A License to Audit

The_Unbeliever

Honorary Master
Joined
Apr 19, 2005
Messages
103,196
Heyup Girls and Guys

What are your experiences with software audits?

Regards

Libs

========================================
ED FOSTER'S GRIPELOG
The Reader Advocate Column
========================================

Tuesday, July 11, 2006
By Ed Foster

A License to Audit

Given the depredations that software publishers visit on us little guys in the name of license compliance -- with Microsoft's WGA shenanigans just the most recent prime example -- you might assume that the big corporate customers have it a lot easier than we do. After all, at least the Microsofts, Symantecs, and Adobes generally supply their volume license customers with DRM-free versions of their software. Even so, corporate customers have long had their own crosses to bear - in particular, the often arbitrary demands to submit to audits of their license compliance by any and all of their software vendors who might be looking for a quick revenue hit.

For reasons that will become clear later, I've recently been talking with a number of experts in the area of software license enforcement practices. One is Steven Russman, publisher of ECP Media (http://www.ecpweb.com), an organization that focuses on improving the technology asset management capabilities of IT managers. Almost in passing Russman happened to mention a survey ECP has run in recent years asking large corporate software customers about their software audit experiences, and I was struck by some of his findings.

Most of the respondents to the ECP survey are from very large corporations with thousands of desktops, and the great majority already has software asset management programs in place. You might think therefore they wouldn't be likely targets for software audits, but that's not the case. In ECP's 2005 survey, respondents had on average been subjected to more than three different audits the previous year, even up to a dozen. Many complained about the nasty tones that even small software publishers adopt in their audit demands.

And few of Russman's members doubt why they were targeted. "Any number of things can trigger the software publisher's request for a review,"
says Russman. "In some cases it could be a tip from an employee or an ex-employee. But most likely, it's just part of the software company's routine review cycle. We're always hearing stories from members about thinly veiled threats to get them to settle before the software publisher's quarter closes. It's all about generating more money."

Russman believes that at least some of the larger software publishers are actually softening their approach, allowing more customers to conduct self-audits and even sometimes accepting it when the customer reports they are in compliance. But the software publishers may have little choice, because Russman also detects a growing intolerance among large corporate customers for these audit practices. "There is a backlash because the customers are really sick of this," says Russman.
"And the software publishers realize that they have alienated a lot of the big companies in the process. They are going to lose business, so they have to find a different approach."

And what might that new approach be? Well, that brings us back to why I was talking to Russman in the first place. One idea some software publishers are moving toward is to at least supplement their audit demands by including embedded license controls in their products. We'll be discussing that topic further in the near future, because it's one that raises a lot of issues for customers and vendors alike.

In the meantime, those of you with audit experiences of your own to relate are invited to visit the ECP website to participate in their current "Software Publisher's Enforcement Programs" survey (http://www.ecpmedia.com/surveys.html" survey. And, of course, whether you're a big customer or one of us little guys, let us know what you think about software audits by posting your comments on my website and writing me at Foster@gripe2ed.com.

========================================

Read this column on-line and post your comments at
http://www.gripe2ed.com/scoop/story/2006/7/11/01324/8935
or write me directly at Foster@gripe2ed.com.

========================================

Recently in my weblog:

Verizon Never Stops Lying to You
It probably isn't news to any of my readers that you can't trust anything any cell phone company tells you. Still, the story one reader recently sent me about his dealings with Verizon is too good an illustration of the point not to share.
http://www.gripe2ed.com/scoop/story/2006/7/10/05956/5046

Don't Click Continue at LendingTree.com
When lenders compete, you lose ... your privacy, that is. That's what one reader discovered recently after making the mistake of shopping for a loan on LendingTree.com.
http://www.gripe2ed.com/scoop/story/2006/7/5/03750/42477

Reader Voices: DRM and Crime
Does DRM fit the crime, or is copyright crime just an excuse for DRM?
The suggestion by some in a recent discussion that various forms of digital rights management are necessary to protect copyright holders met with a strong rebuke from one reader.
http://www.gripe2ed.com/scoop/story/2006/7/3/113945/5437

========================================

Copyright 2006 Ed Foster's GripeLog. You are granted permission to forward this column to friends who would have an interest in this topic.
To subscribe or unsubscribe to this newsletter, please visit:
http://www.gripe2ed.com/mailman/listinfo/edfoster

_______________________________________________
Edfoster mailing list
Edfoster@www.gripe2ed.com
http://www.gripe2ed.com/mailman/listinfo/edfoster
 
Top