Free, Libre, Open Source Expertise Center (FLOSEC) EMEA. The FOSSology project. Bruno Cornec. Open Source and Linux Technology Consultant



Similar documents
The FOSSology project

How To Write Itil Open Source Solution Stack

A GPL continuous packaging solution

Mondo Rescue: A GPL disaster recovery and cloning solution

The FOSSology Project Overview and Discussion. » The Open Compliance Program. ... By Bob Gobeille, Hewlett-Packard

What s so special about Mageia?

Table of contents. Best practices in open source governance. Managing the selection and proliferation of open source software across your enterprise

FOSS Governance Fundamentals

FOSSBazaar A Governance Initiative to manage Free and Open Source Software life cycle

Parallels Virtuozzo Containers 4.7 for Linux Readme

Monitoring and Operating a Private Cloud with System Center 2012 (10750) H7G37S

HP OpenView AssetCenter

HOW RED HAT BRINGS OPENSTACK INTO THE ENTERPRISE by Bryan Che and Gordon Haff

Red Hat Enterprise Linux and management bundle for HP BladeSystem TM

SapphireIMS 4.0 Asset Management Feature Specification

Presales Certifications

HP Service Manager. Software Version: 9.40 For the supported Windows and Linux operating systems. Application Setup help topics for printing

CA Automation Suite for Data Centers

Chapter 5. Choose the answer that mostly suits each of the sentences given:

Acronis Backup & Recovery 10 Server for Linux. Quick Start Guide

HP OpenView Patch Manager Using Radia

Records Management and SharePoint 2013

EAsE and Integrated Archive Platform (IAP)

Red Hat Enterprise Linux: The ideal platform for running your Oracle database

HP Server Automation Enterprise Edition

Massey University Follow Me Printer Setup for Linux systems

Successfully managing geographically distributed development

HP Server Automation Standard

HP ProLiant Essentials Vulnerability and Patch Management Pack Planning Guide

HP Systinet. Software Version: Windows and Linux Operating Systems. Concepts Guide

Server Virtualization with Windows Server Hyper-V and System Center (20409) H8B93S

Fundamentals of LoadRunner 9.0 (2 Days)

Red Hat Enterprise Linux Subscription 2 Sockets for 5 years with HP bundled support for 9x5 and 24x7.

HP Asset Manager. Software version: Asset Tracking Solution

Unit 10 : An Introduction to Linux OS

Models HP IMC MPLS VPN Software Module with 50-node E-LTU

Build Clouds Without Limits Gordon Haff

HP Insight Diagnostics Online Edition. Featuring Survey Utility and IML Viewer

ORACLE OPS CENTER: PROVISIONING AND PATCH AUTOMATION PACK

How To Standardize Itil V3.3.5

HP CLOUD SYSTEM. The most complete, integrated platform for building and managing clouds featuring Intel technologies.

HP Universal CMDB. Software Version: Data Flow Management Best Practices

QuickSpecs. HP Data Protector Reporter Software Overview. Powerful enterprise reporting with point and click simplicity

BladeLogic Software-as-a- Service (SaaS) Solution. Help reduce operating cost, improve security compliance, strengthen cybersecurity posture

Parallels Virtual Automation 6.1

OTRS Administrator Training OTRS Help Desk and OTRS::ITSM

HP Device Manager 4.7

HP Change Configuration and Release Management (CCRM) Solution

A discussion of information integration solutions November Deploying a Center of Excellence for data integration.

The Operating System Lock Down Solution for Linux

Business-driven governance: Managing policies for data retention

Build A private PaaS.

CA Aion Business Rules Expert r11

JBoss Enterprise MIDDLEWARE

IBM Tivoli Endpoint Manager for Security and Compliance

Release Notes P/N Rev A01

An Oracle White Paper June Oracle Linux Management with Oracle Enterprise Manager 12c

HP OpenView AssetCenter

vrealize Business System Requirements Guide

License management service

How Automation is Driving Strategic Sourcing Transformation at Citi

BRIDGE. the gaps between IT, cloud service providers, and the business. IT service management for the cloud. Business white paper

Linux Distributions. What they are, how they work, which one to choose Avi Alkalay

Citrix XenServer 5.6 OpenSource Xen 2.6 on RHEL 5 OpenSource Xen 3.2 on Debian 5.0(Lenny)

HP Intelligent Management Center Enterprise Software. Platform. Key features. Data sheet

FINANCIAL SERVICES: FRAUD MANAGEMENT A solution showcase

Managing HP Integrity Servers with HP Server Automation and HP Virtual Server Environment

Data Sheet: Archiving Altiris Server Management Suite 7.0 from Symantec Essential server management: Discover, provision, manage, and monitor

PARALLELS SERVER 4 BARE METAL README

ORACLE PROJECT MANAGEMENT

HP SiteScope software

Red Hat Enterprise Linux Server 2 Sockets 4 Guests 1 Year Subscription 24x7 Support E-LTU

HP Server Automation Virtual Appliance (aka SA Standard)

HP ALM. Software Version: Tutorial

G-Cloud 7 Service Description Document. Third Party Services. Zendesk Licences 1. Zendesk Services (Consulting) 2. Nexus Pro Licences & Services 3

OPEN CLOUD INFRASTRUCTURE BUILT FOR THE ENTERPRISE

Security Patch Management

Quality Data in Record Time with SAP Information Steward Accelerator

Installing and Configuring Windows Server 2012 (20410) H4D00S

HP Operations Orchestration Software

Zend and IBM: Bringing the power of PHP applications to the enterprise

Data Sheet: Server Management Altiris Server Management Suite 7.0 Essential server management: Discover, provision, manage, and monitor

HP Security Assessment Services

JBoss enterprise soa platform

BOM based on what they input into fossology.

HP Service Manager. Software Version: 9.34 For the supported Windows and UNIX operating systems. Incident Management help topics for printing

HP Service Manager. Software Version: 9.40 For the supported Windows and Linux operating systems. Processes and Best Practices Guide (Codeless Mode)

Asset management guidelines

User Guide Secure Configuration Manager

Thought Leadership White Paper

HP Intelligent Management Center Standard Software Platform

QuickSpecs. HP SATA Hard Drives. Overview

MONITORING RED HAT GLUSTER SERVER DEPLOYMENTS With the Nagios IT infrastructure monitoring tool

AnyQueue. Multi-Platform Output Management

RED HAT ENTERPRISE LINUX OPENSTACK PLATFORM

Transcription:

Free, Libre, Open Source Expertise Center (FLOSEC) EMEA The FOSSology project Bruno Cornec Open Source and Linux Technology Consultant 2007 Hewlett-Packard Development Company, L.P. The information contained herein is subject to ch

Introducting myself Software engineering and Unices since 1988 Mostly Configuration Management Systems (CMS), Build systems, quality tools, on multiple commercial Unix systems Discover Open Source & Linux (OSL) & first contributions in 1993 Full time on OSL since 1995, first as HP reseller then @HP Currently: Technology Architect on OSL for the HP/Intel Solution Center, Grenoble Leading joint HP+Intel+Red Hat initiative OSL HP Ambassador EMEA OSL HP Profession Lead Solutions Linux Conference board member MondoRescue, Dploy.org, Project-Builder.org project lead LinuxCOE, mrepo, tellico, rinse, fossology contributor Mandriva, Fedora packager 03/10/09 HP + RedHat + Intel / Bruno Cornec / HP

FOSSology.org FOSS-ology The study of FOSS (Free Open Source Software)

Goal The goal of the FOSSology project is create tools and a framework to reduce fear, uncertainty, and doubt in the use, development, and distribution of open source software.

How? Our goal is to provide tools to solve major FOSS governance problems. Such as: License Management Code Plagiarism Vulnerability tracking

Example Our goal is to provide tools to solve major FOSS governance problems. Such as: License Management Code Plagiarism Vulnerability tracking

License Discovery o Look at every single file in a package (or distro, or ) o Fuzzy match against a library of > 400 known licenses. o Examine the non-matching portions looking for text that could be an unknown license.

A Simple FOSSology Process Flow

Submit software to the FOSSology batch queue

File upload screenshot File Upload screenshot

Let s Use FOSSology

Let s Use FOSSology

License data

License Templates

Disturbing Image

Know Thy Licenses

Know Thy Licenses

Public repository Hosted by FOSSBazaar, under the Linux Foundation. Oregon State University Open Source Lab (OSUOSL) Public availability June 2008 (available today with authorization)

Public repository Hosted by FOSSBazaar, under the Linux Foundation. Oregon State University Open Source Lab (OSUOSL) Public availability June 2008 (available today with authorization)

Example Major FOSS Governance problems: License discovery Code plagiarism Vulnerability tracking Future Future

Other uses for FOSSology o Copyright geneology o Trademark search o Vulnerability tracking o Dependency graphs o Distro, package, file diffs o Localization reports o? o Your input here An open source project. Contributions are encouraged.

What's new in fossology 1.1.0 Email notification of job status on per user basis. Roll-up of many bug fixes. Several new license templates added. Code cleanup for improved efficiency and maintainability. Tutorial section, with examples, added to fossology.org. Lots of new tests added to the automated test suite. RPM packages for RHEL4/5, CentOS4/5 in addition to Debian ones Many improvements to scheduler to improve robustness (watchdog).

What's planned in fossology 1.2.0 New heuristic based license analyzer (based on small phrases and phrases relative to other phrases) aka fo_nomos. New machine learning license analyzer (based on sentence clustering). Currently we are calling this F1. If there are results from both this analysis and fo_nomos, the results will be combined for reporting. Creation of categories in license reports. ( e.g. good licenses, bad licenses, commercial licenses, files with no license,...) Report files with no license. Distro reports Add capability for reanalysis without breaking data persistence ie. do new analysis without removing previous analysis results. This can be used, to compare new and old analysis results, and to insure that report url's are persistent. Display license changes by package version, on a per file basis between versions of any archive (rpm, tar, etc) Report Copyrights, URL's, and email addresses.

Open Source Governance Workshop Workshop designed to guide through the top issues around management of Open Source in the enterprise. Targeted at a cross-organizational audience, including auditing, legal, procurement, operational risk management, technology strategy, and line-of-business departments Open Source Baseline Open Source Policy Best Practices Business Drivers Various open source touch points in your company Awareness, responsibilities, risks, processes Use of open source when appropriate, Legal Aspects of Open Source Governance Assessment of Free and Open source software phenomenon Detailed discussion of Open Source Licenses Bridging the legal and technical communities Other considerations: WEB-based services, mergers and acquisitions, other Automating Open Source Compliance Open Source discovery License detection and analysis 29 03/10/09 when not appropriate for your business Review of licenses, product distribution considerations Considerations for employee contribution to open source community Company relationship with community Open Source Governance Processes Best practices for open source tracking, review and management Open Source Compliance Lifecycle, workflow Building Internal Open Source Communities HP + RedHat + Intel / Bruno Cornec / HP

Contact - Thanks Bruno.Cornec@hp.com (Open Source and Linux Technology Architect at the HP/Intel Solution Center) http://www.hp.com/linux http://opensource.hp.com http://fossology.org Thanks goes to: Linus Torvalds, Richard Stallman, Eric Raymond, Nat Makarevitch, René Cougnenc, Eric Dumas, Rémy Card, Bdale Garbee, Bryan Gartner, Craig Lamparter, Lee Mayes, Gallig Renaud, Andree Leidenfrost, Phil Robb, Bob Gobeille, Martin Michlmayr among others, for their work and devotion to the Open Source Software cause... and my family for their patience :-) 03/10/09 Changes are never easy to make. There is comfort and safety in tradition, but change must come, no matter how painful or expensive it may be. Bill Hewlett HP + RedHat + Intel / Bruno Cornec / HP