
We've seen the report...the 'track changes' tell their own story...
By Jo Best
Published: 28 October 2004 17:04 GMT
The Office of Government Commerce's report into the viability of using open-source software in the public sector was toned down in its praise of Linux security before release, silicon.com has discovered.
A copy of the report, seen by silicon.com with amendments still visible, shows changes were made to the government's stance on the particular advantages of Linux versus proprietary software when it comes to security. The Office of Government Commerce (OGC) is the Treasury office charged with improving public sector procurement and project management in the UK.
The pre-release version of the report read: "Linux would appear to offer numerous strengths in terms of security." In the final version this became: "There is no definitive answer on the relative security merits of open or closed-source software."
The pre-release version also described the visibility of Linux code as a boon to its security, saying: "The structure of the Linux operating system is regarded as inherently more secure than that of Microsoft Windows... The open-source code can be viewed in its entirety and in the event of a problem the worldwide Linux community can act to resolve any issue with urgency."
The final version, however, is more muted. "While some argue that many eyes lead to fewer security flaws, others argue that those wishing to exploit, or tamper with, open-source code have an easier time than with closed source code," it reads.
The idea that a greater number of code-watchers helps open-source software's security hasn't been disputed by Microsoft CEO Steve Ballmer.
He said in a recent email to customers: "Linux has often been touted as a more secure platform. In part, this is because of the 'many eyeballs' maxim of open-source software that claims a correlation between the number of developers looking at code and the number of bugs found and resolved. While this has some validity, it is not necessarily the best way to develop secure software."
A poll this year of silicon.com readers showed more support for the idea that open-source is inherently more secure. When asked: 'Why might Linux be more secure than Windows?', the majority of respondents said it was the way the operating system is maintained.
Forty-one per cent said it might be more secure because of the open-source development model, 32 per cent answered that it might be more secure because it's not as widely used and is therefore less of a target, and 27 per cent said it isn't more secure, full stop.
However, in both the pre-release and final version of the OGC report, it highlights that malware writers have yet to turn their attention properly to Linux and other open-source software. "Open-source software is less likely to be attacked by viruses than proprietary software," it said.
An OGC spokesman said the report had been "made more vanilla" in order to not give people the impression that Linux is "100 per cent secure" and that everyone should switch to open source.
You have to understand the pressure that individua...
Roger Huffadine
What, another dodgy dossier...?
Are we seriousl...
Richard
Gordon,
I'm sure you must have read this but if...
Gordon Head
I want to see Linux take over Windows. Microsoft i...
Anonymous
The "Its Used More" excuse for Windows insecurity ...
Richard Corfield
Abacus Professional I.T Recruitment have been retained by our client in the North West to search for a key role within the company. The business has ...
Key accountabilities To manage the provision of Linux operating system to support the Business System community To provide technical support to the ...
Perl Developer (Senior) London to 60k+Perl Developer (Senior) LAMP with a passion for Open Source technology (LAMP, Perl, Python, Ruby, MySQL, Linux, ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Improving IT service delivery through an integrated approach to software asset management...
TechRepublic Resource Guide: Software as a Service (SaaS) for Small and Midsize Businesses...
Top 10 DMVs for Easier SQL Server Monitoring
Download a Free Trial of SmartDraw: Learn why SmartDraw is the ideal alternative...
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead
Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy