The Man Behind Munich's Migration of 15,000 PCs From Windows To Linux
An anonymous reader writes "It's one of the biggest migrations in the history of Linux, and it made Steve Ballmer very angry: Munich, in southwest Germany, has completed its transition of 15,000 PCs from Windows to Linux. It has saved money, fueled the local economy, and improved security. Linux Voice talked to the man behind the migration: 'One of the biggest aims of LiMux was to make the city more independent. Germany’s major center-left political party is the SPD, and its local Munich politicians backed the idea of the city council switching to Linux. They wanted to promote small and medium-sized companies in the area, giving them funding to improve the city’s IT infrastructure, instead of sending the money overseas to a large American corporation. The SPD argued that moving to Linux would foster the local IT market, as the city would pay localcompanies to do the work.' (Linux Voice is making the PDF article free [CC-BY-SA] so that everyone can send it to their local councilors and encourage them to investigate Linux)."
... but they're also taking care of the citizens screwed by the XP-end-of-life:
http://www.itnews.com.au/News/...
.
They could have saved a lot of money just by threatening plausibly to switch to GNU/Linux.
Microsoft is known to be very forthcoming when people start considering alternatives. "We'll give you the Ballmers and Chains for free. You'll just pay for the thumbscrews later on. And you'll get a sweet deal for rack-mounted whatevers to boot."
And at this point you have to ask whether the NSA took a look at the code for the Pentagon and found some holes and diligently reported them back to Microsoft to get them fixed... or did they certify the code figuring it was better to know about the vulnerabilities and be able to exploit them than to try and fix them? I think the track record here is that relying on the NSA to certify windows at least in some way has been an exercise in balancing an inherent conflict of interest. And in terms of institutional self interest it seems that the NSA is going to be more on the hook for what they can find out through surveillance than what kind of compromises of US computers there are on their watch. That combined with monthly patches creates a moving target that is probably well beyond the capabilities of even hundreds of dedicated people to adequately keep up with. In that environment finding a few holes out of perhaps many and exploiting them, at least for some period of time before reporting them, is clearly in the NSA's institutional best interest even if that means leaving the DOD and Industry more vulnerable. Even the latest directive from the Obama administration left that door wide open... saying that the NSA only had to report security vulnerabilities if they couldn't be used in the interest of national security... so basically publicly confirming the NSA policy of finding vulnerabilities and not reporting them because they can use them for their own surveillance activities.