Live data from Hacker News

An Open Letter to Intel

cs.vu.nl

201–210 of 379 posts

Re: An Open Letter to Intel

#201
post #73

Earlier quoted context omitted.

I agree that many companies have that attitude towards BSD versus GPL, but is there actually a rational basis for it? Given that you've apparently already gone through the legal process and found out that the GPL means what you think it means, why are you holding it to a higher standard than BSD?

If one of your employees accidentally copies even a single bit of GPL-licensed code into your privately licensed code or statically links against such code even once, and it gets ‘outside’ in any way, you legally have to release that version of your code under the GPL. Worse, the source code of all versions from _before_ that checkin automatically become GPL-licensed (because they contain code that, transitively, bec…

Thats incorrect on many points:

1: A single-bit is not copyrightable. True and false is not copyrightable. No one in history have ever been sued for a single bit. No one has ended up in court for a one-bit GPL code.

2: If it get "outside" accidentally, there is a direct remedy that do not include releasing anything. You stop redistributing the program. Practically all GPL related lawsuits started with the words "please stop infringing my work", and when that did't work, "Judge, please stop them from infringing my work". The only companies that have ever been "forced" to do anything is when the option is between a full stop in production and sale, or releasing source code. One such company chose to not cut revenue, not stop production, and instead gave us the code which the OpenWrt project was created on. I wouldn't call that "forced".

3: Code do not transform from being non-GPL to GPL. That is not how copyright work. Code is only under GPL if you explicitly release a piece of code under GPL. If you put MIT code and gpl code together, the MIT will still be MIT. The combined work must explicitly be under GPL to be compliant, but you can still use the MIT code in isolation under MIT. The MIT code do not transform into different licenses just because you combine it with other code. Only explicit action counts, and the worst thing that can happen from code getting ‘outside’ in untended ways is copyright infringement where you legally have to stop distributing code.

Re: An Open Letter to Intel

#202
post #73

Earlier quoted context omitted.

I agree that many companies have that attitude towards BSD versus GPL, but is there actually a rational basis for it? Given that you've apparently already gone through the legal process and found out that the GPL means what you think it means, why are you holding it to a higher standard than BSD?

If one of your employees accidentally copies even a single bit of GPL-licensed code into your privately licensed code or statically links against such code even once, and it gets ‘outside’ in any way, you legally have to release that version of your code under the GPL. Worse, the source code of all versions from _before_ that checkin automatically become GPL-licensed (because they contain code that, transitively, bec…

> If one of your employees accidentally copies even a single bit of GPL-licensed code into your privately licensed code or statically links against such code even once, and it gets ‘outside’ in any way, you legally have to release that version of your code under the GPL.

> With BSD-licensed code, that risk is way smaller. The worst you have to do is add a few (or quite a few thousand. Go check Setting/General/About/Legal for an example) attribution lines to the versions of your code that use the BSD-licensed code.

Accidentally copying GPL-licensed code into non-GPL-licensed code puts you in exactly the same legal position as accidentally copying BSD-licensed code without attribution: you are now, technically, violating copyright, and in theory liable for statutory damages of $150,000. You're never forced to release your code under GPL; the GPL copyright holder might insist that you either release your code under GPL or pay the $150,000, but equally the BSD copyright holder might insist that you pay the $150,000 - they're within their rights to do that.

In practice the author will most likely be willing to work with you to sort it out in either case.

> Worse, the source code of all versions from _before_ that checkin automatically become GPL-licensed (because they contain code that, transitively, becomes GPL because it later was linked with GPL-licensed software)

This is simply false.

Re: An Open Letter to Intel

#203
post #12

Earlier quoted context omitted.

If Minix's license wouldn't be BSD, they would use some other BSD licensed OS or develop it's own...

They chose Minix, so it seems reasonable to assume that Minix was the best option. If Minix would not have been BSD, they would have had to choose a worse option or spend significant money to build their own OS. Both options would have cut into ME's budget and might have reduced its capabilities. "If A wouldn't, then B would" is a weird argument imho. It's basically equivalent to saying "If we can't destroy C in one…

> might have reduced its capabilities

And security and many other things. Surely you aren't arguing that an even more closed environment is ideal just because of a minor budget spend for a large company.

Re: An Open Letter to Intel

#204
post #169

Earlier quoted context omitted.

Nope. His letter point is clearly about widely(1) known debate(2) between him and Linus Torvalds, and ego massage. (1) widely, if you arent 25 years old proverbial "javascript developer" ;-) - as the debate took place in 1992. (2) https://en.wikipedia.org/wiki/Tanenbaum%E2%80%93Torvalds_deb...

Speaking of ego: "if you arent 25 years old proverbial "javascript developer" ;-)" Why is this necessary?

The same reason Vi versus Emacs internet arguments are necessary.

Re: An Open Letter to Intel

#205
post #103

All Dr. Tanenbaum is saying is that it would have been the classy thing to let him know, nothing more. Professor Tanenbaum is one of the most respected computer scientists alive, and for Intel to include Minix in their chip and not let him know is kind of unprofessional and not very nice to say the least. That is his only (and quite fair) point.

> and for Intel to include Minix in their chip and not let him know is kind of unprofessional and not very nice to say the least. I guess Minix' license, which allows this kind of behaviour, is the very reason Intel chose Minix in the first place. I imagine it would be very complicated to get management approval for informing Dr. Tannenbaum about the usage in Intel's ME. IMHO if he has a problem with the way things w…

He did cover those points in the letter:

> I guess Minix' license, which allows this kind of behaviour, is the very reason Intel chose Minix in the first place. I imagine it would be very complicated to get management approval for informing Dr. Tannenbaum about the usage in Intel's ME.

Tanenbaum: Some people have pointed out online that if MINIX had a GPL license, Intel might not have used it since then it would have had to publish the modifications to the code. Maybe yes, maybe no, but the modifications were no doubt technical issues involving which mode processes run in, etc. My understanding, however, is that the small size and modular microkernel structure were the primary attractions.

> MHO if he has a problem with the way things worked out, he should have chosen a different license.

Tanenbaum: I don't mind, of course, and was not expecting any kind of payment since that is not required. There isn't even any suggestion in the license that it would be appreciated.

Tanenbaum: The only thing that would have been nice is that after the project had been finished and the chip deployed, that someone from Intel would have told me, just as a courtesy, that MINIX 3 was now probably the most widely used operating system in the world on x86 computers. That certainly wasn't required in any way, but I think it would have been polite to give me a heads up, that's all.

-----

All in all, I think Tanenbaum's open letter is partly an exercise in self promotion and partly venting a little frustration that his work has gone uncredited given the scale of its deployment. I might be reading between the lines a little here but I also wonder if he's venting little because he dislikes nature of this particular deployment:

Tanenbaum: Many people (including me) don't like the idea of an all-powerful management engine in there at all (since it is a possible security hole and a dangerous idea in the first place), but that is Intel's business decision and a separate issue from the code it runs.

Re: An Open Letter to Intel

#206
post #95

Earlier quoted context omitted.

When Fuchsia gets more mature you can eventually remove Android from that list. The stable NDK APIs are not Linux specific, ANSI C and C++ libraries are OS agnostic, and as of Android 8 the syscalls are white listed.

> When Fuchsia gets more mature you can eventually remove Android from that list. And Android can finally throw out its biggest chunk of meaningfully open-source source-code so far (from an end-user/modder perspective). At that point Android is not going to be meaningfully open any more, and might as well be considered a closed platform on par with iOS. I wonder how/if that will impact the platforms popularity.

Fuchsia is open source [1] [2] though not specifically GPL. It uses a myriad of licenses.

> I wonder how/if that will impact the platforms popularity.

It won't. Vast majority of users don't care about open source, and developers won't have to care. The kernel and userland get replaced, but the underlying Android OS (excluding GApps) remains open source.

[1] https://github.com/fuchsia-mirror

[2] https://en.wikipedia.org/wiki/Google_Fuchsia

Re: An Open Letter to Intel

#207

Earlier quoted context omitted.

[save]

Wrong thread? Nothing you wrote has any relationship with what GP commented on.

I deleted my OP; here is the relevant piece for people whose reading comprehension skills are as poor as yours:

> That being said: I do agree with Tanenbaum that he deserves more acknowledgement for parts of his system inspiring security design around it. There's lot of hype on this subject; I encourage anybody read more than one perspective about the kinds of trade-offs manufacturers have to make: https://www.techrepublic.com/article/is-the-intel-management...

People like you, simon_o, are ruining HN. Thanks for reminding me why I don't really hang out here much any more.

Re: An Open Letter to Intel

#208

Earlier quoted context omitted.

It would also force Intel to give us a means to replace ME with something else which ultimately puts the user in control.

Only the GPLv3 would force Intel to do that. With v2 they can go the TiVo route and make the source available without giving out the means to make the hardware run your own binaries.

Which means they could’ve used Linux if they wanted to

Re: An Open Letter to Intel

#209

Earlier quoted context omitted.

This is why the GPL is so great IMO. It would force Intel to either release the source code or use something else.

Which is exactly what Intel did, since Intel didn't use e.g. Linux. If there were no BSD based OS to use, my bet is that Intel would have continued to use a closed source OS.

Even if they used Linux, they could just go the TiVo route and not release the signing keys

Re: An Open Letter to Intel

#210
The open letter is not about licensing or private attribution. It's the slowest come back I've ever seen. In 1992, Tanenbaum wrote "LINUX is obsolete". Linus and Tanenbaum docked it out about microkernels. Linux became very widely used. Intel secretly made Minix even more so. Linus eyes must be rolling.
Post reply on HN