Is Security Systems Debate Missing Point?

Published: Sep 30, 2002
Updated: Feb 2, 2021
2 minute read
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Open-source advocates championing their approach to software as inherently more secure would use each new vulnerability in Microsofts proprietary Windows software to buttress their arguments. The Code Red and Nimda worms had a feast on unpatched Microsoft Internet Information Services servers last year, while the open-source Apache servers sat untouched. Proof, said advocates, that proprietary systems simply cannot match the speed of hackers in finding new holes. That all changed this summer when a worm called Slapper did a double dip on exploiting the OpenSSL tool kit. So much for open source being more secure simply because its open.

As Dennis Fisher explains in this weeks Cover Story, “Open Source: A False Sense of Security?” the arguments over open vs. proprietary system security may be missing the point. Security has always been a mix of products and process. All the coolest security products wont make much of a difference if you havent developed a process for being proactive about IT security and constantly assessing your infrastructure. Of the three big issues in enterprise systems deployment (scalability, reliability and security), security is the issue that open-source and proprietary vendors have not been able to resolve. Read Dennis article to get the best approach to understanding open-source security.

Employees are a companys biggest cost and asset. Making sure you are getting the most value from that asset falls under the term human capital management. In this weeks lead eWeek Labs story, “The Human Touch,” Debra Donston looks at HCM and the software programs that help measure and manage the employees and projects that make up a companys lifeblood so that you can get optimum value from the employees contributing to your companys overall health.

When you are not worrying about managing your human resources, you can always start worrying about your storage resources. In “Blazing an SRM Trail,” Evan Koblentz surveys the latest round of storage resource management products and speaks with users about how they are using them.

Application servers are the heart of the Web services infrastructure, and the Java side is about to go through another cycle of change. With the imminent release of the J2EE 1.4 specification, this weeks Labs section includes a Tech Analysis by Tim Dyck on what the 1.4 spec contains. We hope his analysis helps you in sorting out the changes that are in the new release.

Whats your view on open-source security? Write to me at eric_lundquist@ziffdavis.com.

Eric Lundquist

Eric Lundquist

Content Writer

Since 1996, Eric Lundquist has been Editor in Chief of eWEEK, which includes domestic, international and online editions. As eWEEK's EIC, Lundquist oversees a staff of nearly 40 editors, reporters and Labs analysts covering product, services and companies in the high-technology community. He is a frequent speaker at industry gatherings and user events and sits on numerous advisory boards. Eric writes the popular weekly column, 'Up Front,' and he is a confidant of eWEEK's Spencer F. Katt gossip columnist.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。