- TalkBack 1 of 1:
- Thread View
- Flat View
- Solving Half the Equation is Still Only Halfway There
-
Open source projects benefit from the public and collaborative nature of the community of users and developers associated with the project. The most popular open source projects are very stable, being used and debugged by tens of thousands of developers, and have been broadly implemented by F100 corporations and worldwide governments for years. This announcement reiterates the widespread use of open source as commercial service providers step in to provide packaging, training and support for the most popular solutions on the market.
But the most popular open source projects (e.g. various Linux distributions, JBoss, MySQL, etc), are just the tip of the iceberg of typical enterprise open source use. Open source projects can now be found at the operating system level, embedded as key components within applications, and as stand-alone applications. The embedded components are some of the most widely used open source projects that no one (outside of the engineering team) has ever heard of ? GNU GetOpt, OpenSSH, zlib, etc. Enterprise security and IT teams should be just as conscientious about services and support for those projects.
For many of these type of open source components, no mechanism is in place by which to notify customers of updates and push them out automatically to users. This puts the burden of responsibility on the user to monitor whether there are security patches or newer versions of the open source project available. That's hard to do when their use goes undocumented and undetected.
In our continuing efforts to make open source implementation a successful (and secure) process in the enterprise environment, Palamida uncovers and inventories undocumented open source code and its known vulnerabilities. After evaluation their individual risk profiles, companies should ask themselves whether they really know everything they are using and whether they would stake their jobs on its security.
Melisa LaBancz-Bleasdale, Palamida - Posted by: Melisa@... Posted on: 11/16/07 You are currently: a Guest | Members login | Terms of Use
|
|
What do you think?
SponsoredWhite Papers, Webcasts, and Downloads
- Three Steps You Need to Know to Stop Data Loss Varonis Sensitive data exposed to misuse or loss... it is the stuff of nightmares ... Download Now
- Building the Virtualized Enterprise with VMware Infrastructure VMware VMware virtualization software has been adopted by over 120,000 enterprise ... Download Now
- Five Steps to Determine When to Virtualize YourServers VMware Server virtualization isn't just for big companies. Entry-level ... Download Now
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- Keep Up With The Latest In Document Management with The DocuMentor.
-
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
- Learn more >>
- New Online Dashboard for IT Leaders
-
Read about top issues IT decision-makers face every day, plus get cost-effective solutions to real-life IT problems.
- Learn more >>
- Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
-
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.

- Learn more about the free, six-month trial offer>>
-
-
Smart Tech
Expert advice on innovations in healthcare and the green technologies that make it happen.
Find out more
-
Smart Business
Discussion and advice on management issues that revolve around making your world smarter and more useful.
More Smart Advice
-
Smart People
The best and worst moves in the management and strategy trenches.
Learn More





