Earlier quoted context omitted.
Oh cool. As for CloudLinux, "not free" probably scale for some hosting environments, including non-managed cloud instances. But something like Springdale, given resources, might be able to provide. They're still tracking RHEL 7, though. Debian and Ubuntu, which offer five years of Long Term Support are the next best thing available, and that's already kind of tight for long-term deployments of self-hosted, old-fashio…
I trust Canonical more than Debian for security fixes. Canonical has a dedicated security team.
I claim no deep expertise on this, and I assume Canonical has more money to throw at this. Or are there contributions to Debian security in the form of paid personnel?
This is actually quite interesting to me, anyone with real knowledge of the subject is welcome to interject.