Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Open Source Is Becoming a Military Necessity
The Street ^ | 17 August 2012 | Dana Blankenhorn

Posted on 08/18/2012 11:59:23 AM PDT by ShadowAce

One of the biggest lies told about open source is that it's insecure.

In letting just anyone use your code, that has to include the bad guys. They're bound to find a way to compromise it, the thinking goes.

But that's not the way it works in real life. Having every potential victim working on your neighborhood code watch turns out to deliver more security, not less.

Having everyone who might be the victim of an online break-in organized, finding bugs, writing and testing fixes, constantly improving security tools, works.

Don't believe me? Well, maybe you'll believe the National Security Agency or the Department of Homeland Security. The open source process works for them, too.

For a decade, one of the most popular intrusion prevention and detection systems has been Snort, created by Martin Roesch. But the company he built around that software, Sourcefire, only gives away the basic package. If you need extensions, if you want a more complete system, you have to pay. That code is controlled by Sourcefire.

There is nothing unusual in that. Many open-source businesses create free community and paid "enterprise" editions of their software. This is what Red Hat(RHT) is all about -- you can download Fedora Linux free or buy Red Hat Enterprise Linux. In both cases you get to see the code, but with the paid version you get the support needed to run it professionally.

But this model didn't work with Snort. The Department of Homeland Security, the military, and the NSA could not be "held hostage" to Sourcefire for improvements to the code, or for the specialized suite needed to protect the nation.

So the Department of Homeland Security got together with major contractors and formed their own open source project, the Open Information Security Foundation. OISF has its own intrusion system, called Suricata, whose syntax is based on Snort, so if you are accustomed to one you can use the other.

But Suricata will be a complete system, not just a "sniffer," as intrusion detection products are colloquially known. The whole Suricata suite will be open source. This process is now expanding, as I noted here at TheStreet.com on Monday.

In May, the National Security Agency co-hosted an Open Source Security Industry Day at a Johns Hopkins facility in Fort Meade, Md. As ZDNet's Steven J. Vaughan-Nichols reported, agency people described their needs for open source and urged suppliers to include open source in their offerings.

John Weathersby of the OSS-Institute, which is now affiliated with Georgia Tech in Atlanta, told me most of the day was devoted to small "breakout" sessions, where contractors answered hard, detailed questions put to them by key government customers. The affair wasn't just a series of sales pitches, he said. It was the first step in a negotiation.

Among the open source projects the NSA supports is Security Enhanced Linux (SE-Linux), for which it has developed an access control module called Flask, hosted at the University of Utah. Open source and security, in other words, do go together.

Open source can only provide tools. Procedures are also needed to assure that people maintain security. So the Cloud Security Alliance offers an integrated stack of such procedures, called the GRC Stack. GRC stands for Governance, Risk management and Compliance. This is maintained in an open process with the support of both contractors and software vendors.

Point is, open source and security do mix. They mix well. With more businesses moving toward cloud technology, much of it based on open source software, they are going to be doing a lot more mixing.


TOPICS: Computers/Internet
KEYWORDS: linux; security
Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 141-150 next last
To: vox_freedom

Thank you very much, vox_freedom!!


41 posted on 08/18/2012 6:00:53 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 35 | View Replies]

To: Jim Robinson; TheOldLady; onyx; All

Thank you and your team for their very hard work and thanks
for keeping this site ad-free. Facebook ads annoy the heck
outta me!

Keep the faith! FReeRepublic will survive and become stronger!


42 posted on 08/18/2012 6:01:13 PM PDT by luvie (Debating the foolish brings no benefit.)
[ Post Reply | Private Reply | To 38 | View Replies]

To: Ditter; I_be_tc

Woo hoo!! Thank you very much, Ditter!!


43 posted on 08/18/2012 6:05:41 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 39 | View Replies]

To: Jim Robinson

Jim, I only wish I could give more. If I could invest in some securities and have the gains each month go straight to you, I’d do it in a heartbeat. I’m changing jobs and living arrangements in the next few weeks - when the dust settles, maybe I can ratchet things up.


44 posted on 08/18/2012 6:09:11 PM PDT by arderkrag (ABOs are Romneybot trolls. LOOKING FOR ROLEPLAYERS. Check Profile.)
[ Post Reply | Private Reply | To 38 | View Replies]

To: RedMDer
B T T T ! ! ! ©

45 posted on 08/18/2012 6:11:12 PM PDT by vox_freedom (America is being tested as never before in its history. May God help us.)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Jim Robinson; onyx; TheOldLady; DJ MacWoW; trisham; musicman; The Cajun; JoeProBono; Lady Jag; ...

The Place for Conservatives
Why Donate?
Free Republic is funded solely by contributions made by liberty loving grassroots conservatives like you who enjoy and use it. We take no money from and are not beholden to outsiders or corporate string pullers or party king makers.
We are
Beholden to no one!



46 posted on 08/18/2012 6:11:42 PM PDT by RedMDer (https://support.woundedwarriorproject.org/default.aspx?tsid=93destr)
[ Post Reply | Private Reply | To 38 | View Replies]

To: Marcella

That’s the down side of the Internet. It hurts. Personal privacy is lost.

God bless and keep you, dearest Marcella. You’re the very best.


47 posted on 08/18/2012 6:12:13 PM PDT by onyx (FREE REPUBLIC IS HERE TO STAY! DONATE MONTHLY! IF YOU WANT ON SARAH PALIN''S PING LIST, LET ME KNOW)
[ Post Reply | Private Reply | To 37 | View Replies]

To: LUV W

Thank you very much, LUV W!!


48 posted on 08/18/2012 6:13:54 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 42 | View Replies]

To: arderkrag

Thank you very much, arderkrag! Good luck and God bless.


49 posted on 08/18/2012 6:15:25 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 44 | View Replies]

To: Jim Robinson; don-o; I_be_tc; RedMDer; trisham; TheOldLady; DJ MacWoW; STARWISE; Lady Jag; ...
Thanks very much again dearest Jim, for Free Republic, and now for your explanation (again) of our FReepathon's length of time, which your fabulous team doesn't mind at all, because we know our endeavor is totally worthy!!

I'm also including our very generous FReeper New Monthly Donor sponsors in my ping and hope I haven't omitted anyone, knowing my faulty memory for such matters, along with some very loyal members who always bump our threads and donate extra every FReepathon.


50 posted on 08/18/2012 6:29:25 PM PDT by onyx (FREE REPUBLIC IS HERE TO STAY! DONATE MONTHLY! IF YOU WANT ON SARAH PALIN''S PING LIST, LET ME KNOW)
[ Post Reply | Private Reply | To 38 | View Replies]

To: Jim Robinson
And the members who are not super pissed at the Republicans lack of ability to get the job done, get super pissed at me for no longer supporting the obviously failing, ineffective RINO candidates.

Monthly contributor here who is pissed that your annoyance at the Republicans is providing aid and comfort to our one true enemy: Obama. Sure, you live in California and can safely vote for whom you please. But, you are encouraging Freepers in Virgina, Florida, Ohio, etc. to do the same. If we do not defeat Obama, we will not live to fight another day. Let's get rid of the Communist in the White Hours, that's job 1.

51 posted on 08/18/2012 6:31:50 PM PDT by centurion316
[ Post Reply | Private Reply | To 38 | View Replies]

To: centurion316

I’m not encouraging voters to do anything other than vote their conscience and to vote straight conservative so we can impeach the corrupt usurping bastards.


52 posted on 08/18/2012 6:36:11 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 51 | View Replies]

To: centurion316

And thank you very much for your support!


53 posted on 08/18/2012 6:37:15 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 51 | View Replies]

To: onyx

Thank you very much, dearest onyx!!


54 posted on 08/18/2012 6:38:18 PM PDT by Jim Robinson (Resistance to tyrants is obedience to God!!)
[ Post Reply | Private Reply | To 50 | View Replies]

To: Ditter
THANK YOU VERY, VERY MUCH, DEAREST Ditter!


55 posted on 08/18/2012 6:39:15 PM PDT by onyx (FREE REPUBLIC IS HERE TO STAY! DONATE MONTHLY! IF YOU WANT ON SARAH PALIN''S PING LIST, LET ME KNOW)
[ Post Reply | Private Reply | To 39 | View Replies]

To: Jim Robinson

Looks like it’s time to double down. Will send another check. FR is worth it.


56 posted on 08/18/2012 6:44:51 PM PDT by Aquamarine
[ Post Reply | Private Reply | To 38 | View Replies]

To: JRandomFreeper

Cloud = Fog*
* = miasma


57 posted on 08/18/2012 6:50:47 PM PDT by outofsalt ("If History teaches us anything it's that history rarely teaches us anything")
[ Post Reply | Private Reply | To 3 | View Replies]

To: Jim Robinson; everyone

God bless and keep you and ALL of us here!

We are the sovereignty and the resistance!

God will help us save our Republic. We so pray!


58 posted on 08/18/2012 6:56:22 PM PDT by onyx (FREE REPUBLIC IS HERE TO STAY! DONATE MONTHLY! IF YOU WANT ON SARAH PALIN''S PING LIST, LET ME KNOW)
[ Post Reply | Private Reply | To 54 | View Replies]

To: Marcella

“...if you are alive and take any action at all, information about you will be on the web.”

They know me as a FReeper and I’m cool with that. A monthly donor FReeper to boot!


59 posted on 08/18/2012 6:57:56 PM PDT by outofsalt ("If History teaches us anything it's that history rarely teaches us anything")
[ Post Reply | Private Reply | To 37 | View Replies]

To: Aquamarine
THANK YOU VERY, VERY MUCH, DEAREST Aquamarine!!!!


60 posted on 08/18/2012 6:58:16 PM PDT by onyx (FREE REPUBLIC IS HERE TO STAY! DONATE MONTHLY! IF YOU WANT ON SARAH PALIN''S PING LIST, LET ME KNOW)
[ Post Reply | Private Reply | To 56 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-6061-80 ... 141-150 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson