Time for SBOMS? What’s Ahead for 2024?

After a brief hiatus, thecloud2030 group is back and deep in tech, talking about things that we think are going to come on the tech front, sans AI.

In this episode, we take some time to go through Kubernetes, hardware, software, bill of materials, and some governance. This includes a smattering of predictions to get your year started off with a bang.

From there, we are going to be moving into our tech-ops series. Find more details about that in today’s outro!

Resources:
www.theregister.com/2023/12/27/bruc…erens_post_open
developersalliance.org/open-source-l…ty-is-coming/

Transcript: otter.ai/u/UQyqHKJ9oNd1SquAWW…?utm_source=copy_url
Image by DALLE: cartoon images of a robot reviewing a long bill of materials on a scroll of paper.

Cloud20302024SBOMCloudAutomationInfrastructureOSSOpen Source

Hashicorp BSL vs OSS License Discussion

Hashicorp made a license change into a BSL, a business license which is not open source that allows or makes code available, but instead restricts the use of Hashicorp products to people who are effectively paying customers or enterprise customers.

If you’re embedding or repackaging the software or competing with Hashicorp, you are prohibited from using it. We spent this podcast looking into why, how, and what implications there were, as well as historical precedents.

References
www.runtime.news/hashicorp-closes-a-door/
opentf.org
blog.gruntwork.io/the-future-of-te…pen-ab0b9ba65bca
spacelift.io/blog/spacelift-lat…t-on-hashicorp-bsl
ir.hashicorp.com/news-releases/ne…results-fiscal-0
www.hashicorp.com/license-faq#comp…uct-bsl-coverage
www.linkedin.com/posts/rhirschfel…7665233920-MxcP/

Photo by BİLAL KARADAĞ: www.pexels.com/photo/yk-1-17939409/
Transcript: otter.ai/u/ZjTzZZiYh_dXri3rSk…?utm_source=copy_url

Future of Centos and Enterprise Linux

The Red Hat changes in how they publish the source code for CentOS sent a stream specifically, but unlike all the other conversations that I’ve heard, we dive into how enterprises can inoculate themselves from this type of disruptive change. We also address what it means for the ecosystem of vendors and how we can build better software in response to the potential fragmentation of Red Hat, Linux Enterprise Linux or Enterprise Linux distros.

This was a surprising conversation, because we addressed a lot of important trends in how companies depend on Linux stability, and what they could do. If you are in this boat with all of us looking at how to have stable long term secure infrastructure using Linux, you will love this podcast.

Sources:
www.theregister.com/2023/07/10/orac…_ibm_rhel_code/
www.zdnet.com/article/oracle-tak…-linux-code-fight/
www.suse.com/news/SUSE-Preserve…-Enterprise-Linux/
www.zdnet.com/article/why-snap-a…-the-average-user/

Transcript: otter.ai/u/dmrcCulS0X1CC4YGHO…?utm_source=copy_url
Image: www.pexels.com/photo/photo-of-pe…de-table-3182755/

Open Source Future

How do we sustain open source? Today we discussed how the commercial models and sustaining models around open source are changing and evolving.

We also included some conversations about whether or not generative AI might actually change the economics around that part of open source. We hit on top projects, open source hardware, open source, operating systems platforms, a whole gambit, and how it fits together into a sustainable model for the users, companies, enterprises, and really everybody. We all use open source to one extent or another.

We have our book club coming up on data cartels, we’re going to be discussing it on May 4th and I hope you take the time to read and come join us.

Transcript: otter.ai/u/MugVjZkIebPMCepjlV…?utm_source=copy_url
Image: www.pexels.com/photo/wood-road-l…ountain-16179008/

Project Mgmt Vs Development Process

Our discussion about development methodologies quickly turns into one about product management methodology.

Those things are interlinked, and we spend a lot of time talking about how product management and the influence on user and operational experience has been transformed by the forces of the market. We also discuss how difficult it is to then organize team development processes to fit these quickly evolving, targeted product delivery challenges.

It’s a fascinating conversation about just how interlinked our development process is to the way we consume products in general.

Transcript: otter.ai/u/_Kljix8Hom5nhuhMbkDISjOL6fM
Image:www.pexels.com/photo/newlywed-co…-tongue-12194401/

Rob’s Hot Take:

In the September 29th Cloud 2030 Podcast, Rob Hirschfeld delves into the challenges of product management and its intricate connection with the development process. Emphasizing the difficulty of product management, he notes the impact of compartmentalization and siloed activities on collaboration and integration across teams. The conversation explores the critical need for cross-team discipline and collaboration, highlighting its absence in current practices and its impact on what is built and how it is built. Hirschfeld invites listeners to engage in the ongoing discussions at the2030.cloud and share their perspectives on these challenges in product design and development processes.

Successful Vendoring in Open Source

How can we make Open Source go faster, and how can we improve its interaction with vendors, especially hardware vendors?

We explore different ways that open source helps foster innovation, as well as where it creates ethical, financial, and legal conflicts in that process.

Thinking through how we want to bring vendor information into Open Source communities is an ongoing challenge.

Transcript: otter.ai/u/gTvOzZXkvWfYPOkVSvkAbJRrIB4
Image: www.pexels.com/photo/closed-blue…den-doors-350626/

Rob’s Hot Take:

In the June 7th episode, Rob Hirschfeld addresses the challenging aspect of establishing vendor areas for innovation within open-source communities. Striking a balance is crucial as vendors must avoid being too pushy with vendor-specific elements that undermine the open-source commons. Effective open-source communities find a middle ground, enabling vendors to contribute, extend, or replace components without compromising the integrity of the community. For a deeper exploration of this topic, listen to the full conversation at the2030.cloud, and join the ongoing discussions.

How Open Source is Like SpaceX

What makes Open Source projects work? Today we discuss open source business models, motivations, what and how these projects work.

We moved from that into testing quality maintenance and ultimately SpaceX and Tesla. This conversation dives into how Elon Musk is transforming the industries that he’s in by looking at the delivery process.

Transcript: otter.ai/u/MuWt-gSkzOnUjFz8ioI3dNtAsa8
Image: www.pexels.com/photo/falcon-9-ha…s-machines-60130/

Reliable License Models

We talk about software licensing in open source, and what it means to the broader market. In fact, we cover how it’s changing what the market actually is!

This is not not just open source licensing in general because at the end we didn’t care about the license. We are more concerned about utility, serviceability and operability of the products we use. We need to understand whether or not we can rely on them!

In short, the supply chain of the software was much more important than the licenses of the software

Transcript: otter.ai/u/kH-vbVxoymH9GGdNEi3jvF07c5s
Image: www.pexels.com/photo/gray-planes…om-window-127441/

Rob’s Hot Take:

Rob Hirschfeld, CEO and co-founder of RackN and host of the Cloud 2030 Podcast, reflects on the October 28th discussion about software licensing. He highlights the industry’s indifference towards software licensing as a critical battleground and questions the necessity of open source for good software, asserting that system support, maintenance, and trusted partners are more crucial. While acknowledging the importance of community goods like Kubernetes for creating abstraction layers, Hirschfeld emphasizes that the ultimate focus should be on the supply chain and invites listeners to explore the extended conversation at the2030.cloud.

Is Open Source Working?

Is open source driving innovation? And Is it a necessary component of Right to Repair and ownership? Are there commercial drivers where people want those open capabilities?

We transition into a deeper conversation about what’s going on with open source. Is it being innovative? Who is leading? How is it working?

Transcript: otter.ai/u/vto0yPpBuZtqngkc_zqMDp9J39M
Photo by Jeffrey Czum from Pexels [ID 4118958]