Language Selection

English French German Italian Portuguese Spanish

Four Considerations When Using Open Source in Production

Filed under
OSS

Most IT staff and developers have no problem technically evaluating open source software. However, they often overlook other considerations that could mean success or failure of a production system.

Here are some of the top non-technical issues you should consider for any open source that will be running in your production environment.

1. Understand ALL the licenses

Most people realize that they need to understand "the license" associated with a piece of open source software, but most people don't realize there's often more than one license associated with individual open source packages.

Open source packages often bundle other open source components, which may have different licenses. There are also many cases where a package includes specific files or pieces of code under different licenses. You need to find, review, and follow ALL of those bundled licenses. For example, if a project is licensed under the Apache License but includes other open source code provided under a GPL license, you must comply with each of those licenses for the relevant portion of the software.

2. Vet the project and community




More in Tux Machines

Linux/FOSS Events

  • The Linux Foundation Announces Session Lineup for ApacheCon(TM) Europe
  • OpenShift Commons Gathering event preview
    We're just two months out from the OpenShift Commons Gathering coming up on November 7, 2016 in Seattle, Washington, co-located with KubeCon and CloudNativeCon. OpenShift Origin is a distribution of Kubernetes optimized for continuous application development and multi-tenant deployment. Origin adds developer and operations-centric tools on top of Kubernetes to enable rapid application development, easy deployment and scaling, and long-term lifecycle maintenance for small and large teams. And we're excited to say, the 1.3 GA release of OpenShift Origin, which includes Kubernetes 1.3, is out the door! Hear more about the release from Lead Architect for OpenShift Origin, Clayton Coleman.

Security News

  • Report: Linux security must be upgraded to protect future tech
    The summit was used to expose a number of flaws in Linux's design that make it increasingly unsuitable to power modern devices. Linux is the operating system that runs most of the modern world. It is behind everything from web servers and supercomputers to mobile phones. Increasingly, it's also being used to run connected Internet of Things (IoT) devices, including products like cars and intelligent robots.
  • security things in Linux v4.6
    Hector Marco-Gisbert removed a long-standing limitation to mmap ASLR on 32-bit x86, where setting an unlimited stack (e.g. “ulimit -s unlimited“) would turn off mmap ASLR (which provided a way to bypass ASLR when executing setuid processes). Given that ASLR entropy can now be controlled directly (see the v4.5 post), and that the cases where this created an actual problem are very rare, means that if a system sees collisions between unlimited stack and mmap ASLR, they can just adjust the 32-bit ASLR entropy instead.

Raspberry Pi PIXEL and More Improvements

Trainline creates open source platform to help developers deploy apps and environments in AWS