
We've seen the report...the 'track changes' tell their own story...
By Jo Best
Published: 28 October 2004 17:04 GMT
The Office of Government Commerce's report into the viability of using open-source software in the public sector was toned down in its praise of Linux security before release, silicon.com has discovered.
A copy of the report, seen by silicon.com with amendments still visible, shows changes were made to the government's stance on the particular advantages of Linux versus proprietary software when it comes to security. The Office of Government Commerce (OGC) is the Treasury office charged with improving public sector procurement and project management in the UK.
The pre-release version of the report read: "Linux would appear to offer numerous strengths in terms of security." In the final version this became: "There is no definitive answer on the relative security merits of open or closed-source software."
The pre-release version also described the visibility of Linux code as a boon to its security, saying: "The structure of the Linux operating system is regarded as inherently more secure than that of Microsoft Windows... The open-source code can be viewed in its entirety and in the event of a problem the worldwide Linux community can act to resolve any issue with urgency."
The final version, however, is more muted. "While some argue that many eyes lead to fewer security flaws, others argue that those wishing to exploit, or tamper with, open-source code have an easier time than with closed source code," it reads.
The idea that a greater number of code-watchers helps open-source software's security hasn't been disputed by Microsoft CEO Steve Ballmer.
He said in a recent email to customers: "Linux has often been touted as a more secure platform. In part, this is because of the 'many eyeballs' maxim of open-source software that claims a correlation between the number of developers looking at code and the number of bugs found and resolved. While this has some validity, it is not necessarily the best way to develop secure software."
A poll this year of silicon.com readers showed more support for the idea that open-source is inherently more secure. When asked: 'Why might Linux be more secure than Windows?', the majority of respondents said it was the way the operating system is maintained.
Forty-one per cent said it might be more secure because of the open-source development model, 32 per cent answered that it might be more secure because it's not as widely used and is therefore less of a target, and 27 per cent said it isn't more secure, full stop.
However, in both the pre-release and final version of the OGC report, it highlights that malware writers have yet to turn their attention properly to Linux and other open-source software. "Open-source software is less likely to be attacked by viruses than proprietary software," it said.
An OGC spokesman said the report had been "made more vanilla" in order to not give people the impression that Linux is "100 per cent secure" and that everyone should switch to open source.
You have to understand the pressure that individua...
Roger Huffadine
What, another dodgy dossier...?
Are we seriousl...
Richard
Gordon,
I'm sure you must have read this but if...
Gordon Head
I want to see Linux take over Windows. Microsoft i...
Anonymous
The "Its Used More" excuse for Windows insecurity ...
Richard Corfield
Key accountabilities To manage the provision of Linux operating system to support the Business System community To provide technical support to the ...
The role involves pre and post sales client consultation with regard to the deployment of software projects encompassing accounts, sales ...
SC Cleared Engineer - Gloucester - EPOS - DESKTOP ESSENTIAL SKILLS Valid UK Driving Licence Proven experience as a hardware engineer in Desktop, ...
Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.
Stories from the web...
Copyright © 2008 CBS Interactive Limited. All rights reserved. Top of page
Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...
Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech