Caddy 1.0, Caddy 2, and Caddy Enterprise
caddyserver.com
caddyserver.com
I will perhaps try it for some toy projects. But, I will have to watch the words with oil in eyes before using it in any serious projects. If I don't have the time to do that diligence, then this thing will not be considered.... This is the cost of losing trust with potential users.
The bigger issue that came with it was a website redesign that was fairly misleading (it looked like Caddy was going to be closed source), but when it was pointed out, it was clarified to clearly point out that Caddy is a Free and Open Source Software. To me, this reinforced my trust in the project. They went the wrong way, people didn't like it, they fixed it.
The fact that, in today's world, a single misstep generates an immediate and irrevocable loss of trust, even when that misstep is quickly corrected and apologies are issued, is incredibly weird to me. It pushes people to hide their mistakes instead of being open about them...
Disclaimer: I'm a happy user of Caddy, using self-built binaries. I'll take this chance to thank the developers behind Caddy. You have made my life a lot easier :).
This happened in the past too. What people did in the past was "move to another town", but in the age of the Internet you can't really run away from your public gaffes.
In this particular case, it's commendable that Caddy reversed course on the ads. However, many people's first exposure to Caddy was this ad story and it is extremely hard to change first impressions.
This is not to say people don't correct their mistakes. I will of course take this software on its merit, but as I said in my original comment, I will now be extra careful before choosing this software for anything I care deeply about, and if I don't have such time, I simply will take the hard way and use something else.
A mistake like this does not provoke irrevocable loss of trust to me. This category of mistake warrants a big red beware sign in front of the product. I don't think that's bad.
Security through obscurity won't help you when someone actually wants to know which server you're using.
> Beginning today, commercial licenses are no longer required for commercial use of any Caddy binaries.
Merci
That's why companies are usually careful about damaging their reputations (just like humans): earning points is much harder.
After customers have written your company off, it'll take much more resources to bring them back.
>Going forward, only commercial use of ... the download page ... requires a subscription
So now you're allowed to commercially use the official binaries without buying a license, but you're not allowed to acquire them without that license? I don't really understand how that's a distinction with any difference.
Is the expectation that (non-commercial) 3rd-parties will mirror the official binaries, and that's why it's a useful change?
So it seems that if you use the Docker container or an APT repository, there is no need for a subscription. However if you pull from their infrastructure you need to pay. Interesting way to muddy the waters and extract money from those who don't understand the situation.
- You can always build from source, and you could have always built from source, for free, for commercial use, since the source code is and has always been Apache licensed.
- 3rd-party distribution channels such as Digital Ocean images, Linux package managers, Docker, etc, have nothing to do with commercial or free use.
- Using our official download page (or getcaddy.com) for commercial purposes requires a subscription.
If Caddy is as unpopular as HN makes it look, then that's probably nobody. Right?
The fact people are still having trouble understanding your licensing terms should give you pause.
Thank you Matt, and everyone else who has contributed to such an amazing project :)
All of these changes look great.
FOSS doesn't meant the company doesn't deserve to seek a business model. In fact, I applaud Caddy's approach towards finding a business model without interfering with the FOSS nature of the project itself. If you want to avoid Caddy's business model entirely, just build from source.
If they're fussing with licenses to make money, what's to keep them making future license tweaks that do affect the source?
Literally the only thing Caddy has done that has impacted non-enterprise customers was that sponsor header that they removed pretty quickly when the community told them they didn't want it. And enterprise customers have always had the option of compiling from source if they don't want to buy a license.
Probably best to withhold judgment until there's actually something to judge, right?
Ports under 1024, of course, need either root or setcap but that's not specific to caddy.
https://gist.github.com/kennwhite/bcb9e7a5726a74102cc8cae570...