Skip to main content

Thanks Ubuntu

I have first used Ubuntu in 2006 after having been burned by RedHat in 1999. It was a surprise that it worked, was much faster than my current OS and allowed me to painlessly install / use: GIMP, LaTeX, Emacs and many electronics CAD tools. Later Ubuntu allowed me to learn a lot about Linux through the ubuntuforums, ubuntu irc channels, help / wiki, developer weeks, code review, etc. I have now got an open-source job because I have these skills.

Many of the above was either directly or indirectly sponsored by Canonical. From the first CD, to fixing bugs, to code review from exceptional Canonical hackers and of course free training sessions. All interaction I had with Canonical employees was very professional and timely. Heck, I've asked for URL-shortening service for launchpad and we have now as in http://pad.lv/1.

The upstream projects I'm involved in will probably never be part of any revenue questions. And some of them explicitly do not accept donations.

I can defiantly say that Canonical has spent more money on me personally, then the revenue I have brought them. Heck, partially I have a full-time job now because of them. Speaking of which - the company I work for has a good relationship with Canonical. Some of our developers were sub-contracted for initial Ubuntu release and even today we do ad-hoc development for them.

Nothing is free (as in beer). Somebody throughout the years has been sponsoring this: parents, universities, companies, individuals, etc. Who is paying bills for all the bandwidth, disk space, buildbots, that you have ever used? Surely it wasn't yourself all the time.

Debian is a phenomenon. And has been for the past 17 years. Two of directors in my company are Debian Developers, Canonical technical board are all past/present Debian Developers. All of us do share a certain set of common values. Our priorities do shift. I want a roof above my head, food on a table, bandwidth and an OS to run on it. I want to listen to my favourite online radio station in banshee, running gnome, on Ubuntu with back ends running Linux on Amazon cloud. If you yank any of these pieces out, the domino effect kicks in. I fail to see now affiliation fee split between banshee/ubuntu/gnome/amazon can affect any of the four projects in anyway since all four are directly or indirectly inter-dependant on each other.

The moral is, it doesn't matter which part of the community you kiss, you will still get slapped for it.

This "flame war" was actually very boring... I can't wait for the Natty UI freeze to get all the juicy comments, e.g. like in the past about Maverick wallpaper and the buttons on the left and the like ;-)

Comments

  1. Well said. People, me included, criticise Canonical because it's funded like a private enterprise but doesn't yet make money (I guess), which sounds unsustainable. Personally, I'd be keen to see Canonical a sustainable private enterprise. Debian has a different model. Debian is sustainable partly because it has a unique point of differentiation from all other major distributions, which Canonical only enhances.

    ReplyDelete

Post a Comment

Popular posts from this blog

Achieving actually full disk encryption of UEFI ESP at rest with TCG OPAL, FIPS, LUKS

Achieving full disk encryption using FIPS, TCG OPAL and LUKS to encrypt UEFI ESP on bare-metal and in VMs Many security standards such as CIS and STIG require to protect information at rest. For example, NIST SP 800-53r5 SC-28 advocate to use cryptographic protection, offline storage and TPMs to enhance protection of information confidentiality and/or integrity. Traditionally to satisfy such controls on portable devices such as laptops one would utilize software based Full Disk Encryption - Mac OS X FileVault , Windows Bitlocker , Linux cryptsetup LUKS2 . In cases when FIPS cryptography is required, additional burden would be placed onto these systems to operate their kernels in FIPS mode. Trusted Computing Group  works on establishing many industry standards and specifications, which are widely adopted to improve safety and security of computing whilst keeping it easy to use. One of their most famous specifications them is TCG  TPM 2.0 (Trusted Platform Module). TPMs are now...

Encrypt all the things

xkcd #538: Security Went into blogger settings and enabled TLS on my custom domain blogger blog. So it is now finally a https://blog.surgut.co.uk  However, I do use feedburner and syndicate that to the planet. I am not sure if that is end-to-end TLS connections, thus I will look into removing feedburner between my blog and the ubuntu/debian planets. My experience with changing feeds in the planets is that I end up spamming everyone. I wonder, if I should make a new tag and add that one, and add both feeds to the planet config to avoid spamming old posts. Next up went into gandi LiveDNS platform and enabled DNSSEC on my domain. It propagated quite quickly, but I believe my domain is now correctly signed with DNSSEC stuff. Next up I guess, is to fix DNSSEC with captive portals. I guess what we really want to have on "wifi" like devices, is to first connect to wifi and not set it as default route. Perform captive portal check, potentially with a reduced DNS server capabil...

Security-only OpenSSL tarball releases for CVE-2026-2673

On Friday May the 13th OpenSSL project has published advisory details for  CVE-2026-2673 . The CVE is treated as non-important by the project. The patches are only provided as commits on the stable branches. No git tag, no precise fixed version, and no source tarballs provided. The patches that were merged to openssl-3.5 and openssl-3.6 branches were not based on top of the last stable point release and did not split code changes & documentation updates. It means that cherry-picking the commits referenced in the advisory will always lead to conflicts requiring manual resolution. It is not clear if support is provided for snapshot builds off the openssl-3.5 and openssl-3.6 branches. As the builds from the stable branches declare themselves as dev builds of the next unreleased point release. For example, in contrast to projects such as vim and glibc, with every commit to stable branches explicitly recommended for distributors to ship and is supported. I have requested OpenSSL ups...