492478c162d428bdd3139be0fa6c3cf4503355c3a04710ca7bc3ee74d66627f49eb42814fd8f8364dbd17aa91</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.httpcomponents/httpcore@4.4.13?type=jar</purl>
      <externalReferences><reference type="website"><url>http://hc.apache.org/httpcomponents-core-ga</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HTTPCORE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/hc-httpclient-users/</url></reference><reference type="vcs"><url>https://github.com/apache/httpcomponents-core/tree/4.4.13/httpcore</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-net/commons-net@3.1?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-net</group>
      <name>commons-net</name>
      <version>3.1</version>
      <description>Apache Commons Net library contains a collection of network utilities and protocol implementations.
Supported protocols include: Echo, Finger, FTP, NNTP, NTP, POP3(S), SMTP(S), Telnet, Whois</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">23c94d51e72f341fb412d6a015e16313</hash>
        <hash alg="SHA-1">2298164a7c2484406f2aa5ac85b205d39019896f</hash>
        <hash alg="SHA-256">34a58d6d80a50748307e674ec27b4411e6536fd12e78bec428eb2ee49a123007</hash>
        <hash alg="SHA-512">66887e7c5077dc6aed5dc85c172e7d80ae13503ab1e000dd76e87626cddb0427f3f9251941af94744d53f6b771e031785ce1362b01595d9723330554213bdfe8</hash>
        <hash alg="SHA-384">444a0ffddba21cb56369700b5b89641a453adfaffb948e22329011c8eb02ee40b70f57f88c3d10239d49eaf4069c1e25</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-net/commons-net@3.1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/net/</url></reference><reference type="build-system"><url>http://vmbuild.apache.org/continuum/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/NET</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/commons/proper/net/trunk</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-collections/commons-collections@3.2.2?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-collections</group>
      <name>commons-collections</name>
      <version>3.2.2</version>
      <description>Types that extend and augment the Java Collections Framework.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">f54a8510f834a1a57166970bfc982e94</hash>
        <hash alg="SHA-1">8ad72fe39fa8c91eaaf12aadb21e0c3661fe26d5</hash>
        <hash alg="SHA-256">eeeae917917144a68a741d4c0dff66aa5c5c5fd85593ff217bced3fc8ca783b8</hash>
        <hash alg="SHA-512">51c72f9aca7726f3c387095e66be85a6df97c74b00a25434b89188c1b8eab6e2b55accf7b9bd412430d22bd09324dec076e300b3d1fa39fccad471f0f2a3da16</hash>
        <hash alg="SHA-384">dd4e99b3314bd3c1a1ee26296615d9e44dadf7a1f8a7bbba44fb95121803d331e36d4cca4260e7609af78a47ba3e4073</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-collections/commons-collections@3.2.2?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/collections/</url></reference><reference type="build-system"><url>https://continuum-ci.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/COLLECTIONS</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/commons/proper/collections/trunk</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.mortbay.jetty/jetty@6.1.26?type=jar">
      <publisher>Mort Bay Consulting</publisher>
      <group>org.mortbay.jetty</group>
      <name>jetty</name>
      <version>6.1.26</version>
      <description>Jetty server core</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">12b65438bbaf225102d0396c21236052</hash>
        <hash alg="SHA-1">2f546e289fddd5b1fab1d4199fbb6e9ef43ee4b0</hash>
        <hash alg="SHA-256">21091d3a9c1349f640fdc421504a604c040ed89087ecc12afbe32353326ed4e5</hash>
        <hash alg="SHA-512">4646b044a05424f1df113c5fddfc066c1fef47933b631efe63701170acc197e531330e583ae0e5000cf8ad38151c91a9e61b2864876de05cfd3ba710481ed484</hash>
        <hash alg="SHA-384">670285f35903def2e22a3e2430f36d47599e22d8cd96f8aad6c67704076d3648f1b4b790ef13cb0a5bbfbb3cc02e0d3e</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
        <license>
          <id>EPL-1.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.mortbay.jetty/jetty@6.1.26?type=jar</purl>
      <externalReferences><reference type="website"><url>http://www.eclipse.org/jetty/jetty-parent/project/modules/jetty</url></reference><reference type="distribution"><url>http://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://jira.codehaus.org/browse/JETTY</url></reference><reference type="mailing-list"><url>http://dev.eclipse.org/mhonarc/lists/jetty-dev/maillist.html</url></reference><reference type="vcs"><url>http://fisheye.codehaus.org/viewrep/jetty/modules/jetty/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.mortbay.jetty/jetty-util@6.1.26?type=jar">
      <publisher>Mort Bay Consulting</publisher>
      <group>org.mortbay.jetty</group>
      <name>jetty-util</name>
      <version>6.1.26</version>
      <description>Utility classes for Jetty</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">450fedce4f7f8ad3761577b10a664200</hash>
        <hash alg="SHA-1">e5642fe0399814e1687d55a3862aa5a3417226a9</hash>
        <hash alg="SHA-256">9b974ce2b99f48254b76126337dc45b21226f383aaed616f59780adaf167c047</hash>
        <hash alg="SHA-512">695bfbfc0ecd8f410fea7c44451f1765a610ccfe427d91e2cf900cab18068e89ad98b75dc37d0fec9b83255e698fb7e26d7089c91dd1d85085e99ca7a9af0ec5</hash>
        <hash alg="SHA-384">056ad2d0482a77607ed1b135a745ad443eb2a66b0b0bd9786f648a620e40712cdca6dbf3db503bb7e9974269a48f0113</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
        <license>
          <id>EPL-1.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.mortbay.jetty/jetty-util@6.1.26?type=jar</purl>
      <externalReferences><reference type="website"><url>http://www.eclipse.org/jetty/jetty-parent/project/jetty-util</url></reference><reference type="distribution"><url>http://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://jira.codehaus.org/browse/JETTY</url></reference><reference type="mailing-list"><url>http://dev.eclipse.org/mhonarc/lists/jetty-dev/maillist.html</url></reference><reference type="vcs"><url>http://fisheye.codehaus.org/viewrep/jetty/jetty-util/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.mortbay.jetty/jetty-sslengine@6.1.26?type=jar">
      <publisher>Mort Bay Consulting</publisher>
      <group>org.mortbay.jetty</group>
      <name>jetty-sslengine</name>
      <version>6.1.26</version>
      <description>Parent pom for Jetty at Codehaus</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">d3bea45d6939e57fccf450a914fe4e1a</hash>
        <hash alg="SHA-1">60367999cee49a3b09fa86bdcb52310b6c896014</hash>
        <hash alg="SHA-256">9c5f6bb168ba01b95d250b57f061c8094e1ce9c89ae4e773492bacb17192ea87</hash>
        <hash alg="SHA-512">799b56fabb7f1dd299efe33be881a1253fd38f24764d2c478f08d00771f8176b3fe0839b71da7e67d5d6e32bfe10378284dd8701ec57233eb354cca88639ce44</hash>
        <hash alg="SHA-384">9c2a3838948b3d10eb6f9b72d2dd0b58ab52b3c392d4f0bdf76397c643112bc7a6a35571167d3b6de05df90e9120a6d7</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
          <url>https://www.apache.org/licenses/LICENSE-2.0</url>
        </license>
      </licenses>
      <purl>pkg:maven/org.mortbay.jetty/jetty-sslengine@6.1.26?type=jar</purl>
      <externalReferences><reference type="website"><url>http://jetty.mortbay.org</url></reference><reference type="distribution"><url>http://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://jira.codehaus.org/browse/JETTY</url></reference><reference type="mailing-list"><url>http://dev.eclipse.org/mhonarc/lists/jetty-dev/maillist.html</url></reference><reference type="vcs"><url>http://fisheye.codehaus.org/viewrep/jetty/jetty-sslengine/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.sun.jersey/jersey-json@1.9?type=jar">
      <publisher>Oracle Corporation</publisher>
      <group>com.sun.jersey</group>
      <name>jersey-json</name>
      <version>1.9</version>
      <description>Jersey is the open source (under dual CDDL+GPL license) JAX-RS (JSR 311)
        production quality Reference Implementation for building
        RESTful Web services.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">17ca6b0d49ed8db159b7827b6defa6b6</hash>
        <hash alg="SHA-1">1aa73e1896bcc7013fed247157d7f676226eb432</hash>
        <hash alg="SHA-256">cc5d535f43cef0d1c467240961aae35801a837ab010319e741b2c7a6658f3fd6</hash>
        <hash alg="SHA-512">266e6ed47218316f4dd3bb9122d291d077fb5af0f0b649340c9e3724e0b8bc02e6410207a154c8dffac891ad817a241caaf80ff66604200993dbbe5ca9a79b9a</hash>
        <hash alg="SHA-384">6f05b0ce1da3122567a9c468e3720d54eade2860c61c0793928ec83850ffc1129093e5d6ce97e5804d2b8246045f5b71</hash>
      </hashes>
      <licenses>
        <license>
          <id>CDDL-1.1</id>
        </license>
        <license>
          <id>GPL-2.0-with-classpath-exception</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.sun.jersey/jersey-json@1.9?type=jar</purl>
      <externalReferences><reference type="website"><url>https://jersey.java.net/jersey-json/</url></reference><reference type="build-system"><url>http://hudson.glassfish.org/job/Jersey-trunk-multiplatform/</url></reference><reference type="distribution"><url>https://maven.java.net/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://java.net/jira/browse/JERSEY/</url></reference><reference type="mailing-list"><url>http://java.net/projects/jersey/lists/users/archive</url></reference><reference type="vcs"><url>http://java.net/projects/jersey/sources/svn/show/trunk/jersey/jersey-json</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.codehaus.jettison/jettison@1.5.4?type=jar">
      <group>org.codehaus.jettison</group>
      <name>jettison</name>
      <version>1.5.4</version>
      <description>A StAX implementation for JSON.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">f6c3eeb572f5830303059fec2812821f</hash>
        <hash alg="SHA-1">174ca56c411b05aec323d8f53e66709c0d28b337</hash>
        <hash alg="SHA-256">fc3a68a7c17688ee50817340fef265d8d3f6c192c92bbee00d17f18a6d3dfeda</hash>
        <hash alg="SHA-512">afde3c34e3229c1999dc847b5e2bbd243c48feff9659ba043ccc677d34d9d8d62f4e02c3cfec8d4641b7a3ea7f462b0993fcba2319096a432526c5ca17fab49a</hash>
        <hash alg="SHA-384">1a8b00e147bf8fc12b8ec8176bdccad3fa9703462a915be5b6700334fd6f28a6aaed4ed863199b7257032e005a819f5a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.codehaus.jettison/jettison@1.5.4?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/jettison-json/jettison</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/jettison-json/jettison</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.sun.xml.bind/jaxb-impl@2.2.3-1?type=jar">
      <publisher>Oracle Corporation</publisher>
      <group>com.sun.xml.bind</group>
      <name>jaxb-impl</name>
      <version>2.2.3-1</version>
      <description>JAXB (JSR 222) reference implementation</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">1b689e7f87caf2615c0f6a47831d0342</hash>
        <hash alg="SHA-1">56baae106392040a45a06d4a41099173425da1e6</hash>
        <hash alg="SHA-256">fa3e1499b192c310312bf02881274b68394aaea4c9563e6c554cc406ae644ff8</hash>
        <hash alg="SHA-512">6f08a9d34bd66ceb0e4cc6cdd782423a8a7ab775808e90b6c872977c653cd3e2c539a78554a5c8ef9402092ac4fdceac56b77e76b3c2d800d5ee97db0301a683</hash>
        <hash alg="SHA-384">223367a9c31cfbd1a407718ad30b176e32874cb6cd6a63e1c4df78ac74ccf027179f0e98639dc595a4ae408b40db99e4</hash>
      </hashes>
      <licenses>
        <license>
          <id>CDDL-1.1</id>
        </license>
        <license>
          <id>GPL-2.0-with-classpath-exception</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.sun.xml.bind/jaxb-impl@2.2.3-1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://jaxb.java.net/</url></reference><reference type="distribution"><url>svn:https://svn.java.net/svn/maven2-repository~svn/trunk/repository</url></reference><reference type="vcs"><url>https://svn.java.net/svn/jaxb~version2/jaxb-ri</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/javax.xml.bind/jaxb-api@2.3.1?type=jar">
      <publisher>Oracle Corporation</publisher>
      <group>javax.xml.bind</group>
      <name>jaxb-api</name>
      <version>2.3.1</version>
      <description>JAXB (JSR 222) API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">bcf270d320f645ad19f5edb60091e87f</hash>
        <hash alg="SHA-1">8531ad5ac454cc2deb9d4d32c40c4d7451939b5d</hash>
        <hash alg="SHA-256">88b955a0df57880a26a74708bc34f74dcaf8ebf4e78843a28b50eae945732b06</hash>
        <hash alg="SHA-512">93a47b245ab830d664a48c9d14e86198a38809ce94f72ca66b3d68746ae1d7b902f6fef2d1ac1a92c01701549ae80a07db69bd822ffd831a95d8dbffad435790</hash>
        <hash alg="SHA-384">1eb2d7f307bda8cbf6a4ab5b2b97d830d33ca48ad94eb4bb1cbce860c54fca96285dbcb1ce9b164dbf37d4475f9a198f</hash>
      </hashes>
      <licenses>
        <license>
          <id>CDDL-1.1</id>
        </license>
        <license>
          <id>GPL-2.0-with-classpath-exception</id>
        </license>
      </licenses>
      <purl>pkg:maven/javax.xml.bind/jaxb-api@2.3.1?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/javaee/jaxb-spec/jaxb-api</url></reference><reference type="distribution"><url>https://maven.java.net/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/javaee/jaxb-spec/issues</url></reference><reference type="vcs"><url>https://github.com/javaee/jaxb-spec.git/jaxb-api</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.sun.jersey/jersey-server@1.9?type=jar">
      <publisher>Oracle Corporation</publisher>
      <group>com.sun.jersey</group>
      <name>jersey-server</name>
      <version>1.9</version>
      <description>Jersey is the open source (under dual CDDL+GPL license) JAX-RS (JSR 311)
        production quality Reference Implementation for building
        RESTful Web services.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">0c98f6cca5df8197b310a0d1d89bb34a</hash>
        <hash alg="SHA-1">3a6ea7cc5e15c824953f9f3ece2201b634d90d18</hash>
        <hash alg="SHA-256">3ded91b198077561bd51f6c0442c9cd70b754d8b31b61afaf448bda9d01848f0</hash>
        <hash alg="SHA-512">9354a94b5044519e6f8f08c89c5d7c57e1041555bc333f401dc18ea51c21c0db03838a55bdb43bbbc0e37a8c3f1f0bcaf4164c5284a5f096af61b549dfe3eec8</hash>
        <hash alg="SHA-384">231ac671ba61b142d940a3d88919650c701c9cf0cacf91d2f29c450349f486d8e0eab76dbdc73baa98ccda3acaa77101</hash>
      </hashes>
      <licenses>
        <license>
          <id>CDDL-1.1</id>
        </license>
        <license>
          <id>GPL-2.0-with-classpath-exception</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.sun.jersey/jersey-server@1.9?type=jar</purl>
      <externalReferences><reference type="website"><url>https://jersey.java.net/jersey-server/</url></reference><reference type="build-system"><url>http://hudson.glassfish.org/job/Jersey-trunk-multiplatform/</url></reference><reference type="distribution"><url>https://maven.java.net/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://java.net/jira/browse/JERSEY/</url></reference><reference type="mailing-list"><url>http://java.net/projects/jersey/lists/users/archive</url></reference><reference type="vcs"><url>http://java.net/projects/jersey/sources/svn/show/trunk/jersey/jersey-server</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/asm/asm@3.1?type=jar">
      <publisher>ObjectWeb</publisher>
      <group>asm</group>
      <name>asm</name>
      <version>3.1</version>
      <description>A very small and fast Java bytecode manipulation framework</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">b9b8d2d556f9458aac8c463fd511f86d</hash>
        <hash alg="SHA-1">c157def142714c544bdea2e6144645702adf7097</hash>
        <hash alg="SHA-256">333ff5369043975b7e031b8b27206937441854738e038c1f47f98d072a20437a</hash>
        <hash alg="SHA-512">074612f145765d33c449887a29dd0791205881ba42d613e52b360ca53bd47c5f9835049de8fc6a384041de2e73bd271b6177c2225e2f72853a88359f6c10b14d</hash>
        <hash alg="SHA-384">c4ae90a52b7a23cbca12a01777e140e3f3f7943634611c23166a60d69a90f1edfeac8b210979f055fab6d1526d287ba4</hash>
      </hashes>
      <licenses/>
      <purl>pkg:maven/asm/asm@3.1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://asm.objectweb.org/asm/</url></reference><reference type="distribution"><url>http://mojo.codehaus.org/my-project</url></reference><reference type="issue-tracker"><url>http://forge.objectweb.org/tracker/?group_id=23</url></reference><reference type="mailing-list"><url>http://www.ow2.org/wws/arc/asm</url></reference><reference type="vcs"><url>http://cvs.forge.objectweb.org/cgi-bin/viewcvs.cgi/asm/asm/asm/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-logging</group>
      <name>commons-logging</name>
      <version>1.2</version>
      <description>Apache Commons Logging is a thin adapter allowing configurable bridging to other,
    well known logging systems.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">040b4b4d8eac886f6b4a2a3bd2f31b00</hash>
        <hash alg="SHA-1">4bfc12adfe4842bf07b657f0369c4cb522955686</hash>
        <hash alg="SHA-256">daddea1ea0be0f56978ab3006b8ac92834afeefbd9b7e4e6316fca57df0fa636</hash>
        <hash alg="SHA-512">ed00dbfabd9ae00efa26dd400983601d076fe36408b7d6520084b447e5d1fa527ce65bd6afdcb58506c3a808323d28e88f26cb99c6f5db9ff64f6525ecdfa557</hash>
        <hash alg="SHA-384">ac20720d7156131478205f1b454395abf84cfc8da2f163301af32f63bd3c4764bd26cb54ed53800f33193ae591f3ce9c</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-logging/commons-logging@1.2?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/proper/commons-logging/</url></reference><reference type="build-system"><url>https://continuum-ci.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/LOGGING</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>http://svn.apache.org/repos/asf/commons/proper/logging/trunk</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/net.java.dev.jets3t/jets3t@0.9.0?type=jar">
      <group>net.java.dev.jets3t</group>
      <name>jets3t</name>
      <version>0.9.0</version>
      <description>JetS3t is a free, open-source Java toolkit and application suite for Amazon Simple Storage Service (Amazon S3), Amazon CloudFront content delivery network, and Google Storage for Developers.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">22559a7c686b19534707228decc3c6d7</hash>
        <hash alg="SHA-1">792bc96ee7e57b89f472aa0cb5a31015b9f59c96</hash>
        <hash alg="SHA-256">e89893fc754b252af717d7d14accda946f7dfcfc1e293fd3e04725163d661bd7</hash>
        <hash alg="SHA-512">79fcaa8be8980b2fc9d8463854130eb7a7d6110fa795e73ac01d9abad23ec1588178e9d557d84f05b8e0b4ac909ae65eed1ff92e35c889208af003e195ff23c4</hash>
        <hash alg="SHA-384">c6e4516169d4d1c2241c3df7dd57e159cbe603cd746a125fff201cd097a351d82d6ca30e93aeee19a73bca0a009e94e0</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/net.java.dev.jets3t/jets3t@0.9.0?type=jar</purl>
      <externalReferences><reference type="website"><url>http://www.jets3t.org</url></reference><reference type="vcs"><url>http://bitbucket.org/jmurty/jets3t/src</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.jamesmurty.utils/java-xmlbuilder@0.4?type=jar">
      <group>com.jamesmurty.utils</group>
      <name>java-xmlbuilder</name>
      <version>0.4</version>
      <description>XML Builder is a utility that creates simple XML documents using relatively sparse Java code</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">0fa474213a6a0282cd9264f6e0dd3658</hash>
        <hash alg="SHA-1">ac5962e48cdee3a0a6e1f8e00fcb594747ac5aaf</hash>
        <hash alg="SHA-256">681e53c4ffd59fa12068803b259e3a83d43f07a47c112e748a187dee179eb31f</hash>
        <hash alg="SHA-512">4cbbf37807c05f714f554d0b340ebe78007c619a233ad243825e37e89403f550bd272e19733ad94bdfc48707cf8b5dd20d3e8552da9d40faa4cf549fdf0cddf5</hash>
        <hash alg="SHA-384">a9760f16e6bbe7155184e115f641a30341d6021a9f89e63c1d920403d1285059f10246df23a91e2749bf3cda3727a335</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.jamesmurty.utils/java-xmlbuilder@0.4?type=jar</purl>
      <externalReferences><reference type="website"><url>http://code.google.com/p/java-xmlbuilder/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>http://java-xmlbuilder.googlecode.com/svn/tags/java-xmlbuilder-0.4</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-lang/commons-lang@2.6?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-lang</group>
      <name>commons-lang</name>
      <version>2.6</version>
      <description>Commons Lang, a package of Java utility classes for the
        classes that are in java.lang's hierarchy, or are considered to be so
        standard as to justify existence in java.lang.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">4d5c1693079575b362edf41500630bbd</hash>
        <hash alg="SHA-1">0ce1edb914c94ebc388f086c6827e8bdeec71ac2</hash>
        <hash alg="SHA-256">50f11b09f877c294d56f24463f47d28f929cf5044f648661c0f0cfbae9a2f49c</hash>
        <hash alg="SHA-512">4a5a3dbe4941c645e2cca068cca5c1882cfe988b02e7cd981d1e51784900767d1deab0e0e0566f559c9fcabb4a180e436d5bb948902d4f4106f37360466afb42</hash>
        <hash alg="SHA-384">9725bc421adc1dbcd6f937eca0f3075d186a2b353ece4cef66b0fe81bb8d3f7d7641c43e86d657ef526c719f0c2a8c90</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-lang/commons-lang@2.6?type=jar</purl>
      <externalReferences><reference type="website"><url>http://commons.apache.org/lang/</url></reference><reference type="build-system"><url>http://vmbuild.apache.org/continuum/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/LANG</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/commons/proper/lang/branches/LANG_2_X</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-configuration/commons-configuration@1.6?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-configuration</group>
      <name>commons-configuration</name>
      <version>1.6</version>
      <description>Tools to assist in the reading of configuration/preferences files in
    various formats</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">b099d9f9b4b99071cc52b259308df69a</hash>
        <hash alg="SHA-1">32cadde23955d7681b0d94a2715846d20b425235</hash>
        <hash alg="SHA-256">46b71b9656154f6a16ea4b1dc84026b52a9305f8eff046a2b4655fa1738e5eee</hash>
        <hash alg="SHA-512">e5d184175a93d3008300ae5230e43776d7fd13f3d5958bc1b8e32d84ddcdc2c51a95af2ff0e4636dece1cc398b49ac43ca47db841c9162fd38afc17b07b381a0</hash>
        <hash alg="SHA-384">3ea0ab67fffa9741800bd4a0944084860bbe4ed6652edf1135cc5cd2ed2bac684dc75d71f2b4620468351c0dbc31042a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-configuration/commons-configuration@1.6?type=jar</purl>
      <externalReferences><reference type="distribution"><url>www.apache.org//www/www.apache.org/dist/java-repository/</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/CONFIGURATION</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/commons-dev/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/commons-digester/commons-digester@1.8?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>commons-digester</group>
      <name>commons-digester</name>
      <version>1.8</version>
      <description>The Digester package lets you configure an XML->Java object mapping module
    which triggers certain actions called rules whenever a particular 
    pattern of nested XML elements is recognized.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">cf89c593f0378e9509a06fce7030aeba</hash>
        <hash alg="SHA-1">dc6a73fdbd1fa3f0944e8497c6c872fa21dca37e</hash>
        <hash alg="SHA-256">05662373044f3dff112567b7bb5dfa1174e91e074c0c727b4412788013f49d56</hash>
        <hash alg="SHA-512">138aaadde6b134eeb39574fde80f8eed1dee4a7049fccdd8c462c0a0dfab5419bafd259e77b99d85094b4e7c864673f07249c39c3b18aff87ef39b3663f537a2</hash>
        <hash alg="SHA-384">9dcfb1988fb8de4fb7482ce419bd99ea780795403228cc51454e9dd7fec3cb3af889178fbc6b906ec6f991aa77124cb5</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/commons-digester/commons-digester@1.8?type=jar</purl>
      <externalReferences><reference type="website"><url>http://jakarta.apache.org/commons/digester/</url></reference><reference type="distribution"><url>file:///www/jakarta.apache.org/builds/jakarta-commons/digester/</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/jakarta-commons-dev/</url></reference><reference type="vcs"><url>http://svn.apache.org/repos/asf/jakarta/commons/proper/digester/trunk</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.avro/avro@1.11.3?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.avro</group>
      <name>avro</name>
      <version>1.11.3</version>
      <description>Avro core components</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">0ce474e395d0aad56c11293fd68ccb52</hash>
        <hash alg="SHA-1">02b463409b373bff9ece09f54a43d42da5cea55a</hash>
        <hash alg="SHA-256">4554aa8f8175f999fc56e35d8d294d634480992ce02406a52c650f521997e436</hash>
        <hash alg="SHA-512">06829cf06127621042d024668c1c4c7b68b19e9a54e51495c03ead0ce600291e675da6f081307b8a949be45a6f6e6fe55ee1af1a69990ae47dc300277ab3493d</hash>
        <hash alg="SHA-384">991cab21cebff4d891c2d8f9c1c09761f06bc438f71ca811b482a35536e379da4e84d84645a9527330ff725dc2ff1da8</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
          <url>https://www.apache.org/licenses/LICENSE-2.0</url>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.avro/avro@1.11.3?type=jar</purl>
      <externalReferences><reference type="website"><url>https://avro.apache.org</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/AVRO</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/avro-dev/</url></reference><reference type="vcs"><url>scm:git:https://github.com/apache/avro/avro-parent/avro</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.fasterxml.jackson.core/jackson-core@2.17.0?type=jar">
      <publisher>FasterXML</publisher>
      <group>com.fasterxml.jackson.core</group>
      <name>jackson-core</name>
      <version>2.17.0</version>
      <description>Core Jackson processing abstractions (aka Streaming API), implementation for JSON</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">3e4b82b6e29693927dd289a344c35e46</hash>
        <hash alg="SHA-1">a6e5058ef9720623c517252d17162f845306ff3a</hash>
        <hash alg="SHA-256">55be130f6a68038088a261856c4e383ce79957a0fc1a29ecb213a9efd6ef4389</hash>
        <hash alg="SHA-512">85611fb7687450eb6078855c46d94dabf1cebcf179e23455cd1069aaded3b169112ec5d3d8d8510a7076166dc146e2f684f8527c5ef5b9ed99a7ec91f0825523</hash>
        <hash alg="SHA-384">12bbfe5721ecd374a77ede24cca8a39f1415fd50dd95938c5e3365c703a02b5f6c0e7b10c7b44b7c9c5a874dd0b971c7</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.fasterxml.jackson.core/jackson-core@2.17.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/FasterXML/jackson-core</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/FasterXML/jackson-core/issues</url></reference><reference type="vcs"><url>https://github.com/FasterXML/jackson-core</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.fasterxml.jackson.core/jackson-databind@2.17.0?type=jar">
      <publisher>FasterXML</publisher>
      <group>com.fasterxml.jackson.core</group>
      <name>jackson-databind</name>
      <version>2.17.0</version>
      <description>General data-binding functionality for Jackson: works on core streaming API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">09dd83868b44c6a3dc48911f4b3bbbc1</hash>
        <hash alg="SHA-1">7173e9e1d4bc6d7ca03bc4eeedcd548b8b580b34</hash>
        <hash alg="SHA-256">d0ed5b54cb1b0bbb0828e24ce752a43a006dc188b34e3a4ae3238acc7b637418</hash>
        <hash alg="SHA-512">c6b06d4b20941d9e32b462552031e6c98378e5edce57693e55adcc73cf7d5088af5b3a666a59e94a7f0b57066ac694863919f398f28ee0d7ceb362c8c05f7491</hash>
        <hash alg="SHA-384">02875865ef42573114755ab7147d64f8e5a791f2a2b8debe51dda22886370ef34af8c159d8efa8b90735f33f90089187</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.fasterxml.jackson.core/jackson-databind@2.17.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/FasterXML/jackson</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/FasterXML/jackson-databind/issues</url></reference><reference type="vcs"><url>https://github.com/FasterXML/jackson-databind</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.fasterxml.jackson.core/jackson-annotations@2.17.0?type=jar">
      <publisher>FasterXML</publisher>
      <group>com.fasterxml.jackson.core</group>
      <name>jackson-annotations</name>
      <version>2.17.0</version>
      <description>Core annotations used for value types, used by Jackson data binding package.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">7529e022796db72bc17288e950c24b3f</hash>
        <hash alg="SHA-1">880a742337010da4c851f843d8cac150e22dff9f</hash>
        <hash alg="SHA-256">8562569a001d46e84ea23802257e33c8f68b24eb47c1e0efd133a0372c512959</hash>
        <hash alg="SHA-512">20104840da168653b27ffcbef6600d29d04b7f315934531f6521b30cfc0438893ac5e3b2476ba03a6a47f3aed8882cc7d5a57b66163ad19aac217a258826e51b</hash>
        <hash alg="SHA-384">c597370368f411e8f63500537a94f503f44f3bbd653c77d39871eb65745ee2a3d8d83bb8c303790c1e26f30e76219000</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.fasterxml.jackson.core/jackson-annotations@2.17.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/FasterXML/jackson</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/FasterXML/jackson-annotations/issues</url></reference><reference type="vcs"><url>https://github.com/FasterXML/jackson-annotations</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.google.code.gson/gson@2.2.4?type=jar">
      <publisher>Google, Inc.</publisher>
      <group>com.google.code.gson</group>
      <name>gson</name>
      <version>2.2.4</version>
      <description>Google Gson library</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">2f54fc24807a4cad7297012dd8cebf3d</hash>
        <hash alg="SHA-1">a60a5e993c98c864010053cb901b7eab25306568</hash>
        <hash alg="SHA-256">c0328cd07ca9e363a5acd00c1cf4afe8cf554bd6d373834981ba05cebec687fb</hash>
        <hash alg="SHA-512">d7aa9214cefb99b2f39bab6bf5718dafcb43742f8a881e5fb6cbc3a757491c0082a536ed1fef6c7168412b6e5bdec28e68a40b4d4d0b57b63a7bbc9a55f820cd</hash>
        <hash alg="SHA-384">2c5d7ed5310c1a1b45b7b46479361debd5e2e49737f167bff9c11dd989fa38b973ccd7b4655dbb5e34b0ff4ff1a8d755</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.google.code.gson/gson@2.2.4?type=jar</purl>
      <externalReferences><reference type="website"><url>http://code.google.com/p/google-gson/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://code.google.com/p/google-gson/issues/list</url></reference><reference type="vcs"><url>http://google-gson.googlecode.com/svn/trunk/gson</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.hadoop/hadoop-auth@2.10.2?type=jar">
      <publisher>Apache Software Foundation</publisher>
      <group>org.apache.hadoop</group>
      <name>hadoop-auth</name>
      <version>2.10.2</version>
      <description>Apache Hadoop Auth - Java HTTP SPNEGO</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">befc7be7bc7aa4dc9b6324626913cda8</hash>
        <hash alg="SHA-1">29ab697d6b925ed3a52b782554d59e3312c94572</hash>
        <hash alg="SHA-256">0acffe01db6dbbdce9e6d46aa758f956af60cc8ef0fa405ca7f5b8747a53687b</hash>
        <hash alg="SHA-512">b3aac5229209dc11ef20c1125c186fc4ae77e85679725c6a8364538e6026c35439f85ae37579130c6089ab899ba1da180f65a7cfdd0a9c3120fe1c7b0f2157cf</hash>
        <hash alg="SHA-384">25e6927a991abef2a6c6b75859c6b23a7cbdc90dd9fec7b18ebc0a0d594911a27b2b35ddd5f618b5cc0dca2fd1807d34</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.hadoop/hadoop-auth@2.10.2?type=jar</purl>
      <externalReferences><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.nimbusds/nimbus-jose-jwt@7.9?type=jar">
      <publisher>Connect2id Ltd.</publisher>
      <group>com.nimbusds</group>
      <name>nimbus-jose-jwt</name>
      <version>7.9</version>
      <description>Java library for Javascript Object Signing and Encryption (JOSE) and
        JSON Web Tokens (JWT)</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">cf76d6f5280e5bb138b23076719f7d80</hash>
        <hash alg="SHA-1">b608cd5e306d67bb58fe5bd687387aa0671687a6</hash>
        <hash alg="SHA-256">b4f58453e180a981eb744a19b4d56afb12f10c3dd35e7531cc58ee6cbf5bf286</hash>
        <hash alg="SHA-512">2126e64143a0c30b42051bfd710fa47e76208bde44498a25de734401870c8b55b8c992067b865c93092adefccd09ba4650918b8ab250dcf9a8f3176c481f13a0</hash>
        <hash alg="SHA-384">3ce7bb4f4bc9c4ec4a73f0e41c976cd739e441a60f669f29df1402c69837cd1db1e705d5c6b1af4151172f666a99c2fc</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.nimbusds/nimbus-jose-jwt@7.9?type=jar</purl>
      <externalReferences><reference type="website"><url>https://bitbucket.org/connect2id/nimbus-jose-jwt</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://bitbucket.org/connect2id/nimbus-jose-jwt</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.github.stephenc.jcip/jcip-annotations@1.0-1?type=jar">
      <group>com.github.stephenc.jcip</group>
      <name>jcip-annotations</name>
      <version>1.0-1</version>
      <description>A clean room implementation of the JCIP Annotations based entirely on the specification provided by the javadocs.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">d62dbfa8789378457ada685e2f614846</hash>
        <hash alg="SHA-1">ef31541dd28ae2cefdd17c7ebf352d93e9058c63</hash>
        <hash alg="SHA-256">4fccff8382aafc589962c4edb262f6aa595e34f1e11e61057d1c6a96e8fc7323</hash>
        <hash alg="SHA-512">02fcd16a30d0e68b3e9e4899731181c6abb7117baa15c096ca940e01dde08bb86101cbeae552c497f8a90d923b5fa2f2b6f3850baf8dc94dbd399887924a9069</hash>
        <hash alg="SHA-384">88b0ecfde391a3d8468349c70e1539569768dfac3233dfe0b4660904df04e6c6bf26ed9c0784b9b22c122c3448e2a6b6</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.github.stephenc.jcip/jcip-annotations@1.0-1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://stephenc.github.com/jcip-annotations</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>http://github.com/stephenc/jcip-annotations/issues</url></reference><reference type="vcs"><url>http://github.com/stephenc/jcip-annotations/tree/master/</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.directory.server/apacheds-kerberos-codec@2.0.0-M15?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.directory.server</group>
      <name>apacheds-kerberos-codec</name>
      <version>2.0.0-M15</version>
      <description>The Kerberos protocol encoder/decoder module</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">3118e22eac44e150c383df1d417772f4</hash>
        <hash alg="SHA-1">1c16e4e477183641c5f0dd5cdecd27ec331bacb5</hash>
        <hash alg="SHA-256">4996f5b72497e94dd86d64a370158c4fb0049eea9b17ff8b27a4671d6c136ded</hash>
        <hash alg="SHA-512">9e2ecd4f5d08af238ab32852fdf86f8165701b745ad93f3bc96eb3c0aff95a083773039adc3722123e8504971cd379929f9c4ad6d5c1ca3d112fa3d04e4a83f0</hash>
        <hash alg="SHA-384">c2e02333581bf5fef1a73c681afbefa13a03451e91bb36adeca90380679ecfa5a687e42073b9a7e6d60d71060d7e586d</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.directory.server/apacheds-kerberos-codec@2.0.0-M15?type=jar</purl>
      <externalReferences><reference type="website"><url>http://directory.apache.org/apacheds/1.5/apacheds-kerberos-codec</url></reference><reference type="build-system"><url>https://hudson.apache.org/hudson/view/A-F/view/Directory</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/DIRSERVER</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/directory-dev</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/directory/apacheds/tags/2.0.0-M15/apacheds-kerberos-codec</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.directory.server/apacheds-i18n@2.0.0-M15?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.directory.server</group>
      <name>apacheds-i18n</name>
      <version>2.0.0-M15</version>
      <description>Internationalization of errors and other messages</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">f5877c02fd56ade67713560e589c81b9</hash>
        <hash alg="SHA-1">71c61c84683152ec2a6a65f3f96fe534e304fa22</hash>
        <hash alg="SHA-256">bd3b7cece7fc6364cbce32b9edd0e9628a3e889c6a93cdeff1b5e2131e2a007c</hash>
        <hash alg="SHA-512">2ca2e5e475168e97c3e25d52dfd8fd342e5be2f1689842bed03db568538f8f9fd1cee28cde6e815c4706123716a266db6130ceaaac4eddbe9d597de7459d6632</hash>
        <hash alg="SHA-384">fda3e7e1e80becb69fe5997c75b8f89ecaa7004bfebc20e230dfb3580a3fd9c526757e775c35a53e5681da1c2a7edb3b</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.directory.server/apacheds-i18n@2.0.0-M15?type=jar</purl>
      <externalReferences><reference type="website"><url>http://directory.apache.org/apacheds/1.5/apacheds-i18n</url></reference><reference type="build-system"><url>https://hudson.apache.org/hudson/view/A-F/view/Directory</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/DIRSERVER</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/directory-dev</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/directory/apacheds/tags/2.0.0-M15/apacheds-i18n</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.directory.api/api-asn1-api@1.0.0-M20?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.directory.api</group>
      <name>api-asn1-api</name>
      <version>1.0.0-M20</version>
      <description>ASN.1 API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">cf4561832dab76e9f37461342ec18d17</hash>
        <hash alg="SHA-1">5e6486ffa3125ba44dc410ead166e1d6ba8ac76d</hash>
        <hash alg="SHA-256">484aaf4b888b0eb699d95bea265c2d5b6ebec951d70e5c5f7691cd52dd4c8298</hash>
        <hash alg="SHA-512">10b84880f0b866addba5137d7afd1fc35b6c5e3577a3c8d9d122fc91201f21381173aca49881465ced33fc34680da55ea6bc47e2f8848fb5dd0d988bc0cace97</hash>
        <hash alg="SHA-384">f0924bad02e083567f2c08fc565484c55e2f9de59abaa7a1fcafa36bc65a451cde6d1b2e78386e04dafba46e85c5e3d2</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.directory.api/api-asn1-api@1.0.0-M20?type=jar</purl>
      <externalReferences><reference type="website"><url>http://directory.apache.org/api-parent/api-asn1-parent/api-asn1-api/</url></reference><reference type="build-system"><url>https://hudson.apache.org/hudson/view/A-F/view/Directory</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/DIRAPI</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/directory-dev</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/directory/shared/tags/1.0.0-M20/api-asn1-parent/api-asn1-api</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.directory.api/api-util@1.0.0-M20?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.directory.api</group>
      <name>api-util</name>
      <version>1.0.0-M20</version>
      <description>Utilities shared across this top level project</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">2c5a6722666882024becdd64301be492</hash>
        <hash alg="SHA-1">a871abf060b3cf83fc6dc4d7e3d151fce50ac3cb</hash>
        <hash alg="SHA-256">fd32fd047ccf143c58d093b58811aa81e539f8cf83c1187809f1a241a1df12d1</hash>
        <hash alg="SHA-512">b1c206a420d5dc455f22a1f22980573101b9c74abac044e1b02b2925eaf7c8b188481797d9261cfbe1e2800e684ce88ed8cd18db1ef5909929bec33539a4c5f3</hash>
        <hash alg="SHA-384">1fed2deab6fe2e3d357bdeee48046861e53582f2404c34bc2bc35992e771e27e8d28b8df65a994f700159e5ca5311316</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.directory.api/api-util@1.0.0-M20?type=jar</purl>
      <externalReferences><reference type="website"><url>http://directory.apache.org/api-parent/api-util/</url></reference><reference type="build-system"><url>https://hudson.apache.org/hudson/view/A-F/view/Directory</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/DIRAPI</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/directory-dev</url></reference><reference type="vcs"><url>http://svn.apache.org/viewvc/directory/shared/tags/1.0.0-M20/api-util</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.curator/curator-framework@4.2.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.curator</group>
      <name>curator-framework</name>
      <version>4.2.0</version>
      <description>High-level API that greatly simplifies using ZooKeeper.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">c2f367c709f86c66eff86f3f6bae75aa</hash>
        <hash alg="SHA-1">5b1cc87e17b8fe4219b057f6025662a693538861</hash>
        <hash alg="SHA-256">a2fee0f69261bd1cd2428880395b272d5b4652311b706df9f35278558b1c0573</hash>
        <hash alg="SHA-512">66be718c33e5392f74e299f8e4ce278bd20c7e9b1f4316a68882bd56d8fedb571d937b2bc6d0bacb013062aae35d92565713f1dac9dfd2313696c9e7c2c1cca8</hash>
        <hash alg="SHA-384">8e1023e1c9169d3767a32b5003e2385a5d31938577d26a020f2db3e02d54d692ec94fc4e1d6943b86f200dd20485a980</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.curator/curator-framework@4.2.0?type=jar</purl>
      <externalReferences><reference type="website"><url>http://curator.apache.org/curator-framework</url></reference><reference type="build-system"><url>https://builds.apache.org/job/Curator/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/CURATOR</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/curator-user/</url></reference><reference type="vcs"><url>https://github.com/apache/curator.git/curator-framework</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.jcraft/jsch@0.1.55?type=jar">
      <publisher>JCraft,Inc.</publisher>
      <group>com.jcraft</group>
      <name>jsch</name>
      <version>0.1.55</version>
      <description>JSch is a pure Java implementation of SSH2</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">c395ada0fc012d66f11bd30246f6c84d</hash>
        <hash alg="SHA-1">bbd40e5aa7aa3cfad5db34965456cee738a42a50</hash>
        <hash alg="SHA-256">d492b15a6d2ea3f1cc39c422c953c40c12289073dbe8360d98c0f6f9ec74fc44</hash>
        <hash alg="SHA-512">b6827d8de471682fd11744080663aea77612a03774e2ebcc3357c7c493d5df50d4ec9c8d52c4fcc928bdfdd75b62b40d3c60f184da8a7b8aba44c92afecee7a5</hash>
        <hash alg="SHA-384">6da3c9e2d72bd25991936dfe918ae7f235d03f386a8f797b65a154ae71b36292f873338ccbf5dd4fd3bc63619c806dbe</hash>
      </hashes>
      <licenses>
        <license>
          <id>BSD-3-Clause</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.jcraft/jsch@0.1.55?type=jar</purl>
      <externalReferences><reference type="website"><url>http://www.jcraft.com/jsch/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>http://git.jcraft.com/jsch.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.curator/curator-client@4.2.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.curator</group>
      <name>curator-client</name>
      <version>4.2.0</version>
      <description>Low-level API</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">f506448a6bbd0f85e738811f9db387e5</hash>
        <hash alg="SHA-1">d5d50930b8dd189f92c40258a6ba97675fea3e15</hash>
        <hash alg="SHA-256">67f238d8fb27f1aa271ffdf86aac2a16e0ef0898545fe3287adc6a29a05e604d</hash>
        <hash alg="SHA-512">a73eceaa1ad24cf65b7f990fc7db05c76b3dac9db1a13dc079058bf589a4d9e13d412e62efca4ad8174633e98a6fbc68aca6be103aaa31a19ea78242e688c77a</hash>
        <hash alg="SHA-384">fc989f54a81f7485f95f621ad927e36160d0b88ea49e156a8c53f94bc6c90479b11444017b8112ecbd361635e9ad3d1e</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.curator/curator-client@4.2.0?type=jar</purl>
      <externalReferences><reference type="website"><url>http://curator.apache.org/curator-client</url></reference><reference type="build-system"><url>https://builds.apache.org/job/Curator/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/CURATOR</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/curator-user/</url></reference><reference type="vcs"><url>https://github.com/apache/curator.git/curator-client</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.curator/curator-recipes@4.2.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.curator</group>
      <name>curator-recipes</name>
      <version>4.2.0</version>
      <description>All of the recipes listed on the ZooKeeper recipes doc (except two phase commit).</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">dfe3f5194166786f7a1736813dea9952</hash>
        <hash alg="SHA-1">7f775be5a7062c2477c51533b9d008f70411ba8e</hash>
        <hash alg="SHA-256">f2c0f6cd57042d6aba7b8222df422edc59b62e25fa89c1305e59dc6cfd9e59d3</hash>
        <hash alg="SHA-512">2d1ac37cf5629ee02a715ea34a95db4110504bd88390b6963a9ff6677afb8fccfb2f1d9ac076d9bbbef105570f5ca5a54463a37acfad110e6a4ac3deb83d5a55</hash>
        <hash alg="SHA-384">9f8a5d432fc873b65e7c4dca75e12b5aef543fe45b4bc84f0d79db60ae5a1943cb8150a4a0e8fa73e71720001263c594</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.curator/curator-recipes@4.2.0?type=jar</purl>
      <externalReferences><reference type="website"><url>http://curator.apache.org/curator-recipes</url></reference><reference type="build-system"><url>https://builds.apache.org/job/Curator/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/CURATOR</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/curator-user/</url></reference><reference type="vcs"><url>https://github.com/apache/curator.git/curator-recipes</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.htrace/htrace-core4@4.1.0-incubating?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.htrace</group>
      <name>htrace-core4</name>
      <version>4.1.0-incubating</version>
      <description>A distributed tracing framework.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">34f428e68910ea6555c79e733d433f1a</hash>
        <hash alg="SHA-1">12b3e2adda95e8c41d9d45d33db075137871d2e2</hash>
        <hash alg="SHA-256">5d45b7904857c3e4ad36b3bcc57be2d2c5f308c69b5f6a58bd86aa7d48a25ef6</hash>
        <hash alg="SHA-512">1d61c8cc145a6e43ef99221032abd2e6e519b00ec159bb8f1ecd94cc475dc35097639b35d476a746103dccd04f88c49c52c7d72a43f6c59501ef7cd02f637d85</hash>
        <hash alg="SHA-384">07a10701d902d6e1f606d977272f6fc9f946cc9f50a1b3efe30d132beb32a00b7b962344d6f76e217012fd61a6f9f996</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.htrace/htrace-core4@4.1.0-incubating?type=jar</purl>
      <externalReferences><reference type="website"><url>http://incubator.apache.org/projects/htrace.html</url></reference><reference type="build-system"><url>https://builds.apache.org/view/H-L/view/HTrace/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/HTRACE</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/incubator-htrace-dev/</url></reference><reference type="vcs"><url>https://git-wip-us.apache.org/repos/asf?p=incubator-htrace.git/htrace-core4</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.zookeeper/zookeeper@3.8.4?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.zookeeper</group>
      <name>zookeeper</name>
      <version>3.8.4</version>
      <description>ZooKeeper server</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">fdab82f33726e38a7f8e5069d9fb0fc9</hash>
        <hash alg="SHA-1">6638e37b887b5a279044afbdc9928e19f678eb2e</hash>
        <hash alg="SHA-256">2d77b152039e7f85dc5438a9304febff86a2f3e55c88976a8be309af39028e97</hash>
        <hash alg="SHA-512">d66260fc4b3a890adda33486507ca100a8721c33d3371cb9be672c84fa0703d905e12f5c29f213b44e88454a7dbaf2b2b2a57ef63164ab69dbaf3aef6a2d70c8</hash>
        <hash alg="SHA-384">b8889da29747bf6ca7617b2f3117786d4a9da6584a7de0345df01c4c976326452388e1c4f9cc6efaf9e1489eb2c5fa29</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.zookeeper/zookeeper@3.8.4?type=jar</purl>
      <externalReferences><reference type="website"><url>http://zookeeper.apache.org/zookeeper</url></reference><reference type="build-system"><url>https://ci-hadoop.apache.org/view/ZooKeeper/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/ZOOKEEPER</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/zookeeper-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf/zookeeper.git/zookeeper</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.zookeeper/zookeeper-jute@3.8.4?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.zookeeper</group>
      <name>zookeeper-jute</name>
      <version>3.8.4</version>
      <description>ZooKeeper jute</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">399b189d4540f15d78fb2663a1da3450</hash>
        <hash alg="SHA-1">de7b8a41bbe1ccdfc009de51fa6d160db3ca8025</hash>
        <hash alg="SHA-256">93e854b55d731e745bafec187e2e7bf3389fd2a88e2fc8d1a3c1b9110284b284</hash>
        <hash alg="SHA-512">498b031ca7cb4c3dbd39d69488d6295e12e25ef924f20f9699e39a9ed32a7a079a82c2c8c68eb6dafd6428b1edd10e79cd356200b50c52c93a6d129b56422106</hash>
        <hash alg="SHA-384">e98c36f58dc062fa8fddcf62d1a3e42fc947e49a979097b1b6bdc7a005d50e838927ff03a30d49763d35b55f33d93022</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.zookeeper/zookeeper-jute@3.8.4?type=jar</purl>
      <externalReferences><reference type="website"><url>http://zookeeper.apache.org/zookeeper-jute</url></reference><reference type="build-system"><url>https://ci-hadoop.apache.org/view/ZooKeeper/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>http://issues.apache.org/jira/browse/ZOOKEEPER</url></reference><reference type="mailing-list"><url>http://mail-archives.apache.org/mod_mbox/zookeeper-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf/zookeeper.git/zookeeper-jute</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-handler@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-handler</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">780fc1969abc323037049a5a7fd58c78</hash>
        <hash alg="SHA-1">d186a0be320e6a139c42d9b018596ef9d4a0b4ca</hash>
        <hash alg="SHA-256">55b2458011527d94abc868086afd039cd00cc3a547e7322569e0fb4f906d9d80</hash>
        <hash alg="SHA-512">f8b09fe3dda3519b4dd8408b7a5db48d33065be42b3446caf899f3fc83a7d20217daf6f836b6bfd6472e6cfbbf0dd51a477d9817da21a7b71fca16e3c6014d7e</hash>
        <hash alg="SHA-384">0cbf795d67bf4ed65e82a78c2e10df61363d7af56da8e4a08e5c02f1cb6489aed8598b48e82fd001e0f85410dd7dbf0b</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-handler@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-handler/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-handler</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-common</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">50fb16ab1857af783d10d1467f2bb9f2</hash>
        <hash alg="SHA-1">30617b39cc6f850ca3807459fe726fbcd63989f2</hash>
        <hash alg="SHA-256">8e3649fc6bab84a88ad47af82e38f9c36ab3725de478632c8a59e4bd74d16e08</hash>
        <hash alg="SHA-512">3a439d3698e43e47ff07a4507f1333e49f42993e7ecd349955fa6943d55a017715cccb33c5faa5404b2f8590377b15b0717acd5d4c151c801ef011eff0e2ed7a</hash>
        <hash alg="SHA-384">67ec301687623c6e3d1150596c8c8de7229e55fecbe2335779ced987995307a07739d048ccc59f1f600b57e3327e4778</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-common/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-common</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-resolver@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-resolver</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">988d8f9f9f6590bf22098fda11165367</hash>
        <hash alg="SHA-1">f3085568e45c2ca74118118f792d0d55968aeb13</hash>
        <hash alg="SHA-256">55279fdcf6c0e1819b6561cc70b0eb2de1b1cf1ef5635fc46334d7e06faa9dd9</hash>
        <hash alg="SHA-512">5a52108fc438401382ee03796a9b52ec4a764fb4287c0551382882c21ebc71e323ec2c6334111e0ba95bd15b25cc580a86c905aa83b98996201863f5585c97aa</hash>
        <hash alg="SHA-384">9a0924810438f9d9e4b2ee40036a221cd3de1f5a80f428faf85d11b8b2468f44b0e7691ee57e87e748eb8493b086e83e</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-resolver@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-resolver/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-resolver</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-buffer</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">355652dfc11e1f6a48a8337159d278a6</hash>
        <hash alg="SHA-1">2a9d06026ed251705e6ab52fa6ebe5f4f15aab7a</hash>
        <hash alg="SHA-256">348e3ff64c7129ca661bc09d4bdda09c824474cfd1f5918368bdc56f5ee17f79</hash>
        <hash alg="SHA-512">1109b94bd133d9769fc7fbe7cc8a733c19bc76020d89b7a5bf578b188125e051bebe2aad86e61555558f1d713ec5ec23882698f6e30842f9c4526ce9e81a79f8</hash>
        <hash alg="SHA-384">b778400fa93a4ab4e6926b691603fb31bd988234aee4d9ce06003ba632e11cba7b683ad1867355324a5de2ac1fd1a96a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-buffer/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-buffer</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-transport</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">2652cb32f2ea1ca005263f208c313049</hash>
        <hash alg="SHA-1">1fd80f714c85ca685a80f32e0a4e8fd3b866e310</hash>
        <hash alg="SHA-256">fef2ec66fe01aa89734db40f292676719da3985786512fc31a9efe1ca4d2e0ff</hash>
        <hash alg="SHA-512">b108bcdc5c1fcdc5c99cc28048be08500fa4bba0071885bfed4e66686304fe87b96a2e1e4e7af016275816e5db3c2a9e20fd33ffa0724c706e5bd8d60324aeb5</hash>
        <hash alg="SHA-384">b2d911fb6cf8c5e3add90d8b9d854d695f1aef29ec220b0b19fd1a16c8c8ccd3db4b22d7665472fa41972751c562158c</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-transport/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-transport</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-transport-native-unix-common</name>
      <version>4.1.108.Final</version>
      <description>Static library which contains common unix utilities.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">39165a3fe48e87fa93f3c8a668f42930</hash>
        <hash alg="SHA-1">0df31f1cd96df8b2882b1e0faf4409b0bd704541</hash>
        <hash alg="SHA-256">c3f324a6f526313e432235bf1a3a12e3db283e3b8669e02f26f569c421036bcb</hash>
        <hash alg="SHA-512">2a7feeb9a3f5e39196e95d622a5d85feb106ad80ebe8a9bc5cd72628b52cd1e77d1fff9ede327fbc85234388263a1d82ed45bc72b2734a577cf0c09ffd8f9f3e</hash>
        <hash alg="SHA-384">3e91c29b807bcd98c6c5390741ea3f0b45486a3e920735f411d27421f00140684c642740085c4bfce13385d5b09ea1f2</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-transport-native-unix-common/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-transport-native-unix-common</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-codec@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-codec</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">4ad00387b70092ed8c0a205e09daf5e9</hash>
        <hash alg="SHA-1">c2ef6018eecde345fcddb96e31f651df16dca4c2</hash>
        <hash alg="SHA-256">32c220dea93756fba28f9302481bc657738cc40d07440daa985a2ba21df226f1</hash>
        <hash alg="SHA-512">11a05d39e1a24b5119785a315d578c8d999f486a517d23d06dd593484e2e04930619e59c8a67f57da5c29fa6420e4f8b21c3b330235e9889c15b67e2268f5d6b</hash>
        <hash alg="SHA-384">5531c0d52f16ca1ccb09165aa374d011e43ece8f2665835528216888c5a069312f1742f7941896bf706f532f896b8a4a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-codec@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-codec/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-codec</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-transport-native-epoll@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-transport-native-epoll</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">f007a590946d1aa547c4058375881b85</hash>
        <hash alg="SHA-1">61d9f49fe8491923222b4145c939b994c5027395</hash>
        <hash alg="SHA-256">a825c5320c545360c91249ae8718c56b33135abc8943057479647b4e018dab31</hash>
        <hash alg="SHA-512">1ee187fc645ccf387f0589bd8769cadf0ce9483565f502c65caeaf9894c9b3a6568e38d62907f4f86d8766156f62d25d1766d826990a2d993c81b2c504c4e512</hash>
        <hash alg="SHA-384">74b3e978a6027b26308971e72b60bd1012287e2da22433955d9b35f2c4fc3375efee0ab7c37748230915e451a9f97894</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-transport-native-epoll@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-transport-native-epoll/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-transport-native-epoll</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/io.netty/netty-transport-classes-epoll@4.1.108.Final?type=jar">
      <publisher>The Netty Project</publisher>
      <group>io.netty</group>
      <name>netty-transport-classes-epoll</name>
      <version>4.1.108.Final</version>
      <description>Netty is an asynchronous event-driven network application framework for
    rapid development of maintainable high performance protocol servers and
    clients.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">90a7721c164b17eec6f3e20b89148764</hash>
        <hash alg="SHA-1">baf7b939ef71b25713cacbe47bef8caf80ce99c6</hash>
        <hash alg="SHA-256">5959715036c1dfc1b5a41a6b8518762f43b99c9f6f45e5c80543550cb4773c88</hash>
        <hash alg="SHA-512">2be5de86ee9ab31d91ac0ebc1c44470724f9d9df26d63171b5e6c051503f1c7c5f8cf523e3def8214f3337fc4c160b217328f8e821edcf23926934592c350512</hash>
        <hash alg="SHA-384">96ab43911155ded0050bcb155c7410610a4cfac36d22fc3ca768235f5b29027ad6993342564984a9a63a194f2d814ab8</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/io.netty/netty-transport-classes-epoll@4.1.108.Final?type=jar</purl>
      <externalReferences><reference type="website"><url>https://netty.io/netty-transport-classes-epoll/</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="vcs"><url>https://github.com/netty/netty/netty-transport-classes-epoll</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.commons/commons-compress@1.21?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.commons</group>
      <name>commons-compress</name>
      <version>1.21</version>
      <description>Apache Commons Compress software defines an API for working with
compression and archive formats.  These include: bzip2, gzip, pack200,
lzma, xz, Snappy, traditional Unix Compress, DEFLATE, DEFLATE64, LZ4,
Brotli, Zstandard and ar, cpio, jar, tar, zip, dump, 7z, arj.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">2a713d10331bc4e13459a3dc0463f16f</hash>
        <hash alg="SHA-1">4ec95b60d4e86b5c95a0e919cb172a0af98011ef</hash>
        <hash alg="SHA-256">6aecfd5459728a595601cfa07258d131972ffc39b492eb48bdd596577a2f244a</hash>
        <hash alg="SHA-512">c92d9a12547aab475e057955ad815fdfe92ff44c78383fa5af54b089f1bff5525126ef6aef93334f3bfc22e2fef4ad0d969f69384e978a83a55f011a53e7e471</hash>
        <hash alg="SHA-384">da56f95d420cd7278cee646f4cd0e7a5ee12b6a2894efaec12f0ff7b56c3d43e5db736fe1ed66ff91118b16f2d64ebef</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.commons/commons-compress@1.21?type=jar</purl>
      <externalReferences><reference type="website"><url>https://commons.apache.org/proper/commons-compress/</url></reference><reference type="build-system"><url>https://builds.apache.org/</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/COMPRESS</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/commons-user/</url></reference><reference type="vcs"><url>https://gitbox.apache.org/repos/asf?p=commons-compress.git</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.codehaus.woodstox/stax2-api@4.2.1?type=jar">
      <publisher>fasterxml.com</publisher>
      <group>org.codehaus.woodstox</group>
      <name>stax2-api</name>
      <version>4.2.1</version>
      <description>tax2 API is an extension to basic Stax 1.0 API that adds significant new functionality, such as full-featured bi-direction validation interface and high-performance Typed Access API.</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">af8377bc7882332e22456616a9f164f6</hash>
        <hash alg="SHA-1">a3f7325c52240418c2ba257b103c3c550e140c83</hash>
        <hash alg="SHA-256">678567e48b51a42c65c699f266539ad3d676d4b1a5b0ad7d89ece8b9d5772579</hash>
        <hash alg="SHA-512">00efc5d4d17540fb180c5b20d456630a8b3262dff46676689ae916ba16f0fbd9b1a71c7badfb254faad6597f94fed1edb96f77c15f40178eaf4d8cd35cea5e8d</hash>
        <hash alg="SHA-384">97a6a9f0cc666776e4a4f08729c303d2a602ce5c25ee633cd6c54c72f12d11e9d43634ca6ca4ef7da5973a52030384da</hash>
      </hashes>
      <licenses>
        <license>
          <id>BSD-4-Clause</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.codehaus.woodstox/stax2-api@4.2.1?type=jar</purl>
      <externalReferences><reference type="website"><url>http://github.com/FasterXML/stax2-api</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/FasterXML/stax2-api/issues</url></reference><reference type="vcs"><url>http://github.com/FasterXML/stax2-api</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/com.fasterxml.woodstox/woodstox-core@5.3.0?type=jar">
      <publisher>FasterXML</publisher>
      <group>com.fasterxml.woodstox</group>
      <name>woodstox-core</name>
      <version>5.3.0</version>
      <description>Woodstox is a high-performance XML processor that
        implements Stax (JSR-173), SAX2 and Stax2 APIs</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">89fb07387e448325eacc9c642e3d69af</hash>
        <hash alg="SHA-1">59a3a7fb46a364ee383ea7e8c67c152a224b3d99</hash>
        <hash alg="SHA-256">b2bd29c31fda49a9b28a22b9e5c2b26443bcfa99c1a28eab70ab9c7d349b5002</hash>
        <hash alg="SHA-512">a9e981b270cef762d2077522f158287141cc47a3d2705f7d03349390bfc12e2dc33641cab6278678e7225087d8e5a9a891f396e958ea1527628d7e8edf833ae2</hash>
        <hash alg="SHA-384">e653d5f0a2802aeb1e98e19d453850567c77fb31a3dfff41af953d2cd198d1a3fc374fb1c82f63a92bb5dd120b9f576a</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/com.fasterxml.woodstox/woodstox-core@5.3.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://github.com/FasterXML/woodstox</url></reference><reference type="distribution"><url>https://oss.sonatype.org/service/local/staging/deploy/maven2/</url></reference><reference type="issue-tracker"><url>https://github.com/FasterXML/woodstox/issues</url></reference><reference type="vcs"><url>https://github.com/FasterXML/woodstox</url></reference></externalReferences>
    </component>
    <component type="library" bom-ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar">
      <publisher>The Apache Software Foundation</publisher>
      <group>org.apache.yetus</group>
      <name>audience-annotations</name>
      <version>0.13.0</version>
      <description>Annotations for defining API boundaries and tools for managing javadocs</description>
      <scope>required</scope>
      <hashes>
        <hash alg="MD5">e7b6aa8d8967f6f34a711d763d1b4816</hash>
        <hash alg="SHA-1">8ad1147dcd02196e3924013679c6bf4c25d8c351</hash>
        <hash alg="SHA-256">3bfbb397b06f63a2a0a361f62ed32cf199bd92ddd48ea99281f4987edec9777b</hash>
        <hash alg="SHA-512">9fdd60a366629a7ef7f934eea7d27d38e1614472e9090fd23c66032589fbfb9d90516c9cb13a44e4a3598e50d62daf851bb87e4dc8375b1da2cfe6392c448bd8</hash>
        <hash alg="SHA-384">bdd7d0a05faa80c56ab33e8f0c9b70a366f3bcc9cb36fcf88d4f6761feee36b46787baf42b1f62606935eb595279de7e</hash>
      </hashes>
      <licenses>
        <license>
          <id>Apache-2.0</id>
        </license>
      </licenses>
      <purl>pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar</purl>
      <externalReferences><reference type="website"><url>https://yetus.apache.org/audience-annotations</url></reference><reference type="distribution"><url>https://repository.apache.org/service/local/staging/deploy/maven2</url></reference><reference type="issue-tracker"><url>https://issues.apache.org/jira/browse/YETUS</url></reference><reference type="mailing-list"><url>https://mail-archives.apache.org/mod_mbox/yetus-dev/</url></reference><reference type="vcs"><url>https://github.com/apache/yetus.git/audience-annotations</url></reference></externalReferences>
    </component>
  </components>
  <dependencies>
    <dependency ref="pkg:maven/org.apache.hbase/hbase-procedure@2.6.0?type=jar">
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-protobuf@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase/hbase-protocol-shaded@2.6.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase/hbase-common@2.6.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/com.github.stephenc.findbugs/findbugs-annotations@1.3.9-1?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase/hbase-metrics-api@2.6.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hadoop/hadoop-common@2.10.2?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-protobuf@4.1.7?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase/hbase-protocol-shaded@2.6.0?type=jar">
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-protobuf@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase/hbase-common@2.6.0?type=jar">
      <dependency ref="pkg:maven/org.apache.hbase/hbase-logging@2.6.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-gson@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-netty@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-unsafe@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar"/>
      <dependency ref="pkg:maven/commons-io/commons-io@2.11.0?type=jar"/>
      <dependency ref="pkg:maven/com.google.protobuf/protobuf-java@2.5.0?type=jar"/>
      <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-api@1.15.0?type=jar"/>
      <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-semconv@1.15.0-alpha?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-crypto@1.1.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hadoop/hadoop-common@2.10.2?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.hbase/hbase-logging@2.6.0?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar">
      <dependency ref="pkg:maven/com.google.errorprone/error_prone_annotations@2.26.1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.google.errorprone/error_prone_annotations@2.26.1?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-gson@4.1.7?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-netty@4.1.7?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-unsafe@4.1.7?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
    <dependency ref="pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar"/>
    <dependency ref="pkg:maven/commons-io/commons-io@2.11.0?type=jar"/>
    <dependency ref="pkg:maven/com.google.protobuf/protobuf-java@2.5.0?type=jar"/>
    <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-api@1.15.0?type=jar">
      <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-context@1.15.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-context@1.15.0?type=jar"/>
    <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-semconv@1.15.0-alpha?type=jar">
      <dependency ref="pkg:maven/io.opentelemetry/opentelemetry-api@1.15.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.commons/commons-crypto@1.1.0?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hadoop/hadoop-common@2.10.2?type=jar">
      <dependency ref="pkg:maven/org.apache.hadoop/hadoop-annotations@2.10.2?type=jar"/>
      <dependency ref="pkg:maven/com.google.guava/guava@11.0.2?type=jar"/>
      <dependency ref="pkg:maven/commons-cli/commons-cli@1.5.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-math3@3.6.1?type=jar"/>
      <dependency ref="pkg:maven/xmlenc/xmlenc@0.52?type=jar"/>
      <dependency ref="pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar"/>
      <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
      <dependency ref="pkg:maven/commons-io/commons-io@2.11.0?type=jar"/>
      <dependency ref="pkg:maven/commons-net/commons-net@3.1?type=jar"/>
      <dependency ref="pkg:maven/commons-collections/commons-collections@3.2.2?type=jar"/>
      <dependency ref="pkg:maven/org.mortbay.jetty/jetty@6.1.26?type=jar"/>
      <dependency ref="pkg:maven/org.mortbay.jetty/jetty-util@6.1.26?type=jar"/>
      <dependency ref="pkg:maven/org.mortbay.jetty/jetty-sslengine@6.1.26?type=jar"/>
      <dependency ref="pkg:maven/com.sun.jersey/jersey-json@1.9?type=jar"/>
      <dependency ref="pkg:maven/com.sun.jersey/jersey-server@1.9?type=jar"/>
      <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
      <dependency ref="pkg:maven/net.java.dev.jets3t/jets3t@0.9.0?type=jar"/>
      <dependency ref="pkg:maven/commons-lang/commons-lang@2.6?type=jar"/>
      <dependency ref="pkg:maven/commons-configuration/commons-configuration@1.6?type=jar"/>
      <dependency ref="pkg:maven/commons-digester/commons-digester@1.8?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/org.apache.avro/avro@1.11.3?type=jar"/>
      <dependency ref="pkg:maven/com.google.protobuf/protobuf-java@2.5.0?type=jar"/>
      <dependency ref="pkg:maven/com.google.code.gson/gson@2.2.4?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hadoop/hadoop-auth@2.10.2?type=jar"/>
      <dependency ref="pkg:maven/com.jcraft/jsch@0.1.55?type=jar"/>
      <dependency ref="pkg:maven/org.apache.curator/curator-client@4.2.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.curator/curator-recipes@4.2.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.htrace/htrace-core4@4.1.0-incubating?type=jar"/>
      <dependency ref="pkg:maven/org.apache.zookeeper/zookeeper@3.8.4?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-compress@1.21?type=jar"/>
      <dependency ref="pkg:maven/org.codehaus.woodstox/stax2-api@4.2.1?type=jar"/>
      <dependency ref="pkg:maven/com.fasterxml.woodstox/woodstox-core@5.3.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.hadoop/hadoop-annotations@2.10.2?type=jar">
      <dependency ref="pkg:maven/jdk.tools/jdk.tools@1.8?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/jdk.tools/jdk.tools@1.8?type=jar"/>
    <dependency ref="pkg:maven/com.google.guava/guava@11.0.2?type=jar"/>
    <dependency ref="pkg:maven/commons-cli/commons-cli@1.5.0?type=jar"/>
    <dependency ref="pkg:maven/org.apache.commons/commons-math3@3.6.1?type=jar"/>
    <dependency ref="pkg:maven/xmlenc/xmlenc@0.52?type=jar"/>
    <dependency ref="pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar">
      <dependency ref="pkg:maven/org.apache.httpcomponents/httpcore@4.4.13?type=jar"/>
      <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
      <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.httpcomponents/httpcore@4.4.13?type=jar"/>
    <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
    <dependency ref="pkg:maven/commons-net/commons-net@3.1?type=jar"/>
    <dependency ref="pkg:maven/commons-collections/commons-collections@3.2.2?type=jar"/>
    <dependency ref="pkg:maven/org.mortbay.jetty/jetty@6.1.26?type=jar">
      <dependency ref="pkg:maven/org.mortbay.jetty/jetty-util@6.1.26?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.mortbay.jetty/jetty-util@6.1.26?type=jar"/>
    <dependency ref="pkg:maven/org.mortbay.jetty/jetty-sslengine@6.1.26?type=jar">
      <dependency ref="pkg:maven/org.mortbay.jetty/jetty@6.1.26?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.sun.jersey/jersey-json@1.9?type=jar">
      <dependency ref="pkg:maven/org.codehaus.jettison/jettison@1.5.4?type=jar"/>
      <dependency ref="pkg:maven/com.sun.xml.bind/jaxb-impl@2.2.3-1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.codehaus.jettison/jettison@1.5.4?type=jar"/>
    <dependency ref="pkg:maven/com.sun.xml.bind/jaxb-impl@2.2.3-1?type=jar">
      <dependency ref="pkg:maven/javax.xml.bind/jaxb-api@2.3.1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/javax.xml.bind/jaxb-api@2.3.1?type=jar"/>
    <dependency ref="pkg:maven/com.sun.jersey/jersey-server@1.9?type=jar">
      <dependency ref="pkg:maven/asm/asm@3.1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/asm/asm@3.1?type=jar"/>
    <dependency ref="pkg:maven/net.java.dev.jets3t/jets3t@0.9.0?type=jar">
      <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
      <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
      <dependency ref="pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar"/>
      <dependency ref="pkg:maven/org.apache.httpcomponents/httpcore@4.4.13?type=jar"/>
      <dependency ref="pkg:maven/com.jamesmurty.utils/java-xmlbuilder@0.4?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.jamesmurty.utils/java-xmlbuilder@0.4?type=jar"/>
    <dependency ref="pkg:maven/commons-lang/commons-lang@2.6?type=jar"/>
    <dependency ref="pkg:maven/commons-configuration/commons-configuration@1.6?type=jar">
      <dependency ref="pkg:maven/commons-collections/commons-collections@3.2.2?type=jar"/>
      <dependency ref="pkg:maven/commons-lang/commons-lang@2.6?type=jar"/>
      <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/commons-digester/commons-digester@1.8?type=jar">
      <dependency ref="pkg:maven/commons-logging/commons-logging@1.2?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.avro/avro@1.11.3?type=jar">
      <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-core@2.17.0?type=jar"/>
      <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-databind@2.17.0?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-compress@1.21?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-core@2.17.0?type=jar"/>
    <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-databind@2.17.0?type=jar">
      <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-annotations@2.17.0?type=jar"/>
      <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-core@2.17.0?type=jar"/>
      <dependency ref="pkg:maven/net.bytebuddy/byte-buddy@1.12.19?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.fasterxml.jackson.core/jackson-annotations@2.17.0?type=jar"/>
    <dependency ref="pkg:maven/net.bytebuddy/byte-buddy@1.12.19?type=jar"/>
    <dependency ref="pkg:maven/org.apache.commons/commons-compress@1.21?type=jar"/>
    <dependency ref="pkg:maven/com.google.code.gson/gson@2.2.4?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hadoop/hadoop-auth@2.10.2?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/commons-codec/commons-codec@1.15?type=jar"/>
      <dependency ref="pkg:maven/org.apache.httpcomponents/httpclient@4.5.13?type=jar"/>
      <dependency ref="pkg:maven/com.nimbusds/nimbus-jose-jwt@7.9?type=jar"/>
      <dependency ref="pkg:maven/org.apache.directory.server/apacheds-kerberos-codec@2.0.0-M15?type=jar"/>
      <dependency ref="pkg:maven/org.apache.zookeeper/zookeeper@3.8.4?type=jar"/>
      <dependency ref="pkg:maven/org.apache.curator/curator-framework@4.2.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.nimbusds/nimbus-jose-jwt@7.9?type=jar">
      <dependency ref="pkg:maven/com.github.stephenc.jcip/jcip-annotations@1.0-1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.github.stephenc.jcip/jcip-annotations@1.0-1?type=jar"/>
    <dependency ref="pkg:maven/org.apache.directory.server/apacheds-kerberos-codec@2.0.0-M15?type=jar">
      <dependency ref="pkg:maven/org.apache.directory.server/apacheds-i18n@2.0.0-M15?type=jar"/>
      <dependency ref="pkg:maven/org.apache.directory.api/api-asn1-api@1.0.0-M20?type=jar"/>
      <dependency ref="pkg:maven/org.apache.directory.api/api-util@1.0.0-M20?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.directory.server/apacheds-i18n@2.0.0-M15?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.directory.api/api-asn1-api@1.0.0-M20?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.directory.api/api-util@1.0.0-M20?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.zookeeper/zookeeper@3.8.4?type=jar">
      <dependency ref="pkg:maven/org.apache.zookeeper/zookeeper-jute@3.8.4?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-handler@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport-native-epoll@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/commons-io/commons-io@2.11.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.zookeeper/zookeeper-jute@3.8.4?type=jar">
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-handler@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-resolver@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-codec@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
    <dependency ref="pkg:maven/io.netty/netty-resolver@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-resolver@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-codec@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-transport-native-epoll@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport-classes-epoll@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/io.netty/netty-transport-classes-epoll@4.1.108.Final?type=jar">
      <dependency ref="pkg:maven/io.netty/netty-common@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-buffer@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport@4.1.108.Final?type=jar"/>
      <dependency ref="pkg:maven/io.netty/netty-transport-native-unix-common@4.1.108.Final?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.curator/curator-framework@4.2.0?type=jar">
      <dependency ref="pkg:maven/org.apache.curator/curator-client@4.2.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.curator/curator-client@4.2.0?type=jar">
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.jcraft/jsch@0.1.55?type=jar"/>
    <dependency ref="pkg:maven/org.apache.curator/curator-recipes@4.2.0?type=jar">
      <dependency ref="pkg:maven/org.apache.curator/curator-framework@4.2.0?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/org.apache.htrace/htrace-core4@4.1.0-incubating?type=jar"/>
    <dependency ref="pkg:maven/org.codehaus.woodstox/stax2-api@4.2.1?type=jar"/>
    <dependency ref="pkg:maven/com.fasterxml.woodstox/woodstox-core@5.3.0?type=jar">
      <dependency ref="pkg:maven/org.codehaus.woodstox/stax2-api@4.2.1?type=jar"/>
    </dependency>
    <dependency ref="pkg:maven/com.github.stephenc.findbugs/findbugs-annotations@1.3.9-1?type=jar"/>
    <dependency ref="pkg:maven/org.apache.hbase/hbase-metrics-api@2.6.0?type=jar">
      <dependency ref="pkg:maven/org.apache.hbase/hbase-common@2.6.0?type=jar"/>
      <dependency ref="pkg:maven/org.slf4j/slf4j-api@1.7.33?type=jar"/>
      <dependency ref="pkg:maven/org.apache.commons/commons-lang3@3.9?type=jar"/>
      <dependency ref="pkg:maven/org.apache.hbase.thirdparty/hbase-shaded-miscellaneous@4.1.7?type=jar"/>
      <dependency ref="pkg:maven/org.apache.yetus/audience-annotations@0.13.0?type=jar"/>
    </dependency>
  </dependencies>
</bom>
