Bonum Certa Men Certa

Sometimes Proprietary Software is Proprietary (Secret) Simply Because It is Not Good and Obfuscation Helps Hide Just How Ugly It Is

The story of FortiClient resembles what I've often encountered over the years with other proprietary VPNs (not of my choice)

Proprietary Software. You pay to be abused.



Summary: Why nonfree (or proprietary) software generally fails to catch up with Free/libre software -- at least on technical grounds -- and then makes up for it with marketing and FUD offensives (discrediting perfectly-functioning things, based on their perceived cost)

OVER the years I've encountered and used a lot of VPNs. It's one thing I'm quite familiar with, having configured and debugged VPNs quite a lot. At work, we use Free/libre VPNs that we host and manage ourselves (typically OpenVPN and IPSec/StrongSwan). But clients' choices of VPN are another matter. Occasionally I must access a client's GNU/Linux server to carry out maintenance, patching and software upgrades. It's quite a routine thing.



"Why is it that Free software generally works a lot more consistently than proprietary counterparts and why do some people pay a lot of money for VPN tools that not only cost a lot of money but need to be 'repurchased' (re-licensed) annually or any time one 'upgrades'?"VPN software varies from client to client and some VPN tools are so awful that it's not even funny. It can be painful. At times impossible!

Why is it that Free software generally works a lot more consistently than proprietary counterparts and why do some people pay a lot of money for VPN tools that not only cost a lot of money but need to be 'repurchased' (re-licensed) annually or any time one 'upgrades'? Suffice to say, many of these proprietary things have holes in them (kept under the rug), so one might actually be paying for additional security holes rather than security. Snowden's stash of leaks revealed some evidence to that effect.

"Much time down the drain."One might say I'm opinionated, but I'm not alone. It's not only me who complains by the way; a colleague explained that "[a]t the moment the only access we have for [client] is via a horrible proprietary VPN. You are only able to get clients for Windows and Mac officially, however an Ubuntu client has been found that works too. To make things more complicated it does not appear to work at all in Windows Server, meaning we can't provide access though the Windows [shared/remote virtual] box. If you have a Windows or Mac box, you can download the client from http://forticlient.com/ and the Ubuntu one can be found here https://forticlient.com/repoinfo..."

Well, nothing that I've tried allows me to access the client's network. Much time down the drain. You can try again and again (dealing with binary blobs). The FortiClient software is defective, however, as it shows an unimpressive blank window each time it starts (I tried other, more complicated things) and there's no way to debug this.

FortiClient
So-called 'Client'; Whose exactly? Spy agencies?



If I run this from the command line it says:

"Platform detected: fedora" (which is false by the way, it's not even an RPM-based distro, so I think they need to do more work on their client-side tools if it's advertised as cross-platform)

"The bottom line is, proprietary VPN software is utterly bad, it rarely prevents security incidents, and it is more like duct tape on top of something inherently broken."Our internal wiki indicates that we cannot access this over a virtual Windows Server, either. Because that too is not supported. What other access options may there be? And why need they complicate access to the point where they shut out people who merely try to keep their machines secure and up to date? As a Techrights associate recently noted, the whole concept behind VPN is flawed. It seems to assume that operating systems in use aren't safe if connected to the Web (there are NSA back doors, for starters), so complete separation and insulation from the network is seen as desirable. Later this year our combined lifetime for Tux Machines and Techrights will be 30 years. We're a high-profile target for attacks, Techrights in particular (many DDOS attacks over the years), but we never had any security incidents and we never used VPNs. We even gave up on so-called 2FA, knowing that it sounds better in theory than (how it works) in practice.

The bottom line is, proprietary VPN software is utterly bad, it rarely prevents security incidents, and it is more like duct tape on top of something inherently broken. Moreover, the quality of proprietary VPN software is utterly appalling. The same can be said about proprietary software other than VPNs, but these companies compensate for that with heavy marketing campaigns and waves of FUD directed at Free software counterparts.

Recent Techrights' Posts

Credit to Jessica Lyons at The Register for Covering the Communications Assistance for Law Enforcement Act (CALEA), Proving That Authorities Do Not Want and Probably Never Wanted Computer Security (Except for Themselves)
We have a lot more to say about truly secure programs
No, Microsoft Does Not Invest $80B in Hey Hi (AI), It's Just Full of BS, Lies, and Over $80B in Debt
Expect many more of those fake numbers and fake promises
Links 05/01/2025: Math on Checkerboard and Nazi-linked Accounts at Credit Suisse
Links for the day
Phoronix in Past Years: X is Dead. Phoronix Days Ago: Oh, Never Mind.
Weeks ago he was talking down X.org/X11
 
Edward Snowden Has Had a State But Not a Voice for 10 Years in Russia
Edward Snowden cannot say anything "bold" about the regime, the war etc.
statCounter's 2025 Data: Windows Sinks to All-Time Low in Switzerland
Microsoft is not well positioned to recover from the demise of Windows
Microsoft is Still Waging a War on GNU/Linux (at the OEM Level), It Loves Windows
The FSF would be wise to remind people of the "OEM factor"
Links 05/01/2025: Crises in South Korea and Endgame (TCO) of Back Doors
Links for the day
Gemini Links 05/01/2025: Extended File Requests With NNCP and New Palm OS Game in 2025
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, January 04, 2025
IRC logs for Saturday, January 04, 2025
Today's "Latest Technology News" is Marketing SPAM Authored by a Bot
they no longer bother to write the text
Sometimes Less Publicity is Better (Than Bad Publicity)
Photo ops (especially with random people you do not know) are a liability, not a trophy
[Meme] Swallow Microsoft GitHub
We need to abandon (or turn down the volume on) that annoying preaching of Microsoft GitHub fans
What Would Dennis Ritchie Say About the "Memory-Safe" Hype (or Cargo Cult)?
The languages are sometimes being blamed for shoddy coding practices
Links 04/01/2025: Glastonbury Misinformation, Arrestgate in South Korea
Links for the day
Gemini Links 04/01/2025: Snow and Attacks
Links for the day
More Bot-Generated Fake 'Articles' About the "Linux"
From one of the "prime suspects" (or serial sloppers)
Links 04/01/2025: Social Control Media Deemed Very Unhealthy, Nick Clegg Leaves Zuckerberg's Influence Operations
Links for the day
Free Software Foundation (FSF) Almost 85% Funded
Probably 85% by Sunday or Monday
Gemini Links 04/01/2025: Geminispace Contributions and Security Theatre
Links for the day
Links 04/01/2025: Demolition of IBM Building (Its Birthplace), Microsoft Layoffs, Microsoft Vice President Quits
Links for the day
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, January 03, 2025
IRC logs for Friday, January 03, 2025
Apple 'Articles' That Aren't... Just SPAM From Beta'News', Generated by LLMs
A 'news' sites reduced to garbage crafted by bots
A Salad of Microsoft FUD Against Linux, Published by LinuxSecurity.com Using LLM Slop/Copypasta
LinuxSecurity.com is an anti-Linux FUD site, powered by Microsoft chatbots on the face of it
Gemini Links 03/01/2025: GNU Emacs Key Bindings in GNU Midnight Commander's Mcedit and Gemini Editing Setup with Vim
Links for the day
Links 03/01/2025: Neil Young Drops Out of Glastonbury and MElon Attacking the Free Press
Links for the day
[Memes] Two Dictators. Donald Trump Loves TikTok.
This is a problem
Jeff Bezos (Washington Post) Spreads Political Propaganda Against the Internet (and the Web)
Then people wonder why trust in the media has gotten so low
In Hong Kong and Taiwan People Flock to GNU/Linux (Unlike Windows, GNU/Linux Doesn't Capture Screenshots of Everything You Do and Add Back Doors to Encryption)
Hong Kong and Taiwan have bright engineers. They know Windows is a joke.
When You Get Your "Latest Technology News" From an LLM Slop Farm
They still call themselves "BetaNews" (the word "news" is in the name)
For Software Freedom (and for Broader Personal Freedom), the Goalposts Are Moving
we need to open up our eyes and identify/classify other threats, such as social control media
Engineering Things to Last 70 Years in an 8-Bit, 16-Bit, and 32-Bit World
Nowadays they make things that barely last 7 years
Slow News, But Not Slow for Us
So far this year (maybe premature to say so because many journalists are still on holiday) the news is very, very slow
GNU/Linux Rose to 5% in Belgium (It Was 1.66% Last January)
Trebling in 12 months, according to statCounter
A Golden Opportunity that Canonical and IBM Intentionally Ignore (in Order to Appease Microsoft)
They're too dependent on Microsoft "sweeteners"
[Meme] Crushing Free Speech Before Even Taking Public Office...
someone who isn't even president is already meddling
[Meme] Be a Good and Obedient Citizen. Use Microsoft Windows.
Microsoft actively works with China to censor search results and spy on citizens
Canada: Windows at All-Time Lows, ChromeOS and GNU/Linux Rise to Almost 8%
It is widely known that many schools in Canada adopted ChromeOS
In Mexico, Windows Down to All-Time Low, GNU/Linux Up to All-Time High
Yesterday we showed that in North America adoption of GNU/Linux is growing fast
The Free Software Foundation Extends Cutoff Date (Two More Weeks), Raises About 330,000 Dollars
Isn't it predictable that people who worked for Microsoft GitHub gave money to some unscrupulous lawyers in London to harass us?
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, January 02, 2025
IRC logs for Thursday, January 02, 2025