LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Go Back   LinuxQuestions.org > Forums > Non-*NIX Forums > General
User Name
Password
General This forum is for non-technical general discussion which can include both Linux and non-Linux topics. Have fun!

Notices


Reply
  Search this Thread
Old 05-06-2014, 05:31 PM   #1
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,642
Blog Entries: 4

Rep: Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933Reputation: 3933
(Dr Dobbs') "The Conflict at the Heart(bleed) of Open Source"


I just encountered this very interesting article on Dr. Dobb's and feel that it deserves additional exposure, traction ... and sobering thought.

http://www.drdobbs.com/open-source/t...urce/240168123

Quote:
Despite the rivers of ink that have flowed regarding the recent Heartbleed vulnerability, I believe the developer community has not addressed the right problem. Developers have fixated on a debate about one of open-source's most touted advantages: With many eyes looking at the code, is open source able to correct bugs faster than closed-source projects?

But this discussion misses the central issue, which in my view is not technical, but monetary. The OpenSSL team, whose project was the home for the Heartbleed vulnerability, discussed with remarkable candor how much the lack of funding from the product's users has limited their development work and, by extension, their ability to find and remediate such defects. It turns out that major users of OpenSSL, such as Cisco and Google, among others, had incorporated the software into the important products, but sent little or no funds to the developers.

Faced with this embarrassing revelation, the companies quickly got together, pooled some money, and assembled a committee that agreed to dispense funds to worthy projects, starting with OpenSSL. This is a hurried patch — one that will temporarily relieve the problem, but not address its root cause.

The root cause is a fundamental conflict at the heart of open source: the opposing forces of building community vs. deriving a sustainable level of revenue from an open-source project.

The tension between these forces is most acutely felt when choosing a license for the project [...]
My only immediate purpose in posting this reference and this excerpt is to raise a bit of awareness of what I think is a very interesting point. Although I do not entirely agree with the conclusions of the story's author (Andrew Binstock), I do feel that they are meritous of being "smoked-over."

(I also gave some thought as to in which forum it would be most-proper to post it, and should the Moderators disagree with my choice, may they "feel free.")

Whether or not you concur that these arguments stand – and I have somewhat mixed feelings about it – they are nonetheless very significant, I submit, for having been raised. The journalistic credulity of Dr. Dobbs' Journal is, of course, very well established. I think that all of us, in our industry, should be contemplating these assertions by this also-well-established journalist, who is nothing less than Editor-in-Chief.

Last edited by sundialsvcs; 05-06-2014 at 05:36 PM.
 
Old 05-16-2014, 02:19 PM   #2
elucches
Member
 
Registered: Jan 2011
Posts: 108

Rep: Reputation: 11
I believe the main difference between a bug in an open source project and one in a closed source project is its visibility.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: Why "open source" is not "free software" LXer Syndicated Linux News 0 02-11-2009 06:10 PM
Standard commands give "-bash: open: command not found" even in "su -" and "su root" mibo12 Linux - General 4 11-11-2007 10:18 PM
LXer: Merging "Open Source" and "Free Software" LXer Syndicated Linux News 2 08-08-2007 04:27 AM
Can you explain the difference between "Free Software (GNU)" and "Open Source"? vharishankar General 5 03-03-2005 09:40 AM
Robert "Bob" Dobbs: SubGenius? Shade Slackware 15 04-20-2004 01:25 AM

LinuxQuestions.org > Forums > Non-*NIX Forums > General

All times are GMT -5. The time now is 08:04 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration