Computable.nl
  • Thema’s
    • Carrière
    • Innovatie & Transformatie
    • Cloud & Infrastructuur
    • Data & AI
    • Governance & Privacy
    • Security & Awareness
    • Software & Development
    • Werkplek & Beheer
  • Sectoren
    • Channel
    • Financiële dienstverlening
    • Logistiek
    • Onderwijs
    • Overheid
    • Zorg
  • Awards
    • Computable Awards
    • Nieuws
    • Winnaars
    • Partner worden
  • Vacatures
    • Vacatures bekijken
    • Vacatures plaatsen
  • Bedrijven
    • Profielen
    • Producten & Diensten
  • Kennisbank
  • Magazine
  • Nieuwsbrief

The legal risks of open source (2)

09 september 2004 - 22:004 minuten leestijdOpinieGovernance & Privacy
Martin Healey
Martin Healey

Health warning: I am only passing on here my understanding of the legal issues relevant to OSS products, I am no lawyer!

Sadly few IT managers will be any better equipped than me, but as risk managers they will inevitably have to become more legally aware than in the past. The cause of this emphasis on legal issues is the growth of OSS products in the commercial market. The threat that OSS products have made to Microsoft, Oracle, etc., not to mention SCO, has lead to the use of legal issues to frighten potential users to deter them from switching from expensive proprietary products to more effective OSS alternatives.
 
Before looking further into the legal aspects it is worth reminding potential OSS users that this is not the only issue in making a choice. OSS products are not free! They still need support, maintenance, documentation, training, etc. and they may not be as robust or reliable. Because Apache has proved more robust than the Windows Web servers does not automatically mean that all other OSS products are similarly superior!
 
The legal issues are related to licensing and patents. OSS products are developed by networks of programmers, most of whom have a normal job with a conventional software company. Tracing the IPR of such a complex system is very difficult and even more difficult to trace a guilty individual. Thus the legal emphasis is placed on the retail and the user communities. The legal risk is split between the developer and distributors on one hand and the users on the other. A development audit is crucial, but so too are the licensing terms (the users). This in fact is true of any software product, but the scale of the potential problems is so much bigger with OSS than with proprietary code, hence the current emphasis on legal issues.
 
There are three licensing models in common use for OSS, which with the usual variants gets very confusing. Today the Open Source Initiative (OSI) sets the rules, largely derived from the original licensing scheme (GNU).
 
The “purest” license is the GNU General Public License (GPL). All users have the right to change and distribute the source code, but they must make all changes and additions public as well. This caused problems for a lot of developers, particularly those with an existing proprietary product that they wished to move into the OSS world but with some protection. Thus the MPL license allows a developer to use GPL code but to add their own proprietary code. There is also a “dual licensing” alternative in which different terms are offered for the same software. A customer can then choose whether they want to pay for the full proprietary version or an open version with community support and development. The flexibility to switch between models is an interesting option. This model, e.g. Sun Solaris, is an increasingly popular one. It is important to remember that there are only limited warranty rights associated with GPL products, nor is there any indemnity protection against infringement of IPR.
 
Due diligence is required form both users and developers. Some developers such as Novell and Red Hat are now offering indemnity to customers against SCO, which means that they are taking responsibility for the “purity” of their code, taking a lot of strain off the end-users. Nevertheless end-users must still be aware of possible implications. One attraction to some users of OSS products is to make modifications for their own in-house use, but they must be careful that this does not creep into products and services.< BR>
 
Martin Healey, pioneer development Intel-based computers en c/s-architecture. Director of a number of IT specialist companies and an Emeritus Professor of the University of Wales.

Meer over

BesturingssystemenOpensource

Deel

    Inschrijven nieuwsbrief Computable

    Door te klikken op inschrijven geef je toestemming aan Jaarbeurs B.V. om je naam en e-mailadres te verwerken voor het verzenden van een of meer mailings namens Computable. Je kunt je toestemming te allen tijde intrekken via de af­meld­func­tie in de nieuwsbrief.
    Wil je weten hoe Jaarbeurs B.V. omgaat met jouw per­soons­ge­ge­vens? Klik dan hier voor ons privacy statement.

    Whitepapers

    Computable.nl

    Digitale connectiviteit en cybersecurity in de logistiek

    Praktische paper over logistiek in een steeds digitalere wereld

    Computable.nl

    GenAI: Veiligheidsrisico of wapen tegen dreiging?

    Wat AI betekent voor jouw securityaanpak? Alles over de risico’s en strategieën om GenAI verantwoord in te zetten.

    Computable.nl

    Bouw de AI-organisatie niet op los zand

    Wat is de afweging tussen zelf bouwen of het benutten van cloud?

    Geef een reactie Reactie annuleren

    Je moet ingelogd zijn op om een reactie te plaatsen.

    Populaire berichten

    Meer artikelen

    Uitgelicht

    Partnerartikel
    Security & Awareness

    De noodzaak van OT-cybersecurity en de...

    ‘Wat je niet weet, kan het meeste zeer doen’ De Europese Unie scherpt de cyberwetgeving stevig aan. Met de nieuwe...

    Meer persberichten

    Meer lezen

    Governance & Privacy

    Logius: DigiD is en blijft Nederlands

    soevereine cloud
    Cloud & Infrastructuur

    Kort: Navo in zee met Google, 1 miljard voor TCS (en meer)

    omnibusvoorstel privacy
    Governance & Privacy

    AP: gevolgen Omnibusvoorstel niet goed onderzocht door EC

    Cloud & Infrastructuur

    Tweede Kamer maakt zich druk om verkoop Solvinity

    Cloud & Infrastructuur

    Gaia-X en de federatieve aanpak

    EU digitale
    Cloud & Infrastructuur

    EU komt met eenvoudiger digitale regels

    ...

    Footer

    Direct naar

    • Carrièretests
    • Kennisbank
    • Planning
    • Computable Awards
    • Magazine
    • Ontvang Computable e-Magazine
    • Cybersec e-Magazine
    • Topics
    • Phishing
    • Ransomware
    • NEN 7510

    Producten

    • Adverteren en meer…
    • Jouw Producten en Bedrijfsprofiel
    • Whitepapers & Leads
    • Vacatures & Employer Branding
    • Persberichten

    Contact

    • Colofon
    • Computable en de AVG
    • Service & contact
    • Inschrijven nieuwsbrief
    • Inlog

    Social

    • Facebook
    • X
    • LinkedIn
    • YouTube
    • Instagram
    © 2025 Jaarbeurs
    • Disclaimer
    • Gebruikersvoorwaarden
    • Privacy statement
    Computable.nl is een product van Jaarbeurs