this post was submitted on 26 Oct 2024
50 points (100.0% liked)
Technology
37716 readers
360 users here now
A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.
Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.
Subcommunities on Beehaw:
This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
What I don't understand about this whole situation: why does it matter where commits originate from if you're dealing with an open source project? Does the Linux kernel not peer review code? Can't security researchers from around the world comb over the source code for vulnerabilities/malware? Or is this all just political theatrics?
They’re not allowed to be collaborating with people who work for certain Russian companies. It’s not a question of security, it’s a question of US law requiring US entities to punish through non-cooperation certain companies that are assisting in the war effort or whatever.
It might or might not be fair, but it isn’t up to the kernel developers, it’s a legal requirement for them.
Somewhere i read that non compliance could land you in jail. If I was a maintainer, i am not sure if I would like to go to jail for OSS.
Not about code security (even thought that is certainly important by itself). Sanctions are about political and economical isolation, is not that you don't trust their companies, is that you want to unplug them as a punishment.