<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/rss2full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" version="2.0">

<channel>
	<title>Blank (Media) Slate</title>
	
	<link>http://www.mediaslate.org/blog</link>
	<description>The world is changing every day… it’s like waking up each morning to a blank slate.</description>
	<lastBuildDate>Wed, 01 Sep 2010 18:31:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/rss+xml" href="http://feeds.feedburner.com/BlankMediaSlate" /><feedburner:info uri="blankmediaslate" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><feedburner:emailServiceId>BlankMediaSlate</feedburner:emailServiceId><feedburner:feedburnerHostname>http://feedburner.google.com</feedburner:feedburnerHostname><item>
		<title>Colbert: Control-Self-Delete</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/4lTDkxuwrpA/</link>
		<comments>http://www.mediaslate.org/blog/2010/09/01/colbert-control-self-delete/#comments</comments>
		<pubDate>Wed, 01 Sep 2010 18:31:14 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[Video]]></category>
		<category><![CDATA[identity]]></category>
		<category><![CDATA[kantara]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[standards]]></category>
		<category><![CDATA[web 2.0]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=592</guid>
		<description><![CDATA[<p>Finally! It&#8217;s fantastic to see that I can now talk about what I do for a living with my friends and family. There&#8217;s nothing like a good popular culture comedy icon talking about your profession to catalyze the conversation. Now perhaps I won&#8217;t get blank stares when I tell them I work for ISOC [...]]]></description>
			<content:encoded><![CDATA[<p>Finally!  It&#8217;s fantastic to see that I can now talk about what I do for a living with my friends and family.  There&#8217;s nothing like a good popular culture comedy icon talking about your profession to catalyze the conversation.  Now perhaps I won&#8217;t get blank stares when I tell them I work for <a href="http://www.isoc.org">ISOC</a> along with my pals at the <a href="http://www.ietf.org">IETF</a>, <a href="http://www.kantarainitiative.org">Kantara Initiative</a>, and <a href="http://www.w3c.org">W3C</a> on issues relating to online Identity and privacy&#8230;</p>
<p><center><br />
<table style='font:11px arial; color:#333; background-color:#f5f5f5' cellpadding='0' cellspacing='0' width='360' height='353'>
<tbody>
<tr style='background-color:#e5e5e5' valign='middle'>
<td style='padding:2px 1px 0px 5px;'><a target='_blank' style='color:#333; text-decoration:none; font-weight:bold;' href='http://www.colbertnation.com'>The Colbert Report</a></td>
<td style='padding:2px 5px 0px 5px; text-align:right; font-weight:bold;'>Mon &#8211; Thurs 11:30pm / 10:30c</td>
</tr>
<tr style='height:14px;' valign='middle'>
<td style='padding:2px 1px 0px 5px;' colspan='2'<a target='_blank' style='color:#333; text-decoration:none; font-weight:bold;' href='http://www.colbertnation.com/the-colbert-report-videos/351570/august-24-2010/the-word---control-self-delete'>The Word &#8211; Control-Self-Delete<a></td>
</tr>
<tr style='height:14px; background-color:#353535' valign='middle'>
<td colspan='2' style='padding:2px 5px 0px 5px; width:360px; overflow:hidden; text-align:right'><a target='_blank' style='color:#96deff; text-decoration:none; font-weight:bold;' href='http://www.colbertnation.com/'>www.colbertnation.com</a></td>
</tr>
<tr valign='middle'>
<td style='padding:0px;' colspan='2'><embed style='display:block' src='http://media.mtvnservices.com/mgid:cms:item:comedycentral.com:351570' width='360' height='301' type='application/x-shockwave-flash' wmode='window' allowFullscreen='true' flashvars='autoPlay=false' allowscriptaccess='always' allownetworking='all' bgcolor='#000000'></embed></td>
</tr>
<tr style='height:18px;' valign='middle'>
<td style='padding:0px;' colspan='2'>
<table style='margin:0px; text-align:center' cellpadding='0' cellspacing='0' width='100%' height='100%'>
<tr valign='middle'>
<td style='padding:3px; width:33%;'><a target='_blank' style='font:10px arial; color:#333; text-decoration:none;' href='http://www.colbertnation.com/full-episodes/'>Colbert Report Full Episodes</a></td>
<td style='padding:3px; width:33%;'><a target='_blank' style='font:10px arial; color:#333; text-decoration:none;' href='http://www.indecisionforever.com/'>2010 Election</a></td>
<td style='padding:3px; width:33%;'><a target='_blank' style='font:10px arial; color:#333; text-decoration:none;' href='http://www.colbertnation.com/video/tag/Fox+News'>Fox News</a></td>
</tr>
</table>
</td>
</tr>
</tbody>
</table>
<p></center></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/4lTDkxuwrpA" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/09/01/colbert-control-self-delete/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/09/01/colbert-control-self-delete/</feedburner:origLink></item>
		<item>
		<title>Subtle -or not- Vendor Reference Slide</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/YYJse0hpLBw/</link>
		<comments>http://www.mediaslate.org/blog/2010/06/23/subtle-or-not-vendor-reference-slide/#comments</comments>
		<pubDate>Wed, 23 Jun 2010 21:10:03 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[identity management]]></category>
		<category><![CDATA[internet2]]></category>
		<category><![CDATA[oracle]]></category>
		<category><![CDATA[sun]]></category>
		<category><![CDATA[vendors]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=380</guid>
		<description><![CDATA[<p>One of the presentations at the Internet2 Advance CAMP included these photos referencing some major vendors (who recently merged). Very amusing.</p> <p style="text-align:center"> </p> <p>&#8230; and it&#8217;s a great way to avoid running afoul of logo usage guidelines.</p> [...]]]></description>
			<content:encoded><![CDATA[<p>One of the presentations at the <a href="http://www.internet2.edu/">Internet2</a> <a href="https://spaces.internet2.edu/display/CAMP/Home">Advance CAMP</a> included these photos referencing some major vendors (who recently merged).  Very amusing.</p>
<p style="text-align:center">
<img class="size-thumbnail wp-image-381" title="Sun" src="http://www.mediaslate.org/blog/wp-content/uploads/2010/06/sun_tour-150x150.jpg" alt="Photo of the Sun" width="150" height="150" /><img class="size-thumbnail wp-image-382" title="Oracle" src="http://www.mediaslate.org/blog/wp-content/uploads/2010/06/pythian-oracle-150x150.jpg" alt="" width="150" height="150" /></p>
<p>&#8230; and it&#8217;s a great way to avoid running afoul of logo usage guidelines.</p>
<p><br clear="all"></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/YYJse0hpLBw" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/06/23/subtle-or-not-vendor-reference-slide/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/06/23/subtle-or-not-vendor-reference-slide/</feedburner:origLink></item>
		<item>
		<title>Emergent Innovations: Geo-Tagged Photos Create City Maps</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/eZdMdGZF1EE/</link>
		<comments>http://www.mediaslate.org/blog/2010/05/26/emergent-innovations-geo-tagged-photos-create-city-maps/#comments</comments>
		<pubDate>Wed, 26 May 2010 22:34:24 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[Pointers]]></category>
		<category><![CDATA[geo-location]]></category>
		<category><![CDATA[geo-tag]]></category>
		<category><![CDATA[innovation]]></category>
		<category><![CDATA[photo]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=375</guid>
		<description><![CDATA[<p>I&#8217;m often talking to people about how open Internet technologies enable emergent innovations&#8230; and Eric Fischer provided an excellent example of what you can do when you have free access to seemingly unrelated data sets.</p> <p>To create this image of San Francisco (he&#8217;s currently posted 50 maps), he took the geo-tagged data from photos [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.flickr.com/photos/walkingsf/4622375804/in/set-72157623971287575/"><img align="right" src="http://farm4.static.flickr.com/3331/4622375804_320d4daea1_m.jpg"></a>I&#8217;m often talking to people about how open Internet technologies enable emergent innovations&#8230; and <a href="http://www.flickr.com/photos/walkingsf/">Eric Fischer</a> provided an excellent example of what you can do when you have free access to seemingly unrelated data sets.</p>
<p>To create this image of San Francisco (<a href="http://www.flickr.com/photos/walkingsf/sets/72157623971287575/">he&#8217;s currently posted 50 maps</a>), he took the geo-tagged data from photos uploaded to Flickr and Picasa, then banged the locations against OpenStreetMap using Perl and Ghostscript to overlay travel vectors of the photographers.  Specifically, he compared photos taken by the same photographer within 10 minutes and bounded by 3 miles to compute and plot their travel vector.  The resulting map is color-coded to indicate black=walking (7mph), red=bicycling (19mph), blue=street vehicles (43mph), green=freeway vehicles or rapid transit (>43mph).</p>
<p>I&#8217;m not going to argue for/against the privacy issues embedded within geo-tagged photos.  That&#8217;s a separate issue, but this does clearly illustrate that when people have free and open access to data, they&#8217;ll combine them in clever and unique ways to generate something entirely new (and potentially useful).</p>
<p><strong>Provenance:</strong> <em>I heard about this via a <a href="http://twitter.com/PeteWright/statuses/14790852203">tweet</a> from <a href="http://twitter.com/PeteWright/">@PeteWright</a>, read a <a href="http://burritojustice.com/2010/05/19/look-upon-my-geotagged-map-ye-mighty-and-despair/">blog post</a> (including the comments by Eric explaining his process), and ended up at <a href="http://www.flickr.com/photos/walkingsf/sets/72157623971287575/">Eric&#8217;s Flickr page</a>.</em></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/eZdMdGZF1EE" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/05/26/emergent-innovations-geo-tagged-photos-create-city-maps/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/05/26/emergent-innovations-geo-tagged-photos-create-city-maps/</feedburner:origLink></item>
		<item>
		<title>Successful Kantara Workshop at RSA</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/EGZk-9aKICY/</link>
		<comments>http://www.mediaslate.org/blog/2010/03/03/successful-kantara-workshop-at-rsa/#comments</comments>
		<pubDate>Wed, 03 Mar 2010 06:33:57 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Projects]]></category>
		<category><![CDATA[conference]]></category>
		<category><![CDATA[identity]]></category>
		<category><![CDATA[kantara]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=328</guid>
		<description><![CDATA[ <p>Many thanks to all who attended the Kantara Initiative Workshop at RSA this year. The room was packed (with standing room only at one point), and I heard a number of fantastic comments from attendees about the presentations&#8230; many who wanted more detail on some presentations. </p> <p>Along those lines, many thanks to [...]]]></description>
			<content:encoded><![CDATA[<div style="padding:0px 0px 10px 0px;"><img align="right" src="http://www.mediaslate.org/blog/wp-content/uploads/2009/04/kantara_logo_final_rgb.png" alt="" title="Kantara Initiative" width="276" height="106" class="size-full wp-image-200" /></div>
<p>Many thanks to all who attended the Kantara Initiative Workshop at RSA this year.  The room was <em>packed</em> (with standing room only at one point), and I heard a number of fantastic comments from attendees about the presentations&#8230; many who wanted more detail on some presentations. </p>
<p>Along those lines, many thanks to the many energetic and informative presenters and panelists we had on stage.  Of course, PayPal&#8217;s <strong>Andrew <em>&#8220;Rock Star&#8221;</em> Nash</strong> was a crowd favorite, as was Google&#8217;s <strong>Eric Sachs</strong> (too bad <strong>Chris Messina</strong> was wrestled to the ground by the RSA registration system&#8230; ask him that story, it&#8217;s hilarious).  Add <strong>Patrick Harding</strong> (Ping Identity) into the mix talking about securely federating clouds, and you&#8217;ve got an appetizer to his company&#8217;s all-out party the following night. </p>
<p>Rounding out our party was <strong>Matthew Gardiner</strong> from CA (who earns the dubious distinction of being the first person to utter the term &#8220;cloud&#8221; during the conference), as well as <strong>Chris Sharp</strong> from MEDecision who offered up a peek into how the real world deals with cloud identity. </p>
<p>We were also able to dive deeper into cloud services with Oracle&#8217;s <strong>Uppili Srinivasan</strong> and his panelists <strong>Gail Coury</strong> (Oracle), <strong>John Donovan</strong> (NetApp), and  <strong>Archie Reed</strong> (HP).  Adding to the panel party was Matthew Gardiner&#8217;s cross-cutting Identity Services Roadmap with <strong>Mark Coderre</strong> (Aetna), <strong>Debbie Bucci</strong> (NIH), and <strong>Todd Inskeep</strong> (Bank of America). </p>
<p>&#8230; and who could resist the Prezi(c) by <strong>Paul Madsen</strong> (NTT), representing his gold-hording country on stage (despite the fact he actually missed the final hockey game while in the air).  Besides, who else would include in a presentation about the state of OpenID, SAML, InfoCard, and OAuth a slide depicting the dangers of incorrectly checking for dirty diapers? </p>
<p>Finally&#8230; much and many thanks to <strong>Dervla</strong> and <strong>Joni</strong> for rolling in early on Sunday to set up, and staying late on Monday to break down.  Not to mention all the lead-up work they did (including hounding folks like me to get in our presentations).  Thanks!</p>
<p>And in case you wanted to see the presentations:</p>
<ul>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/1_Kantara_Initiative_Overview_2010_RSA_Conf.pdf">Kantara Initiative Overview</a> (Trent Adams, Internet Society)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/1.2_Kantara_Initiative_Groups_2010_RSA_Conf.pdf">Kantara Initiative Groups</a> (Trent Adams, Internet Society)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/2_PayPal_KI_2010_RSA_2010_IA_and_Real_World.pdf">PayPal KI 2010 RSA 2010 IA and Real World</a> (Andrew Nash, PayPal)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/3_CA_KI_Workshop_2010_RSA_Conference.pdf">CA KI Workshop 2010 RSA Conference</a> (Matthew Gardiner, CA; Chris Sharp, MEDecision)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/4_NTT_KI_Workshop_2010_RSA_Conference_prezi.app.zip">NTT KI Workshop 2010 RSA Conference (via prezi.com)</a> (Paul Madsen, NTT)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/5_Ping_ID_KI_Workshop_2010_RSA_Conference_+v1.2_Harding.pdf">Ping ID KI Workshop 2010 RSA Conference</a> (Patrick Harding, Ping Identity)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/6_Oracle_KI_Workshop_2010_RSA_Conference_Customer+Panel.pdf">Oracle KI Workshop 2010 RSA Conference Customer Panel</a> (Uppili Srinivasan, Oracle; Gail Coury, Oracle; John Donovan, NetApp; Archie Reed, HP)</li>
<li><a href="http://kantarainitiative.org/confluence/download/attachments/3408008/7_Google_KI_Workshop_2010_RSA_Conference.pdf">Google KI Workshop 2010 RSA Conference</a> (Eric Sachs, Google)</li>
</ul>
<p>It was at the last RSA where we announced the formation of the Kantara Initiative.  One very strong (and busy) year down&#8230; and here&#8217;s to many more to come (hoping they get easier).  <em>Cheers!</em></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/EGZk-9aKICY" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/03/03/successful-kantara-workshop-at-rsa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/03/03/successful-kantara-workshop-at-rsa/</feedburner:origLink></item>
		<item>
		<title>Identity Matters: eGovernment</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/13ZwC47quaM/</link>
		<comments>http://www.mediaslate.org/blog/2010/02/05/identity-matters-egovernment/#comments</comments>
		<pubDate>Fri, 05 Feb 2010 19:10:53 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Projects]]></category>
		<category><![CDATA[egov]]></category>
		<category><![CDATA[identity]]></category>
		<category><![CDATA[kantara]]></category>
		<category><![CDATA[podcast]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=319</guid>
		<description><![CDATA[<p>Colin Wallis from the New Zealand Government&#8217;s Department of Internal Affairs joins this episode of the Identity Matters Podcast. As the Kantara Initiative eGovernment Work Group Chair, he provides an overview of what the group is doing. He talks about how the adoption of the initial eGov Profile has spurred on development of version [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.mediaslate.org/blog/wp-content/uploads/2010/01/podcast_logo_150px.jpg" alt="Identity Matters Podcast" title="Identity Matters Podcast" width="150" height="150" class="alignright size-full wp-image-302" />Colin Wallis from the New Zealand Government&#8217;s Department of Internal Affairs joins this episode of the <strong>Identity Matters Podcast</strong>.  As the Kantara Initiative <a href="http://kantarainitiative.org/confluence/display/eGov/">eGovernment Work Group</a> Chair, he provides an overview of what the group is doing.  He talks about how the adoption of the initial eGov Profile has spurred on development of version 2.  He also discussed how the eGov work dovetails with the Kantara Interoperability Review Board (IRB), as well as work taking place outside Kantara.</p>
<p><em>Currently in Development:</em> <a href="http://kantarainitiative.org/confluence/display/eGov/Kantara+Initiative+eGov+2.0+Profile+Draft">eGov Profile 2.0</a></p>
<p><strong>Identity Matters:</strong> eGovernment</p>
<p><a href="http://idcupdate.kantarainitiative.org/podcast/id_matters_20100204_egov.mp3">Download MP3</a> | <em>Episode Length: 0:15:10</em> | <em>Filesize: 10 MB</em></p>
<p><strong>NOTE:</strong> <em>This podcast was produced in collaboration with the Kantara Initiative <a href="http://kantarainitiative.org/confluence/display/icu/Home">Identity Community Update Discussion Group</a>.</em></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/13ZwC47quaM" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/02/05/identity-matters-egovernment/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://idcupdate.kantarainitiative.org/podcast/id_matters_20100204_egov.mp3" length="10451072" type="audio/mpeg" />
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/02/05/identity-matters-egovernment/</feedburner:origLink></item>
		<item>
		<title>Identity Matters: User Managed Access</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/jOwUEDgePwA/</link>
		<comments>http://www.mediaslate.org/blog/2010/01/28/identity-matters-user-managed-access/#comments</comments>
		<pubDate>Thu, 28 Jan 2010 22:08:06 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Projects]]></category>
		<category><![CDATA[identity management]]></category>
		<category><![CDATA[kantara]]></category>
		<category><![CDATA[podcast]]></category>
		<category><![CDATA[uma]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=297</guid>
		<description><![CDATA[<p>In this episode of the Identity Matters Podcast, Eve Maler presents an overview of the User Managed Access (UMA) Work Group. Eve, the UMA WG chair, starts off with background of the group working within the Kantara Initiative and defines the problem space. She then provides an overview of the process the group is [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.mediaslate.org/blog/wp-content/uploads/2010/01/podcast_logo_150px.jpg" alt="Identity Matters Podcast" title="Identity Matters Podcast" width="150" height="150" class="alignright size-full wp-image-302" />In this episode of the <strong>Identity Matters Podcast</strong>, <a href="http://www.xmlgrrl.com/blog/">Eve Maler</a> presents an overview of the <a href="http://kantarainitiative.org/confluence/display/uma/">User Managed Access</a> (UMA) Work Group.  Eve, the UMA WG chair, starts off with background of the group working within the <a href="http://kantarainitiative.org">Kantara Initiative</a> and defines the problem space.  She then provides an overview of the process the group is taking as well as where they are in their roadmap toward delivering a specification to the IETF.</p>
<p>From the <a href="http://kantarainitiative.org/confluence/display/uma/Charter">UMA charter</a>: <em>The purpose of the UMA work at Kantara is to develop a set of draft specifications that enable an individual to control the authorization of data sharing and service access made between online services on the individual&#8217;s behalf, and to facilitate the development of interoperable implementations of these specifications by others.</em></p>
<p><strong>Identity Matters:</strong> User Managed Access</p>
<p><a href="http://idcupdate.kantarainitiative.org/podcast/id_matters_20100120_uma.mp3">Download MP3</a> | <em>Episode Length: 0:27:41</em> | <em>Filesize: 18.5 MB</em></p>
<p><strong>NOTE:</strong> <em>This podcast was produced in collaboration with the Kantara Initiative <a href="http://kantarainitiative.org/confluence/display/icu/Home">Identity Community Update Discussion Group</a>.</em></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/jOwUEDgePwA" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/01/28/identity-matters-user-managed-access/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
<enclosure url="http://idcupdate.kantarainitiative.org/podcast/id_matters_20100120_uma.mp3" length="19366016" type="audio/mpeg" />
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/01/28/identity-matters-user-managed-access/</feedburner:origLink></item>
		<item>
		<title>Global Finance article looks to the future</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/jCZ1_PRkD-4/</link>
		<comments>http://www.mediaslate.org/blog/2010/01/06/global-finance-article-looks-to-the-future/#comments</comments>
		<pubDate>Wed, 06 Jan 2010 22:50:47 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Pointers]]></category>
		<category><![CDATA[identity management]]></category>
		<category><![CDATA[infosharing]]></category>
		<category><![CDATA[isoc]]></category>
		<category><![CDATA[kantara]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[uma]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=292</guid>
		<description><![CDATA[<p>It&#8217;s not a bad start to the new year (and decade) when a journal like Global Finance sees value in the work you&#8217;re doing. Their cover story on &#8220;A Wide Open World&#8221; just hit the stands and I&#8217;m pleased that some of my contributions made their way into the article. Specifically:</p> <p>The ISOC’s Adams [...]]]></description>
			<content:encoded><![CDATA[<p>It&#8217;s not a bad start to the new year (and decade) when a journal like <a href="http://www.gfmag.com/">Global Finance</a> sees value in the work you&#8217;re doing.  Their cover story on &#8220;<a href="http://bit.ly/6bJEZk">A Wide Open World</a>&#8221; just hit the stands and I&#8217;m pleased that some of my contributions made their way into the article.  Specifically:</p>
<blockquote><p>The ISOC’s Adams believes access to information will be a key driver of change. “Whereas today users generally manage data within the silo of single institutions—for example, individual bank, brokerage, or credit card companies—new capabilities will allow them to delegate access to and control authority over their data as it is shared across institutions,” he says.</p></blockquote>
<p>While it wasn&#8217;t mentioned by name, I was referencing work being done by Eve Maler, Iain Henderson, Joe Andrieu and others in various <a href="http://kantarainitiative.org">Kantara Initiative</a> working groups.  Specifically in the <a href="http://kantarainitiative.org/confluence/display/uma">User-Managed Access</a> (UMA) and <a href="http://kantarainitiative.org/confluence/display/infosharing">Information-Sharing</a> groups.  Too bad they weren&#8217;t included by name, but I hope this helps give them the recognition they (and their long list of collaborators) deserve.</p>
<p>They also reference my comments about &#8220;open trust frameworks&#8221; and the Kantara Identity Assurance Program, but reduced it to generalities.  There&#8217;re a lot of amazingly dedicated folks working hard on open specifications in this area to help standardize a trusted model for information exchange.  Even though they&#8217;re not named, this is a great example of their work starting to permeate the broader market.</p>
<p>Great job, folks.  Keep it up!</p>
<p><em>(PS Many thanks to Greg and the ISOC communications team for facilitating my contribution to the article.)</em></p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/jCZ1_PRkD-4" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2010/01/06/global-finance-article-looks-to-the-future/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2010/01/06/global-finance-article-looks-to-the-future/</feedburner:origLink></item>
		<item>
		<title>User-Managed Identity Starts at Home</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/nExp9z-zz0w/</link>
		<comments>http://www.mediaslate.org/blog/2009/07/22/user-managed-identity-starts-at-home/#comments</comments>
		<pubDate>Wed, 22 Jul 2009 14:55:54 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[identity]]></category>
		<category><![CDATA[infocard]]></category>
		<category><![CDATA[isoc]]></category>
		<category><![CDATA[kantara]]></category>
		<category><![CDATA[oauth]]></category>
		<category><![CDATA[openid]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=268</guid>
		<description><![CDATA[<p>Recent news about intrusions into the online accounts of public figures like U.S. presidential candidate Sarah Palin and prominent companies like Twitter remind me of the not-too-distant past. These appeaer to be bellwether events pointing out that the general public is starting to realize the protection of their identity starts with what they can [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.mediaslate.org/blog/wp-content/uploads/2009/07/personal-256.png" alt="Secure Personal Identity" title="Secure Personal Identity" class="alignright size-full wp-image-277" width="128" height="128" />Recent news about intrusions into the online accounts of public figures like U.S. presidential candidate <a href="http://www.computerworld.com/s/article/9115187/Yahoo_Hotmail_Gmail_all_vulnerable_to_Palin_style_password_reset_hack">Sarah Palin</a> and prominent companies like <a href="http://www.techcrunch.com/2009/07/19/the-anatomy-of-the-twitter-attack/">Twitter</a> remind me of the not-too-distant past.  These appeaer to be bellwether events pointing out that the general public is starting to realize the protection of their identity starts with what they can (and should) control.  It sometimes takes high profile cases like this to energize action, a cycle that appears to repeat itself.</p>
<p>About 8 years ago I took on the challenge of securing the digital borders around the e-commerce systems for the <a href="http://www.thekraftgroup.com/sports_entertainment/">Kraft Group&#8217;s sports properties</a>.  At that time, I could see a storm cloud gathering on the networked horizon as we built a system to unify all of the current properties and set the foundation to build out a series of interconnected portal communities.  Looking forward, I knew that it was only a matter of time before a major press-worthy event would raise everyone&#8217;s awareness regarding the protection of user privacy, in the form of personally identifiable information (PII), and associated payment information.</p>
<p>Our business strategy was to build a core commerce engine that could handle online transactions embedded within each separate portal.  Key to our success was enabling users to have a persistent identity throughout their engagement with our products.  In this way we could minimize the barriers to their interacting with our content, as well as streamlining the purchase pipeline.  Essentially, once users logged into any of our portals (to access premium/personalized content, manage accounts, and purchase products), we were able to effectively cater to them by simplifying their experience.</p>
<p>The problem with this single-sign-on model was that if a user account was compromised, the intruder could have free reign over the victim&#8217;s PII and associated payment information.  I had to make the case for going the extra mile(s) by designing strict access control procedures, knowing that something bad was going to happen to a company soon and that we should be ahead of any reactionary solutions imposed upon us.  I had a feeling that after some bad press, the e-commerce industry would be pressured to lock down the porous borders that were relatively common at the time.</p>
<p>Just such a case occurred in 2004 when hackers were able to access an estimated 8 million credit card numbers from BJ&#8217;s Wholesale Club.  It took a few years for details of the incident to emerge, but it was clear even then that there were two primary issues: insecure access points, and poor audit logging.  Regardless of whether it was an inside job (as was initially assumed) or an outside hack (which it turned out to be), BJ&#8217;s (among other compromised companies) had poor access control and monitoring.</p>
<p>This, as well as other similar incidents, prompted the creation of the <a href="https://www.pcisecuritystandards.org/">Payment Card Industry Security Standards Council</a>, founded in 2006 by American Express, Discover, JCB, MasterCard, and Visa.  The payment card industry thus began requiring strict practices and controls around systems that perform above a modest threshold of transactions.  It was a strong move, in advance of looming legislation, that helped steer wayward companies toward better practices.  Regardless of the critiques of their programs, it has succeeded in shining a light on many problems needing to be addressed.</p>
<p>Fortunately, by the time the PCI guidelines hit the market, we were able to breeze through their audits.  The commerce engine we&#8217;d built was tighter than what they required.  It&#8217;s rare that you can so easily point to a situation like this where the extra capital cost on the front end so clearly saved money that would&#8217;ve been required to retrofit a running system.</p>
<p>Now, here&#8217;s where the history lesson circles around to become informative for current events.  We should learn from these cases of identity intrusion and address the core issues.  The obvious lesson is not to be cavalier regarding the protection of your email accounts.  After all, they are your core identity asset in today&#8217;s online world.  Be careful when setting up your email account and follow common sense when selecting passwords and associated &#8220;remind me&#8221; features.</p>
<p>Beyond what you can do for yourself today, the industry needs to step up it&#8217;s game, too.  Fortunately, there are a number of efforts currently under way to help protect your identity.  They just need to be more whole-heartedly embraced and helped to mature by the major players in the market.  What&#8217;s uniquely interesting about many of the emerging solutions is that they&#8217;re user-centric, rather than being centered around any one company&#8217;s digital security practices.  This focus helps solve the root problems: privacy protection starts at home, and it&#8217;s not a simple matter of more/better cyber-security and encryption.</p>
<p>For more information, and to become involved, I highly recommend following the open standards development relating to user-managed identity:</p>
<ul>
<li><a href="http://kantarainitiative.org/">Kantara Initiative</a></li>
<li><a href="http://openid.net/foundation/">OpenID Foundation</a></li>
<li><a href="http://informationcard.net/">Information Card Foundation</a></li>
<li><a href="http://oauth.net/">OAuth</a> / <a href="http://www.ietf.org/dyn/wg/charter/oauth-charter.html">IETF Working Group</a></li>
</ul>
<p>And, of course, the <a href="http://www.isoc.org/">Internet Society</a> <a href="http://www.isoc.org/isoc/mission/initiative/trust.shtml">Trust &#038; Identity Initiative</a>.  Tell them I sent you.</p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/nExp9z-zz0w" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2009/07/22/user-managed-identity-starts-at-home/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2009/07/22/user-managed-identity-starts-at-home/</feedburner:origLink></item>
		<item>
		<title>Pattern Matching of Boarding Passes and IDs</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/KG9OeAH9Frk/</link>
		<comments>http://www.mediaslate.org/blog/2009/07/13/pattern-matching-of-boarding-passes-and-ids/#comments</comments>
		<pubDate>Mon, 13 Jul 2009 14:31:15 +0000</pubDate>
		<dc:creator>J. Trent Adams</dc:creator>
				<category><![CDATA[Commentary]]></category>
		<category><![CDATA[anecdote]]></category>
		<category><![CDATA[identity]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=258</guid>
		<description><![CDATA[<p>I was recently in line at the first airport security checkpoint, waiting my turn for the TSA agent to allow me into the gate area. In front of me was a man who had just handed the agent his documents, and I was about to see an example of the human brain in action [...]]]></description>
			<content:encoded><![CDATA[<p><img src="http://www.mediaslate.org/blog/wp-content/uploads/2009/07/dhs_logo.jpg" alt="Department of Homeland Security" title="Department of Homeland Security" class="alignright size-full wp-image-262" height="125" width="125" />I was recently in line at the first airport security checkpoint, waiting my turn for the TSA agent to allow me into the gate area. In front of me was a man who had just handed the agent his documents, and I was about to see an example of the human brain in action as a finely-tuned (and flexible) pattern matching machine and decision engine.</p>
<p>We&#8217;re all familiar with the airport security ceremony by now.  You stand in line (fortunately they seem shorter these days) with your boarding pass and drivers license (or other government-issued identification card) in hand.  From what I can tell, the TSA agent confirms that the ID appears to be valid and that the embedded photo resembles the person standing there.</p>
<p>While the agents use loupes and florescent lights on the IDs, very little validation of the boarding pass seems to take place.  With the ability to print your own boarding pass at home, their vetting is definitely limited.  Setting aside what they could do (e.g. each pass including a hashed string encoded as a barcode the TSA agent could scan), the boarding passes seem oddly useless.</p>
<p>Or that&#8217;s what I thought until I noticed the ceremony was taking just a beat longer than usual in this case.  I don&#8217;t know how much longer it was taking, but for some reason I noticed the person wasn&#8217;t moving as quickly as I&#8217;d assume they should though the checkpoint.  Glancing at the TSA agent, I saw that she was scrutinizing the boarding pass, then looking back at the passenger&#8217;s ID, into his face, then back to the boarding pass, her eyes darting all over it.  All the while a slight frown of concentration was deepening on her face.</p>
<p>At this point, the passenger tried to lighten the mood by pointing to his ID and saying, &#8220;I know, the photo doesn&#8217;t look like me any more.&#8221;  It&#8217;s obvious he was talking about how much he&#8217;d aged, but the TSA agent cocked her head to one side and immediately made a decision that there was something needing to be investigated before she&#8217;d let him pass.</p>
<p>She began asking the passenger questions about his flight, where he was going, and if he had a second ID.  At this point the passenger started to sweat as he realized the situation seemed to be going pear shaped.  He sputtered something about not having another ID and started patting his pockets (as if he&#8217;d find he&#8217;d accidentally slipped his passport into his jacket before leaving for the airport).  Then the magic happened.</p>
<p><a href="http://www.amazon.com/gp/product/0618620117?ie=UTF8&#038;tag=mediaslate-20&#038;linkCode=as2&#038;camp=1789&#038;creative=390957&#038;creativeASIN=0618620117"><img src="http://www.mediaslate.org/blog/wp-content/uploads/2009/07/how_we_decide.jpg" alt="How We Decide" title="How We Decide" class="alignright size-full wp-image-260" width="166" height="265" /></a>The passenger pulled a slip of paper from his pocket and stared at it for a second, smiled, and then chuckled.  He&#8217;d found his real boarding pass for this flight.  Apparently, the one he&#8217;d initially handed the TSA agent was for his return flight the next day.  After handing over the correct boarding pass, the agent checked it and was visibly relieved, belying the fact that she was preparing herself for he worst (according, no doubt, to her training).  She quickly performed the standard checks and let him pass, reaching out for my documents.</p>
<p>Oddly enough, during this particular trip I was reading the book &#8220;<a href="http://www.amazon.com/gp/product/0618620117?ie=UTF8&#038;tag=mediaslate-20&#038;linkCode=as2&#038;camp=1789&#038;creative=390957&#038;creativeASIN=0618620117">How We Decide</a>&#8221; by  Jonah Lehrer.  There is a chapter in it about how a British radar operator accurately detected an incoming missile during the first Gulf War despite an apparent lack of hard evidence linking the incoming blip with a known threat.</p>
<p>This situation seemed similar in that the TSA agent couldn&#8217;t quite put her finger on the reason why she felt something was wrong with the passenger&#8217;s documents.  She&#8217;d apparently seen enough boarding passes and IDs to have some type of ingrained sense of what patterns are right, and which are wrong.  Since she had been given a valid boarding pass, with only a minor difference of a few characters, she wasn&#8217;t able to quickly home in on what specifically was wrong in this case.  All she knew at that point was she had to slow things down and start probing until she was able to determine the correct course of action. </p>
<p>There are, of course, flaws to in the airport security system, but this experience was oddly reassuring.  Until a more automated system is in place, this particular TSA agent was very good at what she does.  Within what turned out to be less than a minute, she had detected a slight anomaly even though she couldn&#8217;t immediately identity what it was.  She then escalated the situation smoothly and easily in a way that allowed her the time to work out what was wrong.</p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/KG9OeAH9Frk" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2009/07/13/pattern-matching-of-boarding-passes-and-ids/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2009/07/13/pattern-matching-of-boarding-passes-and-ids/</feedburner:origLink></item>
		<item>
		<title>Syphoning off Heat for Power</title>
		<link>http://feedproxy.google.com/~r/BlankMediaSlate/~3/omaYyQoAzqg/</link>
		<comments>http://www.mediaslate.org/blog/2009/05/04/syphoning-off-heat-for-power/#comments</comments>
		<pubDate>Mon, 04 May 2009 14:22:24 +0000</pubDate>
		<dc:creator />
				<category><![CDATA[Pointers]]></category>
		<category><![CDATA[innovation]]></category>
		<category><![CDATA[power]]></category>
		<category><![CDATA[sensor nets]]></category>
		<category><![CDATA[wireless]]></category>

		<guid isPermaLink="false">http://www.mediaslate.org/blog/?p=242</guid>
		<description><![CDATA[<p>A common problem when deploying wide-scale networked solutions is how to power the elements of the net. As reported in a MIT Technology Review article, Perpetua Power Source Technologies based in Oregon developed a solution for effectively powering small devices off excess heat.</p> <p>According to their product literature, the Perpetua Power Puck generates it&#8217;s [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.perpetuapower.com/powerpuck_150.htm"><img class="alignright size-thumbnail wp-image-241" title="Perpetua Power Puck" src="http://www.mediaslate.org/blog/wp-content/uploads/2009/05/perpetua_power_puck-150x150.jpg" alt="Perpetua Power Puck" width="150" height="150" /></a>A common problem when deploying wide-scale networked solutions is how to power the elements of the net.  As reported in <a href="http://www.technologyreview.com/energy/22484/">a MIT Technology Review article</a>, <a href="http://www.perpetuapower.com/">Perpetua Power Source Technologies</a> based in Oregon developed a solution for effectively powering small devices off excess heat.</p>
<p>According to their product literature, the <a href="http://www.perpetuapower.com/powerpuck_150.htm">Perpetua Power Puck</a> generates it&#8217;s power using thermoelectric generator (TEG) technologies.  It can convert low temperature differences into regulated voltages of 1.8 V, 2.5 V, 3.0 V, and 3.3 V.  According to the MIT TR article, each puck is small enough to be placed in tight locations and can generate electricity with a temperature difference as little as 10 degrees C.</p>
<p>I was recently talking to some people at <a href="http://www.isoc.org">ISOC</a> working with the <a href="http://www.oecd.org/">OECD</a> on research into developing reliable sensor nets.  This type of solution plays right into this project as it can vastly simplify many of the power requirements.  Assuming a use case in which a wireless sensor can be co-located with a hot water pipe, it is now possible to generate the required power to run the transmitter from excess heat.  There is also often more than enough of a temperature differential just a few inches below ground in desert climates, making this type of solution a viable source for long-haul monitoring.</p>
<img src="http://feeds.feedburner.com/~r/BlankMediaSlate/~4/omaYyQoAzqg" height="1" width="1"/>]]></content:encoded>
			<wfw:commentRss>http://www.mediaslate.org/blog/2009/05/04/syphoning-off-heat-for-power/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		<feedburner:origLink>http://www.mediaslate.org/blog/2009/05/04/syphoning-off-heat-for-power/</feedburner:origLink></item>
	</channel>
</rss><!-- Dynamic page generated in 2.858 seconds. --><!-- Cached page generated by WP-Super-Cache on 2010-09-06 07:38:51 -->
