View Single Post
Old 24th April 2014
Carpetsmoker's Avatar
Carpetsmoker Carpetsmoker is offline
Real Name: Martin
Tcpdump Spy
 
Join Date: Apr 2008
Location: Netherlands
Posts: 2,243
Default

Here's what I posted in the Ars comments section a few days ago:


The whole "we don't get enough donations to code properly"-excuse is, quite honestly, a pile of horseshit.
No one demanded the heartbeat extension, there was no deadline, and few people used even when it was implemented. The OpenSSL people obviously had a choice how to implement this. They chose to implement it badly. Using it as an excuse now only serves to highlight their complete lack of responsibility & cognitive dissonance.

Perhaps the lack of documentation, code quality can, at least *in part* be attributed to the lack of donations, but to me it seems that the OpenSSL people are just churning along code, fairly happy with the status quo. There has, for example, never been an OpenSSL fundraiser. You can't just expect people to start knocking at at your door asking you to please take their money.
__________________
UNIX was not designed to stop you from doing stupid things, because that would also stop you from doing clever things.
Reply With Quote