Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home IT Management
    • IT Management
    • Servers

    Insuring Open Source the Old-Fashioned Way

    Written by

    Chris Preimesberger
    Published October 31, 2005
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Open Source Risk Management Inc. (OSRM), a New York-based software license compliance analysis vendor, Monday announced the availability of the first risk insurance policy for enterprises who wish to protect themselves from intellectual property lawsuits when they acquire a software company or produce software with open source components.

      Open Source Compliance Insurance is the first insurance policy to cover the specialized risks faced by enterprises that rely upon Linux and other open source software in their commercial products or internal IT infrastructure. It will be underwritten by UK-based Kiln PLC and sold by Lloyds of London insurance broker Miller Insurance Services Ltd.

      The new insurance initially will offer coverage of up to $10 million for direct loss suffered by the insured following a finding of non-compliance with specific license agreements under which open source code is obtainable, OSRM said.

      The insurance also will indemnify the insured for the loss of profits associated with the withdrawal or alteration of a product incorporating non-compliant code, OSRM said.

      Cost of the coverage will depend on what each company wants to protect. “It depends upon what each company is doing,” OSRM CEO Daniel Egger told Ziff Davis Internet, “but it generally will amount to about 2 percent per $1 million ($20,000) per year of coverage.”

      Not every company using open source is exposed to risks associated with license infringement, Egger said. “But as adoption rapidly increases, it is critical that companies take licenses seriously and fully understand what constitutes violation and therefore exposure,” he added. “I believe it will help eliminate one of the last reasons for corporate resistance to full acceptance of Linux and other open source software.”

      More than 30 legal claims involving infringement of open source licenses have been brought worldwide against corporations in the last two years. In each case, plaintiffs have prevailed in enforcing their rights to restrict the use of their code.

      One of the more active companies in software IP litigation has been The SCO Group of Lindon, Utah (formerly Caldera Systems), which owns the patent on Unix System V code and has lawsuits in process against IBM, Daimler Chrysler Corp., AutoZone Inc. and others.

      Open source compliance is excluded from standard Errors and Omissions insurance and is of particular concern for privately-held technology companies seeking to be acquired in merger and acquisition transactions, obtaining equity financing or going public. It is also a potential material risk for public companies under the Sarbanes-Oxley Act of 2002.

      A common risk scenario includes development of proprietary software, such as trading tools or inventory management applications, using one or more open source software components. Simple actions like making these tools available on an extranet, or sending them to external partners or suppliers, constitutes “distribution” under a GPL license and requires a company to open source that proprietary application, making it freely available to competitors, OSRM said.

      “The Linksys case is a good example,” Egger said. “When Cisco (Systems) acquired Linksys for $500 million (in 2003), they acquired a toolkit that included a large number of open source GNU “C” libraries. Some of those were sold to customers as a proprietary product. It was simply a mistake at the time. Cisco then rectified the issue by re-distributing the tools (free of charge) to its customers, which is an acceptable form of distribution.

      “Now, all deals must have that Linksys clause included, as I call it,” Egger said.

      Forrester analyst Michael Goulde told Ziff Davis Internet that the new insurance is too narrowly focused to attract a large number of customers, at least at the start.

      “The specific type of coverage that is being offered by Kiln is limited in scope and will appeal mostly to companies that are primarily in the business of distributing software, either directly or embedded in other products,” Goulde wrote in an e-mail.

      “They are offering compliance insurance that covers the cost of remediating non-compliant software. Having license compliance measures in place is more important for these companies than for companies using open source internally in business applications. For the latter, the risks are more uncertain, and they are likely to be less interested in the license compliance policies Kiln is selling.”

      Does this safeguard open source software enough for old-school enterprises using antiquated systems to consider switching over to it?

      “Its a step in the right direction,” Goulde said, “but lets face it: Open source isnt for everyone. Youll probably see those old-timers become more willing to use open source tools fairly soon, but using it in mission-critical applications would be akin to giving up their mainframe addiction.”

      Goulde said that Forresters customer surveys indicate that risk around open source licenses and intellectual property is one of the barriers to open source adoption, but not a major one.

      /zimages/5/28571.gifRed Hat wants Xen in Linux Kernel. Click here to read more.

      “Companies realize that there havent been any major litigations yet, so although the theoretical risk may be there, the actual risk is still fairly low,” Goulde said. “By putting policies into place around open source use and educating developers on how to properly use open source licenses, companies can eliminate many of the potential risks.

      “The risks that cannot be controlled are the potential for copyright or patent infringement that exist for any software product. And the danger of a customer getting sued (aka the SCO Group risk) rather than the infringing distributor is really pretty remote.”

      /zimages/5/28571.gifCheck out eWEEK.coms for the latest open-source news, reviews and analysis.

      Chris Preimesberger
      Chris Preimesberger
      https://www.eweek.com/author/cpreimesberger/
      Chris J. Preimesberger is Editor Emeritus of eWEEK. In his 16 years and more than 5,000 articles at eWEEK, he distinguished himself in reporting and analysis of the business use of new-gen IT in a variety of sectors, including cloud computing, data center systems, storage, edge systems, security and others. In February 2017 and September 2018, Chris was named among the 250 most influential business journalists in the world (https://richtopia.com/inspirational-people/top-250-business-journalists/) by Richtopia, a UK research firm that used analytics to compile the ranking. He has won several national and regional awards for his work, including a 2011 Folio Award for a profile (https://www.eweek.com/cloud/marc-benioff-trend-seer-and-business-socialist/) of Salesforce founder/CEO Marc Benioff--the only time he has entered the competition. Previously, Chris was a founding editor of both IT Manager's Journal and DevX.com and was managing editor of Software Development magazine. He has been a stringer for the Associated Press since 1983 and resides in Silicon Valley.
      Linkedin Twitter

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×