this post was submitted on 20 Jul 2024
476 points (97.8% liked)

Linux

5222 readers
5 users here now

A community for everything relating to the linux operating system

Also check out !linux_memes@programming.dev

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

founded 1 year ago
MODERATORS
 

A widespread Blue Screen of Death (BSOD) issue on Windows PCs disrupted operations across various sectors, notably impacting airlines, banks, and healthcare providers. The issue was caused by a problematic channel file delivered via an update from the popular cybersecurity service provider, CrowdStrike. CrowdStrike confirmed that this crash did not impact Mac or Linux PCs.

It turns out that similar problems have been occurring for months without much awareness, despite the fact that many may view this as an isolated incident. Users of Debian and Rocky Linux also experienced significant disruptions as a result of CrowdStrike updates, raising serious concerns about the company's software update and testing procedures. These occurrences highlight potential risks for customers who rely on their products daily.

you are viewing a single comment's thread
view the rest of the comments
[–] sudo@programming.dev 199 points 3 months ago (1 children)

The analysis revealed that the Debian Linux configuration was not included in their test matrix.

You might as well say you don't support Linux.

"Crowdstrike's model seems to be 'we push software to your machines any time we want, whether or not it's urgent, without testing it'," lamented the team member.

I wonder how this shit works on NixOS.

[–] Flatfire@lemmy.ca 76 points 3 months ago (1 children)

If I'm remembering right, RHEL is Crowdstrike's primary Linux target. And NixOS wouldn't even be a factor since it's basically just not enterprise grade.

That said, they need a serious revision of their QA processes.

[–] circuscritic@lemmy.ca 38 points 3 months ago* (last edited 3 months ago) (4 children)

RHEL, Ubuntu, & Debian cover the vast majority of enterprise installs I imagine, and provide a solid testing base for developers in the Linux business software space.

Maybe you add Gentoo, some post-CentOS clones/forks, or other more niche industry/workload specific distros, but how you do skip Debian?

[–] lemmyreader@lemmy.ml 10 points 3 months ago (2 children)

RHEL, Ubuntu, & Debian cover the vast majority of enterprise installs I imagine, and provide a solid testing base for developers in the Linux business software space.

Enterprises I imagine are using RHEL, Ubuntu, SUSE's SLES and Oracle Linux and probably not Debian. But that's a guess. Where can statistics and numbers be found ?

[–] barkingspiders@infosec.pub 23 points 3 months ago (1 children)

Largish enterprise heavily using Debian, just 1 data point here but we do exist.

[–] pupbiru@aussie.zone 9 points 3 months ago

consultant for large enterprises in australia, and i literally can’t say i’ve ever seen anyone running anything other than RHEL and amazon linux (so… RHEL) in production… unless we’re talking not for profits, and then that’s been a bit of a mixed bag

[–] BCsven@lemmy.ca 8 points 3 months ago

In the enterprise realm it is typically SUSE and RHEL.

[–] themeatbridge@lemmy.world 3 points 3 months ago (5 children)

I'm not an expert in any sense.

But it was always my impression that Ubuntu and Debian were what you use on personal machines, while RHEL is the baseline standard for professional servers.

Is that not accurate? CrowdStrike's target customer seems to be the sort of company that would insist on using RHEL for the enterprise features.

[–] Skydancer@pawb.social 18 points 3 months ago* (last edited 3 months ago) (1 children)

That is not accurate.

  • RedHat is the standard for high-budget American corps.
  • Rocky and similar for low-budget American orgs
  • Ubuntu Server has a large following with developers who think they don't need sysadmins.
  • Debian Stable is more popular with European orgs that aren't incentivized by US government contracts to go with Redhat. It is much more stable than Ubuntu, has been more reliable in its support promises than Redhat, and doesn't suffer from the NIH syndrome that infects both.
  • Ubuntu is popular with home users
  • Debian Testing is good for workstations and personal machines that need to be a bit more current
  • Debian Unstable for people who like Debian but want to live on the bleeding edge
[–] BCsven@lemmy.ca 3 points 3 months ago

The enterprise systems I see are only certified on RHEL and SUSE, debian is not even a contender. Obviously Americans typically choose Rhel and europe goes for SUSE.

Debian doesn sell enterprise support.

[–] mundane@feddit.nu 14 points 3 months ago (1 children)

I've been using Linux professionally for 15 years. It's been Debian or Ubuntu almost everywhere I have been. Although that might be regional.

[–] irreticent@lemmy.world 1 points 3 months ago (1 children)

Which region, if you don't mind me asking?

[–] mundane@feddit.nu 3 points 3 months ago (1 children)
[–] irreticent@lemmy.world 2 points 3 months ago

What's it like living there? I apologize for the off-topic question but I'm fascinated by the Nordic States in comparison to my experience growing up and adulting in the US. I'm envious of your higher quality of life index being so high in those countries.

I don't know where I'm going with this... just wanted to start a drunken conversation.

After doing a quick search I found we're not too far behind you (two rankings lower) but I still like to hear from actual people how they view their govt., and how they're helping (if at all).

[–] Scoopta@programming.dev 10 points 3 months ago

A lot of companies run Debian and Debian based distros, Google on their servers for a start

[–] valaramech@fedia.io 9 points 3 months ago* (last edited 3 months ago)

Canonical and Debian both target the professional server space. I've spent pretty much my entire career working on Debian-based distros.

Hell, the one company I worked for that I expected to use RHEL used Ubuntu for everything, so 🤷‍♂️.

[–] LeFantome@programming.dev 4 points 3 months ago

This is accurate.

There is another reply that says “this is not accurate” that includes true information to back you up.

For infrastructure, RHEL is the gold standard for large companies with a budget. The RHEL customer-base probably overlaps almost completely with CrowdStrike.

RHEL imitators are popular with people that value cost savings more than the corporate backing ( beyond individual cases, this DOES NOT describe the enterprise space ).

Ubuntu is very popular with developers in companies of all sizes. Outside of maybe being the base for containers, this is not how “infrastructure” choices are made though.

Debian is popular with Linux enthusiasts and, where they have influence, businesses may use that. In enterprise environments, it is less likely this group is the one making the decisions. Again though, individual cases exist.

[–] Cube6392@beehaw.org 2 points 3 months ago (2 children)

Because their clients don't ask them about Debian. They ask about RHEL, Ubuntu, and Amazon Linux

[–] barkingspiders@infosec.pub 7 points 3 months ago

Largish enterprise heavily using Debian, just 1 data point here but we do exist.

[–] circuscritic@lemmy.ca 7 points 3 months ago* (last edited 3 months ago) (1 children)

That's a bold assumption for a global enterprise software company. Especially one that doesn't exclusively target IaaS environments.

[–] Cube6392@beehaw.org 3 points 3 months ago (1 children)

I'm not saying "literally none of their clients ask about Debian" I'm just saying it's not having the market penetration the others do because the kind of corp that pays for crowd strike is also the kind of corp that wants to pay another corp (Like IBM, Oracle, or Canonical) for certain stability and liability coverages

[–] circuscritic@lemmy.ca 3 points 3 months ago* (last edited 3 months ago) (2 children)

There are probably more authoritative sources that have performed similar surveys or studies, but this was a recent one.

https://www.openlogic.com/blog/top-enterprise-linux-distributions

It was also the first relevant result that I clicked on, and it more or less lined up with my own anecdotal experiences working with a very diverse assortment of businesses, SMB through large enterprise.

If you don't want to click on that link, or read through it, here is a graph with the results:

[–] LeFantome@programming.dev 1 points 3 months ago

Addendum to my other reply:

Visiting the OpenLogic website makes it clear that they sell Linux support. In other words, you only work with OpenLogic ( and take their survey ) if you rely on a Linux distro that does not have commercial support ( or lousy I guess ). In other words, you only use OpenLogic if you are not paying for a real enterprise Linux product.

https://www.openlogic.com/

OpenLogic is calling this an “enterprise” Linux survey because they are positioning themselves as “enterprise” level support. But this survey pretty much excludes real enterprise Linux by definition.

[–] LeFantome@programming.dev 1 points 3 months ago* (last edited 3 months ago)

Thins “enterprise” list is hilarious. There are SIX RHEL rip-offs but RHEL itself does not even make the list?

I know nothing about openlogic.com but they should not have “logic” in their name.

This is clearly a survey of what people run when they want to avoid paying for software. That might be a good description of the small business landscape but literally the opposite of Enterprise. At best, this is a survey of departmental IT in mid-size businesses.

Look, based on revenue alone, it is crazy obvious that RHEL is number one and either Oracle ( basically RHEL ) or SLE ( SUSE ) is number two. Oracle is mostly used as a base for Oracle DB and Oracle Applications. SUSE gets used to host SAP. Amazon Linux gets used on AWS ( the largest cloud ).

I think that Ubuntu gets used a lot in Enterprise but mostly for in-house stuff. It is probably the standard for embedded. I see it used as a base platform a lot in Azure. But Canonical has half the revenue that SUSE has despite “enterprise” Linux being a much smaller part of the Canonical product mix.