OpenSuse Hacked
The openSUSE Forums were hijacked today by a Pakistani hacker who goes by handle H4x0r HuSsY. Apparently the hacker exploited the vulnerability in vBulletin 4.2.1 software which SUSE uses to host the forum. The problem is that the hack revealed that the openSUSE Forums were based on proprietary forum software.
The openSUSE team has denied that the users’ passwords were compromised by the hack.
“The credentials for your openSUSE login are not saved in our application databases as we use a single-sign-on system (Access Manager from NetIQ) for all our services. This is a completely separate system and it has not been compromised by this crack,” the team said.
What the cracker reported as compromised passwords where indeed random automatically set strings that are in no way connected to your the passwords.
While it was good that none of the user data was compromised open sourcers are scratching their collective heads and wondering if the attack would have happened if the outfit had been eating its own dogfood and used some nice open source technologies.
Xen Project To Support ARMv8
Xen Project will release the Xen 4.3 hypervisor later today with support for ARMv7 and ARMv8 hardware.
The Xen Project overseen by The Linux Foundation produces an open source hypervisor that is a popular alternative to KVM. The project will release the Xen 4.3 hypervisor today with support for ARM servers, performance improvements and a technology preview of Open Vswitch.
The Xen Project is backed by a number of big firms including AMD, Cisco, Google, Intel and Samsung, and is one of the first hypervisors to support ARMv8 based processors along with the ARMv7 architecture. The Xen Project said it has been working with ARM server vendor Calxeda to validate Xen 4.3 on its ARMv7 and ARMv8 servers.
For the Xen Project, ARM server support, in particular ARMv8 support, will be key as servers using the architecture start to appear later this year and in volume during 2014. Given that Amazon Web Services, arguably the biggest cloud service provider around, is supporting the Xen Project, ARMv8 support in the hypervisor could be painful for VMware as it tries to compete against a free, industry supported alternative.
Lars Kurth, community manager for the Xen Project said, “The ARM server support is an exciting development for the community and we’re excited about the opportunities this will bring to customers.”
Xen 4.3 also includes improvements to power efficiency by using the MWAIT extension for processors such as Intel’s Sandy Bridge, Ivy Bridge and Haswell.
Linux Foundation VP and COO Mike Woster talked up the importance of virtualisation to the Linux and open source community. He said, “Virtualization is important to Linux and the open source community and the Xen Project is helping companies realize new levels of scalability and efficiency in areas such as cloud computing.
“With the latest release of Xen Project, organizations can advance their cloud computing strategies to deliver on customer expectations for their enterprise environments.”
The Xen 4.3 hypervisor was released yesterday.
openSUSE Lacks Resources For ARM
Opensuse said that its ARM development is being limited by a lack of resources to build software despite having launched its Open Build Service (OBS).
Last month the Opensuse project announced the release of Opensuse 12.3, which brought ARM support to the same level as x86 and AMD64. While the project is working on bringing ARMv7 and more importantly ARMv8 support to its Linux distribution, Jos Poortvliet, community manager at Opensuse, said that the project’s ARM development has been limited by the lack of build resources.
Opensuse announced a collaboration with Samsung to create the OBS, which it was hoped would speed up the development life-cycle. However Poortvliet said, “ARM development is limited by available build resources required for compiling each iteration of new software and while the OBS helps by bringing a lot of build power in one place, the use of QEMU meant that build resources were shared with native x86_64 builds, which turned out to be a performance limitation.
“With fast and dedicated ARM hardware we can reserve build power for ARM builds and make use of the more efficient KVM virtualization.”
However in better news, Poortvliet said that the project had managed to deploy KVM – the Linux kernel based virtual machine – on ARM hardware. He added that parent firm Suse has assigned more resources to building ARM software on OBS and forecast that all packages would be built in two weeks.
While Canonical and Red Hat have been vocal about their ARM developments, Suse and its Opensuse project have been quietly going about their business, though given Poortvliet’s comments regarding a lack of resources, perhaps they have been going about it too quietly.
Although ARM vendors are not expected to converge on the server market until next year, even ARM thinks that most servers using its chips will run open source software.
Unless Suse manages to get its act together, it might find that Canonical and Red Hat have already carved out a significant chunk of the market.