YOUR FEEDBACK
Werner Keil wrote: Java 6 update 10. If I'd be running Apple, I'd probably really drop dead...


2008 East
DIAMOND SPONSOR:
Data Direct
Frontiers in Data Access: The Coming Wave in Data Services
PLATINUM SPONSORS:
Red Hat
The Opening of Virtualization
Intel
Virtualization – Path to Predictive Enterprise
Green Hills
IT Security in a Hostile World
JBoss / freedom oss
Practical SOA Approach
GOLD SPONSORS:
Software AG
The Art & Science of SOA: How Governance Enables Adoption
PlateSpin
Effective Planning for Virtual Infrastructure Growth
Fujitsu
Automated Business Process Discovery & Virtualization Service
Ceedo
Workspace Virtualization
Click For 2007 West
Event Webcasts

2008 East
PLATINUM SPONSORS:
Appcelerator
Think Fast: Accelerate AJAX Development with Appcelerator
GOLD SPONSORS:
DreamFace Interactive
The Ultimate Framework for Creating Personalized Web 2.0 Mashups
ICEsoft
AJAX and Social Computing for the Enterprise
Kaazing
Enterprise Comet: Real–Time, Real–Time, or Real–Time Web 2.0?
Nexaweb
Now Playing: Desktop Apps in the Browser!
Sun
jMaki as an AJAX Mashup Framework
POWER PANELS:
The Business Value
of RIAs
What Lies Beyond AJAX?
KEYNOTES:
Douglas Crockford
Can We Fix the Web?
Anthony Franco
2008: The Year of the RIA
Click For 2007 Event Webcasts
SYS-CON.TV
TOP LINKS YOU MUST CLICK ON


OSDL Mobile Linux Initiative
The Linux Platform and the explo$ive mobile market

Security
Mobile device security breaks out into several distrinct areas, and mobile OEMs seek standard solutions to the following issues:

  • Wireless Network Security: While the wireless networks that carry mobile traffic are theoretically "closed," they can be compromised, both in terms of access to client and infrastructure devices, and to the streams of voice and data that they carry. This area, however, is usually the purview of carriers and operators, who present fairly well-defined requirements to handset OEMs. At present, OEMs seem content with how a Linux-based phone fits into their wireless (GPRS/CDMA) security implmentations. However, with the addition of Wi-Fi and Bluetooth to handsets, a new set of concerns arise, especially after accounts of phonebook cracking and other skullduggery via Bluetooth.
  • Content Security: Handset suppliers have requirements to protect both users' personal content (phonebooks, e-mail, etc. and commercial content (movies, music, and other copyrighted material) that are increasingly ubiqutious on smart phones. While a range of strong encryption technology is readily available for Linux, OEMs aver that the same is not true for broader DRM and other content protection needs.
  • Physical Access: Unlike the remote servers and clients that populate other networks, phones are by definition "handy" - that is, the so-called "black hats" can use physical means to crack device integrity and security. Opening the "clamshell" plastic that protects a phone's innards can also expose peripheral interface pins and allow probing and malicious signal injection. Phones can also be baked - literally heated up - and dropped, shocked, or similarly abused to induce failure modes that further enable circumvention of security precautions.
  • Exploit Resilience: Security measures focus on limiting access, often creating a false sense of security on the devices themselves. Moreover, embedded toolkit makers usually ship their tools and platforms with the security minimized or disabled to facilitate development, leaving the final secure configuration and deployment up to OEMs, integrators, and their customers. Misconfiguring firewalls, failing to apply up-to-date security patches, leaving a single physical port exposed, or running multiple functions as root (all common with embedded applications) can lead to deploying easily exploitable devices, and both leaving the phones and networks open to compromise.
Storage
Local storage on mobile devices resides in a mix of Flash, RAM, and remote stores. Linux does present a range of embedded file systems - CramFS, JFFS2, YAFFS, RAMFS, pRAMFS, and also semi-proprietary Flash file schemata from Intel, M-Systems, et al. However, device OEMs report a range of performance issues around journaling, mount time, wear leveling, and support for both NAND and NOR devices.

OSDL MLI - Bridging Gaps
In October 2005, OSDL launched its fourth and latest working group, the Mobile Linux Initiative. MLI includes members from all levels of the mobile telephony ecosystem - chipset makers, Linux distribution and platform suppliers, middleware ISVs, handset manufacturers, integrators, carriers, and operators. Dubbed "Carrier Grade Linux for handsets" by several OSDL members, MLI will strive to address the platform challenges described in this article "from the kernel up" to accelerate Linux adoption on mobile phones and other converged voice and data devices.

In contrast to other industry groups, MLI intends to focus on solution creation, not merely publishing APIs and new standards that can end up as unfunded mandates. To that end, MLI members are today marshaling resources to create unique implementations to meet handset OEM, carrier, and operator needs, to foster the advance of existing Open Source projects, and to open existing internal technologies for the benefit of the MLI audience and the community in general.

To learn more about OSDL MLI, membership and activities, visit www.osdl.org/lab_activities/mobile_linux. You can also join the open MLI mailing list. If your company participates in the mobile-wireless ecosystem, please also consider joining OSDL and contributing to the MLI working group.

MLI Mission:
To accelerate Linux adoption in the mobile space

  • Identify and address technical and non-technical industry requirements
  • Create and foster implementations in Open Source
  • Advocate and explain industry needs to the kernel/Open Source community
  • Promote mobile Linux (including educating carriers about the benefits of Open Source)
  • Clarify legal and regulatory issues surrounding mobile phones as they relate to Linux and Open Source
  • Enable and foster pre-platform developer ecosystem
About Bill Weinberg
Bill Weinberg brings over 18 years embedded and open systems experience to his role as Open Source Architecture Specialist and Linux Evangelist at the Open Source Development Labs, where he supports initiatives for meeting developer and end-user requirements for Carrier-Grade, Data Center and Desktop Linux. Prior to the OSDL, Bill was a founding team-member at MontaVista Software, and helped establish Linux as a favored platform for next- generation intelligent embedded device development. In the course of his career, Bill also worked at Lynx Real-Time Systems, Acer Computer, and Microtec Research. Today Bill is known for his writing and speaking on topics that include Linux business issues, Open Source licensing, embedded application porting/migration, and handheld applications. He pens columns in LinuxUser and Developer, and Embedded Computing Design, and is a contributor to periodicals like E.E.Times, Linux Journal and Elektronik. Bill is also a featured speaker at conferences like Linux World, Real- time Computing, and Embedded Systems. More info at http://www.linuxpundit.com

LATEST LINUX STORIES
Hans Reiser’s children Rory, 8, and Niorline, 7, represented pro bono by Morrison and Foerster, the big-time San Francisco law firm, have sued their father for the wrongful death of their mother, seeking unspecified damages for being deprived of her “love, support, companionship, c...
Two years ago this weekend Linux programmer Hans Reiser murdered his estranged wife. Friday he was sentenced to 15 years to life as part of a deal that reduced his first-degree murder conviction and its mandatory 25 years-to-life sentence to second-degree murder in exchange for taking ...
Two of the biggest launches in Rich Internet Application history took place in 2007/2008 when Adobe launched AIR 1.0 in February '08 and Microsoft launched Silverlight (September '07). At the 6th International AJAXWorld RIA Conference & Expo in October SYS-CON Events is delighted to be...
Red Hat CTO Brian Stevens, Citrix CTO Simon Crosby, Egenera CTO Pete Manca, Allen Stewart, Group Manager, Windows Virtualization at Microsoft, and Brian Duckering, Sr. Director of Products and Alliances at Symantec were the top industry executives who joined Jeremy Geelan in the 4th Fl...
Microsoft is going to pump up to $100 million more into Novell for additional certificates that it will sell or give to customers to redeem for SUSE Linux support. Novell should get the money on November 1 right before the second anniversary of the widely loathed Microsoft-Novell pact ...
IBM introduced a series of new products, services and initiatives that further expand IBM's commitment to Linux and open source by enabling the next generation of Linux. As the company marks ten years of support for Linux, IBM announced a number of cross-company initiatives to driv...
SUBSCRIBE TO THE WORLD'S MOST POWERFUL NEWSLETTERS
SUBSCRIBE TO OUR RSS FEEDS & GET YOUR SYS-CON NEWS LIVE!
Click to Add our RSS Feeds to the Service of Your Choice:
Google Reader or Homepage Add to My Yahoo! Subscribe with Bloglines Subscribe in NewsGator Online
myFeedster Add to My AOL Subscribe in Rojo Add 'Hugg' to Newsburst from CNET News.com Kinja Digest View Additional SYS-CON Feeds
Publish Your Article! Please send it to editorial(at)sys-con.com!

Advertise on this site! Contact advertising(at)sys-con.com! 201 802-3021


SYS-CON FEATURED WHITEPAPERS

ADS BY GOOGLE