TechRepublic : A ZDNet Tech Community

IT Security

Host: Chad Perrin
Contact

China chooses FreeBSD as basis for secure OS

What OS would you choose as the basis for your security hardened software platforms? China has made a decision remarkably similar to my own, and it has U.S. officials worried that the Eastern power may be pulling ahead in the realm of information warfare preparedness.


Earlier this month, in China blocks U.S. from cyber warfare, the Washington Times reported that “China has developed more secure operating software for its tens of millions of computers and is already installing it on government and military systems, hoping to make Beijing’s networks impenetrable to U.S. military and intelligence agencies.” The article goes on to explain that China has developed a custom, security hardened OS called Kylin, which was revealed in recent Congressional hearings. As the specter of “cyber warfare” grows more vivid, US policy makers and security specialists are rightly concerned at the fact that China is taking such direct action to protect itself from potential foreign information warfare threats — that this may set the US at a disadvantage.

In China installs a secure operating system on all military PCs, The H reports that China claims the design of the OS is proprietary on its official Kylin Website. The H also reports that:

an analysis of the code (Chinese page link) in the kernel indicates that it is in fact a hardened version of FreeBSD 5.3.

While I could paraphrase the message, The H put it succinctly:

This has lead to concern over the state of open source development in China. Furthermore, the advisor said that US systems, which use off-the-shelf American software, such as Microsoft products, open source software, and foreign applications, would be less secure and more vulnerable to back doors allowing access during “times of war”.

The harsh truth of the matter is that corporate influence in government has succeeded in retarding the progress of information technology advancement in US defense policy by weighing down decision making processes with political favoritism. Meanwhile, the fact that Chinese government officials are not beholden to powerful public corporations frees them from the kind of untoward influence that has resulted in software acquisition contracts motivated more by reƫlection concerns than by security concerns in the US. All too often, the selection process in US government specifically excludes all options except a very few vendors for software acquisitions. The result is that China appears to be well ahead of the curve, selecting the best OS for the job regardless of vendor influence in the West.

When the US Department of Defense is the target of no fewer than 128 information infrastructure attacks per minute from China, and we discover that China is engaged in working toward 100% military deployment of security hardened FreeBSD while the US DoD is almost universally using off-the-shelf Microsoft Windows systems, it becomes clear that there’s definitely something wrong with US information security policy.

(note: Initially, this article misidentified the Washington Post as the source of the article China blocks U.S. from cyber warfare. The actual source was the Washington Times, and this article has been edited accordingly.)

Chad PerrinChad Perrin is an IT consultant, developer, and freelance professional writer. He holds both Microsoft and CompTIA certifications and is a graduate of two IT industry trade schools. Read his full bio and profile.

Print/View all Posts Comments on this blog

China chooses FreeBSD as basis for secure OS apotheon | 05/28/09
I don't whether to be... Sterling "Chip" Camden | 05/28/09
Yeah, both. apotheon | 05/29/09
Nothing motivates like military threat Neon Samurai | 05/29/09
Why FreeBSD instead of OpenBSD . . . apotheon | 05/29/09
that would do it, I figured both character sets would be present in OpenBSD Neon Samurai | 05/29/09
me too (re: "doesn't affect me") apotheon | 05/29/09
Else they may have to share code under GNU sharadv@... | 06/02/09
Only to those they distribute the code Neon Samurai | 06/03/09
People are more important than OS caverdog@... | 06/02/09
problems apotheon | 06/02/09
People are still the problem caverdog@... | 06/03/09
Out of the box . . . ? apotheon | 06/03/09
WOW! I really appreciate this.. JCitizen | 06/22/09
Thanks! apotheon | 06/22/09
Unix-like systems right from start j-mart@... | 06/02/09
Capitalist China vs Feudal US Saurondor | 06/03/09
excellent apotheon | 06/03/09
Thanks! Saurondor | 06/22/09
Good post... JCitizen | 06/22/09
An existing OS? seanferd | 05/28/09
SELinux . . . apotheon | 05/29/09
True! seanferd | 05/29/09
TrustedBSD apotheon | 05/30/09
SELinux or FreeBSD jwoods@... | 06/02/09
First cyber warrior pacomj60@... | 06/02/09
First cyber warrior baldeagle30@... | 06/03/09
There are just as convincing arguments to open source. JCitizen | 06/22/09
RE: China chooses FreeBSD as basis for secure OS The Scummy One | 05/28/09
. . . compared to what? apotheon | 05/29/09
The govt does not only use Windows. The Scummy One | 05/29/09
You're right, but . . . apotheon | 05/29/09
If the Windows Firewall is the default on many The Scummy One | 05/29/09
RE : {i]any advice for hacking govt systems??? HAL 9000 | 05/29/09
not hard apotheon | 05/30/09
People are the problem, not the OS caverdog@... | 06/02/09
ugh apotheon | 06/02/09
No Need to hack esal | 06/03/09
Get a job working for the government... vhrocker | 06/02/09
Sure! ocie3@... | 06/02/09
I have a friend at the Climactic Data Center. Dumphrey | 06/03/09
That's encouraging. apotheon | 06/03/09
I'll not say anything... JCitizen | 06/22/09
Why should US officials be worried? HypnoToad72 | 05/28/09
Major sign that transperency is true security bboyd@... | 05/29/09
indeed apotheon | 05/29/09
It's interesting that... Sterling "Chip" Camden | 05/29/09
I'm not sure China entirely gets it. apotheon | 05/30/09
people that discover problems csyst@... | 06/02/09
HA! That's for sure!!....(nt) JCitizen | 06/22/09
Are these changes really just fine tuning? bboyd@... | 06/05/09
not so much apotheon | 06/05/09
This article is too lopsided mulloa@... | 05/29/09
OK now that the Political BS is posted HAL 9000 | 05/29/09
savings apotheon | 05/29/09
Does FreeBSD run ocie3@... | 06/02/09
OK I just have to ask this here HAL 9000 | 06/03/09
HAL 9000 covered the basics . . . apotheon | 06/03/09
Users ≠ Geeks caverdog@... | 06/04/09
coddling can be harmful apotheon | 06/04/09
Beautiful last paragraph Tony Hopkinson | 06/22/09
First consideration "Secure" j-mart@... | 06/04/09
1st priority is function, in most systems usability is 2nd caverdog@... | 06/19/09
Encryption can be a part of changeover Neon Samurai | 06/19/09
Okay, caverdog. apotheon | 06/19/09
now that would be an interesting read Neon Samurai | 06/19/09
Neon Sam! Excellent Reply! caverdog@... | 06/19/09
That would have gotten me tossed off base pretty quick too Neon Samurai | 06/19/09
I love it when you talk dirty! grax | 06/18/09
Koffice isn't related to OpenOffice and StarOffice Neon Samurai | 06/19/09
There is only one editor Sterling "Chip" Camden | 06/19/09
Bah.. real men use Cat Neon Samurai | 06/19/09
Sorry, Neon . . . apotheon | 06/19/09
cheers, wasn't sure of the specifics Neon Samurai | 06/19/09
I think everyone was surprised when Sun... JCitizen | 06/24/09
nope apotheon | 06/19/09
Sometimes santeewelding | 06/20/09
santee? boxfiddler | 06/20/09
YX santeewelding | 06/20/09
Value of sensitive data j-mart@... | 06/04/09
true apotheon | 06/04/09
I'm squinting, too santeewelding | 05/29/09
before you denounce "something wrong with US" info-sec policy Neon Samurai | 05/29/09
Don't forget the Data Losses due to the Metadata HAL 9000 | 05/29/09
So come on broerkie | 06/02/09
You can only jump into the fire so far before... JCitizen | 06/22/09
I use DesktopBSD - FreeBSD based silversidhe | 05/30/09
RE: China chooses FreeBSD as basis for secure OS aohouo@... | 06/02/09
Part of the problem caverdog@... | 06/02/09
There's some truth in that. apotheon | 06/02/09
My understanding of the creative development process Dumphrey | 06/03/09
There's more to it than that. apotheon | 06/03/09
Education caverdog@... | 06/04/09
I once had a librarian, that refused me a book.. JCitizen | 06/22/09
Oh we are still world leaders, but not for long... JCitizen | 06/22/09
Hummer vs. HMMWV apotheon | 06/23/09
Thanks... JCitizen | 06/24/09
RE: China chooses FreeBSD as basis for secure OS plgx | 06/02/09
I see plenty of lying going on in all media! JCitizen | 06/22/09
RE: China chooses FreeBSD as basis for secure OS Derteufel | 06/02/09
RE: China chooses FreeBSD as basis for secure OS craigkra@... | 06/18/09
But they are a threat to freedom Neon Samurai | 06/19/09
Support craigkra@... | 07/04/09
eesh.. I thought the discussion had died a while back Neon Samurai | 07/04/09
an army of straw men apotheon | 07/04/09
Next santeewelding | 07/04/09
I'm not tendentious. apotheon | 07/04/09
With that santeewelding | 07/04/09
Nicely done, apotheon. boxfiddler | 07/05/09
To what, exactly, are you replying? apotheon | 06/19/09
how about this craigkra@... | 06/19/09
two things apotheon | 06/19/09
Reason not opinion craigkra@... | 06/21/09
What exactly are you trying to prove? apotheon | 06/22/09
Interpreting a text craigkra@... | 06/24/09
Digressing so much isn't doing your argument much good. apotheon | 06/28/09
I'm not seeing how that relates Neon Samurai | 06/20/09
two realities craigkra@... | 06/21/09
May have been a misread contrast between your two comments. Neon Samurai | 06/22/09
Let's clear up some of this. apotheon | 06/22/09
Sorry to inject my self into this discussion Neon... JCitizen | 06/22/09
true, one extreme is not any better than the other Neon Samurai | 06/23/09
a possible causal relationship apotheon | 06/23/09
You provide a much more rounded analysis Neon Samurai | 06/23/09
Chinese have accused us of inserting backdoors into US produced OS's caverdog@... | 06/24/09
Ideology ? Tony Hopkinson | 06/22/09
Of course. santeewelding | 06/22/09
Of course #2.. JCitizen | 06/22/09
Intelligent intelligence craigkra@... | 06/28/09
Did I say intent was not considered? Tony Hopkinson | 06/29/09
Yes, you did craigkra@... | 07/04/09
Threat assessment is based on capability, not intent Tony Hopkinson | 07/04/09
No, he didn't. apotheon | 07/04/09
China has no choice... JCitizen | 06/24/09
indeed apotheon | 06/28/09

What do you think?

White Papers, Webcasts, and Downloads

Recent Entries

TR on Twitter

Archives

TechRepublic Blogs



Quick Reference: Linux Commands
Reduce stress and speed up resolutions with the easiest command references right at your fingertips. You'll receive a PDF file covering Linux, packed with the most common commands you'll need and use daily.
Buy Now
500 Things Every Technology Professional Needs to Know
Did you know Microsoft's RegClean does not work with XP but you can use shareware to clean your registry? Did you know most wireless access points don't have encryption enabled by default? Did you know there are 500 tidbits of information contained in TechRepublic's 500 Things Every Technology Professional Needs to Know that will help you become a successful IT professional.
Buy Now

SmartPlanet

Click Here