I for one am going through quite a culture shock. I always assumed the nature of FOSS software made it immune to be confined within the policies of nations; I guess if one day the government of USA starts to think that its a security concers for china to use and contribute to core opensource software created by its citizens or based in their boundaries, they might strongarm FOSS communities and projects to make their software exclude them in someway or worse declare GPL software a threat to national security.

  • geneva_convenience@lemmy.ml
    link
    fedilink
    arrow-up
    2
    ·
    edit-2
    27 days ago

    Yes. There is an extremely arbitrary distinction made between the USA and Russia. Both are known for injecting spyware. China is somehow still okay? It makes no sense.

    Not to mention the elephant in the room by not banning another certain country actively committing war crimes.

    All software should be safety checked. Where the maintainer is from should be irrelevant.

    But the most weird aspect is the timing. Why now and not a few years ago?

  • CanadaPlus@lemmy.sdf.org
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    27 days ago

    What happened this time?

    Edit, answered elsewhere:

    Recently, Linux removed several people from their organization that have Russian email addresses. Linus made a statement that confirmed this was done intentionally. I believe that there was some mention of following sanctions on Russia due to the war. I haven’t looked into the details of it all, so take my analysis with a grain of salt. From what I understand, it sounded like it was only Russian maintainers that were removed and normal users submitting code from Russia can still contribute. Maintainers have elevated permissions and can control what code gets accepted into a project, meaning that a bad actor could allow some malicious code to sneak past. This may have also contributed to the decision since this type of attack has happened before and Russia seems like a likely culprit. The reactions to this change have been varied. Some people feel it is somewhat justified or reasonable, some people think that it means it is no longer open source, and some people think it is unfairly punishing Russian civilians (it is worth noting that that is part of the point of sanctions).

  • QuillanFae@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    27 days ago

    I just wanted to say that I have the same questions, and it’s a relief to see it posted by someone with more courage. I’m too ignorant to contribute to the discussion though. I don’t know how a government or private entity could pressure a FOSS project in this way, unless that pressure was put on the project’s git platform. At which point the repo just moves elsewhere.

    • wewbull@feddit.uk
      link
      fedilink
      English
      arrow-up
      1
      ·
      27 days ago

      FOSS does not mean:

      • Community owned: Linux is owned by the Linux Foundation, a legal entity of the United States and subject to it’s laws.
      • Obliged to accept all contributions: The owner is free to accept or reject contributions for any reason.

      Nothing changed except some people are no longer responsible for maintaining parts of the source tree. Their delegated power to accept contributions was removed. They can still propose changes, but they will be reviewed by others who aren’t subject aren’t at risk of Russian state influence.

      This isn’t saying they’ve done anything wrong, or that they are currently under state influence, but now that they no longer have maintainer privileges the chance of the FSB knocking on their door has probably dropped 90%.

  • TommySoda@lemmy.world
    link
    fedilink
    arrow-up
    0
    ·
    edit-2
    27 days ago

    I’m out of the loop, what’s the recent Linux drama? If you don’t wanna type it out, you can point me in the right direction. Thanks. :)

      • wizardbeard@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        0
        ·
        27 days ago

        For additional context, this was not a choice, but a requirement. The Linux Foundation is US based, and Torvalds is a US citizen. This was required due to current US sanctions against Russia, and was not just some sort of “Russia bad” thing from Torvalds that a lot of people are framing it as.

        • CommanderCloon@lemmy.ml
          link
          fedilink
          arrow-up
          0
          arrow-down
          1
          ·
          27 days ago

          this was not a choice, but a requirement

          It has been framed as such, but no evidence has been given that it was a requirement

    • ObsidianNebula@sh.itjust.works
      link
      fedilink
      arrow-up
      0
      ·
      27 days ago

      Recently, Linux removed several people from their organization that have Russian email addresses. Linus made a statement that confirmed this was done intentionally. I believe that there was some mention of following sanctions on Russia due to the war. I haven’t looked into the details of it all, so take my analysis with a grain of salt. From what I understand, it sounded like it was only Russian maintainers that were removed and normal users submitting code from Russia can still contribute. Maintainers have elevated permissions and can control what code gets accepted into a project, meaning that a bad actor could allow some malicious code to sneak past. This may have also contributed to the decision since this type of attack has happened before and Russia seems like a likely culprit. The reactions to this change have been varied. Some people feel it is somewhat justified or reasonable, some people think that it means it is no longer open source, and some people think it is unfairly punishing Russian civilians (it is worth noting that that is part of the point of sanctions).

      • CanadaPlus@lemmy.sdf.org
        link
        fedilink
        arrow-up
        1
        ·
        27 days ago

        As per usual, the discussion of the Linux drama far exceeds the actual drama. I’m guessing most of those people will still contribute.

  • orcrist@lemm.ee
    link
    fedilink
    arrow-up
    0
    ·
    27 days ago

    It’s banning contributors but not contributions themselves. So there must be inconvenience but somewhat effective workarounds. That could be fun to see unfold.

      • orcrist@lemm.ee
        link
        fedilink
        arrow-up
        1
        ·
        24 days ago

        But that’s not what happened. If the lawyers are saying that some open source groups can’t work with open source groups in Russia, as Linus indicated, that doesn’t mean either group dislikes the other group. I don’t think this is a question of animosity.

    • rottingleaf@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      27 days ago

      That’s the point of FOSS as copyleft, to use the law to protect “free and open” information. This allows bigger projects, because contributors don’t have to keep their heads down.

      At the same time maybe this is a downside, not an upside. As the reason why it has all gotten so big and complex and corporate-influenced.

    • spoopy@lemmy.world
      link
      fedilink
      arrow-up
      0
      ·
      27 days ago

      The usual consequences to not following the law are not in your favor.

      If your goal in contributing to FOSS is to go to prison, there are a lot better avenues to achieve that.

      • Law aren’t always right and governments don’t always do the best neither for the world nor for its citizens. Open source projects and corporations shouldn’t rely on any government, they shouldn’t do the biddings on governments — either “good” or “bad” — and act in people best interests.

        Of course this is a pipe dream and what we got is more free work for companies with none the benefits

        • spoopy@lemmy.world
          link
          fedilink
          arrow-up
          1
          ·
          26 days ago

          I don’t understand why you think “avoiding prison” equals free work for companies. The individuals contributing to open source are subject to the same laws we’re discussing in this thread, and are the ones that would actually be getting consequences.

          No one exists without a government, and that’s not even a pipe dream, it’d be societal collapse.

  • Dr_Vindaloo@lemmy.ml
    link
    fedilink
    English
    arrow-up
    0
    arrow-down
    1
    ·
    27 days ago

    Yes. I always thought of sanctions as being finance-related, meaning you can’t transact with sanctioned groups. I figured it couldn’t apply to decision-making/membership in non-profit organizations (that it might somehow violate “free speech” or some shit). Finding out this is not the case is terrifying and one more reason to hate the US (not that we needed more). This might disincentivize some people to contribute to FOSS.

  • MostRandomGuy@lemmy.ml
    link
    fedilink
    English
    arrow-up
    0
    arrow-down
    1
    ·
    edit-2
    27 days ago

    Certain Open Source movements are pure bigotry and opportunism, the Linux Kernel / The Linux Foundation for example, so it doesn’t really make me wonder.

  • slazer2au@lemmy.world
    link
    fedilink
    English
    arrow-up
    0
    arrow-down
    1
    ·
    27 days ago

    Nope. Politics is part of being open source.

    As for US strong arming you don’t have to be a US company for them to do that. RISK-V and ASML have been targeted by them in the past to prevent Chinese use.

  • Scorpius [He/Him]@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    0
    arrow-down
    2
    ·
    27 days ago

    Same here. For now it’s only barring contributors which won’t harm actual users much, but that could change in the future with the precedent this is setting.

    What’s the point of “FOSS” at that point if it’s not so different from corporate products, being similarly vulnerable to sanctions? I could see genuine free software being relegated to piracy communities if it goes that far.

    • Karmmah@lemmy.world
      link
      fedilink
      arrow-up
      1
      ·
      27 days ago

      FOSS gives people the option to take the original code and create their own version of it in case they don’t like what the original maintainers are doing. With closed source you would be stuck and would have to look for something new.