<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:planet="http://planet.intertwingly.net/" xmlns:indexing="urn:atom-extension:indexing" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" indexing:index="no"><access:restriction xmlns:access="http://www.bloglines.com/about/specs/fac-1.0" relationship="deny" />
  <title>Planet Identity</title>
  <updated>2010-02-09T03:05:01Z</updated>
  <generator uri="http://intertwingly.net/code/venus/">Venus</generator>
  <author>
    <name>Pat Patterson</name>
    <email>pat@superpat.com</email>
  </author>
  <id>http://planetidentity.org/atom.xml</id>
  
  <link href="http://planetidentity.org" rel="alternate" />

  <atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/PlanetIdentity" /><feedburner:info uri="planetidentity" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><entry xml:lang="en">
    <id>http://access.jiscinvolve.org/lies-damn-lies/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/dveoT8AsJFw/" rel="alternate" type="text/html" />
    <title>JISC Access Management Team: Lies, Damn Lies…</title>
    <summary type="html">This week, I’m getting excited about statistics! Well, I need something down to earth to balance out the amazing experience of being at APAN29 in Sydney. 
Just before I started at JISC, we had some long and detailed conversations about statistics as part of the ANGEL project.  Whilst usage statistic work has mumbled on [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;This week, I’m getting excited about statistics! Well, I need something down to earth to balance out the amazing experience of being at APAN29 in Sydney. &lt;/p&gt;&#xD;
&lt;p&gt;Just before I started at JISC, we had some long and detailed conversations about statistics as part of the &lt;a href="http://www.angel.ac.uk"&gt;ANGEL project&lt;/a&gt;.  Whilst usage statistic work has mumbled on in the background but there hasn’t been any significant work in this area….until now.  Like buses, JISC usage statistic projects all come at once.  &lt;/p&gt;&#xD;
&lt;p&gt;Something I am very happy to see funded, particularly as I saw the birth of the project idea whilst walking on a very hot day in San Antonio, is the &lt;a href="http://www.jisc.ac.uk/whatwedo/programmes/aim/raptor"&gt;RAPTOR project&lt;/a&gt; at Cardiff University.  At the moment, Shibboleth Identity Providers can produce very useful access logs for institutions, but in a format that is not particularly friendly or helpful to the needs of librarians who need to be able to quickly review and assess resource usage.  RAPTOR will produce a toolkit to not only provide this functionality but also to integrate these statistics with EZProxy logs - a joined up approach which I’m sure will be appreciated. &lt;/p&gt;&#xD;
&lt;p&gt;Hand in hand with this, the UK federation are planning on producing a portal to allow institutions to upload appropriately anonymised statistics….possible using the outputs from RAPTOR if we are smart about it.  This will give us an interesting national view of resource usage, useful for both JISC and JISC Collections in focusing attention on the requirements of our community. &lt;/p&gt;&#xD;
&lt;p&gt;At the other end of the picture, it is equally important that we look at Service Provider statistics to provide the more detailed view of user behaviour beyond the authentication point.  JISC Collections have been examining the potential of a usage statistics portal that will aggregate statistics from COUNTER compliant reports provided by publishers.  Again, the point here is to reduce the amount of time librarians are forced to spend aggregating this information.&lt;/p&gt;&#xD;
&lt;p&gt;To complete the picture, the PIRUS project is looking at usage statistics right down at the article level across both publisher resources and repositories.  More information is available in &lt;a href="http://infteam.jiscinvolve.org/2010/02/05/an-update-on-pirus2-and-article-level-usage-statistics/"&gt;this post&lt;/a&gt; from Ben Wynne.  PIRUS &lt;a href="http://www.jisc.ac.uk/media/documents/programmes/digitalrepositories/usagestatisticsreviewreport.pdf"&gt;has produced a review&lt;/a&gt; of what information would be required to provide article level statistics.  My only concern about this report is ‘who’ section and the options described for identifying unique users.  eduPersonTargetedID and eduPersonPrincipleName seem obvious candidates for potential unique identifiers but are missing from the report.  The challenge here will be any suggestion that looks at tracking the same user across multiple Service Providers.  Obviously this is useful information for institutions, publishers and authors, but the privacy issues and management of Personally Identifiable Information (PII) will have to be carefully examined.&lt;/p&gt;&#xD;
&lt;p&gt;So that is your usage stats round-up - certainly lots of good stuff to keep an eye on.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dveoT8AsJFw:teGIRA73h5U:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dveoT8AsJFw:teGIRA73h5U:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dveoT8AsJFw:teGIRA73h5U:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=dveoT8AsJFw:teGIRA73h5U:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/dveoT8AsJFw" height="1" width="1"/&gt;</content>
    <updated>2010-02-09T00:58:22Z</updated>
    <category term="Authorisation" />
    <category term="Authentication" />
    <category term="Strategy and Policy" />
    <author>
      <name>nicole</name>
    </author>
    <source>
      <id>http://access.jiscinvolve.org</id>
      <link href="http://access.jiscinvolve.org" rel="alternate" type="text/html" />
      <link href="http://access.jiscinvolve.org/feed/" rel="self" type="application/rss+xml" />
      <subtitle>moving towards federated access management</subtitle>
      <title>JISC Access Management Team</title>
      <updated>2010-02-09T00:58:22Z</updated>
    </source>
  <feedburner:origLink>http://access.jiscinvolve.org/lies-damn-lies/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6439</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/LwwtdokLXnc/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: On-demand “Lost”</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;img alt="" class="alignright" height="252" src="http://www.theincomparable.com/lost-logo.jpg" style="margin-left: 8px; margin-right: 8px;" width="336"&gt;&lt;/img&gt;Since I teach my class on Tuesday nights - I’ve been unnable to catch the new episodes of “Lost”.  So I’m forced to go to ‘Hulu’ and go on-demand.&lt;/p&gt;&#xD;
&lt;p&gt;But what a pleasure!&lt;/p&gt;&#xD;
&lt;p&gt;Given “Lost’s” time travel motif, I can’t help but comment on and create a blog post on how coolio it is to be able to randomly jump throughout the five season mythology of “Lost”, pause, rewind, watch again - study - and then loop through the Lost storyline - again - but this time via episode #22 - instead of episode #4.&lt;/p&gt;&#xD;
&lt;p&gt;The other bonuses to watching “Lost” on Hulu are the web exclusive clips and an ‘enhanced’ set of episodes which actually explain what the hell is going on!&lt;/p&gt;&#xD;
&lt;p&gt;Collectively - watching “Lost” on-demand goes way beyond just watching TV.  It’s navigating through a labyrinth of storyline mythology and time travel.&lt;/p&gt;&#xD;
&lt;p&gt;Highly recommended!&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;img alt="" class="alignright" height="252" src="http://www.theincomparable.com/lost-logo.jpg" style="margin-left: 8px; margin-right: 8px;" width="336"&gt;&lt;/img&gt;Since I teach my class on Tuesday nights - I’ve been unnable to catch the new episodes of “Lost”.  So I’m forced to go to ‘Hulu’ and go on-demand.&lt;/p&gt;&#xD;
&lt;p&gt;But what a pleasure!&lt;/p&gt;&#xD;
&lt;p&gt;Given “Lost’s” time travel motif, I can’t help but comment on and create a blog post on how coolio it is to be able to randomly jump throughout the five season mythology of “Lost”, pause, rewind, watch again - study - and then loop through the Lost storyline - again - but this time via episode #22 - instead of episode #4.&lt;/p&gt;&#xD;
&lt;p&gt;The other bonuses to watching “Lost” on Hulu are the web exclusive clips and an ‘enhanced’ set of episodes which actually explain what the hell is going on!&lt;/p&gt;&#xD;
&lt;p&gt;Collectively - watching “Lost” on-demand goes way beyond just watching TV.  It’s navigating through a labyrinth of storyline mythology and time travel.&lt;/p&gt;&#xD;
&lt;p&gt;Highly recommended!&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LwwtdokLXnc:Qeu0YeMBfXY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LwwtdokLXnc:Qeu0YeMBfXY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LwwtdokLXnc:Qeu0YeMBfXY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=LwwtdokLXnc:Qeu0YeMBfXY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/LwwtdokLXnc" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T21:15:54Z</updated>
    <category term="Blog" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-02-08T21:15:54Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/02/08/on-demand-lost/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/icba_event_march_</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/f1nZEBd9jiE/icba_event_march_" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Independent Community Bankers of America (ICBA) Convention &amp; Techworld Booth # 547</title>
    
    <updated>2010-02-08T21:14:54Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">Join Imprivata at ICBA-s annual Convention &amp; Techworld in Orlando, Florida from March 17th-21st.  The event is the largest community banking convention in the country devoted solely to the needs of America-s independent community banks.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=f1nZEBd9jiE:joflSbeAKyI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=f1nZEBd9jiE:joflSbeAKyI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=f1nZEBd9jiE:joflSbeAKyI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=f1nZEBd9jiE:joflSbeAKyI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/f1nZEBd9jiE" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/icba_event_march_</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-666171048294768769</id>
    <link href="http://anil-identity.blogspot.com/feeds/666171048294768769/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=666171048294768769" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/666171048294768769" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/666171048294768769" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/e1E8PP5Jlzs/tip-interpretation-of-missing-ejb.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Tip: Interpretation of missing EJB Method Permissions in JBoss</title>
    <content type="html">The EJB 2.1 specs on this case says:&lt;br&gt;&lt;br&gt;"&lt;span style="font-style: italic;"&gt;It is possible that some methods are not assigned to any security roles nor contained in the exclude-list element. In this case, it is the responsibility of the Deployer to assign method permissions for all of the unspecified methods, either by assigning them to security roles, or by marking them as unchecked.&lt;/span&gt;"&lt;br&gt;&lt;br&gt;What this basically means is that if you have not specifically assigned method permissions or made them "unchecked", then it is left to the vendor's interpretation.&lt;br&gt;&lt;br&gt;Default interpretation of missing method permissions in JBoss is "excluded" mode.&lt;br&gt;&lt;br&gt;&lt;br&gt;Based on JBAS-2471, we have incorporated a jboss.xml setting that will provide the appropriate interpretation of missing method permissions - whether to interpret them as "exclude" or "unchecked".&lt;br&gt;&lt;br&gt;=======================================&lt;br&gt;&lt;br&gt;&amp;lt;!-- The missing-method-permissions-excluded-mode determines the treatment&lt;br&gt;of missing method-permission mappings in the ejb-jar descriptor. The ejb 2.1&lt;br&gt;spec states: "It is possible that some methods are not assigned to any security&lt;br&gt;roles nor contained in the exclude-list element. In this case, it is the&lt;br&gt;responsibility of the Deployer to assign method permissions for all of the&lt;br&gt;unspecified methods, either by assigning them to security roles, or by marking&lt;br&gt;them as unchecked." The missing-method-permissions-excluded-mode is a boolean&lt;br&gt;that allows the deployer to globally indicate that all methods without a&lt;br&gt;method-permission element should be treated as excluded(= true and the default),&lt;br&gt;or that methods without a method-permission element should be treated as&lt;br&gt;unchecked(= false)&lt;br&gt;&lt;br&gt;&amp;lt;missing-method-permissions-excluded-mode&amp;gt;true&amp;lt;/missing-method-permissions-excluded-mode&amp;gt;&lt;br&gt;&amp;lt;missing-method-permissions-excluded-mode&amp;gt;false&amp;lt;/missing-method-permissions-excluded-mode&amp;gt;&lt;br&gt;&lt;br&gt;--&amp;gt;&lt;br&gt;&amp;lt;!ELEMENT missing-method-permissions-excluded-mode (#PCDATA)&amp;amp;rt&lt;br&gt;===========================&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;First Case&lt;/span&gt;:&lt;br&gt;In the first case, if you specify:&lt;span style="font-weight: bold;"&gt;&lt;br&gt;&amp;lt;missing-method-permissions-excluded-mode&amp;gt;true&amp;lt;/missing-method-permissions-excluded-mode&amp;gt;&lt;/span&gt;&lt;br&gt;&lt;br&gt;in your jboss.xml, then all methods that do not have an associated method-permission are excluded from the deployment.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;Second Case&lt;/span&gt;:&lt;br&gt;In the second case, if you specify:&lt;span style="font-weight: bold;"&gt;&lt;br&gt;&amp;lt;missing-method-permissions-excluded-mode&amp;gt;false&amp;lt;/missing-method-permissions-excluded-mode&amp;gt;&lt;/span&gt;&lt;br&gt;in your jboss.xml. then all methods that do not have an associated method-permission are operating in an unchecked mode.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;Reference&lt;/span&gt;:&lt;br&gt;1. &lt;a href="http://community.jboss.org/thread/146026"&gt;Discussion on ejb3 interpretation of this flag&lt;/a&gt;. (Under investigation)&lt;br&gt;2. &lt;a href="https://jira.jboss.org/jira/browse/JBAS-2898"&gt;Default setting in standardjboss.xml&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-666171048294768769?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=e1E8PP5Jlzs:7E7SVwWTgns:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=e1E8PP5Jlzs:7E7SVwWTgns:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=e1E8PP5Jlzs:7E7SVwWTgns:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=e1E8PP5Jlzs:7E7SVwWTgns:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/e1E8PP5Jlzs" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T20:41:56Z</updated>
    <published>2010-02-08T20:25:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossTips" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-02-08T20:41:56Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/02/tip-interpretation-of-missing-ejb.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-4424185171704073785</id>
    <link href="http://anil-identity.blogspot.com/feeds/4424185171704073785/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=4424185171704073785" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/4424185171704073785" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/4424185171704073785" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/orB_50pSCIk/tip-role-mapping-in-jboss-application.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Tip: Role Mapping in JBoss Application Server v5.x</title>
    <content type="html">If you are interested in mapping roles at the deployment level (such as EARs, WARs, EJB Jars) to the roles deduced at the security domain level, then you should read this article: &lt;a href="http://community.jboss.org/wiki/MappingRolesinJBossApplicationServerv5x"&gt;http://community.jboss.org/wiki/MappingRolesinJBossApplicationServerv5x&lt;/a&gt;&lt;br&gt;&lt;br&gt;Note the use of &lt;span style="font-weight: bold;"&gt;org.jboss.security.mapping.providers.DeploymentRolesMappingProvider&lt;/span&gt;&lt;br&gt;&lt;br&gt;Note: This is an additional forced interpretation of role mapping for the containers when our normal regular interpretation is deployment roles for addition into a RunAs identity.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-4424185171704073785?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=orB_50pSCIk:tR6QEbVc5Io:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=orB_50pSCIk:tR6QEbVc5Io:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=orB_50pSCIk:tR6QEbVc5Io:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=orB_50pSCIk:tR6QEbVc5Io:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/orB_50pSCIk" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T20:25:25Z</updated>
    <published>2010-02-08T20:12:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossTips" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossAS5" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBAS5" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBoss5" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-02-08T20:41:56Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/02/tip-role-mapping-in-jboss-application.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2010/02/build_424_functions_and_array_operators.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/eIZZygj538E/build_424_functions_and_array_operators.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Build 424: Functions and Array Operators</title>
    <summary xml:lang="en" type="html">The latest build of the Kynetx Rule Language (KRL) provides a significant upgrade in capability with the addition of functions. We've also added some new array operators that take advantage of functions to make using arrays easier. KRL supports...</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;!-- title: 
Build 424: Functions and Arrays
--&gt;&#xD;
&lt;!-- category: newsletter --&gt;&#xD;
&lt;!-- keywords: 
kynetx, krl, programming+languages
--&gt;&#xD;
&lt;a href="http://www.kynetx.com"&gt;&lt;img align="right" alt="Kynetx Logo" border="0" hspace="3" src="http://www.windley.com/images/kynetx_logo_small.png" style="margin-top: 10px; margin-left: 10px;" title="Kynetx Logo" vspace="3" width="125px"&gt;&lt;/img&gt;&lt;/a&gt; &#xD;
&lt;p&gt;&#xD;
The latest build of the Kynetx Rule Language (KRL) provides a significant upgrade in capability with the addition of functions.  We've also added some new array operators that take advantage of functions to make using arrays easier.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
KRL supports functions as first-class objects in the expression language.  KRL supports only anonymous functions, but they can be given names by binding them to a variable in a declaration.  Here's an example:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;pre {&#xD;
  add5 = function(x) {&#xD;
           x + 5&#xD;
         };&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Functions are evaluated statically (e.g. the environment they are defined in, not the environment they are executed in determines the binding of free-variables) and can be recursive.  Here's an example of a recursive function in KRL:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;pre {&#xD;
  fact = function(n) {&#xD;
            (n &amp;lt;= 0) =&amp;gt; 1&#xD;
                      | n * fact(n-1)&#xD;
         }&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Functions are declared using the keyword &lt;code&gt;function&lt;/code&gt; and contain optional declarations followed by a single expression that returns the result of the function when executed.  To see this, &#xD;
consider the following example which uses Newton's method to calculate square roots (taken from &lt;a href="http://mitpress.mit.edu/sicp/full-text/book/book-Z-H-10.html#%_sec_1.1.8"&gt;Section 1.1.8 of Structure and Interpretation of Computer Programs&lt;/a&gt;):&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;pre class="code"&gt;sqrt = function(x) {&#xD;
    average = function(x,y) { (x + y) / 2 };&#xD;
    good_enough = function(guess, x) {&#xD;
       v = (guess * guess) - x;&#xD;
       v &amp;lt; 0.01 &amp;amp;&amp;amp; v &amp;gt; -0.01&#xD;
    };&#xD;
    improve = function(guess, x) {&#xD;
       average(guess, (x / guess))&#xD;
    }&#xD;
    sqrt_iter = function(guess, x) {&#xD;
       good_enough(guess, x) =&amp;gt; guess&#xD;
                              | sqrt_iter(improve(guess,x), x)&#xD;
    };&#xD;
    sqrt_iter(1.0, x)&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Functions can return functions as values and functions can be passed as the arguments to other functions and operators in KRL.  The following example defined a generalized summation function that sums the numbers from &lt;code&gt;a&lt;/code&gt; to &lt;code&gt;b&lt;/code&gt; incrementing using &lt;code&gt;inc&lt;/code&gt; and applying the function &lt;code&gt;f&lt;/code&gt; to each term:&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;pre class="code"&gt;sum = function(f, a, next, b) {&#xD;
  (a &amp;gt; b) =&amp;gt; 0&#xD;
           | f(a) + sum(f, next(a), inc, b)&#xD;
};&#xD;
inc = function(x) { x + 1 };&#xD;
cube = function(x) { x * x * x };&#xD;
sum_cubes = function(a, b) {&#xD;
  sum(cube, a, inc, b)&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
We could define a function that creates incrementor functions.  When given a number, it returns a function that increments by that value:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;inc_generator = function(n) { function(x){ x + n } };&#xD;
inc = inc_generator(1);&#xD;
inc_by_2 = inc_generator(2);&#xD;
inc_by_25 = inc_generator(25);&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Being able to write functions adds significant power.  More so with some of the other languages changes we have in mind for the next few months.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Weve also added several new array operators in recent builds.  Most notably, array references now work as follows:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;a = [1,4,3,6,5];&#xD;
b = a[1]&#xD;
&lt;/pre&gt;&#xD;
&lt;p&gt;&#xD;
This would bind the value 4 to the variable &lt;code&gt;b&lt;/code&gt;.  Note that array references only work for arrays of one-dimension, so &lt;code&gt;c[1][2]&lt;/code&gt; is not allowed (presuming &lt;code&gt;c&lt;/code&gt; is an array of arrays).&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
In addition, there are a number of new &lt;a href="http://docs.kynetx.com/krl/report-on-krl/expressions/#Operators"&gt;operators&lt;/a&gt; available for arrays. &#xD;
The following array operators are now available (in addition to &lt;code&gt;length&lt;/code&gt; which has been previously available):&#xD;
&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;code&gt;sort&lt;/code&gt; - sorts the array. With no argument, sorting is done in ascending order.  The argument &lt;code&gt;"reverse"&lt;/code&gt; causes sorting to happen in descending order.  The argument can also be a function that takes two argument and returns a boolean value which will be used as the comparison function for the sort. &lt;/li&gt;&#xD;
&#xD;
&lt;li&gt;&lt;code&gt;filter&lt;/code&gt; - filters an array, producing a new array.  The operator takes a function argument that takes a single parameter and returns a boolean value.  The return array contains elements for which the function returns true.   &lt;/li&gt;&#xD;
&#xD;
&lt;li&gt;&lt;code&gt;map&lt;/code&gt; - modfies an array from mapping a function to each member of the array.  The operator takes a function argument that takes a single parameter and returns any value.  The array returned from &lt;code&gt;map&lt;/code&gt; is the result of applying the function to each member of the original array in turn, collecting the results into a new array.&lt;/li&gt;&#xD;
&#xD;
&lt;li&gt;&lt;code&gt;head&lt;/code&gt; - returns the first element of an array without modifying the array.&lt;/li&gt;&#xD;
&#xD;
&lt;li&gt;&lt;code&gt;tail&lt;/code&gt; - returns an array that is identical to the orginal array except without the first member.  &lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
You could use these like so:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;pre {&#xD;
  f = function(x) { x &amp;lt; 4 };&#xD;
  g = function(y) { y * 2 };&#xD;
  a = [1,4,3,6,5];&#xD;
&#xD;
  b = a.sort(); // returns [1,3,4,5,6]&#xD;
  c = a.filter(f); // returns [1,3]&#xD;
  d = a.head(); // d has the value 1&#xD;
  e = a.map(g); // e has the value [2,8,6,12,10]&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Operators are fairly easy to add and handy to have, so if you have ideas for other operators, on arrays, strings, and so on, just let us know.  &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=eIZZygj538E:K-wpjUi8aEE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=eIZZygj538E:K-wpjUi8aEE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=eIZZygj538E:K-wpjUi8aEE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=eIZZygj538E:K-wpjUi8aEE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/eIZZygj538E" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T17:02:02Z</updated>
    <published>2010-02-08T16:52:19Z</published>
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2010-02-08T17:02:02Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2010/02/build_424_functions_and_array_operators.shtml</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-6273710795165927996</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/6273710795165927996/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=6273710795165927996&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/6273710795165927996?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/6273710795165927996?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/wtFc-O6OAUA/microsoft-case-study-on-quests-saas.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Microsoft case study on Quest’s SaaS solutions</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;We’ve been on the Microsoft Azure bandwagon since that parade started. Early last month &lt;a href="http://www.microsoft.com/casestudies/Case_Study_Detail.aspx?CaseStudyID=4000006270" target="_blank"&gt;Microsoft published a case study&lt;/a&gt; about our solution:&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;i&gt;Quest Software wanted to enable its customers to share access with their partners and with Quest support staff, to manage user roles centrally, and to log in just once to use multiple Quest services. Using Windows Identity Foundation, Active Directory Federation Services 2.0, and Windows Azure, Quest can provide strong data security, centralized role management, and single sign on and direct access capabilities.&lt;/i&gt;&lt;/blockquote&gt;We have three Quest products that we have SaaS enabled so far. You can find them all at: &lt;a href="http://www.quest.com/ondemand/" title="http://www.quest.com/ondemand/"&gt;http://www.quest.com/ondemand/&lt;/a&gt;...&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;a href="http://www.quest.com/common/registration.aspx?requestdefid=26754"&gt;&lt;b&gt;Recovery Manager OnDemand &lt;i&gt;for Active Directory&lt;/i&gt;&lt;/b&gt;&lt;/a&gt; provides backup and object-level recovery of Active Directory data. It is designed to enable flexible, scheduled backups without manual intervention, facilitating quick and scalable recovery of Active Directory data.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;a href="http://www.quest.com/common/registration.aspx?requestdefid=26754"&gt;&lt;b&gt;InTrust OnDemand&lt;/b&gt;&lt;/a&gt; securely collects, stores, reports, and alerts on event data from Windows systems, helping organizations comply with external regulations, internal policies and security best practices.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;a href="http://www.quest.com/reportsforsharepoint"&gt;&lt;b&gt;Site Administrator Reports OnDemand &lt;i&gt;for SharePoint&lt;/i&gt;&lt;/b&gt;&lt;/a&gt; provides free overview reports for an unlimited number of SharePoint sites. The information in these reports allows you to assess the scope of the site you’re reviewing, understand how it is being used, and determine site storage metrics.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:cca219b3-2133-455b-b30c-1c4189afe9de" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/Quest" rel="tag"&gt;Quest&lt;/a&gt;,&lt;a href="http://technorati.com/tags/QSFT" rel="tag"&gt;QSFT&lt;/a&gt;,&lt;a href="http://technorati.com/tags/SaaS" rel="tag"&gt;SaaS&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Microsoft" rel="tag"&gt;Microsoft&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Windows+Identity+Foundation" rel="tag"&gt;Windows Identity Foundation&lt;/a&gt;,&lt;a href="http://technorati.com/tags/ADFS" rel="tag"&gt;ADFS&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Windows+Azure" rel="tag"&gt;Windows Azure&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Azure" rel="tag"&gt;Azure&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Active+Directory" rel="tag"&gt;Active Directory&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Active+Directory+Federation+Services" rel="tag"&gt;Active Directory Federation Services&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Geneva" rel="tag"&gt;Geneva&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-6273710795165927996?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/3mBq7GScCCNA_dUZ9R5sYNyc5sc/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/3mBq7GScCCNA_dUZ9R5sYNyc5sc/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/3mBq7GScCCNA_dUZ9R5sYNyc5sc/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/3mBq7GScCCNA_dUZ9R5sYNyc5sc/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/9cnkp-pGsCA" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wtFc-O6OAUA:Ymlcef2Crx4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wtFc-O6OAUA:Ymlcef2Crx4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wtFc-O6OAUA:Ymlcef2Crx4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=wtFc-O6OAUA:Ymlcef2Crx4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/wtFc-O6OAUA" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T16:38:35Z</updated>
    <published>2010-02-08T16:38:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/02/microsoft-case-study-on-quests-saas.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-02-08T17:27:58Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/9cnkp-pGsCA/microsoft-case-study-on-quests-saas.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content42752.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-MYhEn9A_PU/content42752.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: PRESS RELEASE - IMPRIVATA PROVIDES WAYNE MEMORIAL HOSPITAL A HEAD START IN THE RACE FOR ELECTRONIC MEDICAL RECORDS</title>
    
    <updated>2010-02-08T16:25:50Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">http://www.marketwire.com/press-release/Imprivata-Provides-Wayne-Memorial-Hospital-Head-Start-Race-Electronic-Medical-Records-1113617.htm&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-MYhEn9A_PU:Gt4aAmGcU3s:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-MYhEn9A_PU:Gt4aAmGcU3s:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-MYhEn9A_PU:Gt4aAmGcU3s:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-MYhEn9A_PU:Gt4aAmGcU3s:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-MYhEn9A_PU" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content42752.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-5560991812627698330</id>
    <link href="http://connectid.blogspot.com/feeds/5560991812627698330/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=5560991812627698330" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5560991812627698330?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5560991812627698330?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fWGU2nsxh1g/new-line-of-greeting-cards_08.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="487" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/Jw1FLtbKzAEgpwoMS8smGemzvyvjvMZzrdc3P57oybqwxWeSYMLUBn0dEEwb/Screen_00021.jpg" width="416"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-33"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-5560991812627698330?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/fWGU2nsxh1g" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fWGU2nsxh1g:CswRTF78d8Y:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fWGU2nsxh1g:CswRTF78d8Y:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fWGU2nsxh1g:CswRTF78d8Y:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fWGU2nsxh1g:CswRTF78d8Y:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fWGU2nsxh1g" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T14:36:17Z</updated>
    <published>2010-02-08T14:36:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards_08.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-5521039421252532695</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/5521039421252532695/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=5521039421252532695" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/5521039421252532695" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/5521039421252532695" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/AfkOtpZ7wqc/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Agile Application Governance Across All Platforms</title>
    <content type="html">&lt;a href="http://amberpoint.com/platforms/platform_oracle.shtml"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5435876524158026322" src="http://3.bp.blogspot.com/_RI178MJjsuE/S3Ac5fFTAlI/AAAAAAAADuw/FLtu3xbM1f8/s200/AP_for_Oracle300.jpg" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 71px; height: 55px;"&gt;&lt;/img&gt;&lt;/a&gt;Given the solid integration that's already in place as an &lt;a href="http://amberpoint.com/platforms/platform_oracle.shtml"&gt;ISV partner for Oracle Fusion Middleware&lt;/a&gt;, todays news on &lt;a href="http://finance.yahoo.com/news/OracleR-Buys-iw-3438586922.html?x=0&amp;amp;.v=1"&gt;Oracle's Acquisition of Amberpoint&lt;/a&gt; should come in as very &lt;a href="http://www.oracle.com/amberpoint/index.html"&gt;good news&lt;/a&gt; for our common &lt;a href="http://amberpoint.com/casestudies/telecom.shtml"&gt;Telco install base&lt;/a&gt; (such as BT, Orange and Telcom Italia). Amberpoint is &lt;a href="http://www.amberpoint.com/products/standards.shtml"&gt;standards based&lt;/a&gt; that includes XACML.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-5521039421252532695?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=AfkOtpZ7wqc:wYz9KCYEvnY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=AfkOtpZ7wqc:wYz9KCYEvnY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=AfkOtpZ7wqc:wYz9KCYEvnY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=AfkOtpZ7wqc:wYz9KCYEvnY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/AfkOtpZ7wqc" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T14:30:01Z</updated>
    <published>2010-02-08T14:16:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="AAAmber" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#5521039421252532695</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/imprivata_provides_wayne_memorial_hospital_with_emr___imprivata</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/cIdqRPINe7c/imprivata_provides_wayne_memorial_hospital_with_emr___imprivata" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Imprivata OneSign Provides Wayne Memorial Hospital a Head Start in the Race for Electronic Medical Records</title>
    
    <updated>2010-02-08T14:00:41Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">With Imprivata OneSign Single Sign-On, Wayne Memorial Hospital Improves Patient Care, Increases Data Security and Closes in on Federal Incentive Dollars at the Finish Line&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cIdqRPINe7c:hC4nw6kiojM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cIdqRPINe7c:hC4nw6kiojM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cIdqRPINe7c:hC4nw6kiojM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=cIdqRPINe7c:hC4nw6kiojM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/cIdqRPINe7c" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/imprivata_provides_wayne_memorial_hospital_with_emr___imprivata</feedburner:origLink></entry>

  <entry>
    <id>f1397696-738c-4295-afcd-943feb885714:30390</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/R_750Vg2tTg/Identity-Assurance-an-everyday-life-issue-part-1-of-2" rel="alternate" type="text/html" />
    <title>Identropy: Identity Assurance, an everyday life issue (part 1 of 2)…</title>
    
    <updated>2010-02-08T12:45:00Z</updated>
    <author>
      <name>Frank Villavicencio</name>
    </author>
    <source>
      <id>http://www.identropy.com/blog/</id>
      <link href="http://www.identropy.com/blog/" rel="alternate" type="text/html" />
      <link href="http://www.identropy.com/CMS/UI/Modules/BizBlogger/rss.aspx?tabid=85591&amp;moduleid=85510&amp;maxcount=25" rel="self" type="application/rss+xml" />
      <subtitle>RSS feeds for</subtitle>
      <title>Blog</title>
      <updated>2010-02-09T03:02:03Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;In this 2-part article, I hope to explain the importance of &lt;a href="http://en.wikipedia.org/wiki/Identity_assurance"&gt;identity assurance&lt;/a&gt; in everyday life. I will first level set on terms and definitions in part 1, and then illustrate with real-life examples in part 2.&lt;/p&gt;&#xD;
&lt;p&gt;The notion of identity assurance is to establish, with a level of certainty, that the human being represented by a credential in an electronic transaction is in fact the alleged person.&lt;strong&gt; &lt;/strong&gt;Whether you realize it or not, whenever you perform an electronic transaction, you are making some kind identity assurance tradeoff. &lt;/p&gt;&#xD;
&lt;p&gt;Identity assurance does not only apply to scenarios in the extranet in which consumers or users from one organization interact with systems in another. It also applies within the enterprise where you need to view identity lifecycle management holistically, as opposed to fragmented steps, such as provisioning, authentication, single sign-on, etc.; and how they contribute to creating and maintaining identity assurance. &lt;/p&gt;&#xD;
&lt;h2&gt;My Personal History&lt;/h2&gt;&#xD;
&lt;p&gt;In late 2006, I was first introduced to the issue of identity assurance as a trend in identity management.  It all started with the &lt;a href="http://www.ffiec.gov/press/pr101205.htm"&gt;FFIEC's October 2005&lt;/a&gt; guidance on &lt;a href="http://www.ffiec.gov/pdf/authentication_guidance.pdf"&gt;Authentication in an Internet Banking Environment&lt;/a&gt;. It appeared on my radar as I was strategizing on the future of web access management and the product portfolio for which I was responsible. I was also wrestling with transaction assurance and &lt;a href="http://www.scmagazineus.com/the-advent-of-access-management-20/article/35240/"&gt;access management 2.0&lt;/a&gt;. At the time I did not realize the profound impact that this concept would have on my career.&lt;/p&gt;&#xD;
&lt;p&gt;In late 2007, as I was managing a high-assurance digital identity service offering at a large global bank, I was introduced to &lt;a href="http://www.projectliberty.org/strategic_initiatives/identity_assurance/"&gt;Liberty Alliance Identity Assurance Expert Group&lt;/a&gt;. I joined the group as a co-chair which led to my current role as Chair of &lt;a href="http://kantarainitiative.org/confluence/display/idassurance/Home"&gt;Kantara Initiative's Identity Assurance Work Group&lt;/a&gt; that is responsible for the &lt;a href="http://en.wikipedia.org/wiki/Identity_Assurance_Framework"&gt;Identity Assurance Framework&lt;/a&gt;. It works closely with the &lt;a href="http://kantarainitiative.org/confluence/display/certification/Identity+Assurance+Certification+Program"&gt;Kantara Initiative Identity Assurance Certification Program&lt;/a&gt;, which actually instantiates the framework in an actual program.  So, I guess you can say I have become an identity assurance activist.&lt;/p&gt;&#xD;
&lt;h2&gt;It's All About Risk&lt;/h2&gt;&#xD;
&lt;p&gt;In any electronic transaction where a human is represented, an implicit identity assurance tradeoff is made. A human may be represented in a transaction by providing a user name, email address, or simply by checking off a box accepting certain terms and conditions. The question is whether we are aware of or comfortable with the tradeoff. In all instances, you and the party with whom you are transacting are agreeing that your identity can be representing in this way for this transaction, and accept the consequences of what might happen if something goes wrong (i.e. your credentials are spoofed or compromised, or you chose to share your credentials with somebody that acts on your behalf and does something wrong).&lt;/p&gt;&#xD;
&lt;p&gt;The higher the sensitivity of the transaction, the higher the confidence (i.e. assurance level) you would like to have.  Therefore, an &lt;i&gt;identity assurance level&lt;/i&gt; (AL) should map to the risk level in any given transaction. &lt;/p&gt;&#xD;
&lt;p&gt;All identity assurance documentation that I have read or been involved with converge on four basic levels of assurance: &lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Level 1: Little or no confidence&lt;/li&gt;&#xD;
&lt;li&gt;Level 2: Some confidence&lt;/li&gt;&#xD;
&lt;li&gt;Level 3: High confidence &lt;/li&gt;&#xD;
&lt;li&gt;Level 4: Very high confidence&lt;/li&gt;&lt;/ul&gt;&lt;/ul&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.whitehouse.gov/OMB/memoranda/fy04/m04-04.pdf"&gt;OMB Memorandum M-04-04&lt;/a&gt; illustrates this rationale from the perspective of the US Government. It effectively explains the application of identity assurance to transactions, considering the impact of something going wrong, and also the expected frequency of its occurrence. Below is a table I borrowed from this document that focuses on authentication.&lt;/p&gt;&#xD;
&lt;p align="center"&gt;&lt;img align="center" alt="" border="0" height="209" src="http://www.identropy.com/Portals/40850/images//assurance_levels_OMB_M04-04-resized-600.JPG" style="WIDTH: 486px; HEIGHT: 185px;" title="" width="512"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;u&gt;&lt;img align="left" alt="" border="0" height="74" src="http://www.identropy.com/Portals/40850/images//60px-Light_bulb_icon.png" style="WIDTH: 34px; HEIGHT: 44px;" title="" width="46"&gt;&lt;/img&gt;Advice:&lt;/u&gt;  Be aware of the sensitivity of a transaction. Think through the mechanism employed to mitigate risk and if it is sufficient enough to convey the appropriate level of confidence. Consider the intersection of identity assurance with your data and risk classification.&lt;/p&gt;&#xD;
&lt;h2&gt;It's Not Just About Authentication&lt;/h2&gt;&#xD;
&lt;p&gt;Another important realization, particuarly for me given my background as a product manager, was that identity assurance is not just how strongly you authenticate someone. A number of factors come into play. Moreover, identity assurance, like other facets of &lt;i&gt;identity and access management&lt;/i&gt; (IAM), is a lifecycle process.   An identity lifecycle includes stages ranging from registration (initial creation, identity verification, credentialing) to contextual access control (authentication, risk and activity monitoring, stronger authentication), renewal and termination. &lt;br&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.identropy.com/Portals/40850/images/identity_assurance_lifecycle.jpg" target="_larger"&gt;&lt;img align="center" alt="Click to enlarge" border="0" height="330" src="http://www.identropy.com/Portals/40850/images//identity_assurance_lifecycle-resized-600.JPG" title="" width="548"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;An IAM solution must account for the fact that identity assurance decays over time and that lifecycle processes, such as renewal or termination, are necessary to either preserve the assurance level or eliminate the risk of a compromised identity. &lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.identropy.com/Portals/40850/images/identity_assurance_decays_over_time-resized-600_thumb.jpg" target="_larger"&gt;&lt;img align="center" alt="click to enlarge" border="0" height="332" src="http://www.identropy.com/Portals/40850/images//identity_assurance_decays_over_time-resized-600.JPG" style="WIDTH: 543px; HEIGHT: 311px;" title="" width="563"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Even though this concept may seem obvious, traditional IAM deployments do not incorporate identity assurance as a guideline, and thus rely on a static notion of identity. &lt;/p&gt;&#xD;
&lt;p&gt;This approach towards risk and identity assurance allows end users and organizations to gain trust in relying on online channels to conduct sensitive and higher-value transactions. &lt;/p&gt;&#xD;
&lt;p&gt;In my next blog post, I plan to illustrate these concepts with some real-life examples. In the meantime, I look forward to your comments...&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R_750Vg2tTg:cugRgMupvmc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R_750Vg2tTg:cugRgMupvmc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R_750Vg2tTg:cugRgMupvmc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=R_750Vg2tTg:cugRgMupvmc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/R_750Vg2tTg" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.identropy.com/blog/bid/30390/Identity-Assurance-an-everyday-life-issue-part-1-of-2</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/resch/2010/02/08/data-leakage-prevention-something-not-only-swiss-banks-should-have-a-closer-look-into/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/4Fro-QzNbo4/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Data Leakage Prevention – Something (not only) Swiss Banks Should have a Closer Look Into</title>
    
    <updated>2010-02-08T12:33:57Z</updated>
    <source>
      <id>http://blogs.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://blogs.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole-blogs" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Blogs - Kuppinger Cole + Partner</subtitle>
      <title>Kuppinger Cole Blogs</title>
      <updated>2010-02-08T13:03:04Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/resch"&gt;Joerg Resch&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;p&gt;It has been in the press and &lt;a href="http://blogs.kuppingercole.com/kuppinger/2010/01/31/data-leakage-prevention-and-the-acting-of-the-german-government/"&gt;Martin already wrote something in his blog about it&lt;/a&gt; -German tax authorities have been approached by various individuals who want to sell information about Germans who hold bank accounts at some Swiss Banks, like Credit Suisse and UBS. I don´t want to go into the discussion, wether such a deal, where the government buys “stolen” data (I put it into brackets, because over here, data are not a thing and only things can be stolen) from somebody, is immoral or not. But it certainly is pushing the market for customer information, if it´s value becomes as visible as it is in this case. I´m pretty sure that some of those unknown individuals possessing sensitive customer information already learned that there are institutions out there who would pay significantly more than German tax authorities (for example the banks from where the data had leaked).&lt;/p&gt;&#xD;
&lt;p&gt;So, data leakage prevention, access governanve, privileged user management – these basic disciplines of information security are becoming more than ever part of the survival kit for institutions holding customer identity information. A much better (and cheaper) way to learn more on how such leakage can be avoided, would be to join us at the &lt;a href="http://www.id-conf.com"&gt;European Identity Conference 2010&lt;/a&gt;. We´ll have some best practices showing that it isn´t impossible at all to prevent such leakage.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4Fro-QzNbo4:1Njl1CTuMds:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4Fro-QzNbo4:1Njl1CTuMds:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4Fro-QzNbo4:1Njl1CTuMds:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=4Fro-QzNbo4:1Njl1CTuMds:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/4Fro-QzNbo4" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/resch/2010/02/08/data-leakage-prevention-something-not-only-swiss-banks-should-have-a-closer-look-into/</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/the_basics_of_flash_memory</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/9wJuITIrv3Q/the_basics_of_flash_memory" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: The basics of Flash Memory</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
These days, everybody get excited with Solid State Disks, flash memory and the performance improvements they have over other mass storage solutions.&#xD;
&lt;/p&gt;&lt;p&gt;&#xD;
&lt;a href="http://www.sun.com/storage/disk_systems/sss/f20/" title="Sun Flash Accelerator F20 PCIe Card"&gt;&lt;img align="left" alt="Sun F20 Flash accelerator board" src="http://www.sun.com/images/k3/k3_flash-accelerator-f20_1.jpg" width="150"&gt;&lt;/img&gt;&lt;/a&gt;We've been running some benchmarks of &lt;a href="http://www.sun.com/software/products/directory_srvr_ee/" title="DSEE"&gt;Sun Oracle Directory Server 7.0&lt;/a&gt; leveraging new Sun flash based hardware modules. Before we go in details about their benefits, my colleague &lt;a href="http://www.thezonemanager.com/" title="Brad's blog"&gt;Brad Diggs&lt;/a&gt; posted a very educational article on the &lt;a href="http://www.thezonemanager.com/2010/02/flash-memory-basics.html" title="Flash Memory Basics"&gt;basics of Flash Memory&lt;/a&gt; to set a common understanding of the technology.&#xD;
&lt;/p&gt;&lt;p&gt;&#xD;
Read on and get ready for more data points on how ZFS and Flash Memory can improve Directory Server performances and scalability.&#xD;
&lt;/p&gt;&#xD;
&lt;!-- technorati tags start --&gt;&lt;p style="text-align: right; font-size: 10px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/dsee" rel="tag"&gt;dsee&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/performance" rel="tag"&gt;performance&lt;/a&gt;, &lt;a href="http://technorati.com/tag/zfs" rel="tag"&gt;zfs&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:ca3AY2QKnk4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:ca3AY2QKnk4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:ca3AY2QKnk4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=9wJuITIrv3Q:ca3AY2QKnk4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/9wJuITIrv3Q" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T11:45:12Z</updated>
    <published>2010-02-08T11:44:10Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-02-08T11:45:12Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/the_basics_of_flash_memory</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-2004962894574085861</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/2004962894574085861/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=2004962894574085861" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2004962894574085861" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2004962894574085861" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/hs7UOuOu9c0/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Reducing Risk and Revenue Losses</title>
    <content type="html">&lt;a href="http://1.bp.blogspot.com/_RI178MJjsuE/S296PjgN9QI/AAAAAAAADuo/wFadDySSKZU/s1600-h/customer-hub-large.gif"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5435697682906477826" src="http://1.bp.blogspot.com/_RI178MJjsuE/S296PjgN9QI/AAAAAAAADuo/wFadDySSKZU/s200/customer-hub-large.gif" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 76px; height: 66px;"&gt;&lt;/img&gt;&lt;/a&gt;Excellent paper that talks to the integration points between an Integrated Identity Infrastructure and &lt;a href="http://www.oracle.com/industries/communications/bill-rev-ready-wp.pdf"&gt;Revenue Assurance&lt;/a&gt;. I will hopefully get to present on the topic of "Identity, Policy and Context for Revenue Assurance" at this &lt;a href="http://www.billingworldexpo.com/2010/"&gt;upcoming local event&lt;/a&gt; on OSS/BSS.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-2004962894574085861?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hs7UOuOu9c0:0Wv7Ngh8YfI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hs7UOuOu9c0:0Wv7Ngh8YfI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hs7UOuOu9c0:0Wv7Ngh8YfI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=hs7UOuOu9c0:0Wv7Ngh8YfI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/hs7UOuOu9c0" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T02:47:09Z</updated>
    <published>2010-02-08T02:42:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="RRRl" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#2004962894574085861</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-6185527865866819484</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/6185527865866819484/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=6185527865866819484" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/6185527865866819484" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/6185527865866819484" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Du0oZ7EvTd0/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Identity, Policy &amp; Context Centric Convergence</title>
    <content type="html">&lt;a href="http://2.bp.blogspot.com/_RI178MJjsuE/S290Cgi2GbI/AAAAAAAADug/dMKQvRreMTU/s1600-h/swift.jpg"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5435690861704124850" src="http://2.bp.blogspot.com/_RI178MJjsuE/S290Cgi2GbI/AAAAAAAADug/dMKQvRreMTU/s200/swift.jpg" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 63px; height: 47px;"&gt;&lt;/img&gt;&lt;/a&gt;Excellent paper by SWIFT on &lt;a href="http://www.ist-swift.org/component/option,com_docman/task,doc_download/gid,20/Itemid,37/"&gt;"Identity as the Convergence Layer",&lt;/a&gt; which implies, Identity (authN authorities), Policy (authZ authorities) and Context (attribute authorities) as the layer that enables Customer or User Centric Convergence.&lt;br&gt;&lt;br&gt;The 5 industry standards initiatives around Identity for Communications Convergence includes;&lt;br&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.tmforum.org/IdentityManagement/7306/home.html"&gt;TMF Identity for NGOSS (IPSF also folded in)&lt;br&gt;&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://www.itu.int/ITU-T/worksem/ngn/200612/index.html"&gt;ITU T work on Identity and Security for Telco&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://xml.coverpages.org/ETSI-IdM.html"&gt;ETSI for Identity and Profile Management&lt;/a&gt; (GUP, SUP, DUP, etc.)&lt;/li&gt;&lt;li&gt;&lt;a href="http://kantarainitiative.org/confluence/display/telcoid/Charter"&gt;Kantara WG on Telco IDM&lt;/a&gt; (and historical work done by Liberty Alliance)&lt;/li&gt;&lt;li&gt;&lt;a href="http://www.ist-swift.org/content/view/13/29/"&gt;SWIFT's work on Use Cases&lt;/a&gt; around IDM for NGN including Policies and Context&lt;br&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-6185527865866819484?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Du0oZ7EvTd0:yKo4i-ZOfwg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Du0oZ7EvTd0:yKo4i-ZOfwg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Du0oZ7EvTd0:yKo4i-ZOfwg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Du0oZ7EvTd0:yKo4i-ZOfwg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Du0oZ7EvTd0" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T02:25:11Z</updated>
    <published>2010-02-08T02:15:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="CCConv" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#6185527865866819484</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-6584493659479812249</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/6584493659479812249/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=6584493659479812249" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/6584493659479812249" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/6584493659479812249" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-eIX0d4gks0/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Customer's Context Centric Convergence &amp; Consolidation</title>
    <content type="html">&lt;a href="http://www.oracle.com/us/industries/communications/018751.htm"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5435672828139570322" src="http://1.bp.blogspot.com/_RI178MJjsuE/S29jo0SAhJI/AAAAAAAADuY/jAlQR4r8NUU/s200/customer-hub-large.gif" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 69px; height: 60px;"&gt;&lt;/img&gt;&lt;/a&gt;The more I learn around the value proposition that Oracle offers to the Telco Industry, the more I am excited to be working in the &lt;a href="http://www.oracle.com/us/industries/communications/018751.htm"&gt;Communication Global Business Unit&lt;/a&gt;. Through its massive set of acquisitions for the Telco vertical and the Identity Infrastructure space Oracle offers a big piece of the solution sets that would be required by the Carriers in this industry who are essentially facing three large scale challenges  (given the Convergence around IP - wireless+wireline convergence, Network+IT convergence, Voice+Data+Video convergence, Device Convergence, etc., and the massive transformation we see with a Global Broadband Wireless deployments), which include:&lt;br&gt;&lt;ul&gt;&lt;li&gt;Enabling &lt;a href="http://www.oracle.com/industries/communications/enable-convergence.html"&gt;Next Generation Service and Content Delivery&lt;/a&gt; (converged and contextual - relevant to each and every unique subscriber/customer needs)&lt;/li&gt;&lt;li&gt;Improve &lt;a href="http://www.oracle.com/industries/communications/improve-compliance.html"&gt;Cost Control and Compliance&lt;/a&gt; (heavily leveraging an Identity Infrastructure and containing costs both on the IT and Network side)&lt;/li&gt;&lt;li&gt;Drive &lt;a href="http://www.oracle.com/industries/communications/drive-customer-centric.html"&gt;Customer Centric Information Architecture&lt;/a&gt; (based on SOA)&lt;/li&gt;&lt;/ul&gt;Other than the &lt;a href="http://www.oracle.com/industries/communications/oracle-communications-services-delivery.html"&gt;software infrastructure products&lt;/a&gt; (communications SDP) that heavily integrate with a &lt;a href="http://identity-centric-architecture.blogspot.com/search/label/IIIO"&gt;common identity infrastructure&lt;/a&gt;, for the infrastructure services it has to offer; all three major Applications offered for this vertical also leverage this common identity infrastructure in a very big way:&lt;br&gt;&lt;ul&gt;&lt;li&gt;Billing and &lt;a href="http://www.oracle.com/industries/communications/communications-billing-revenue-management.html"&gt;Revenue Assurance&lt;/a&gt; heavily rely on an Identity Infrastructure as described in &lt;a href="http://www.oracle.com/industries/communications/bill-rev-ready-wp.pdf"&gt;this paper &lt;/a&gt;(including Risk BAC, Logging, Auditing, etc.)&lt;/li&gt;&lt;li&gt;The &lt;a href="http://www.oracle.com/industries/communications/oracle-communications-service-fulfillment-suite.html"&gt;OSS stack&lt;/a&gt; also leverages the Authentication and Authorization functions for Unified Operator Management (as elaborated by TMF)&lt;/li&gt;&lt;li&gt;The &lt;a href="http://www.oracle.com/master-data-management/cdh.html"&gt;Oracle Customer Hub&lt;/a&gt; for a 360 degree view of a Customer, for compliance and better customer service and more (integration with Unified Profile, Virtual Directory, HSS and more)&lt;/li&gt;&lt;/ul&gt;The best part is now all this can be combined with Sun's Open Telecom Platform offerings that are ATCA, SAF and other industry standards compliant HW infrastructure and Expertise in integrating with NEP's network facing systems around IMS, WiMAX, LTE, CCSF, HSS, PSCF, etc., making it a phenomenal story - especially when Telco are geared up to deliver &lt;a href="http://www.tmforum.org/ManagingCloudServices/8006/home.html"&gt;Managed Cloud offerings&lt;/a&gt;!!&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-6584493659479812249?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-eIX0d4gks0:ZhPOtpW_-5U:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-eIX0d4gks0:ZhPOtpW_-5U:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-eIX0d4gks0:ZhPOtpW_-5U:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-eIX0d4gks0:ZhPOtpW_-5U:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-eIX0d4gks0" height="1" width="1"/&gt;</content>
    <updated>2010-02-08T01:53:37Z</updated>
    <published>2010-02-08T01:05:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="CCCOracle" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#6584493659479812249</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.xmlgrrl.com/blog/?p=2131</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zHP7TbsiTYs/" rel="alternate" type="text/html" />
    <link href="http://www.xmlgrrl.com/blog/2010/02/07/low-hanging-fructose/#comments" rel="replies" type="text/html" />
    <link href="http://www.xmlgrrl.com/blog/2010/02/07/low-hanging-fructose/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Eve Maler - PayPal: Low-hanging fructose</title>
    <summary xml:lang="en" type="html">Simon Phipps often feeds me tidbits — intellectual rather than gustatory — having to do with nutrition. Recently he recommended I watch a lecture by Dr. Robert Lustig of UCSF in August of last year, called Sugar: The Bitter Truth.
This lecture is really better described as a call to action with biochemistry diagrams. Lustig argues [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://www.webmink.net/"&gt;Simon Phipps&lt;/a&gt; often feeds me tidbits — intellectual rather than gustatory — having to do with nutrition. Recently he recommended I watch a lecture by &lt;a href="http://www.chc.ucsf.edu/coast/faculty_lustig.htm"&gt;Dr. Robert Lustig of UCSF&lt;/a&gt; in August of last year, called &lt;a href="http://www.youtube.com/watch?v=dBnniua6-oM"&gt;Sugar: The Bitter Truth&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;This lecture is really better described as a call to action with biochemistry diagrams. Lustig argues that fructose is an evil that’s been behind the rise in obesity and metabolic syndrome of the last few decades; that soda, juice, and sports drinks loaded with sucrose or HFCS are the single biggest factor in childhood obesity (his specialty); and that we had better start treating fructose as the chronic hepatotoxin it is and &lt;em&gt;stay the heck away from it&lt;/em&gt;. I &lt;a href="http://www.xmlgrrl.com/blog/archives/2009/03/22/343000-reasons-to-be-annoyed/"&gt;agree&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;The lecture series is called &lt;strong&gt;Current Controversies in Nutrition: Letting Science Be the Guide&lt;/strong&gt;.  Well, &lt;em&gt;yeah&lt;/em&gt; — what other guide have they been using all this time, for goodness’ sake? You know, I started my &lt;a href="http://carbgrrl.com"&gt;carbgrrl.com&lt;/a&gt; series admitting a worry about looking like a loon…no more. &lt;a href="http://freetheanimal.com/"&gt;Richard Nikoley&lt;/a&gt;, primal blogger extraordinaire, often talks about Modern Ignorance and the ways in which supposed experts tie themselves in knots because of broken preconceptions about stuff we used to understand instinctively. (Richard &lt;a href="http://freetheanimal.com/2009/12/dr-robert-lustig-on-fructose-alcohol-without-the-buzz.html"&gt;blogged&lt;/a&gt; this lecture, and also &lt;a href="http://freetheanimal.com/2009/12/my-new-hero-25-year-vegetarian-christopher-gardner.html"&gt;another&lt;/a&gt; I’ll touch on here sometime soon…) It sure looks like Lustig is emerging from a cave of institutional ignorance, blinking — and pissed off. Good.&lt;/p&gt;&#xD;
&lt;p&gt;Lustig’s obsession with fructose probably doesn’t give an accurate picture of all the factors in play. He seems to think glucose is just fine to consume in whatever quantity — it’s the “energy of life”, he says (around 1:26:00) — and so I suspect he’s misguided about the evils of spiking one’s insulin over and over, in addition to spiking one’s triglycerides. Remember that the glucose that feeds our brains and bodies can be made from practically any old thing lying around, as I’ve &lt;a href="http://www.xmlgrrl.com/blog/2009/04/14/the-science-of-feeling-peckish-part-1/"&gt;discussed&lt;/a&gt; before. And in &lt;a href="http://www.amazon.com/Good-Calories-Bad-Controversial-Science/dp/1400033462/ref=sr_1_1?ie=UTF8&amp;amp;s=books&amp;amp;qid=1236559875&amp;amp;sr=1-1"&gt;GCBC&lt;/a&gt;, (The Great) Gary Taubes discusses the pernicious effects of eating fructose and glucose in combination:&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;Because sucrose and high-fructose corn syrup (HFCS-55) are both effectively half glucose and half fructose, they offer the worst of both sugars. The fructose will stimulate the liver to produce triglycerides, while the glucose will stimulate insulin secretion. And the glucose-induced insulin response in turn will prompt the liver to secrete even more triglycerides than it would from the fructose alone, while the insulin will also elevate blood pressure apart from the effect of fructose. [GCBC, Ch. 12, p. 201]&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;I have a couple of other quibbles (I’m not sure Lustig’s lust for fiber is entirely warranted), but it’s absolutely worth watching if you care about this stuff.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zHP7TbsiTYs:EMVFIul-ILc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zHP7TbsiTYs:EMVFIul-ILc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zHP7TbsiTYs:EMVFIul-ILc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zHP7TbsiTYs:EMVFIul-ILc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zHP7TbsiTYs" height="1" width="1"/&gt;</content>
    <updated>2010-02-07T18:46:15Z</updated>
    <published>2010-02-07T18:46:15Z</published>
    <category scheme="http://www.xmlgrrl.com/blog" term="carbgrrl" />
    <author>
      <name>Eve</name>
      <uri>http://www.xmlgrrl.com</uri>
    </author>
    <source>
      <id>http://www.xmlgrrl.com/blog/feed/atom/</id>
      <link href="http://www.xmlgrrl.com/blog" rel="alternate" type="text/html" />
      <link href="http://www.xmlgrrl.com/blog/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">XML, identity, crafting, and other tangled musings</subtitle>
      <title xml:lang="en">Pushing String</title>
      <updated>2010-02-07T18:46:15Z</updated>
    </source>
  <feedburner:origLink>http://www.xmlgrrl.com/blog/2010/02/07/low-hanging-fructose/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.links.org/?p=880</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/CuD8C3x5v_U/" rel="alternate" type="text/html" />
    <title>Ben Laurie - Apache / The Bunker: Perhaps Not So Stupid, After All?</title>
    <summary type="html">Stupid now generates correct (single-block, still) SHA-256 code in C. It has functions. We’re starting to wonder about adding structures, and the semantics of arrays – particularly whether an array passed for output can also be used for input (or vice versa). I’m inclining towards making that illegal – if you want a function that, [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://code.google.com/p/stupid-crypto"&gt;Stupid&lt;/a&gt; now generates correct (single-block, still) SHA-256 code in C. It has functions. We’re starting to wonder about adding structures, and the semantics of arrays – particularly whether an array passed for output can also be used for input (or vice versa). I’m inclining towards making that illegal – if you want a function that, say, fills in every second entry in an array, then you’d need to pass in the array to be filled in, and return a second array which would be the result. The function would have to copy the input array to the output before filling in the new values (or copy the parts it isn’t going to fill in). It seems to me this makes analysis simpler, but can easily be optimised by smart compilers, too.&lt;/p&gt;&#xD;
&lt;p&gt;I guess its time we started writing some of this down! I’d also like to add generators for some common scripting languages, like Perl, Python and PHP.&lt;/p&gt;&#xD;
&lt;p&gt;The thing I’m a little scared of is that eventually, if I’m going to take this seriously, we’re going to need a bignum implementation – not too hard to do if you don’t care about efficiency, I guess.&lt;/p&gt;&#xD;
&lt;p class="akst_link"&gt;&lt;a class="akst_share_link" href="http://www.links.org/?p=880&amp;amp;akst_action=share-this" id="akst_link_880" rel="nofollow" title="E-mail this, post to del.icio.us, etc."&gt;Share This&lt;/a&gt;&#xD;
&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/links/ZvUZ/~4/VPjWiMdDXZE" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CuD8C3x5v_U:VPjWiMdDXZE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CuD8C3x5v_U:VPjWiMdDXZE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CuD8C3x5v_U:VPjWiMdDXZE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=CuD8C3x5v_U:VPjWiMdDXZE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/CuD8C3x5v_U" height="1" width="1"/&gt;</content>
    <updated>2010-02-07T16:04:34Z</updated>
    <category term="Crypto" />
    <category term="Open Source" />
    <category term="Programming" /><feedburner:origlink>http://www.links.org/?p=880</feedburner:origlink>
    <author>
      <name>Ben</name>
    </author>
    <source>
      <id>http://www.links.org</id>
      <link href="http://www.links.org" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/links/ZvUZ" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Ben Laurie blathering</subtitle>
      <title>Links</title>
      <updated>2010-02-08T03:32:40Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/links/ZvUZ/~3/VPjWiMdDXZE/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.equalsdrummond.name/?p=277</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/SNH3_Ue7-Ic/" rel="alternate" type="text/html" />
    <link href="http://www.equalsdrummond.name/?p=277#comments" rel="replies" type="text/html" />
    <link href="http://www.equalsdrummond.name/?feed=atom&amp;p=277" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Drummond Reed - Cordance: Avatar – Ahhhhhhhh</title>
    <summary xml:lang="en" type="html">This may be the only blog post I ever write with no link in it. But, reading today that Avatar has finally knocked off Titanic as the #1 grossing movie of all time, one hardly needs to provide a link to either.
Given my passion for film, I just want to say: hats off to James [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;This may be the only blog post I ever write with no link in it. But, reading today that &lt;em&gt;Avatar &lt;/em&gt;has finally knocked off &lt;em&gt;Titanic &lt;/em&gt;as the #1 grossing movie of all time, one hardly needs to provide a link to either.&lt;/p&gt;&#xD;
&lt;p&gt;Given my passion for film, I just want to say: hats off to James Cameron. He may not be the most likeable character in the world. But twice now this man has taken me and countless others (a signficant percentage of the human population, in fact) to a place in film an ocean beyond (or a planet beyond) what we have ever experienced before.&lt;/p&gt;&#xD;
&lt;p&gt;Which really is a new place in consciousness, when you think about it.&lt;/p&gt;&#xD;
&lt;p&gt;I thank him for that, and everyone who helped him realize his vision.&lt;/p&gt;&#xD;
&lt;p&gt;Two pieces of advice:&lt;/p&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;See it in 3D. It doesn’t matter how long you wait to do it. Just see it in 3D.&lt;/li&gt;&#xD;
&lt;li&gt;Sit as close to the axis of the center of the screen as you can, i.e., both in the middle of the theatre and at the height of the center of the screen. It really helps with the 3D experience. Ironically in most 3D theaters this is usually the back row or very near it. In other words, the vast majority of the seats are way too close. Go figure.&lt;/li&gt;&#xD;
&lt;/ol&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=SNH3_Ue7-Ic:ch0_ySsvwgo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=SNH3_Ue7-Ic:ch0_ySsvwgo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=SNH3_Ue7-Ic:ch0_ySsvwgo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=SNH3_Ue7-Ic:ch0_ySsvwgo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/SNH3_Ue7-Ic" height="1" width="1"/&gt;</content>
    <updated>2010-02-07T00:18:49Z</updated>
    <published>2010-02-06T19:30:28Z</published>
    <category scheme="http://www.equalsdrummond.name" term="Movies" />
    <author>
      <name>Drummond Reed</name>
      <uri>http://xri.net/=drummond</uri>
    </author>
    <source>
      <id>http://www.equalsdrummond.name/?feed=atom</id>
      <link href="http://www.equalsdrummond.name" rel="alternate" type="text/html" />
      <link href="http://www.equalsdrummond.name/?feed=atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">It's all about naming...</subtitle>
      <title xml:lang="en">Equals Drummond</title>
      <updated>2010-02-07T00:18:49Z</updated>
    </source>
  <feedburner:origLink>http://www.equalsdrummond.name/?p=277</feedburner:origLink></entry>

  <entry xml:lang="en-us">
    <id>http://zetetic.net/blog/2010/02/06/encrypted-iphone-applications/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/8bohvlT2RV8/" rel="alternate" type="text/html" />
    <title>Identicentric: Encrypted iPhone Applications</title>
    
    <updated>2010-02-06T23:53:50Z</updated>
    <source>
      <id>http://zetetic.net/rss/</id>
      <author>
        <name>Identicentric</name>
      </author>
      <link href="http://zetetic.net/rss/" rel="alternate" type="text/html" />
      <link href="http://blog.identicentric.com/feed/atom" rel="self" type="application/rss+xml" />
      <subtitle>Zetetic Software Design and Development Blog</subtitle>
      <title>Zetetic Blog</title>
      <updated>2010-02-07T05:02:40Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;It was just over four months ago when we set about learning the iPhone &lt;span class="caps"&gt;SDK&lt;/span&gt; and putting together our first application, &lt;a href="http://www.zetetic.net/products/strip"&gt;a revamp of &lt;span class="caps"&gt;STRIP&lt;/span&gt;&lt;/a&gt;, the personal information manager that was so popular for the Palm platform.&lt;/p&gt;&#xD;
&lt;p&gt;Now that we’ve got a mostly-finished product (we’re still making a few tweaks and getting ready to start the beta), we took a step back to look at the code we built to keep the development &lt;span class="caps"&gt;DRY&lt;/span&gt; and enable quick development of future applications. Essentially, we’ve built ourselves a framework for building applications that have a fully-encrypted database layer using SQLCipher, with a robust data model, a login facility, random password generation and seeding, etc.&lt;/p&gt;&#xD;
&lt;p&gt;What took us four months to do at first, now only takes us a few days. Using the code we extracted from &lt;span class="caps"&gt;STRIP&lt;/span&gt; we were able to put together one of our other app ideas in less than four work days. Introducing Codebook, a secure notepad:&lt;/p&gt;&#xD;
&lt;p&gt;&lt;img src="http://zetetic.net/page_attachments/0000/0107/codebook-promo.png"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Codebook is a &lt;em&gt;&lt;span class="caps"&gt;LOT&lt;/span&gt;&lt;/em&gt; like the built-in Notes application on the iPhone. They aren’t exactly the same, but the critical difference is that no one is getting in and reading your notes unless they have your password:&lt;/p&gt;&#xD;
&lt;p&gt;&lt;img src="http://zetetic.net/page_attachments/0000/0109/codebook-login.png"&gt;&lt;/img&gt;&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8bohvlT2RV8:4MiwNmTH1BQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8bohvlT2RV8:4MiwNmTH1BQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8bohvlT2RV8:4MiwNmTH1BQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=8bohvlT2RV8:4MiwNmTH1BQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/8bohvlT2RV8" height="1" width="1"/&gt;</content><feedburner:origLink>http://zetetic.net/blog/2010/02/06/encrypted-iphone-applications/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.equalsdrummond.name/?p=279</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/yvs9jzADCOQ/" rel="alternate" type="text/html" />
    <link href="http://www.equalsdrummond.name/?p=279#comments" rel="replies" type="text/html" />
    <link href="http://www.equalsdrummond.name/?feed=atom&amp;p=279" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Drummond Reed - Cordance: The Incredible Internet Answer Machine</title>
    <summary xml:lang="en" type="html">I know reams have been written about “are we all getting dumber because the Internet is getting smarter?”
But still, it does take my breath away, almost every day.
In another one for the “new heights of irony” file: I was using Gmail this morning and once again wondered about the little orange dot that appears next [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I know reams have been written about “are we all getting dumber because the Internet is getting smarter?”&lt;/p&gt;&#xD;
&lt;p&gt;But still, it does take my breath away, almost every day.&lt;/p&gt;&#xD;
&lt;p&gt;In another one for the “new heights of irony” file: I was using Gmail this morning and once again wondered about the little orange dot that appears next to the names of some email senders.&lt;/p&gt;&#xD;
&lt;p&gt;I’d wondered at least a half dozen times before what this meant, because when you hover over it, there’s no balloon (there should be, Google).&lt;/p&gt;&#xD;
&lt;p&gt;So this morning I finally asked The Incredible Internet Answer Machine.&lt;/p&gt;&#xD;
&lt;p&gt;I just opened another tab and typed “Orange dot in Gmail” into my Google search bar.&lt;/p&gt;&#xD;
&lt;p&gt;The #1 hit (in .29 seconds) was &lt;a href="http://in.answers.yahoo.com/question/index?qid=20080630040235AAVnSdg"&gt;the exact answer to my question&lt;/a&gt;…&lt;/p&gt;&#xD;
&lt;p&gt;…in Yahoo Answers!&lt;/p&gt;&#xD;
&lt;p&gt;(We’re going to have to rename it The Incredible Internet Irony Machine &lt;img alt=";-)" class="wp-smiley" src="http://www.equalsdrummond.name/wp-includes/images/smilies/icon_wink.gif"&gt;&lt;/img&gt;  )&lt;/p&gt;&#xD;
&lt;p&gt;BTW, the answer is: Orange means the sender is using Gmail but is in “idle” status because they haven’t looked at their Gmail page in awhile – they are busy using some other browser tab or application. Green = active on Gmail now, Red = busy, Grey = offline.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yvs9jzADCOQ:0ACyE2HATeY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yvs9jzADCOQ:0ACyE2HATeY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yvs9jzADCOQ:0ACyE2HATeY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=yvs9jzADCOQ:0ACyE2HATeY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/yvs9jzADCOQ" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T19:41:57Z</updated>
    <published>2010-02-06T19:41:57Z</published>
    <category scheme="http://www.equalsdrummond.name" term="General" />
    <author>
      <name>Drummond Reed</name>
      <uri>http://xri.net/=drummond</uri>
    </author>
    <source>
      <id>http://www.equalsdrummond.name/?feed=atom</id>
      <link href="http://www.equalsdrummond.name" rel="alternate" type="text/html" />
      <link href="http://www.equalsdrummond.name/?feed=atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">It's all about naming...</subtitle>
      <title xml:lang="en">Equals Drummond</title>
      <updated>2010-02-07T00:18:49Z</updated>
    </source>
  <feedburner:origLink>http://www.equalsdrummond.name/?p=279</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.equalsdrummond.name/?p=267</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/1zmrk49WPL8/" rel="alternate" type="text/html" />
    <link href="http://www.equalsdrummond.name/?p=267#comments" rel="replies" type="text/html" />
    <link href="http://www.equalsdrummond.name/?feed=atom&amp;p=267" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Drummond Reed - Cordance: Fixing the Google Account problem</title>
    <summary xml:lang="en" type="html">Every so often you experience a technical problem you can’t find any information about and which takes you forever to solve. Then, after you finally solve it, you are left scratching your head saying, “I don’t get it­—there must be millions of people with this problem—why is there so little information about it?”
Once before, back [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Every so often you experience a technical problem you can’t find any information about and which takes you forever to solve. Then, after you finally solve it, you are left scratching your head saying, “I don’t get it­—there must be millions of people with this problem—why is there so little information about it?”&lt;/p&gt;&#xD;
&lt;p&gt;Once before, back in 1991, I ran into such a problem with Windows 3.0. After finally solving it, I shared my solution with my friend Seattle Times tech columnist Paul Andrews. He published it in his column, and it turned out that thousands of people had the same problem but nobody understood quite what was happening. So that’s why there was so little information about it.&lt;/p&gt;&#xD;
&lt;p&gt;Now 20 years later, even though we’ve got the Internet and Google and all, I’ve just been through the same experience. And the irony? The problem is with none other than Google accounts—the very accounts that we need from this search giant to access many of the services it offers.&lt;/p&gt;&#xD;
&lt;p&gt;Over the holidays I finally bore down, worked the problem all the way through, and solved it. And throughout the process I was consistently stunned to find so little information available about it, either from Google or anywhere else.&lt;/p&gt;&#xD;
&lt;p&gt;So this time around I’m being proactive about it and publishing the solution right here so it will be easy for anyone to reference. (And, of course, for Google’s own search engine to find — the Internet brings new heights to irony.)&lt;/p&gt;&#xD;
&lt;p&gt;&lt;em&gt;Warning: &lt;/em&gt;read this all the way through. The easy fixes are also the ones you may live to regret.&lt;/p&gt;&#xD;
&lt;h1&gt;The Problem&lt;/h1&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;A friend shares a Google doc with you.&lt;/li&gt;&#xD;
&lt;li&gt;You receive an email containing a link to this Google doc.&lt;/li&gt;&#xD;
&lt;li&gt;When you click on the link, you are prompted to log into your Google account, but once you do, you can’t get access to the doc because &lt;em&gt;the email address that the friend used is not the same email address you used to originally create your Google account.&lt;/em&gt;&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Arrggh! (That’s an exact quote from an email I just received from a friend for whom I’m solving this problem by writing this blog post!)&lt;/p&gt;&#xD;
&lt;h1&gt;The Simple Solution That Will Get You In Trouble&lt;/h1&gt;&#xD;
&lt;p&gt;There is a simple solution for which I thank George Fletcher of AOL, who first explained it to me and others on the OpenID mailing list who were having this problem a few years ago.&lt;/p&gt;&#xD;
&lt;p&gt;The solution is: &lt;em&gt;register a new Google account under the email address that your friend used to share the Google doc with you&lt;/em&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;It’s very easy…BUT…read the warning afterwards as to why it’s a red herring.&lt;/p&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Go to &lt;a href="http://google.com"&gt;http://google.com&lt;/a&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;If you are signed in, sign out (top right corner).&lt;/li&gt;&#xD;
&lt;li&gt;On the next screen (the plain jane Google home screen), click the Sign in link in the top right corner.&lt;/li&gt;&#xD;
&lt;li&gt;On that screen, underneath the login box on the right, click the link “Don’t have a Google account? Create an account now”.&lt;/li&gt;&#xD;
&lt;li&gt;Even though you may already have a Google account, enter the email address you want to register for another Google account (the one your friend sent the Google doc too).&lt;/li&gt;&#xD;
&lt;li&gt;Confirm the email address via the standard process.&lt;/li&gt;&#xD;
&lt;li&gt;When you are done, log in using to this new Google account (using the email address you just registered, not the one for your other Google account).&lt;/li&gt;&#xD;
&lt;li&gt;Go to Google Docs (&lt;a href="http://docs.google.com/"&gt;http://docs.google.com&lt;/a&gt;).&lt;/li&gt;&#xD;
&lt;li&gt;The Google Doc your friend shared with you will be on the list.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Yes, it’s that simple. BUT…&lt;/p&gt;&#xD;
&lt;h1&gt;The New Problem This Creates&lt;/h1&gt;&#xD;
&lt;p&gt;The reason NOT do solve the problem this way, to which I can attest by long and painful experience, is that while you will now have access to all the Google docs shared with you…you will also have to log in and log back out of each of your different Google accounts in order to access the different sets of Google docs shared with you under your different email addresses.&lt;/p&gt;&#xD;
&lt;p&gt;This might seem like a small pain at first, but believe me, after the 500&lt;sup&gt;th&lt;/sup&gt; time you will be wishing there was a better way.&lt;/p&gt;&#xD;
&lt;p&gt;There is.&lt;/p&gt;&#xD;
&lt;h1&gt;The Better Solution…That &lt;em&gt;Still&lt;/em&gt; Isn’t the Right Answer&lt;/h1&gt;&#xD;
&lt;p&gt;The “better way” is a standard feature of almost any identity or directory system: aliases. (Disclaimer: I’m in the Internet identity business, so this is the kind of stuff I deal with all the time.) In an identity or directory context, an “alias” is just an alternate name for the same account. And in fact Google accounts supports aliases. What’s interesting, though, is that: a) they don’t call them “aliases”, and b) aliases for Google accounts are completely different than aliases for Gmail accounts.&lt;/p&gt;&#xD;
&lt;p&gt;Gmail accounts, you ask? &lt;em&gt;What’s the difference between a Google account and a Gmail account?&lt;/em&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Therein lies a whole ‘nother can of worms (and possibly the reason there is so little information about the Google account problem).&lt;/p&gt;&#xD;
&lt;p&gt;Let me start by explaining the difference (as best I understand it – this WHOLE BLOG POST is an open invitation for the good folks at Google to correct any of my misunderstandings and provide better explanations).&lt;/p&gt;&#xD;
&lt;p&gt;First, a Google account and a Gmail account are not exactly the same thing. The first rule is: &lt;em&gt;every Gmail account is a Google account, but NOT every Google account is a Gmail account&lt;/em&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;In other words, if you have a Google account that is NOT a Gmail address, then you have a Google account is NOT a Gmail account.&lt;/p&gt;&#xD;
&lt;p&gt;The second rule is: BOTH a Google account AND a Gmail address can have an alias. BUT THEY ARE NOT THE SAME THING, AND NEITHER CALLS THEM ALIASES.&lt;/p&gt;&#xD;
&lt;p&gt;I am not making this up. An alias on a Google account (and remember, every Gmail account IS also a Google account) is another name for the entire Google account. But for Gmail, an alias is ONLY an alternate email address that you can send or receive email from using your Gmail account. &lt;strong&gt;A GMAIL ALIAS IS NOT A GOOGLE ACCOUNT ALIAS. A GOOGLE ACCOUNT ALIAS IS NOT A GMAIL ALIAS.&lt;/strong&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Is that clear as mud?&lt;/p&gt;&#xD;
&lt;p&gt;Now, adding an alias to a Gmail account is quite easy, remarkably powerful (most people have no idea how much flexibility Gmail offers to manage your email for any number of email accounts), and surprisingly poorly documented. I just spent 10 minutes searching Gmail for help on this just to see if there was a Gmail help page I could just link to.&lt;/p&gt;&#xD;
&lt;p&gt;Nope.&lt;/p&gt;&#xD;
&lt;p&gt;So here’s how.&lt;/p&gt;&#xD;
&lt;h1&gt;Instructions for Adding an Alias to Your Gmail Account (but NOT for your Google Account Even If It Is a Gmail Account!)&lt;/h1&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Login to your Gmail account.&lt;/li&gt;&#xD;
&lt;li&gt;Click the Settings link in the top right.&lt;/li&gt;&#xD;
&lt;li&gt;Click the Accounts and Import tab.&lt;/li&gt;&#xD;
&lt;li&gt;In the second section, &lt;strong&gt;Send mail as&lt;/strong&gt;, click the button labelled, &lt;strong&gt;Send mail from another address&lt;/strong&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;Enter the email address as instructed.&lt;/li&gt;&#xD;
&lt;li&gt;Google will send you an email with a link you must click to verify you own the address.&lt;/li&gt;&#xD;
&lt;li&gt;Go to that mail account, find the mail, click the link (it all takes about 30 seconds).&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;You’re done. Go back to your Gmail Settings page, click the Accounts and Import tab, and the new email address will be listed in the Send mail as section. You can now send email from this email address by choosing it in the d“From” rop down box in Gmail. (See the help link for more info about the different ways you can send mail from a Gmail alias.)&lt;/p&gt;&#xD;
&lt;p&gt;You can add as many email adddresses as aliases to your Gmail account as you want (at least I couldn’t find documentation about a limit). But keep in mind that all of these will ONLY be Gmail account aliases, not Google account aliases — and having them as Gmail aliases &lt;em&gt;does nothing to solve the Google account problem&lt;/em&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;So you have to go through a &lt;em&gt;different &lt;/em&gt;process — even with the same set of email addresses — to make them Google account aliases. (For example, I have the same four email addresses as BOTH Gmail aliases and Google account aliases.)&lt;/p&gt;&#xD;
&lt;p&gt;The following instructions apply for adding an alias to ANY Google account (whether or not it is a Gmail account), BUT—and this is a big BUT—if your Google account is NOT a Gmail account, keep reading afterwards about why this can come back to bite you.&lt;/p&gt;&#xD;
&lt;h1&gt;Instructions for Adding an Alias to Any Google Account (Even If It Is a Gmail Account)&lt;/h1&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Go to &lt;a href="http://www.google.com/accounts"&gt;www.google.com/accounts&lt;/a&gt;. That is the home page for configuring any Google account. If you’re currently logged into Google, Google figures out which Google account you are using via a cookie in your browser. If you’re not logged in, they’ll prompt you to login, and the Google account you will be configuring is based on the email address you use to login.&lt;/li&gt;&#xD;
&lt;li&gt;Once you are logged in, confirm it is the correct Google account by checking the email address in black text at the very top of the page (on the left side of the block of links in the top right corner). If this is the right account, proceed. If this is not the right account, meaning you want to add an alias to a &lt;strong&gt;different&lt;/strong&gt; Google account, then sign out (upper right corner), then sign back in under the email address for that different Google account.&lt;/li&gt;&#xD;
&lt;li&gt;Under &lt;strong&gt;Personal Settings&lt;/strong&gt; in the top center of the page, the entry at the bottom of the column will be &lt;strong&gt;Email addresses&lt;/strong&gt;. If you have not yet added any aliases to this Google account, you will see only one email address—the same email address as at the top of the page. It will have the grey words &lt;strong&gt;(Primary email)&lt;/strong&gt; next to it. &lt;em&gt;This is the “primary key” for this Google account. You can’t change it! See the warning below.&lt;/em&gt;&lt;/li&gt;&#xD;
&lt;li&gt;To add an alias (do you see the word “alias” anywhere near here? Or anywhere on this screen? Does Google give you &lt;em&gt;any clue&lt;/em&gt; that this is where you should go to access such a feature??), click the &lt;strong&gt;Edit&lt;/strong&gt; link below this email address.&lt;/li&gt;&#xD;
&lt;li&gt;On the next screen (&lt;a href="https://www.google.com/accounts/EditUserInfo"&gt;https://www.google.com/accounts/EditUserInfo&lt;/a&gt;), you will see two blocks: &lt;strong&gt;Edit personal information&lt;/strong&gt; and &lt;strong&gt;Add an alternate email address to your account&lt;/strong&gt;. You want this second block.&lt;/li&gt;&#xD;
&lt;li&gt;At the bottom of this second block is a text box labeled: &lt;strong&gt;Add an additional email address&lt;/strong&gt;. Enter the email address you want to add as an alias (the one to which your friend shared the Google doc you can’t access) and click Save.&lt;/li&gt;&#xD;
&lt;li&gt;The next screen will tell you that you’ve been sent an email to verify that address.&lt;/li&gt;&#xD;
&lt;li&gt;When you receive the email, click the link in the email.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Congratulations, you have just set up that email address to be an alias for your existing Google account.&lt;/p&gt;&#xD;
&lt;p&gt;The benefits?&lt;/p&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;&lt;em&gt;It no longer matters which of your two email addresses your friends share a Google doc with.&lt;/em&gt; Either way, the Google doc they shared will show up in your Google docs dashboard at &lt;a href="http://docs.google.com/"&gt;http://docs.google.com&lt;/a&gt;. As far as I know, this is true for all the email addresses you add as an alias (again, I don’t know if there is a limit).&lt;/li&gt;&#xD;
&lt;li&gt;&lt;em&gt;You no longer have to log in and out of two different Google accounts.&lt;/em&gt; All your Google docs will be there in your one master account. Hooray!&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Now for the final gotcha. You can do all the above and still end out with a royal headache one day because of the following rule Google explains when you register an alias as described above:&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;You can use alternate email addresses to sign in to your Google Account, recover your password, and more. &lt;strong&gt;Alternate email addresses can only be associated with one Google Account at a time.&lt;/strong&gt;&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;In other words, for good security reasons, you can only add an email address as an alias to one Google account at a time. On the surface that doesn’t appear to be an issue…until you circle back to what I explained above…&lt;em&gt;that every Gmail address is also a Google account&lt;/em&gt;. By simple deductive logic, you arrive at this conclusion:&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;&lt;em&gt;You cannot add a Gmail address as an alias to ANY Google account!&lt;/em&gt;&lt;/p&gt;&#xD;
&lt;p&gt;In other words, at Google, all email addresses can all serve as primary keys for Google accounts BUT &lt;em&gt;only only non-Gmail accounts can serve as an alias (a secondary key)&lt;/em&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;So it boils down to this: if have a Gmail account, or ever plan to get one, then you are forcing yourself into the multiple-Google account problem for life UNLESS…&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;…&lt;em&gt;you make your Gmail account your primary Google account&lt;/em&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;Yup, that’s the secret. As long as you make your primary Google account a Gmail account, you’ll never have the problem of wanting to use Gmail but finding yourself forced into the multiple-Google account problem.&lt;/p&gt;&#xD;
&lt;h1&gt;What To Do If You Already Have the Multiple Google Account Problem&lt;/h1&gt;&#xD;
&lt;p&gt;Okay, say you’ve already fallen into this trap. You did what I did several years ago: created your own non-Gmail Google account using a non-Gmail email address so you could access Google docs under that email address. Then later you started using Gmail, and so now you have at least two Google accounts (and maybe more). And people are constantly sharing Google docs with you under one or the other of the two (or more) email addresses, and you are driving yourself nuts logging in and out of Google trying to remember which email address was used to share which Google doc.&lt;/p&gt;&#xD;
&lt;p&gt;But you CAN’T take your non-Gmail email address and make it an alias to your Gmail Google account (as I advise) because your non-Gmail address is already a Google account&lt;em&gt;.&lt;/em&gt;&lt;/p&gt;&#xD;
&lt;p&gt;How do you fix it?&lt;/p&gt;&#xD;
&lt;p&gt;The answer is: a) completely undocumented (at least I couldn’t find it), and b) scary as hell.&lt;/p&gt;&#xD;
&lt;p&gt;That’s why I’m writing this blog post. There’s no reason Google needs to make this so hard. Why they haven’t written it up in one of their generally decent Help articles I have no clue. I even wrote one of my identity friends at Google to ask him. His answer was essentially, “This is just too hard for most users to understand.”&lt;/p&gt;&#xD;
&lt;p&gt;Well, that may be true, but IMHO it’s not a reason to withhold the documentation. The users who &lt;em&gt;are &lt;/em&gt;experiencing the problem are highly motivated to understand it, and in fact the solution is pretty easy once you know what it is.&lt;/p&gt;&#xD;
&lt;p&gt;It’s just scary.&lt;/p&gt;&#xD;
&lt;p&gt;In brief, the way to make a non-Gmail Google account an alias for your Gmail account is to first delete the non-Gmail Google account.&lt;/p&gt;&#xD;
&lt;p&gt;Completely. Kaput. Gone. Which, as you might suspect, would ordinarily mean YOU LOSE EVERYTHING ASSOCIATED WITH THAT ACCOUNT.&lt;/p&gt;&#xD;
&lt;p&gt;How’s that for a scary thought? Honestly, that’s why I held off fixing this for so long. Who wants to bother with working around that?&lt;/p&gt;&#xD;
&lt;p&gt;Luckily, the workaround is not that hard once you know what it is and &lt;em&gt;you are sure it is going to work&lt;/em&gt;. That’s the other reason I’m writing this blog post: I could not find anything posted anywhere – or even get it confirmed by those I knew at Google – that this procedure would work and everything would be okay in the end.&lt;/p&gt;&#xD;
&lt;p&gt;But I finally got so tired of the problem that I just did it, and I’m happy to say it works just fine.&lt;/p&gt;&#xD;
&lt;p&gt;So: &lt;em&gt;please read and follow the instructions below carefully&lt;/em&gt;. I don’t want anyone coming back and telling me that they lost precious data because of my advice that they delete their Google account.&lt;/p&gt;&#xD;
&lt;h2&gt;Part One: Share (or Otherwise Backup) All the Data in the Google Account&lt;/h2&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;First, make sure you have at least one other Google account (preferably a Gmail account—see above—however this procedure should work with any other Google account. In these instructions I’ll assume this other account is a Gmail account.)&lt;/li&gt;&#xD;
&lt;li&gt;Go to the home page of the Google Account you want to delete at  &lt;a href="https://www.google.com/accounts/ManageAccount"&gt;https://www.google.com/accounts/ManageAccount&lt;/a&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;Make sure this is the account you want to delete by checking the correct email address in black text at left end of the links at the very top of the page.&lt;/li&gt;&#xD;
&lt;li&gt;Under Personal Settings, click on the Dashboard link (second one down) called “&lt;a href="https://www.google.com/dashboard?hl=en"&gt;View data stored with this account&lt;/a&gt;”.&lt;/li&gt;&#xD;
&lt;li&gt;This helpful utility (created for personal privacy management) will show you all the data you have at Google associated with this account. Now comes the hard part. You need to go through every Google service on this list, then go through any associated documents or data files for each of those services, and &lt;strong&gt;share them with your Gmail account&lt;/strong&gt;. Even more importantly, if you are the owner any document/file, then &lt;strong&gt;transfer ownership &lt;/strong&gt;to your Gmail account. If you don’t own a document/file (someone else shared it with you), don’t worry, you &lt;em&gt;can’t&lt;/em&gt; lose it when you delete this Google account. But, as long as you have Edit privileges on the document/file, share it with your Gmail account just so you don’t have to go back to the original owner and ask them to reshare it later. If whomever shared it with you DIDN’T give you Edit privileges, just contact them and have them share it again with your Gmail account.&lt;/li&gt;&#xD;
&lt;li&gt;Did I say do this for EVERY document/file in EVERY Google service you use? Go back to your Personal Dashboard and check it again.&lt;/li&gt;&#xD;
&lt;li&gt;IMPORTANT: as a final check, log into your Gmail account and VERIFY that all the docs are shared. If you own the document/file, VERIFY that your Gmail account is the new owner.&lt;/li&gt;&#xD;
&lt;li&gt;Check everything one more time. If you are unsure than anything has been shared and will not go “poof” when you delete this Google account, just download a copy to your local hard drive (or email it to your Gmail account). Like I said, never come back to me and say you lost any Google data because of this blog post.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;h2&gt;Part Two: Delete the Google Account&lt;/h2&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Go back to the home page for the Google account you want to delete: &lt;a href="https://www.google.com/accounts/ManageAccount"&gt;https://www.google.com/accounts/ManageAccount&lt;/a&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;MAKE SURE this is the right Google account by confirming the email address in black at left end of the links at the very top of the page.&lt;/li&gt;&#xD;
&lt;li&gt;Next to the &lt;strong&gt;My products&lt;/strong&gt; header (the second horizontal section down the page), click the &lt;strong&gt;Edit&lt;/strong&gt; link. This should take you to &lt;a href="https://www.google.com/accounts/EditServices"&gt;https://www.google.com/accounts/EditServices&lt;/a&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;The second option on the page is to Delete Account. Choose that option and follow the instructions to confirm you want to permanently delete this account (and wipe that sweat off your brow). Seriously, if you’ve shared or backed up all the files associated with this account, you’ve nothing to fear. It’s just like reformatting a hard drive &amp;lt;ouch&amp;gt;.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Once you’re done, take a deep breath. Wait 15 minutes. (I don’t know if you actually have to wait this long, but I figured it’s long enough to wait for Google’s servers to go through all their account deletion machinations.)&lt;/p&gt;&#xD;
&lt;h2&gt;Part Three: Add The Alias to Your Primary Google Account&lt;/h2&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Log back in to your Gmail account (or whichever Google account you want to make your primary).&lt;/li&gt;&#xD;
&lt;li&gt;Follow the instructions earlier in this blog post to add the email address (for the Google account you just deleted) as an alias to this Google account.&lt;/li&gt;&#xD;
&lt;li&gt;Once Google confirms it as an alias, you’re done.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;Problem solved.&lt;/p&gt;&#xD;
&lt;h1&gt;Why It’s Still Not Perfect: A Final Warning&lt;/h1&gt;&#xD;
&lt;p&gt;It’s worth pointing out that privacy, not just security, can be an issue with account aliases. Sometimes you don’t want someone to know you are using Gmail address to do all this cool stuff. But if your Gmail account is your primary Google account (as I advise), then take note of the following warning:&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;Note: In some Google services, if you share your alternate email address with your contacts, they might be able to learn your primary email address.&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;In short, Google hasn’t fully figured out yet how to provide you with completely separate personas on the Web. In my personal opinion, they would be well-advised to do so. It’s not easy — acheiving this level of privacy can be as hard as acheiving corresponding levels of security. But Google has the talent and, I believe, the motivation to attain this goal. I hope they consider it soon.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1zmrk49WPL8:tjp9flLypQo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1zmrk49WPL8:tjp9flLypQo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1zmrk49WPL8:tjp9flLypQo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=1zmrk49WPL8:tjp9flLypQo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/1zmrk49WPL8" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T19:21:51Z</updated>
    <published>2010-01-25T07:46:04Z</published>
    <category scheme="http://www.equalsdrummond.name" term="General" />
    <category scheme="http://www.equalsdrummond.name" term="Privacy" />
    <author>
      <name>Drummond Reed</name>
      <uri>http://xri.net/=drummond</uri>
    </author>
    <source>
      <id>http://www.equalsdrummond.name/?feed=atom</id>
      <link href="http://www.equalsdrummond.name" rel="alternate" type="text/html" />
      <link href="http://www.equalsdrummond.name/?feed=atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">It's all about naming...</subtitle>
      <title xml:lang="en">Equals Drummond</title>
      <updated>2010-02-07T00:18:49Z</updated>
    </source>
  <feedburner:origLink>http://www.equalsdrummond.name/?p=267</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://smokingmonkey.org/?p=232</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lj5M0U5EwVw/" rel="alternate" type="text/html" />
    <title>Daniel Raskin - Sun: Bookmarks for February 6th</title>
    <summary type="html">These are my links for February 6th:

The Intersection of Business Intelligence and Identity Management: Identity Governance | Guest Opinions | ITBusinessEdge.com – 
BigDataMatters.com: Scale out your identity management – 
Independent Identity: First Open Source Reference Implementation of IGF 1.0 – 
PGP Corporation Acquires TC TrustCenter &amp; ChosenSecurity –</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;These are my links for February 6th:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://www.itbusinessedge.com/cm/community/features/guestopinions/blog/the-intersection-of-business-intelligence-and-identity-management-identity-governance/?cs=39024"&gt;The Intersection of Business Intelligence and Identity Management: Identity Governance | Guest Opinions | ITBusinessEdge.com&lt;/a&gt; – &lt;/li&gt;&#xD;
&lt;li&gt;&lt;a href="http://bigdatamatters.com/bigdatamatters/2010/02/scale-identity-management.html"&gt;BigDataMatters.com: Scale out your identity management&lt;/a&gt; – &lt;/li&gt;&#xD;
&lt;li&gt;&lt;a href="http://independentidentity.blogspot.com/2010/02/first-open-source-reference.html"&gt;Independent Identity: First Open Source Reference Implementation of IGF 1.0&lt;/a&gt; – &lt;/li&gt;&#xD;
&lt;li&gt;&lt;a href="http://www.pgp.com/insight/newsroom/press_releases/pgp_corporation_acquires_chosensecurity.html"&gt;PGP Corporation Acquires TC TrustCenter &amp;amp; ChosenSecurity&lt;/a&gt; – &lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lj5M0U5EwVw:BdBd_gnUaNM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lj5M0U5EwVw:BdBd_gnUaNM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lj5M0U5EwVw:BdBd_gnUaNM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lj5M0U5EwVw:BdBd_gnUaNM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lj5M0U5EwVw" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T19:03:32Z</updated>
    <category term="All" />
    <author>
      <name>admin</name>
    </author>
    <source>
      <id>http://smokingmonkey.org</id>
      <link href="http://smokingmonkey.org/?feed=rss2" rel="self" type="application/atom+xml" />
      <link href="http://smokingmonkey.org" rel="alternate" type="text/html" />
      <subtitle>Ponderings on Identity Management</subtitle>
      <title>The Smoking Monkey</title>
      <updated>2010-02-06T19:33:12Z</updated>
    </source>
  <feedburner:origLink>http://smokingmonkey.org/?p=232</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2010/02/redirectionless_oauth_credentials_exchange.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/9raQW50hJhM/redirectionless_oauth_credentials_exchange.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Redirectionless OAuth Credentials Exchange</title>
    <summary xml:lang="en" type="html">Image via CrunchBase Am I missing something here? Twitter is working with select partners to test what is variously being called OAuth delegation or browserless OAuth credentials exchange method (not sure why browserless since it's not about the browser,...</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;!-- title: 
Redirectionless OAuth Credentials Exchange
--&gt;&#xD;
&lt;!-- category: newsletter --&gt;&#xD;
&lt;!-- keywords: 
oauth, identity, security
--&gt;&#xD;
&lt;div class="zemanta-img"&gt;&lt;a href="http://www.crunchbase.com/product/twitter"&gt;&lt;img alt="Image representing Twitter as depicted in Crun..." border="0" src="http://www.crunchbase.com/assets/images/resized/0000/2755/2755v30-max-250x250.png" width="125px"&gt;&lt;/img&gt;&lt;/a&gt;&lt;p class="zemanta-img-attribution"&gt;Image via &lt;a href="http://www.crunchbase.com"&gt;CrunchBase&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&#xD;
Am I missing something here?  Twitter is working with select partners to test what is variously being called &lt;a href="http://staynalive.com/articles/2010/02/05/twitter-testing-oauth-delegation-with-select-partners-genius/"&gt;OAuth delegation&lt;/a&gt; or &lt;a href="http://the.hackerconundrum.com/2010/02/sneak-peek-at-twitters-browserless.html#tb"&gt;browserless OAuth credentials exchange method &lt;/a&gt; (not sure why browserless since it's not about the browser, it's about the redirection).  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&#xD;
&lt;p&gt;&#xD;
The bottom line is that in an effort to be more user friendly, this removes the redirection to the Twitter site where you authoirize access by letting the third-party site (the site being delegated to) collect and then pass along the user's username and password to get the OAuth credentials.  Abraham Williams &lt;a href="http://the.hackerconundrum.com/2010/02/sneak-peek-at-twitters-browserless.html"&gt;captured the POST headers from Seesmic Look&lt;/a&gt; and they clearly contain the username and password.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
I don't see how this can be a step forward in secure third-party access to APIs like Twitter.  Once users start being allowed--even required--to (again) enter usernames and passwords into third-party sites, they'll be ripe for phishing attacks.  Maybe I'm misunderstanding this based on the scetchy information available, but it looks phishy to me.  &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9raQW50hJhM:N0zNyMOfAAg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9raQW50hJhM:N0zNyMOfAAg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9raQW50hJhM:N0zNyMOfAAg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=9raQW50hJhM:N0zNyMOfAAg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/9raQW50hJhM" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T18:15:26Z</updated>
    <published>2010-02-06T18:10:35Z</published>
    <category term="oauth, identity, security," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2010-02-08T17:02:02Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2010/02/redirectionless_oauth_credentials_exchange.shtml</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6434</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/yk2boQj33yQ/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: I’m not passive in any way</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://blog.broadbandmechanics.com/wp-content/uploads/2010/02/lecture.jpg"&gt;&lt;img alt="lecture" class="alignright size-full wp-image-6435" height="282" src="http://blog.broadbandmechanics.com/wp-content/uploads/2010/02/lecture.jpg" style="margin-left: 8px; margin-right: 8px;" title="lecture" width="420"&gt;&lt;/img&gt;&lt;/a&gt;My wife just said it perfectly.&lt;/p&gt;&#xD;
&lt;p&gt;I’m going to pursue the answers.  I’m not gonna sit still and accept the status quo.&lt;/p&gt;&#xD;
&lt;p&gt;Kismet has brought me here and I’m letting fate guide me.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://mvcw.case.edu/cw3/index.php"&gt;My current class&lt;/a&gt; has us building the user experiences for the &lt;a href="http://www.epic-assoc.com/news/?br=88&amp;amp;ftopus=6f1cbe3777f0f7e0"&gt;Case Connection Zone&lt;/a&gt;.  Stay tuned on that one.  It’s installing 1,000 megabit connections into 104 homes and apartments on Hessler St. - directly adjacent to the CWRU campus.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://mvcw.case.edu/cw3/index.php"&gt;Watch the videos of the class &lt;/a&gt;- and enjoy me having a GREAT time teaching!&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://blog.broadbandmechanics.com/wp-content/uploads/2010/02/lecture.jpg"&gt;&lt;img alt="lecture" class="alignright size-full wp-image-6435" height="282" src="http://blog.broadbandmechanics.com/wp-content/uploads/2010/02/lecture.jpg" style="margin-left: 8px; margin-right: 8px;" title="lecture" width="420"&gt;&lt;/img&gt;&lt;/a&gt;My wife just said it perfectly.&lt;/p&gt;&#xD;
&lt;p&gt;I’m going to pursue the answers.  I’m not gonna sit still and accept the status quo.&lt;/p&gt;&#xD;
&lt;p&gt;Kismet has brought me here and I’m letting fate guide me.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://mvcw.case.edu/cw3/index.php"&gt;My current class&lt;/a&gt; has us building the user experiences for the &lt;a href="http://www.epic-assoc.com/news/?br=88&amp;amp;ftopus=6f1cbe3777f0f7e0"&gt;Case Connection Zone&lt;/a&gt;.  Stay tuned on that one.  It’s installing 1,000 megabit connections into 104 homes and apartments on Hessler St. - directly adjacent to the CWRU campus.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://mvcw.case.edu/cw3/index.php"&gt;Watch the videos of the class &lt;/a&gt;- and enjoy me having a GREAT time teaching!&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yk2boQj33yQ:DS3y-lDSvh8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yk2boQj33yQ:DS3y-lDSvh8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yk2boQj33yQ:DS3y-lDSvh8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=yk2boQj33yQ:DS3y-lDSvh8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/yk2boQj33yQ" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T14:16:21Z</updated>
    <category term="Blog" />
    <category term="CWRU" />
    <category term="digital lifestyle aggregation" />
    <category term="jobs" />
    <category term="teaching" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-02-08T21:15:54Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/02/06/im-not-passive-in-any-way/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-3202333073278756422.post-7879743941453720154</id>
    <link href="http://independentidentity.blogspot.com/feeds/7879743941453720154/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=3202333073278756422&amp;postID=7879743941453720154" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default/7879743941453720154" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default/7879743941453720154" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/2QgwlwIVSdM/first-open-source-reference.html" rel="alternate" type="text/html" />
    <title>Phil Hunt - Oracle: First Open Source Reference Implementation of IGF 1.0</title>
    <content type="html">Over the past few months, a good deal of progress has been made around IGF and the open source implementation around it. In particular, last fall, Liberty Alliance ratified the &lt;a href="http://www.projectliberty.org/resource_center/specifications/igf_v1_0_final/"&gt;IGF 1.0 specification as final&lt;/a&gt;. In mid January we published &lt;a href="http://www.openliberty.org/wiki/index.php/ArisID_1.1_ReleaseNotes"&gt;ArisID 1.1&lt;/a&gt;, the first open source implementation of IGF 1.0. Finally in late January, we checked in the first implementation of an open source provider based on OpenDS 2.2 (more on that below).&lt;br&gt;&lt;br&gt;ArisID is an API for accessing and managing personal or identity related information using  CARML as an XML data model. In addition to being useful from a privacy perspective, CARML enables important new developer features:&lt;br&gt;&lt;ul&gt;&lt;li&gt;The ability to automatically generate a data model in the form of Java &lt;a href="http://www.openliberty.org/wiki/index.php/ArisID_Beans"&gt;beans&lt;/a&gt;.&lt;/li&gt;&lt;li&gt;The ability to use sophisticated data providers that can connect applications to personal information sources using multiple protocols and virtualization.&lt;/li&gt;&lt;/ul&gt;If the principles of using an XML data model sounds familiar, it should. ArisID follows very similar architecture to Java Persistence Architecture. The key difference is that use of the CARML data model does not assume the pre-existance of a particular database or LDAP schema. Instead, a developer is able to create an application specific data model and write code as if the data model were a straight forward database.  Then, at runtime, the provider layers of the API can be configured to connect to many different types of data repositories and network configurations including multiple directories or databases. With little effort, developers are able to create sophisticated applications that have much greater deployment flexibility in the types of data sources and repositories they can support, including remote and third-party sources.&lt;br&gt;&lt;br&gt;Starting with the Oracle Fusion Middleware 11gR1(PS2) release, Oracle began to integrating this technology into its own products, setting the stage for a new level of support for open protocols and scalable enterprise deployment scenarios. For more information on how Oracle is using IGF and ArisID in 11gR1, check out the whitepaper, "&lt;a href="http://www.oracle.com/technology/products/id_mgmt/pdf/idm_tech_wp_11g_r1.pdf"&gt;Oracle Identity Management 11gR1&lt;/a&gt;".&lt;br&gt;&lt;br&gt;As mentioned earlier, ArisID depends on "provider" modules to do the work of implementing  data model requirements as expressed in application  specific CARML declarations. At present there are now 2 implementations available:&lt;br&gt;&lt;ul&gt;&lt;li&gt;The Oracle OVD Provider for ArisID "Preview" is the first provider to support the ArisID 1.0 API.  A developer preview is available &lt;a href="http://www.oracle.com/technology/tech/standards/idm/igf/arisid/index.html"&gt;here&lt;/a&gt;. Expect an update in the next quarter regarding ArisID 1.1.&lt;br&gt;&lt;/li&gt;&lt;li&gt;A &lt;span style="font-weight: bold;"&gt;brand new&lt;/span&gt; OpenDS 2.2 provider for ArisID is now available in the openLiberty&lt;a href="http://sourceforge.net/projects/arisid/files/"&gt; sourceforge project repository&lt;/a&gt;. The new OpenDS provider allows developers to use OpenDS instead of OVD as a repository for applications using ArisID 1.1. The OpenDS Provider for ArisiD the first fully open source ArisID Provider implementation. For more information consult the readme file contained in the OpenDS Provider for ArisID distribution zip.&lt;/li&gt;&lt;/ul&gt;Project Aristotle is now moving forward with efforts to support integration into popular IDEs. As always, new contributors are always welcome, please see the OpenLiberty.org web site for &lt;a href="http://www.openliberty.org/wiki/index.php/ProjectAris#Get_Involved"&gt;more information&lt;/a&gt;. Also, feel free to subscribe to the &lt;a href="http://lists.openliberty.org/mailman/listinfo/igf-dev"&gt;igf-dev&lt;/a&gt; mailing list.&lt;br&gt;&lt;br&gt;Finally, thanks to the &lt;a href="http://www.opends.org/"&gt;OpenDS&lt;/a&gt; team (Ludovic, Bo, Matthew) for their assistance in helping to get the first open source implementation of a provider for ArisID done. In some respects, the Oracle/Sun merger delayed a lot of this work, but now that it is &lt;a href="http://blog.talkingidentity.com/2010/01/expanding-on-the-oracle-sun-idm-strategy.html"&gt;done&lt;/a&gt;, we can get back to work and contribute more to our respective projects. As Nishant Kaushik says, &lt;a href="http://blog.talkingidentity.com/2010/01/today-is-the-day-oracle-sun-exciting-days-ahead.html"&gt;Sun + Oracle = Exciting Days Ahead&lt;/a&gt;! By the way, click &lt;a href="http://www.oracle.com/us/products/middleware/044270.html#wbc"&gt;here&lt;/a&gt; for webcasts about Fusion Middleware and in particular Identity Management.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/3202333073278756422-7879743941453720154?l=independentidentity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=2QgwlwIVSdM:T6D5H3w1QJ4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=2QgwlwIVSdM:T6D5H3w1QJ4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=2QgwlwIVSdM:T6D5H3w1QJ4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=2QgwlwIVSdM:T6D5H3w1QJ4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/2QgwlwIVSdM" height="1" width="1"/&gt;</content>
    <updated>2010-02-06T05:00:36Z</updated>
    <published>2010-02-01T21:00:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="standards" />
    <category scheme="http://www.blogger.com/atom/ns#" term="ArisID" />
    <category scheme="http://www.blogger.com/atom/ns#" term="openLiberty" />
    <category scheme="http://www.blogger.com/atom/ns#" term="IGF" />
    <category scheme="http://www.blogger.com/atom/ns#" term="CARML" />
    <author>
      <name>Phil Hunt</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08974996068290136413</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-3202333073278756422</id>
      <author>
        <name>Phil Hunt</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08974996068290136413</uri>
      </author>
      <link href="http://independentidentity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://independentidentity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Phil Hunt's blog on issues of Identity and Privacy and other stuff.</subtitle>
      <title>Independent Identity</title>
      <updated>2010-02-07T06:16:14Z</updated>
    </source>
  <feedburner:origLink>http://independentidentity.blogspot.com/2010/02/first-open-source-reference.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content42679.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/tpH1MGVcxME/content42679.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: E-HEALTH INSIDER (UK) - GEORGE ELIOT ROLLS OUT SINGLE SIGN-ON</title>
    
    <updated>2010-02-05T19:50:09Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">http://www.e-health-insider.com/news/5614/george_eliot_rolls_out_single_sign-on&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tpH1MGVcxME:eIcxlNp5wRE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tpH1MGVcxME:eIcxlNp5wRE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tpH1MGVcxME:eIcxlNp5wRE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=tpH1MGVcxME:eIcxlNp5wRE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/tpH1MGVcxME" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content42679.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://eternallyoptimistic.com/?p=1513</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/tDFzIDFQuiM/" rel="alternate" type="text/html" />
    <title>Pamela Dingle - Bonsai Identity: Commercial Phishing</title>
    <summary type="html">Twitter broke a very interesting story this week about a hacker who bulk-harvested account details by installing backdoors in a popular torrent hosting solution.  Users registered for a valid service, and received value in return, but all the while, their details were being stolen.
This would be a pretty boring phish, except for the part where [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://status.twitter.com/post/367671822/reason-4132-for-changing-your-password"&gt;Twitter broke a very interesting story this week&lt;/a&gt; about a hacker who bulk-harvested account details by installing backdoors in a popular torrent hosting solution.  Users registered for a valid service, and received value in return, but all the while, their details were being stolen.&lt;/p&gt;&#xD;
&lt;p&gt;This would be a pretty boring phish, except for the part where users re-use passwords and account names ALL THE TIME.  The current trend is upsell — harvest a low-value throwaway password at an insecure site and then see what high value matches can be made with the same username and password.&lt;/p&gt;&#xD;
&lt;p&gt;Identity Theft via phishing used to be a consumer identity problem, but Cloud services and extranets have changed that.  There is now a new game in town:  commercial phishing.  If your enterprise users are uninformed enough to use their work email and a standard, muscle-memory-password at a site like a torrent site, attackers now have a growing list of possible commercial candidates for that account.  Of course there is always the chance that the worst case scenario will happen and an &lt;a href="http://www.pingidentity.com/blogs/ctotalk/index.cfm/2009/12/13/Grounding-Enterprise-Passwords"&gt;attacker will harvest your entire Enterprise Directory&lt;/a&gt;.   You may say, my company is obscure, what use would hacking my company be?   Well, if you use outlook web access,  and your AD password is phished, and your accountant uses his/her work email address for password recovery on your corporate banking site, there i&lt;a href="http://eternallyoptimistic.com/wp-content/uploads/2010/02/FireSafety.jpg"&gt;&lt;img alt="" class="alignright size-medium wp-image-1514" height="300" src="http://eternallyoptimistic.com/wp-content/uploads/2010/02/FireSafety-188x300.jpg" style="margin-left: 5px; margin-right: 5px;" title="FireSafety" width="188"&gt;&lt;/img&gt;&lt;/a&gt;s a path for an attacker to get at your organization’s money from the internet.&lt;/p&gt;&#xD;
&lt;p&gt;I think it’s hysterical that a company will spend all sorts of money for education of their workforce around physical safety and nothing on account safety.  Why is there not a brightly colored data safety reminder on  every floor, something to idly inspect while you’re waiting for the elevator?  As much as you scoff at the idea, the very prosaic advice that this fire poster offers DOES help in muscle-memory situations.  The strategy of setting out simple rules and making them highly visible does work.&lt;/p&gt;&#xD;
&lt;p&gt;Not only does a sign like this not exist for account safety, I don’t even think that there is agreed-upon text to go on it.  No wonder we’re in the state we’re in.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tDFzIDFQuiM:6KP2QpsGfOI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tDFzIDFQuiM:6KP2QpsGfOI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tDFzIDFQuiM:6KP2QpsGfOI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=tDFzIDFQuiM:6KP2QpsGfOI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/tDFzIDFQuiM" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T16:43:15Z</updated>
    <category term="Identity Theory" />
    <category term="U-G-L-Y" />
    <author>
      <name>Pamela</name>
    </author>
    <source>
      <id>http://eternallyoptimistic.com</id>
      <link href="http://eternallyoptimistic.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://eternallyoptimistic.com" rel="alternate" type="text/html" />
      <title>Adventures of an Eternal Optimist</title>
      <updated>2010-02-05T17:03:06Z</updated>
    </source>
  <feedburner:origLink>http://eternallyoptimistic.com/2010/02/05/commercial-phishing/</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/oracle_and_sun_directory_services</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/cfZNfrIF6-0/oracle_and_sun_directory_services" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: Oracle and Sun Directory Services...</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
&lt;a href="http://blogs.oracle.com/mwilcox/" title="Mark Wilcox's blog"&gt;Mark Wilcox&lt;/a&gt;, principal product manager for Oracle Virtual Directory has posted an &lt;a href="http://blogs.oracle.com/mwilcox/2010/02/the_initial_oracle_and_sun_dir.html" title="Mark on Oracle and Sun directory services"&gt;initial update with regards to Oracle and Sun directory services&lt;/a&gt;.&#xD;
&lt;br&gt;Nothing really detailed so far, but it's good place to post your comments on  the &lt;a href="http://blog.talkingidentity.com/2010/01/expanding-on-the-oracle-sun-idm-strategy.html" title="Oracle + Sun IDM strategy summary"&gt;Oracle + Sun Identity Management Strategy&lt;/a&gt; and more specifically regarding directory services.&#xD;
&lt;/p&gt;&lt;p&gt;&#xD;
To me and my coworkers, the most important messages are :&#xD;
&lt;/p&gt;&lt;blockquote&gt;&#xD;
We are going to continue to offer both Oracle Internet Directory&lt;strong&gt;AND &lt;/strong&gt;Sun Directory Server Enterprise Edition&#xD;
&lt;/blockquote&gt;&lt;p&gt;&#xD;
and&#xD;
&lt;/p&gt;&lt;blockquote&gt;&#xD;
OpenDS will remain an open-source project&#xD;
&lt;/blockquote&gt;&lt;p&gt;&#xD;
Details are still being discussed and ironed out, but I hope to be able to share them soon. Stay tuned !&#xD;
&lt;/p&gt;&#xD;
&lt;!-- technorati tags start --&gt;&lt;p style="text-align: right; font-size: 10px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/dsee" rel="tag"&gt;dsee&lt;/a&gt;, &lt;a href="http://technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/opends" rel="tag"&gt;opends&lt;/a&gt;, &lt;a href="http://technorati.com/tag/oracle" rel="tag"&gt;oracle&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:uu942oThn4I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:uu942oThn4I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:uu942oThn4I:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=cfZNfrIF6-0:uu942oThn4I:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/cfZNfrIF6-0" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T16:33:10Z</updated>
    <published>2010-02-05T16:30:29Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-02-08T11:45:12Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/oracle_and_sun_directory_services</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2010/02/subscription_models_are_chic.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/63_nBXY2fHM/subscription_models_are_chic.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Subscription Models are Chic</title>
    <summary xml:lang="en" type="html">Image via CrunchBase A recent blog post by Dave McClure, the investor in charge of the Founders Fund seed investment program makes the assertion that "subscription models are the new black" and we've lost a decade of innovation by...</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;!-- title: 
Subscription Models are Chic
--&gt;&#xD;
&lt;!-- category: newsletter --&gt;&#xD;
&lt;!-- keywords: 
subscription, revenue, kynetx, identity
--&gt;&#xD;
&lt;div class="zemanta-img"&gt;&lt;a href="http://www.crunchbase.com/person/dave-mcclure"&gt;&lt;img alt="Image representing Dave McClure as depicted in..." border="0" src="http://www.crunchbase.com/assets/images/resized/0001/5721/15721v1-max-250x250.jpg" width="125px"&gt;&lt;/img&gt;&lt;/a&gt;&lt;p class="zemanta-img-attribution"&gt;Image via &lt;a href="http://www.crunchbase.com"&gt;CrunchBase&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&#xD;
A recent &lt;a href="http://500hats.typepad.com/500blogs/2010/02/subscriptions-are-the-new-black.html"&gt;blog post&lt;/a&gt; by Dave McClure, the investor in charge of the Founders Fund seed investment program makes the assertion that "subscription models are the new black" and we've lost a decade of innovation by people living off the table scraps of Google's $10B pay-per-click ad system.  (Warning: the blog post is pretty raw.)&#xD;
&lt;/p&gt; &#xD;
&#xD;
&lt;p&gt;&#xD;
In a seeming &lt;em&gt;non-sequiter&lt;/em&gt;, he moves on to talking about passwords.  But pay attention, because what he's really doing is talking about friction in subscription models and the friction that they inpose.  I think it's interesting that the iPhone app store, for example, still requires that I type a password when I purchase an app on my iPhone given that they &lt;em&gt;have a good identification based on the device&lt;/em&gt;.  Of course, what they're doing is using the password for authorization.  Making sure it's me who's purchasing the app. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;div class="zemanta-pixie"&gt;&lt;img alt="" class="zemanta-pixie-img" src="http://img.zemanta.com/pixy.gif?x-id=b4dafcc6-824d-43d0-ab6e-e1bbbf76e50f"&gt;&lt;/img&gt;&lt;span class="zem-script more-related pretty-attribution"&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63_nBXY2fHM:AD--mgfC1ek:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63_nBXY2fHM:AD--mgfC1ek:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63_nBXY2fHM:AD--mgfC1ek:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=63_nBXY2fHM:AD--mgfC1ek:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/63_nBXY2fHM" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T15:13:33Z</updated>
    <published>2010-02-05T15:09:32Z</published>
    <category term="subscription, revenue, kynetx, identity," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2010-02-08T17:02:02Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2010/02/subscription_models_are_chic.shtml</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-1831042151661668506</id>
    <link href="http://connectid.blogspot.com/feeds/1831042151661668506/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=1831042151661668506" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/1831042151661668506?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/1831042151661668506?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Ay-OA4R4yVs/search-optimization.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Search optimization</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;a href="http://posterous.com/getfile/files.posterous.com/paulmadsen/vXJI9gADLBz4h6bt0Bnu8P5IxXLbJih4BSJBPjzynqfdxKODMuOa8s2lTogY/Screen_00001.jpg"&gt;&lt;img height="211" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/lFUpO7WepQUXNUCTlvtmurNgdQI9KLJ23grZGt9fGGZbvYlyfYzcXmaKAIxz/Screen_00001.jpg.scaled.500.jpg" width="500"&gt;&lt;/img&gt;&lt;/a&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/search-optimization"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-1831042151661668506?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/Ay-OA4R4yVs" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ay-OA4R4yVs:ZvM0ivDlfEE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ay-OA4R4yVs:ZvM0ivDlfEE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ay-OA4R4yVs:ZvM0ivDlfEE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Ay-OA4R4yVs:ZvM0ivDlfEE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Ay-OA4R4yVs" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T14:07:56Z</updated>
    <published>2010-02-05T14:07:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/search-optimization.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-6670354765912365582</id>
    <link href="http://connectid.blogspot.com/feeds/6670354765912365582/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=6670354765912365582" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6670354765912365582?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6670354765912365582?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/CkFKdPB7TgY/new-line-of-greeting-cards_05.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="442" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/WMG1uSLInT5ujKOp7ZkEC0sbAoarBvIxADiGewVCGSBuZILra6NC7iUjFa41/Screen_00013.jpg" width="488"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-32"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-6670354765912365582?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/CkFKdPB7TgY" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CkFKdPB7TgY:qgBFP_NfbfY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CkFKdPB7TgY:qgBFP_NfbfY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CkFKdPB7TgY:qgBFP_NfbfY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=CkFKdPB7TgY:qgBFP_NfbfY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/CkFKdPB7TgY" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T14:06:56Z</updated>
    <published>2010-02-05T14:06:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards_05.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-8451380641530857741</id>
    <link href="http://connectid.blogspot.com/feeds/8451380641530857741/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=8451380641530857741" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8451380641530857741?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8451380641530857741?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/G4h0a9m2h9w/disengenuous.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Disengenuous</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;A story in screen shots.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_ClkXB6AwBIs/S2whg0PhiOI/AAAAAAAAF14/ygKAd4y762M/s1600-h/Screen%2000006.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="70" src="http://4.bp.blogspot.com/_ClkXB6AwBIs/S2whg0PhiOI/AAAAAAAAF14/ygKAd4y762M/s400/Screen%2000006.jpg" width="400"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&#xD;
Seems innocuous enough&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_ClkXB6AwBIs/S2whhNKChZI/AAAAAAAAF18/opPhsbZjuXg/s1600-h/Screen%2000015.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="190" src="http://4.bp.blogspot.com/_ClkXB6AwBIs/S2whhNKChZI/AAAAAAAAF18/opPhsbZjuXg/s400/Screen%2000015.jpg" width="400"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt; Hmm, they aren't actually asking me if want to install the app... I'll proceed until they do&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;  &lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/_ClkXB6AwBIs/S2whhP6j2UI/AAAAAAAAF2E/csuFkiAPIjM/s1600-h/Screen%2000018.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="175" src="http://1.bp.blogspot.com/_ClkXB6AwBIs/S2whhP6j2UI/AAAAAAAAF2E/csuFkiAPIjM/s400/Screen%2000018.jpg" width="400"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&#xD;
So although I wasnt explicitly asked, the app was installed&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_ClkXB6AwBIs/S2whqQzyeFI/AAAAAAAAF2Q/gDq6fbSAEQU/s1600-h/Screen%2000020.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="220" src="http://2.bp.blogspot.com/_ClkXB6AwBIs/S2whqQzyeFI/AAAAAAAAF2Q/gDq6fbSAEQU/s400/Screen%2000020.jpg" width="400"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&#xD;
Buh bye&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-8451380641530857741?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/G4h0a9m2h9w" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=G4h0a9m2h9w:IC2jeFO0JHk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=G4h0a9m2h9w:IC2jeFO0JHk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=G4h0a9m2h9w:IC2jeFO0JHk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=G4h0a9m2h9w:IC2jeFO0JHk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/G4h0a9m2h9w" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T13:53:13Z</updated>
    <published>2010-02-05T13:53:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/disengenuous.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.dirmgr.com/blog/2010/2/5/ldap-client-now-in-android-market.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/VcJXKfGReMw/ldap-client-now-in-android-market.html" rel="alternate" type="text/html" />
    <title>Neil Wilson - UnboundID: LDAP Client now in Android Market</title>
    <content type="html" xml:lang="en-US">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
  Ever since I started looking at Android a little over a year ago, I've had a simple LDAP client in one form or another.  Since the UnboundID LDAP SDK for Java works on Android, it wasn't too difficult to put a simple GUI on top of it that allows you to perform LDAP searches.  However, until recently it wasn't in a state that I felt was suitable for publishing.  Prompted by the Android Developer Labs (which I attended earlier tonight), I finally got around to making it presentable, and as of a few minutes ago, the app is now available for free in the Android Market.  It's far from a masterpiece, but it can be pretty useful if you want to access LDAP content.  Some of the features it has include:&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;ul&gt;&#xD;
  &lt;li&gt;It has support for multiple servers.  Each server definition includes an address, port, security mechanism (none, SSL, or StartTLS), optional bind DN and password, and optional base DN.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;You can customize the type of search to perform.  It has a drop-down that allows you to select the type of search (last name, first name, full name, e-mail address, or user ID), or if you want you can enter your own LDAP search filter.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;If multiple entries are returned, you can see a brief summary of each.  Tapping on one of them will take you to a more complete view of the entry.  Long-tapping will pop up a menu with options for the entry (view a formatted representation, view an LDIF representation, copy the DN to the clipboard, or copy the LDIF representation to the clipboard).&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;When viewing a single entry, clicking on the header for that entry will allow you to view the entry as LDIF, copy the DN to the clipboard, or copy the LDIF representation to the clipboard.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;Clicking on a telephone number in an entry will allow you to dial or send an SMS message to that number, or copy the number to the clipboard.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;Clicking on an e-mail address in an entry will allow you to send an e-mail to that address, or copy the address to the clipboard.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;Clicking on a postal address or ZIP code in an entry will allow you to show a map of that location, navigate to that location, or copy the address to the clipboard.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;Clicking on any other attribute in an entry will allow you to copy the value of that attribute to the clipboard.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&#xD;
  &lt;li&gt;A button at the bottom of the panel for a user entry will allow you to add information about that user to your local contacts.&lt;br&gt;&lt;br&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
  If you have an Android device, then you can find this application in the market just by searching for "LDAP" (it's currently the only match).  The full name is "LDAP Client" and the author is "Neil Wilson".  I hope to improve it further in the future, but I at least wanted to get this reasonably-functional version out there for people that have a use for it.&#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VcJXKfGReMw:BR9AKwh5uBs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VcJXKfGReMw:BR9AKwh5uBs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VcJXKfGReMw:BR9AKwh5uBs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=VcJXKfGReMw:BR9AKwh5uBs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/VcJXKfGReMw" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T07:06:52Z</updated>
    <published>2010-02-05T07:06:52Z</published>
    <category term="Android" />
    <category term="Directory/Identity" />
    <category term="Java" />
    <category term="LDAP" />
    <category term="Open Source" />
    <category term="UnboundID" />
    <author>
      <name>Neil A. Wilson (dirmgr)</name>
    </author>
    <source>
      <id>http://www.dirmgr.com/blog/</id>
      <link href="http://www.dirmgr.com/blog/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.dirmgr.com/blog/atom.xml" rel="self" type="application/atom+xml" />
      <subtitle>Blog</subtitle>
      <title>cn=Directory Manager Blog</title>
      <updated>2010-02-05T07:27:52Z</updated>
    </source>
  <feedburner:origLink>http://www.dirmgr.com/blog/2010/2/5/ldap-client-now-in-android-market.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-2415099596049684313</id>
    <link href="http://anil-identity.blogspot.com/feeds/2415099596049684313/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=2415099596049684313" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2415099596049684313" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2415099596049684313" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/4gjG719w1L4/growing-menace-of-identity-theft.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Growing Menace of Identity Theft</title>
    <content type="html">The latest article in Washington Post titled "&lt;a href="http://www.washingtonpost.com/wp-dyn/content/article/2010/02/01/AR2010020103405.html"&gt;Identity thieves use sophisticated techniques to steal money&lt;/a&gt;" is a proof of the growing menace of Identity Theft that is plaguing the developed free world. &lt;br&gt;&lt;br&gt;Once your identity is stolen, it is very very difficult for you to recover from the trauma. Based on victims' experiences (and other experiences in the comments section), we have to admit that Identity Theft is a menace and is a growing reality.&lt;br&gt;&lt;br&gt;You have to know that your kids/toddlers are not safe either. Check this &lt;a href="http://news.debix.com/index.php/2008/10/new-research-on-child-identity-theft/"&gt;report&lt;/a&gt; on "Child Identity Theft".&lt;br&gt;&lt;br&gt;Stay Safe.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-2415099596049684313?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4gjG719w1L4:_oTCcOnG8Yc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4gjG719w1L4:_oTCcOnG8Yc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4gjG719w1L4:_oTCcOnG8Yc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=4gjG719w1L4:_oTCcOnG8Yc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/4gjG719w1L4" height="1" width="1"/&gt;</content>
    <updated>2010-02-05T02:06:26Z</updated>
    <published>2010-02-05T02:01:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="identity_theft" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-02-08T20:41:56Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/02/growing-menace-of-identity-theft.html</feedburner:origLink></entry>

  <entry>
    <id>http://blog.courion.com/access_assurance_blog/bid/30340/Another-Way-to-Support-Access-Compliance</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/29NOHOZZNyI/Another-Way-to-Support-Access-Compliance" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Another Way to Support Access Compliance</title>
    
    <updated>2010-02-04T21:37:18Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">Dave is absolutely right regarding these benefits, but there are a few other benefits he didn't discuss that are worth pointing out in more detail.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:SbGyGgvApAs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:SbGyGgvApAs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:SbGyGgvApAs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=29NOHOZZNyI:SbGyGgvApAs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/29NOHOZZNyI" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.courion.com/access_assurance_blog/bid/30340/Another-Way-to-Support-Access-Compliance</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/kuppinger/2010/02/04/how-much-security-do-we-need/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7IXIcKxWzew/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: How much security do we need?</title>
    
    <updated>2010-02-04T19:27:56Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">My colleague Jörg Resch blogged today about the ignorance regarding layered security approaches. Yes, there is no absolute security. Security is something which is tightly related to risk. Given that we can’t have the perfect security, especially not with people using systems, it’s always about the balance between the security-imposed risk and the cost of risk mitigation.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7IXIcKxWzew:INsXysUGS0k:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7IXIcKxWzew:INsXysUGS0k:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7IXIcKxWzew:INsXysUGS0k:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7IXIcKxWzew:INsXysUGS0k:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7IXIcKxWzew" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/kuppinger/2010/02/04/how-much-security-do-we-need/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/OCCBVdjEV2M/" rel="alternate" type="text/html" />
    <title>Mark Dixon - Sun: Users of Cloud-based Services</title>
    <summary type="html">The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. 
 At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;The following chart may be helpful as we consider the different types of users that should be addressed by Identity and Access Management (IAM) technology and processes in cloud computing. &lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers.jpg"&gt;&lt;img alt="CloudUsers" border="0" height="327" src="http://www.discoveringidentity.com/wp-content/uploads/2010/02/CloudUsers_thumb.jpg" style="border-bottom: 0px; border-left: 0px; display: block; float: none; margin-left: auto; border-top: 0px; margin-right: auto; border-right: 0px;" title="CloudUsers" width="544"&gt;&lt;/img&gt;&lt;/a&gt; At the Platform as a Service (PaaS) and Infrastructure as a Service (IaaS) layers, the only users are administrators of the platform or infrastructure services, respectively.  However, these administrative users may be either on the provider side or on the recipient or enterprise side.  End users, whether within the enterprise (employees or contractors) or external to the enterprise (customers and partners), only exist at the application layer or Software as as Service (SaaS) layer.&lt;/p&gt;&#xD;
&lt;p&gt;This illustrates how cloud computing introduces increased complexity into IAM. Not only do the different layers (PaaS, IaaS and SaaS) have unique requirements, but multiple organizations (e.g. provider and enterprise) need to be considered.&lt;/p&gt;&#xD;
&lt;p&gt;For example, the nature of PaaS services will require provider administrators to have root access to the operating system, while enterprise administrators at the SaaS level may only need access to application configuration functions and external SaaS users only need to access to selected application functions.&lt;/p&gt;&#xD;
&lt;p&gt;Hopefully, this provides food for thought as we explore IAM in cloud computing.  I’d be grateful to hear your comments.&lt;/p&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:5b8ce862-103f-479f-919c-d9e9d6d77a91" style="padding-bottom: 0px; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; float: none; padding-top: 0px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/CloudComputing" rel="tag"&gt;CloudComputing&lt;/a&gt;, &lt;a href="http://technorati.com/tags/Identity" rel="tag"&gt;Identity&lt;/a&gt;, &lt;a href="http://technorati.com/tags/IdentityManagement" rel="tag"&gt;IdentityManagement&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCCBVdjEV2M:wwSkLqXzRB8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCCBVdjEV2M:wwSkLqXzRB8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCCBVdjEV2M:wwSkLqXzRB8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=OCCBVdjEV2M:wwSkLqXzRB8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/OCCBVdjEV2M" height="1" width="1"/&gt;</content>
    <updated>2010-02-04T16:54:19Z</updated>
    <category term="Identity" />
    <category term="CloudComputing" />
    <category term="IdentityManagement" />
    <author>
      <name>Mark Dixon</name>
    </author>
    <source>
      <id>http://www.discoveringidentity.com</id>
      <link href="http://www.discoveringidentity.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://www.discoveringidentity.com" rel="alternate" type="text/html" />
      <subtitle>Just another WordPress weblog</subtitle>
      <title>Discovering Identity</title>
      <updated>2010-02-04T17:02:17Z</updated>
    </source>
  <feedburner:origLink>http://www.discoveringidentity.com/2010/02/04/users-of-cloud-based-services/</feedburner:origLink></entry>

  <entry>
    <id>f1397696-738c-4295-afcd-943feb885714:30340</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/29NOHOZZNyI/Another-Way-to-Support-Access-Compliance" rel="alternate" type="text/html" />
    <title>Courion: Another Way to Support Access Compliance</title>
    
    <updated>2010-02-04T15:55:00Z</updated>
    <author>
      <name>Bob Craig - Dir Prod Marketing</name>
    </author>
    <source>
      <id>http://blog.courion.com/access_assurance_blog/</id>
      <link href="http://blog.courion.com/access_assurance_blog/" rel="alternate" type="text/html" />
      <link href="http://blog.courion.com/CMS/UI/Modules/BizBlogger/rss.aspx?tabid=89075&amp;moduleid=92273&amp;maxcount=25" rel="self" type="application/rss+xml" />
      <subtitle>RSS feeds for Courion Access Assurance Blog</subtitle>
      <title>Courion Corporation</title>
      <updated>2010-02-09T03:04:52Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Courion Access Assurance Blog&lt;/p&gt;&lt;p&gt;&lt;img align="left" alt="Compliance Audit" border="0" height="124" src="http://blog.courion.com/Portals/41102/images//Pass%20Audit%20Form.jpg" title="" width="182"&gt;&lt;/img&gt;This week Dave Kearns wrote a column, &lt;i&gt;&lt;a href="http://www.networkworld.com/newsletters/dir/2010/020110id2.html?source=NWWNLE_nlt_security_identity_2010-02-03" target="_new"&gt;User provisioning: right access to the right people&lt;/a&gt;&lt;/i&gt;, where he outlined some of the key benefits of provisioning, namely: improving productivity and reducing risk. Dave makes the point that productivity is improved by providing new employees with Day One access to various IT resources (email, laptop, enterprise applications, databases, etc.), while risk is reduced by reconfiguring or removing access rights when an employee changes roles or leaves the company. &lt;/p&gt;&#xD;
&lt;p&gt;Dave is absolutely right regarding these benefits, but there are a few other benefits he didn't discuss that are worth pointing out in more detail. &lt;/p&gt;&#xD;
&lt;p&gt;One benefit which we hear regularly from our customers is that automated provisioning significantly reduces the time and effort required to manage user access rights. The result is that they are able to drastically reduce the number of staff dedicated to the provisioning process. In one instance, a $2 billion provider of senior living services was able to reduce headcount from 5 FTEs to 0.5 FTEs, saving hundreds of thousands of dollars annually. In another, a large regional bank was able to double their provisioning coverage from 100 to more than 210 applications and justified the investment to their management through reduced headcount (see &lt;i&gt;&lt;a href="http://blog.courion.com/access_assurance_blog/bid/24412/Creating-Budget-Where-None-Exists" target="_new"&gt;Creating Budget Where None Exists&lt;/a&gt;&lt;/i&gt;).&lt;/p&gt;&#xD;
&lt;p&gt;Another key benefit is in access compliance. Whether your company needs to comply with internal policies, audit findings, or industry and government regulations, you need to ensure that user access rights are being managed appropriately. While provisioning isn't &lt;i&gt;required&lt;/i&gt; to be compliant, one of the benefits you can achieve is assuring that users are initially only granted access rights that are needed to do their jobs. This preventative control lowers risk, reduces the potential that you may fail a security audit, and helps streamline the access certification process.&lt;/p&gt;&lt;p&gt;blog.courion.com&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:vIc4xn5MskU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:vIc4xn5MskU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=29NOHOZZNyI:vIc4xn5MskU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=29NOHOZZNyI:vIc4xn5MskU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/29NOHOZZNyI" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.courion.com/access_assurance_blog/bid/30340/Another-Way-to-Support-Access-Compliance</feedburner:origLink></entry>

  <entry>
    <id>tag:blogs.oracle.com,2010:/mwilcox//68.16639</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/OTQF4pD9SMg/my_own_ipad_thoughts.html" rel="alternate" type="text/html" />
    <title>Mark Wilcox - Oracle: My Own IPad Thoughts</title>
    <summary type="html">Jackson Shaw just posted his own thoughts on the upcoming iPad. I thought I would comment on something he wrote and then toss in my own general thoughts. Jackson wrote "Hint, if you aren’t working on a Kindle app...</summary>
    <content type="html" xml:lang="en">&lt;div class="posterous_autopost"&gt;      Jackson Shaw just &lt;a href="http://jacksonshaw.blogspot.com/2010/02/apples-ipad.html?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog+%28Jackson%27s+Identity+Management+%26+Active+Directory+Reality+Tour+Travelblog%29&amp;amp;utm_content=Google+Reader"&gt;posted&lt;/a&gt; his own thoughts on the upcoming iPad. &lt;p&gt;&lt;/p&gt;  I thought I would comment on something he wrote and then toss in my own general thoughts.&lt;p&gt;&lt;/p&gt;  Jackson wrote "Hint, if you aren’t working on a Kindle app for the iPad you’d better be!".&lt;p&gt;&lt;/p&gt;  To which I would point out - worse case scenario - since the iPad supports existing iPhone apps - the existing Kindle app should work. Same as B&amp;amp;N Nook app and Stanza. &lt;p&gt;&lt;/p&gt;  Though maybe the better question will be  - will Amazon/B&amp;amp;N upgrade the app to be as slick as what the iBooks app looked like on the demo? &lt;p&gt;&lt;/p&gt;  Personally I'm not sure if I really want that metaphor but I appreciate the marketing aspect of it. &lt;p&gt;&lt;/p&gt;  And I'm not completely sure that iPad will kill Kindle or the Nook. After all - the iPod hasn't completely killed the MP3 or mobile phone alternatives either. In particular if a low-price (under $100) emerges because the battery life and easier on the eyes screen is good enough features to justify owning a dedicated eReader if you read lots of books. I know not many people read as voracious as I do - but there are still plenty of people who like to read. &lt;p&gt;&lt;/p&gt;  But I am pretty sure I'll be buying my own IPad as soon as one comes out - with the goal of it at least being able to be used as my travel PC. &lt;p&gt;&lt;/p&gt;   &lt;br&gt; &lt;pre class="moz-signature"&gt;--&lt;/pre&gt;      &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://mewldap.posterous.com/my-own-ipad-thoughts"&gt;Virtual Identity Dialogue&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OTQF4pD9SMg:z-vGdJ8goKA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OTQF4pD9SMg:z-vGdJ8goKA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OTQF4pD9SMg:z-vGdJ8goKA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=OTQF4pD9SMg:z-vGdJ8goKA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/OTQF4pD9SMg" height="1" width="1"/&gt;</content>
    <updated>2010-02-04T15:52:05Z</updated>
    <published>2010-02-04T15:52:04Z</published>
    <author>
      <name>mark.wilcox</name>
    </author>
    <source>
      <id>tag:blogs.oracle.com,2010:/mwilcox//68</id>
      <link href="http://blogs.oracle.com/mwilcox/" rel="alternate" type="text/html" />
      <link href="http://blogs.oracle.com/mwilcox/xml/rss.xml" rel="self" type="application/atom+xml" />
      <title>Virtual Identity Dialogue</title>
      <updated>2010-02-04T15:52:05Z</updated>
    </source>
  <feedburner:origLink>http://blogs.oracle.com/mwilcox/2010/02/my_own_ipad_thoughts.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/renasant_bank_webinar_february</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/WSwCUhtiD24/renasant_bank_webinar_february" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Doing "More with Less": Improved Security and Productivity Can Be Yours</title>
    
    <updated>2010-02-04T13:43:01Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">In this web presentation and discussion, James Hayes, VP and Network Operations Manager at Renasant Bank, will describe the challenges that his team faced and the solution that he implemented to provide his users with secure and fast access to data.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WSwCUhtiD24:xWY1Wu2wiaE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WSwCUhtiD24:xWY1Wu2wiaE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WSwCUhtiD24:xWY1Wu2wiaE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=WSwCUhtiD24:xWY1Wu2wiaE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/WSwCUhtiD24" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/renasant_bank_webinar_february</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-8087577876881559236</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/8087577876881559236/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=8087577876881559236&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/8087577876881559236?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/8087577876881559236?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/RKQlZ1CaKSg/apples-ipad.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Apple’s iPad</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;Things have died down enough for another post on this topic by yours truly. Let me also point out a few really excellent posts on the iPad (both pro and con):&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Doc Searls: “&lt;a href="http://blogs.law.harvard.edu/doc/2010/01/28/up-the-creek-without-an-ipaddle/" target="_blank"&gt;Up the creek without an iPaddle&lt;/a&gt;”&lt;br&gt;&#xD;
Rod Simmons: “&lt;a href="http://www.simplemobilereview.com/why-was-the-apple-ipad-announcement-boring/" target="_blank"&gt;Why was the Apple iPad announcement BORING&lt;/a&gt;”&lt;br&gt;&#xD;
Jason McC. Smith: “&lt;a href="http://blog.seattlepi.com/microsoft/archives/192799.asp?source=rss" target="_blank"&gt;The Apple iPad, explained to geeks&lt;/a&gt;”&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
My view is pretty simple: I’m buying Apple stock while selling both Microsoft and Amazon (if I had any Amazon stock that is). The iPad is going to be a big seller. Maybe not on day 1 but just like the iPod and iPhone the long-term result will be huge for Apple, Steve Jobs, consumers and Apple shareholders (like me). Consumers are key. I wouldn’t buy my father or mother a PC but I’ll buy them an iPad. Explain a netbook to them? You’re kidding, right? Apple will win the consumer over and that’s where the money is. Once Apple wins over the consumers they’ll simply chip away at Amazon and the netbook manufacturers.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I’m a Kindle user. I’d rather travel with a dual-capable device like the iPad (and my netbook) rather than a Kindle (and my netbook). It will be interesting to see how Amazon reacts to this but I have a feeling they are in deep trouble. All the water is draining out of the ocean Amazon because an Apple tsunami is coming. You’d better head to higher ground - quickly! Hint, if you aren’t working on a Kindle app for the iPad you’d better be! (Is Amazon already starting to play defense? Check out this blog post: "&lt;a href="http://kindlehomepage.blogspot.com/2010/02/coming-to-kindle-flexible-color-touch.html"&gt;Coming to the Kindle: A flexible color touch screen.&lt;/a&gt;")&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Netbooks are in trouble. If I had one device that I could use I'd chose the iPad. I probably won't be able to toss everything out in favor of an iPad when they start shipping but I bet I might be able to in a few years. I loved reading Jason’s post (above) and this passage in particular:&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;i&gt;Until now, the PC world has been differentiated by the cost of the hardware, which is a measure of the raw power possible. Pay more, get more power. But you have exactly the same experience on each machine, just slower or faster.&lt;/i&gt;&lt;/blockquote&gt;EXACTLY! My wife, father and mother don’t need a less expensive piece of hardware (netbook). They need a better EXPERIENCE! I expect the iPad will deliver that experience. Money is going to be diverted from netbook purchases to iPad purchases. All the water is draining out of the ocean netbooks because an Apple tsunami is coming. You’d better head to higher ground - quickly!&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Many of us in this business travel a lot. Let’s start keeping count of how many iPads we see on planes after they release. I have been tracking Kindles and I will bet $100 right now that within 2 quarters after the iPad release you will see more iPads on your plane than Kindles.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Oh, and if you happen to be in corporate IT you’ll be supporting the iPad soon. It’s really hard to say “No, we don’t support those” to your CEO when he walks in the office with one. (And, it’ll be worse if he walks in and you say: “What’s that?”)&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:3a8dfbd1-0315-4b3e-8d2d-23239ba49f7f" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;span style="font-size: xx-small;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/Apple" rel="tag"&gt;Apple&lt;/a&gt;,&lt;a href="http://technorati.com/tags/AAPL" rel="tag"&gt;AAPL&lt;/a&gt;,&lt;a href="http://technorati.com/tags/iPad" rel="tag"&gt;iPad&lt;/a&gt;,&lt;a href="http://technorati.com/tags/AMZN" rel="tag"&gt;AMZN&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Kindle" rel="tag"&gt;Kindle&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-8087577876881559236?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/smWdl54UUYbu91NlbvzxEKZ6yto/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/smWdl54UUYbu91NlbvzxEKZ6yto/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/smWdl54UUYbu91NlbvzxEKZ6yto/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/smWdl54UUYbu91NlbvzxEKZ6yto/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/w0EMz9HYLzs" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RKQlZ1CaKSg:6rQLMGgB_d8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RKQlZ1CaKSg:6rQLMGgB_d8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RKQlZ1CaKSg:6rQLMGgB_d8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=RKQlZ1CaKSg:6rQLMGgB_d8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/RKQlZ1CaKSg" height="1" width="1"/&gt;</content>
    <updated>2010-02-04T13:01:00Z</updated>
    <published>2010-02-04T13:01:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/02/apples-ipad.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-02-08T17:27:58Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/w0EMz9HYLzs/apples-ipad.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.identityblog.com/?p=1088</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zeP63Z8LxUo/" rel="alternate" type="text/html" />
    <title>Kim Cameron - Microsoft: More unintended consequences of browser leakage</title>
    <summary type="html">Another example of digital fingerprinting - this time leveraging social networks to produce unique, real-world identification without the user's knowledge</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://blogs.kuppingercole.com/resch/"&gt;Joerg Resch&lt;/a&gt; at &lt;a href="http://www.kuppingercole.com"&gt;Kuppinger Cole&lt;/a&gt; points us to new research showing  how social networks can be used in conjunction with browser leakage to provide accurate identification of users who think they are browsing anonymously.&lt;/p&gt;&#xD;
&lt;p&gt;Joerg &lt;a href="http://blogs.kuppingercole.com/resch/2010/02/02/identification-through-social-pattern-recognition/"&gt;writes&lt;/a&gt;:&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;Thorsten Holz, Gilbert Wondracek, Engin Kirda and Christopher Kruegel from &lt;a href="http://www.iseclab.org"&gt;Isec Laboratory for IT Security&lt;/a&gt; found a simple and very effective way to identify a person behind a website visitor without asking for any kind of authentication. Identify in this case means: full name, adress, phone numbers and so on. What they do, is just exploiting the browser history to find out, which social networks the user is a member of and to which groups he or she has subscribed within that social network.&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;The &lt;a href="http://www.iseclab.org/papers/sonda-TR.pdf"&gt;Practical Attack to De-Anonymize Social Network Users&lt;/a&gt; begins with what is known as “history stealing”.  &lt;/p&gt;&#xD;
&lt;p&gt;Browsers don’t allow web sites to access the user’s “history” of visited sites.  But we all know that browsers render sites we have visited in a different color than sites we have not.  This is available programmatically through javascript by examining the &lt;em&gt;a:visited&lt;/em&gt; style.  So malicious sites can play a list of URLs and examine the&lt;em&gt; a:visited&lt;/em&gt; style to determine if they have been visited, and can do this without the user being aware of it.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;img align="left" alt="" src="http://www.identityblog.com/wp-content/images/2010/01/joerg.jpg" style="margin: 0px 15px 0px 0px; display: inline;"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;This attack has been known for some time, but what is novel is its use.  The authors claim the groups in all major social networks are represented through URLs, so history stealing can be translated into “group membership stealing”.  This brings us to the core of this new work.  The authors have developed a model for the identification characteristics of group memberships – a model that will outlast this particular attack, as dramatic as it is.&lt;/p&gt;&#xD;
&lt;p&gt;The researchers have &lt;a href="http://www.iseclab.org/people/gilbert/experiment/"&gt;created a demonstration site&lt;/a&gt; that works with the European social network Xing.  Joerg tried it out and, as you can see from the table at left, it identified him uniquely – although he had done nothing to authenticate himself.  He &lt;a href="http://blogs.kuppingercole.com/resch/2010/02/03/de-anonymizer-self-test/"&gt;says&lt;/a&gt;,&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;“Here is a screenshot from the self-test I did with the de-anonymizer described in my last post. I´m a member in 5 groups at Xing, but only active in just 2 of them. This is already enough to successfully de-anonymize me, at least if I use the Google Chrome Browser. Using Microsoft Internet Explorer did not lead to a result, as the default security settings (I use them in both browsers) seem to be stronger. That´s weird!”&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;Since I’m not a user of Xing I can’t explore this first hand.&lt;/p&gt;&#xD;
&lt;p&gt;Joerg goes on to &lt;a href="http://blogs.kuppingercole.com/resch/2010/02/03/is-history-stealing-a-crime/"&gt;ask&lt;/a&gt; if history-stealing is a crime?  If it’s not, how mainstream is this kind of analysis going to become?  What is the right legal framework for considering these issues?  One thing for sure:  this kind of demonstration, as it becomes widely understood, risks profoundly changing the way people look at the Internet.&lt;/p&gt;&#xD;
&lt;p&gt;To &lt;a href="http://www.identityblog.com/?p=1086"&gt;return to the idea &lt;/a&gt;of minimal disclosure for the browser, why do sites we visit need to be able to read the &lt;em&gt;a:visited&lt;/em&gt; attribute?  This should again be thought of as “fingerprinting”, and before a site is able to retrieve the fingerprint, the user must be made aware that it opens the possibility of being uniquely identified without authentication.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zeP63Z8LxUo:JBM5LHdWORU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zeP63Z8LxUo:JBM5LHdWORU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zeP63Z8LxUo:JBM5LHdWORU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zeP63Z8LxUo:JBM5LHdWORU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zeP63Z8LxUo" height="1" width="1"/&gt;</content>
    <updated>2010-02-04T12:16:01Z</updated>
    <category term="Attacks" />
    <category term="Digital Identity" />
    <category term="Digital Rights" />
    <category term="Ethics" />
    <category term="Linkage" />
    <category term="Privacy" />
    <category term="Research" />
    <category term="anonymity" />
    <author>
      <name>Kim Cameron</name>
    </author>
    <source>
      <id>http://www.identityblog.com</id>
      <link href="http://www.identityblog.com/wp-rss2.php" rel="self" type="application/atom+xml" />
      <link href="http://www.identityblog.com" rel="alternate" type="text/html" />
      <subtitle>Digital Identity And Our Future</subtitle>
      <title>Kim Cameron's Identity Weblog</title>
      <updated>2010-02-04T12:23:59Z</updated>
    </source>
  <feedburner:origLink>http://www.identityblog.com/?p=1088</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/resch/2010/02/04/our-systemes-are-secure/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/8K4xhRFun_0/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: “Our Systemes are Secure”</title>
    
    <updated>2010-02-04T08:08:54Z</updated>
    <source>
      <id>http://blogs.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://blogs.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole-blogs" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Blogs - Kuppinger Cole + Partner</subtitle>
      <title>Kuppinger Cole Blogs</title>
      <updated>2010-02-08T13:03:06Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/resch"&gt;Joerg Resch&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;p&gt;I love this kind of statement. It contains total ignorance of the fact, that security is not an absolute value and that it should take into account the actions of people attempting to cause damage. This time it was Hans-Jürgen Nantke, head of the German governmental trading platform for CO2 emission permits (DeHSt – Deutsche Emissionshandelsstelle), who said this, after a successful phishing attack had caused a damage of 3 Million Euros to some of the companies using this platform to trade their emission permits.&lt;/p&gt;&#xD;
&lt;p&gt;Imagine – a trading platform where “real” money is being moved – with just a simple password protection. Not even transactions are protected with TANs. Once you have access to one of the 2,000 accounts on this platform, you can do anything. And they did. The only thing the attackers did slightly better than in most other phishing cases – their mail did not contain too many spelling errors and looked pretty serious.&lt;/p&gt;&#xD;
&lt;p&gt;I hope that the companies now suffering the damage take a good lawyer, because it will be not very difficult to proof, that in the year of 2010 the technology  market offers some better options to separate assets from threats than just a simple password.&lt;/p&gt;&#xD;
&lt;p&gt;What really strikes me is that again it is a German governmental institution showing this kind of willful ignorance, when it comes to technology.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8K4xhRFun_0:RmSMndR88Fc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8K4xhRFun_0:RmSMndR88Fc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=8K4xhRFun_0:RmSMndR88Fc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=8K4xhRFun_0:RmSMndR88Fc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/8K4xhRFun_0" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/resch/2010/02/04/our-systemes-are-secure/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6422</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/INe2ElDL2Lk/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: It’s George’s birthday - and I’m blogging</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;img alt="" class="alignleft" height="186" src="http://4.bp.blogspot.com/_KP9P6pUZBHw/SnHSHsV-N_I/AAAAAAAAAB4/qOwvjzlrma8/S220/new_profile_pic.jpg" style="margin-left: 8px; margin-right: 8px;" width="200"&gt;&lt;/img&gt;Happy birthday to my best friend here in Cleveland - &lt;a href="http://georgenemeth.com/"&gt;George Nemeth!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://almaer.com/blog/google-isnt-evil-flash-isnt-dead-thank-god-the-open-web-doesnt-have-a-single-vendor"&gt;&lt;img alt="" class="alignright" height="300" src="http://almaer.com/blog/uploads/openclosed.jpg" style="margin-left: 8px; margin-right: 8px;" width="300"&gt;&lt;/img&gt;The Open Web doesn’t have a single vendor&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://news.cnet.com/8301-1023_3-10446272-93.html"&gt;I can’t think of a better person to run Google’s social efforts - than Joseph Smarr!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://voices.allthingsd.com/20100202/subscriptions-are-the-new-black/?mod=ATD_rss"&gt;Subscriptions are the new black &lt;/a&gt;-&lt;a href="http://blog.broadbandmechanics.com/2008/03/25/open-sure-is-the-new-black/"&gt; I still think&lt;/a&gt; &lt;a href="http://blog.broadbandmechanics.com/2008/09/13/the-continuing-on-slaught-known-as-open-is-the-new-black/"&gt;OPEN is the new black&lt;/a&gt;.  &lt;a href="http://jasonkolb.com/weblog/2007/07/open-is-the-new.html"&gt;Others agree&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;It’s &lt;a href="http://www.techcrunch.com/2010/02/02/israels-time-to-know-aims-to-revolutionize-the-classroom/"&gt;Time to Know&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.salon.com/entertainment/tv/i_like_to_watch/2010/01/30/frontline_digital_nation/index.html"&gt;Regrets on being a Digital nation&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://paidcontent.org/article/419-linden-lab-buys-avatar-social-network-avatars-united/"&gt;Monetization and consolidation in the land of Second Life.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/microsoft-finally-opens-azure-for-business/"&gt;&lt;img alt="" class="alignright" height="168" src="http://gigaom.files.wordpress.com/2010/02/azure_diagram.jpg" style="margin-left: 8px; margin-right: 8px;" width="492"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/microsoft-finally-opens-azure-for-business/"&gt;Microsoft Azure finally ships….&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/amazon-cto-werner-vogels-on-amazon%E2%80%99s-web-services-startups-and-innovation/"&gt;Werner Vogels and Amazon = rock!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/monster-to-buy-yahoo-hot-jobs-225-million-in-cash-2010-2"&gt;Divest divest divest - is what Yahoo is all about.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.building43.com/blogs/2010/02/01/everything-i-learned-about-marketing-i-learned-from-my-garden/"&gt;Learning from your garden - is crucial&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.techcrunch.com/2010/02/01/meebo-chat-bar-engagement/"&gt;Gotta get me one of those Meebo bars!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.allfacebook.com/2010/02/facebook-groups-pages/"&gt;Tee Hee Hee - I’ve had to explain to potential customers the difference between en entity page (&lt;span style="text-decoration: underline;"&gt;&lt;strong&gt;Pages &lt;/strong&gt;&lt;/span&gt;in Facebook parklance) and &lt;span style="text-decoration: underline;"&gt;&lt;strong&gt;Groups &lt;/strong&gt;&lt;/span&gt;- for years.   Here’s the guide ot Facebook’s definitions.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.mercurynews.com/ci_14303651?nclick_check=1"&gt;Looks like they had a great birthday party for Doug Engelbart&lt;/a&gt;!    Wish I was there.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.jackzen.com/2010/01/23/the-future-of-jobs/"&gt;the future of Jobs&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/cisco-sees-dramatic-sales-improvement-in-2q-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;If Cisco is making money - that’s a good thing!&lt;/a&gt; &lt;a href="http://www.businessinsider.com/akamai-beats-the-street-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;Akamai too&lt;/a&gt;!    &lt;a href="http://www.businessinsider.com/news-corp-earnings-preview-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;And News Corp&lt;/a&gt; s&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://sfappeal.com/culture/2010/02/hell-on-two-wheels-another-critical-mess.php"&gt;Critical Mass still going strong in SF&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://mashable.com/2010/02/02/ustream-75-mil/"&gt;Congrats to UStream - looks like they’re tied into Softbank, Asia and a solid base of future customers. &lt;/a&gt; Now where are their APIs?&lt;a href="http://paidcontent.org/article/419-weight-loss-community-ichange-gets-funding/"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://forward.com/articles/123923/"&gt;Essex &amp;amp; Delancey St Juice bar&lt;/a&gt; - right near Sammy’s Romanian Steak House.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.jackzen.com/2010/01/29/the-4-powerful-questions-in-strategic-doing/"&gt;Strategic Doing&lt;/a&gt;, &lt;a href="http://paidcontent.org/article/419-weight-loss-community-ichange-gets-funding/"&gt;iChange&lt;/a&gt;, &lt;a href="http://www.avc.com/a_vc/2010/02/quirky-and-the-cone-of-silence.html"&gt;Quirky&lt;/a&gt;, &lt;a href="http://www.readwriteweb.com/archives/slideshare_launches_custom_channels_for_businesses.php"&gt;Slideshare Custom channels&lt;/a&gt;,&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;img alt="" class="alignleft" height="186" src="http://4.bp.blogspot.com/_KP9P6pUZBHw/SnHSHsV-N_I/AAAAAAAAAB4/qOwvjzlrma8/S220/new_profile_pic.jpg" style="margin-left: 8px; margin-right: 8px;" width="200"&gt;&lt;/img&gt;Happy birthday to my best friend here in Cleveland - &lt;a href="http://georgenemeth.com/"&gt;George Nemeth!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://almaer.com/blog/google-isnt-evil-flash-isnt-dead-thank-god-the-open-web-doesnt-have-a-single-vendor"&gt;&lt;img alt="" class="alignright" height="300" src="http://almaer.com/blog/uploads/openclosed.jpg" style="margin-left: 8px; margin-right: 8px;" width="300"&gt;&lt;/img&gt;The Open Web doesn’t have a single vendor&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://news.cnet.com/8301-1023_3-10446272-93.html"&gt;I can’t think of a better person to run Google’s social efforts - than Joseph Smarr!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://voices.allthingsd.com/20100202/subscriptions-are-the-new-black/?mod=ATD_rss"&gt;Subscriptions are the new black &lt;/a&gt;-&lt;a href="http://blog.broadbandmechanics.com/2008/03/25/open-sure-is-the-new-black/"&gt; I still think&lt;/a&gt; &lt;a href="http://blog.broadbandmechanics.com/2008/09/13/the-continuing-on-slaught-known-as-open-is-the-new-black/"&gt;OPEN is the new black&lt;/a&gt;.  &lt;a href="http://jasonkolb.com/weblog/2007/07/open-is-the-new.html"&gt;Others agree&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;It’s &lt;a href="http://www.techcrunch.com/2010/02/02/israels-time-to-know-aims-to-revolutionize-the-classroom/"&gt;Time to Know&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.salon.com/entertainment/tv/i_like_to_watch/2010/01/30/frontline_digital_nation/index.html"&gt;Regrets on being a Digital nation&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://paidcontent.org/article/419-linden-lab-buys-avatar-social-network-avatars-united/"&gt;Monetization and consolidation in the land of Second Life.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/microsoft-finally-opens-azure-for-business/"&gt;&lt;img alt="" class="alignright" height="168" src="http://gigaom.files.wordpress.com/2010/02/azure_diagram.jpg" style="margin-left: 8px; margin-right: 8px;" width="492"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/microsoft-finally-opens-azure-for-business/"&gt;Microsoft Azure finally ships….&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://gigaom.com/2010/02/01/amazon-cto-werner-vogels-on-amazon%E2%80%99s-web-services-startups-and-innovation/"&gt;Werner Vogels and Amazon = rock!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/monster-to-buy-yahoo-hot-jobs-225-million-in-cash-2010-2"&gt;Divest divest divest - is what Yahoo is all about.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.building43.com/blogs/2010/02/01/everything-i-learned-about-marketing-i-learned-from-my-garden/"&gt;Learning from your garden - is crucial&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.techcrunch.com/2010/02/01/meebo-chat-bar-engagement/"&gt;Gotta get me one of those Meebo bars!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.allfacebook.com/2010/02/facebook-groups-pages/"&gt;Tee Hee Hee - I’ve had to explain to potential customers the difference between en entity page (&lt;span style="text-decoration: underline;"&gt;&lt;strong&gt;Pages &lt;/strong&gt;&lt;/span&gt;in Facebook parklance) and &lt;span style="text-decoration: underline;"&gt;&lt;strong&gt;Groups &lt;/strong&gt;&lt;/span&gt;- for years.   Here’s the guide ot Facebook’s definitions.&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.mercurynews.com/ci_14303651?nclick_check=1"&gt;Looks like they had a great birthday party for Doug Engelbart&lt;/a&gt;!    Wish I was there.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.jackzen.com/2010/01/23/the-future-of-jobs/"&gt;the future of Jobs&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/cisco-sees-dramatic-sales-improvement-in-2q-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;If Cisco is making money - that’s a good thing!&lt;/a&gt; &lt;a href="http://www.businessinsider.com/akamai-beats-the-street-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;Akamai too&lt;/a&gt;!    &lt;a href="http://www.businessinsider.com/news-corp-earnings-preview-2010-2?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;And News Corp&lt;/a&gt; s&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://sfappeal.com/culture/2010/02/hell-on-two-wheels-another-critical-mess.php"&gt;Critical Mass still going strong in SF&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://mashable.com/2010/02/02/ustream-75-mil/"&gt;Congrats to UStream - looks like they’re tied into Softbank, Asia and a solid base of future customers. &lt;/a&gt; Now where are their APIs?&lt;a href="http://paidcontent.org/article/419-weight-loss-community-ichange-gets-funding/"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://forward.com/articles/123923/"&gt;Essex &amp;amp; Delancey St Juice bar&lt;/a&gt; - right near Sammy’s Romanian Steak House.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.jackzen.com/2010/01/29/the-4-powerful-questions-in-strategic-doing/"&gt;Strategic Doing&lt;/a&gt;, &lt;a href="http://paidcontent.org/article/419-weight-loss-community-ichange-gets-funding/"&gt;iChange&lt;/a&gt;, &lt;a href="http://www.avc.com/a_vc/2010/02/quirky-and-the-cone-of-silence.html"&gt;Quirky&lt;/a&gt;, &lt;a href="http://www.readwriteweb.com/archives/slideshare_launches_custom_channels_for_businesses.php"&gt;Slideshare Custom channels&lt;/a&gt;,&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=INe2ElDL2Lk:TEfTUd8dIzI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=INe2ElDL2Lk:TEfTUd8dIzI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=INe2ElDL2Lk:TEfTUd8dIzI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=INe2ElDL2Lk:TEfTUd8dIzI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/INe2ElDL2Lk" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T22:20:48Z</updated>
    <category term="Blog" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-02-08T21:15:54Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/02/03/its-georges-birthday-and-im-blogging/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-9150667584798835492</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/9150667584798835492/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=9150667584798835492&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/9150667584798835492?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/9150667584798835492?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/iuMQEHSQ_pE/i-want-my-xdrive.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: I want my XDrive!</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;I caught Mary-Jo Foley’s post on this &lt;a href="http://blogs.zdnet.com/microsoft/?p=5100" target="_blank"&gt;topic&lt;/a&gt; last week…&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;i&gt;Microsoft is making available to testers a beta of Windows Azure Drive (formerly known as XDrive), which will allow them to create automatic backups of Windows applications that they may want to move to the Azure cloud.&lt;/i&gt;&lt;/blockquote&gt;I think this is a great thing for Microsoft to do. Basically, XDrive will enable Windows applications to be run against an Azure-based cloud “drive” that supports NTFS. Now wouldn’t that be nice to have your application work against your C: drive one day and then re-configure it the next to run against your XDrive? Voila, your data is in the cloud. This is certainly something that I would want as a configuration option for any new, green-field application – an out-of-the-box configuration option to use cloud storage.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Microsoft is clearly doing this to help migrations to the cloud and that’s awesome just in itself. As a consumer, I really want to point – for example – NTBackup at my XDrive.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:624b50f4-2359-4abb-ba5c-773a436ef64b" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/Microsoft" rel="tag"&gt;Microsoft&lt;/a&gt;,&lt;a href="http://technorati.com/tags/MSFT" rel="tag"&gt;MSFT&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Azure" rel="tag"&gt;Azure&lt;/a&gt;,&lt;a href="http://technorati.com/tags/XDrive" rel="tag"&gt;XDrive&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-9150667584798835492?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/WNKCblL4K8Gzuwp6KXGrtyj-avY/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/WNKCblL4K8Gzuwp6KXGrtyj-avY/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/WNKCblL4K8Gzuwp6KXGrtyj-avY/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/WNKCblL4K8Gzuwp6KXGrtyj-avY/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/Bq-hSnnkZDc" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=iuMQEHSQ_pE:Yx3gKOiVEdU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=iuMQEHSQ_pE:Yx3gKOiVEdU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=iuMQEHSQ_pE:Yx3gKOiVEdU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=iuMQEHSQ_pE:Yx3gKOiVEdU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/iuMQEHSQ_pE" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T21:33:51Z</updated>
    <published>2010-02-03T21:33:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/02/i-want-my-xdrive.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-02-08T17:27:58Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/Bq-hSnnkZDc/i-want-my-xdrive.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.ihotdesk.com/article/19595679/IAM-can-be-used-in-many-ways,-claims-expert</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/4cZa_L8Iyos/IAM-can-be-used-in-many-ways,-claims-expert" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: IAM can be used in many ways, claims expert</title>
    
    <updated>2010-02-03T20:14:54Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">The group suggested that a firm's web proxy can also act as a security awareness tool, by redirecting users to an internal page which explains why a certain website is blocked, rather than just denying their access.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4cZa_L8Iyos:i_lTrAfbMFY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4cZa_L8Iyos:i_lTrAfbMFY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4cZa_L8Iyos:i_lTrAfbMFY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=4cZa_L8Iyos:i_lTrAfbMFY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/4cZa_L8Iyos" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.ihotdesk.com/article/19595679/IAM-can-be-used-in-many-ways,-claims-expert</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://bradtumy.wordpress.com/?p=161</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/m2yBX2M8F1Y/" rel="alternate" type="text/html" />
    <title>Brad Tumy - Oracle: OVD 11g ForkJoin Plugin “FullOuterJoin” explanation #oracle #idm #ovd</title>
    <summary type="html">I tried to implement the ForkJoin plugin today, for the first time.  The documentation is pretty good but not clear about one specific parameter (which happened to be the one that I needed).   When you add the plugin and then select to add a parameter, screenshot, one of the options is FullOuterJoin. According to [...]&lt;img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bradtumy.wordpress.com&amp;amp;blog=6745476&amp;amp;post=161&amp;amp;subd=bradtumy&amp;amp;ref=&amp;amp;feed=1"&gt;&lt;/img&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;br&gt;&lt;p&gt;I tried to implement the ForkJoin plugin today, for the first time.  The &lt;a href="http://download.oracle.com/docs/cd/E15523_01/oid.1111/e10046/und_plug.htm"&gt;documentation&lt;/a&gt; is pretty good but not clear about one specific parameter (which happened to be the one that I needed).   When you add the plugin and then select to add a parameter, &lt;a href="http://twitpic.com/117xlc"&gt;screenshot&lt;/a&gt;, one of the options is &lt;strong&gt;FullOuterJoin.&lt;/strong&gt; According to the documentation is a setting under the JoinPolicy.  The implementation is a little different, as you can see if you click on the &lt;a href="http://twitpic.com/117xlc"&gt;screenshot&lt;/a&gt;.  I wasn’t sure what to put here,  so I checked with Oracle and was told this:&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;“… that referenced Full Outer Join as being set to either true or false. ”  and “… they believe that setting Full Outer Join to true would mean full outer join is performed, set to false would mean left outer join, and to have standard join we would simply not install the plug-in.”&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;I was able to confirm that by setting FullOuterJoin to true does indeed allow entries from both (in my case) adapters to be returned.  The only caveat to this is that entries that should be joined … are no longer joining.  So, still trying to figure that part out.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;strong&gt;Update (02/05/2010):&lt;/strong&gt;&lt;/p&gt;&#xD;
&lt;p&gt;I heard back from OVD Dev as follows:&lt;/p&gt;&#xD;
&lt;p&gt;The documentation for plug-in configuration parameters has to be read as:&lt;br&gt;&#xD;
Names mentioned in bold are parameters that a plug-in supports.&lt;br&gt;&#xD;
Under each parameter name, description and semantics of all possible values are explained.&lt;/p&gt;&#xD;
&lt;p&gt;First, for Fork Join plug-in, SecondaryOnlyAttributes, PrimaryAndSecondaryAttributes &amp;amp; JoinPolicy are the only parameters supported. ‘FullOuterJoin’ is not a parameter, but one of the possible values for ‘JoinPolicy’ parameter. The other values are ‘StandardJoin’ &amp;amp; ‘LeftOuterJoin’. Please note that there are no spaces in parameter values.&lt;/p&gt;&#xD;
&lt;p&gt;Second, ODSM displays the list of parameters supported by a plug-in from the plugin manifest file. Since ForkJoin plugin manifest file incorrectly has “FullOuterJoin” as the parameter name instead of “JoinPolicy”, the incorrect parameter name is displayed in ODSM.&lt;/p&gt;&#xD;
&lt;p&gt;As ODSM would not allow specifying any other parameter to the plug-in configuration than what is listed in the plug-in manifest, the workaround, for now, is to please make a backup copy and then edit the &amp;lt;$ORACLE_INSTANCE&amp;gt;/config/OVD/&amp;lt;ComponentName&amp;gt;/adapters.os_xml file as follows, then re-start OVD server:&lt;/p&gt;&#xD;
&lt;p&gt;Change following line from:&lt;br&gt;&#xD;
&amp;lt;param name=”FullOuterJoin” value=”true”/&amp;gt;&lt;/p&gt;&#xD;
&lt;p&gt;To:&lt;br&gt;&#xD;
&amp;lt;param name=”JoinPolicy” value=”FullOuterJoin”/&amp;gt;&lt;/p&gt;&#xD;
&lt;p&gt;Third, since the value for “JoinPolicy” is not specified in the plug-in configuration, ForkJoin plug-in assumes “LeftOuterJoin” as the default and hence users that are only in secondary adapter (AD2) were not returned.”&lt;/p&gt;&#xD;
  &lt;a href="http://feeds.wordpress.com/1.0/gocomments/bradtumy.wordpress.com/161/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bradtumy.wordpress.com/161/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godelicious/bradtumy.wordpress.com/161/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bradtumy.wordpress.com/161/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gostumble/bradtumy.wordpress.com/161/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bradtumy.wordpress.com/161/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godigg/bradtumy.wordpress.com/161/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bradtumy.wordpress.com/161/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/goreddit/bradtumy.wordpress.com/161/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bradtumy.wordpress.com/161/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bradtumy.wordpress.com&amp;amp;blog=6745476&amp;amp;post=161&amp;amp;subd=bradtumy&amp;amp;ref=&amp;amp;feed=1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=m2yBX2M8F1Y:nFzA_2Lg7JY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=m2yBX2M8F1Y:nFzA_2Lg7JY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=m2yBX2M8F1Y:nFzA_2Lg7JY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=m2yBX2M8F1Y:nFzA_2Lg7JY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/m2yBX2M8F1Y" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T20:07:24Z</updated>
    <category term="Directory Services" />
    <category term="IdM" />
    <category term="LDAP" />
    <category term="oracle" />
    <category term="oracle idm ovd" />
    <author>
      <name>Brad Tumy</name>
    </author>
    <source>
      <id>http://bradtumy.wordpress.com</id>
      <logo>http://www.gravatar.com/blavatar/657de124e59f46ae881d9fd13af69999?s=96&amp;d=http://s.wordpress.com/i/buttonw-com.png</logo>
      <link href="http://bradtumy.wordpress.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://bradtumy.wordpress.com" rel="alternate" type="text/html" />
      <link href="http://bradtumy.wordpress.com/osd.xml" rel="search" type="application/opensearchdescription+xml" />
      <subtitle>Identity Management | Information Security</subtitle>
      <title>Brad Tumy's Blog</title>
      <updated>2010-02-05T22:02:58Z</updated>
    </source>
  <feedburner:origLink>http://bradtumy.wordpress.com/2010/02/03/ovd-11g-forkjoin-plugin-fullouterjoin-explanation-oracle-idm-ovd/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>8d07cc69-a460-48f1-844d-25b05ba87317:4309</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lfAL2eVzLxk/grc-the-agile-market.aspx" rel="alternate" type="text/html" />
    <title>CA on Security Management: GRC: The Agile Market</title>
    
    <updated>2010-02-03T16:38:00Z</updated>
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/Compliance/default.aspx" term="Compliance" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/forrester/default.aspx" term="forrester" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/GRC/default.aspx" term="GRC" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/regulation/default.aspx" term="regulation" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/risk+management/default.aspx" term="risk management" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/Sumner+Blount/default.aspx" term="Sumner Blount" /><feedburner:origlink>http://community.ca.com/blogs/iam/archive/2010/02/03/grc-the-agile-market.aspx</feedburner:origlink>
    <author>
      <name>Sumner Blount</name>
    </author>
    <source>
      <id>http://community.ca.com/blogs/iam/default.aspx</id>
      <logo>http://www.ca.com/images/global/logo_203076.gif</logo>
      <link href="http://community.ca.com/blogs/iam/default.aspx" rel="alternate" type="text/html" />
      <link href="http://feeds.ca.com/CS_CAIAMBlog" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Insight and opinion on the world of security management. This is the place for commentary on industry issues, articles and reports on topics such as managing identities and their lifecycles; securing access to data and resources; securing Web business applications and services; and managing security logs and information.</subtitle>
      <title>CA on Security Management</title>
      <updated>2010-02-08T21:02:41Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;A recent blog post http://bit.ly/bVd2i1 from Forrester Research made some very useful points, in my opinion.  The focus of the article was on flexibility, in two key respects.  First, flexibility is a key requirement of any GRC program, primarily because the demands for risk and compliance are so fluid right now.  There are clearly more regulations coming, but we don't know the...&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
 &lt;img height="1" src="http://feeds.feedburner.com/~r/CS_CAIAMBlog/~4/kL6P3PcGOZw" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lfAL2eVzLxk:cuifmov-buk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lfAL2eVzLxk:cuifmov-buk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lfAL2eVzLxk:cuifmov-buk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lfAL2eVzLxk:cuifmov-buk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lfAL2eVzLxk" height="1" width="1"/&gt;</content><feedburner:origLink>http://feeds.ca.com/~r/CS_CAIAMBlog/~3/kL6P3PcGOZw/grc-the-agile-market.aspx</feedburner:origLink></entry>

  <entry>
    <id>http://eon.businesswire.com/portal/site/eon/permalink/?ndmViewId=news_view&amp;newsId;=20100201005242&amp;newsLang;=en</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/0LHfmFZs2UM/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Lieberman Software and Heritage Global Solutions Partner to Deliver Privileged Identity Management Solutions</title>
    
    <updated>2010-02-03T16:36:44Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">Privileged identities are accounts such as administrator and root accounts that hold elevated permission to access files, install programs, and change configuration settings. These accounts exist on nearly every server and desktop operating system, business application, database, Web service, and network appliance in an enterprise.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=0LHfmFZs2UM:hD9aaZ7Nph8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=0LHfmFZs2UM:hD9aaZ7Nph8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=0LHfmFZs2UM:hD9aaZ7Nph8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=0LHfmFZs2UM:hD9aaZ7Nph8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/0LHfmFZs2UM" height="1" width="1"/&gt;</content><feedburner:origLink>http://eon.businesswire.com/portal/site/eon/permalink/?ndmViewId=news_view&amp;newsId;=20100201005242&amp;newsLang;=en</feedburner:origLink></entry>

  <entry>
    <id>http://uk.reuters.com/article/idUKLDE61205O20100203</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/tHosXw85fHk/idUKLDE61205O20100203" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Gemalto buys mobile authentication firm Valimo</title>
    
    <updated>2010-02-03T16:35:13Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">French smart card maker Gemalto (GTO.PA) has acquired Finnish mobile authentication startup Valimo Wireless, tapping into the surging market for mobile financial services.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tHosXw85fHk:Y_nYKiBfhbA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tHosXw85fHk:Y_nYKiBfhbA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tHosXw85fHk:Y_nYKiBfhbA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=tHosXw85fHk:Y_nYKiBfhbA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/tHosXw85fHk" height="1" width="1"/&gt;</content><feedburner:origLink>http://uk.reuters.com/article/idUKLDE61205O20100203</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content42506.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/wJeU5xLDjsw/content42506.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: SECURITY PARK (UK) - IMPRIVATA PROVIDES NHS CLINICAL STAFF WITH SECURE ACCESS TO MEDICAL APPLICATIONS VIA SSO TECHNOLOGY</title>
    
    <updated>2010-02-03T14:52:48Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">http://www.securitypark.co.uk/security_article264309.html&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wJeU5xLDjsw:K-8QqxeJwxs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wJeU5xLDjsw:K-8QqxeJwxs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wJeU5xLDjsw:K-8QqxeJwxs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=wJeU5xLDjsw:K-8QqxeJwxs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/wJeU5xLDjsw" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content42506.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-6855990535899504323</id>
    <link href="http://connectid.blogspot.com/feeds/6855990535899504323/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=6855990535899504323" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6855990535899504323?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6855990535899504323?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/wmcjeVkii6M/new-line-of-greeting-cards_5512.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="395" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/GgR6kXMuXjwLqH1S43FU2BddbVI2Ez8F8aZZkKcbS7RCeEkDjDFfVRx5hC4Y/Screen_00003.jpg" width="326"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-31"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-6855990535899504323?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/wmcjeVkii6M" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wmcjeVkii6M:OnsxBfJs90A:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wmcjeVkii6M:OnsxBfJs90A:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=wmcjeVkii6M:OnsxBfJs90A:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=wmcjeVkii6M:OnsxBfJs90A:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/wmcjeVkii6M" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T11:50:17Z</updated>
    <published>2010-02-03T11:50:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards_5512.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-1993980990992832653</id>
    <link href="http://connectid.blogspot.com/feeds/1993980990992832653/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=1993980990992832653" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/1993980990992832653?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/1993980990992832653?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/no9EhfllzN4/new-line-of-greeting-cards_03.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="485" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/fHCTgMET5utFHtqHuyAAv7o4qCjGHnXkT4Pc3B7xpVHYZagvAvApafYKjdPd/Screen_00005.jpg" width="428"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-30"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-1993980990992832653?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/no9EhfllzN4" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=no9EhfllzN4:S9j5oSU1BD8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=no9EhfllzN4:S9j5oSU1BD8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=no9EhfllzN4:S9j5oSU1BD8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=no9EhfllzN4:S9j5oSU1BD8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/no9EhfllzN4" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T11:36:06Z</updated>
    <published>2010-02-03T11:36:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards_03.html</feedburner:origLink></entry>

  <entry xml:lang="en-us">
    <id>http://del.icio.us/beuchelt#2010-02-02</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/cq19TABserk/beuchelt" rel="alternate" type="text/html" />
    <title>Gerry Beuchelt - MITRE: Links for 2010-02-02 [del.icio.us]</title>
    
    <updated>2010-02-03T08:00:00Z</updated><feedburner:origlink>http://del.icio.us/beuchelt#2010-02-02</feedburner:origlink>
    <source>
      <id>http://blog.beuchelt.org/</id>
      <logo>http://clustrmaps.com/counter/index2.php?url=http://blog.beuchelt.com</logo>
      <author>
        <name>Gerry Beuchelt - MITRE</name>
        <email>work@beuchelt.com</email>
      </author>
      <link href="http://blog.beuchelt.org/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/WebServicesContraptions" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <rights>Gerald Beuchelt</rights>
      <title>Web Services Contraptions</title>
      <updated>2010-02-03T10:32:55Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://iase.disa.mil/cds/helpful_tools/index.html"&gt;Cross Domain Solutions&lt;/a&gt;&lt;br&gt;&#xD;
The Cross Domain Enterprise Service provides support to Combatant Commands, Services and Agencies (CC/S/A) by implementing, fielding and providing life cycle support for cross domain solution technologies that provide secure interoperable capabilities throughout the Department of Defense (DoD).&lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/WebServicesContraptions/~4/QK-mrEWDqv8" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cq19TABserk:QK-mrEWDqv8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cq19TABserk:QK-mrEWDqv8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cq19TABserk:QK-mrEWDqv8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=cq19TABserk:QK-mrEWDqv8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/cq19TABserk" height="1" width="1"/&gt;</content><feedburner:origLink>http://feedproxy.google.com/~r/WebServicesContraptions/~3/QK-mrEWDqv8/beuchelt</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/resch/2010/02/03/is-history-stealing-a-crime/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/oUTAV2UwUH4/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Is History-Stealing a Crime?</title>
    
    <updated>2010-02-03T07:52:57Z</updated>
    <source>
      <id>http://blogs.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://blogs.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole-blogs" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Blogs - Kuppinger Cole + Partner</subtitle>
      <title>Kuppinger Cole Blogs</title>
      <updated>2010-02-08T13:03:06Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/resch"&gt;Joerg Resch&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;p&gt;In my previous posts I described iSec Lab´s de-anonymizer, which combines a browser´s history with data from a social network (in this case Xing) to find out who is sitting behind a computer surfing the Internet. Just imagine how attractive it would be for many website owners to exactly know who is visiting their site. As it seems to be pretty simple to create such a de-anonymizer, there we might soon see broad use.&lt;/p&gt;&#xD;
&lt;p&gt;Therefore the question: is it allowed to run such a de-anonymizer? Well, I´m not a lawyer, but in the German Criminal Law (§ 202a StGB, Ausspähen von Daten), data theft is a crime only if the stolen data had been protected against unauthorized use and if the attacker did crack that protection. Browser history is not protected against unauthorized use. So it is not a crime over here.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=oUTAV2UwUH4:YQKXa6eGcHk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=oUTAV2UwUH4:YQKXa6eGcHk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=oUTAV2UwUH4:YQKXa6eGcHk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=oUTAV2UwUH4:YQKXa6eGcHk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/oUTAV2UwUH4" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/resch/2010/02/03/is-history-stealing-a-crime/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://bug4free.wordpress.com/?p=479</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/3b2gwlXGwTY/" rel="alternate" type="text/html" />
    <title>Hubert Le Van Gong - Sun: Oauth Library for Jersey – Percent Encoding Fix</title>
    <summary type="html">I’m happy to report that we’ve fixed an issue in the percent encoding step of our OAuth signature library for the Jersey framework. The issue reported was caused by the fact that we were using Java’s URLEncoder and URLDecoder classes to compute OAuth’s signature base string. Unfortunately those classes do not perform an RFC3986 compliant [...]&lt;img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bug4free.wordpress.com&amp;amp;blog=5498788&amp;amp;post=479&amp;amp;subd=bug4free&amp;amp;ref=&amp;amp;feed=1"&gt;&lt;/img&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;div class="snap_preview"&gt;&lt;br&gt;&lt;p&gt;I’m happy to report that we’ve fixed an issue in the percent encoding step of our OAuth signature library for the Jersey framework. The issue reported was caused by the fact that we were using Java’s &lt;a href="http://java.sun.com/javase/6/docs/api/java/net/URLEncoder.html" target="_blank" title="Java SE 6 URLEncoder"&gt;URLEncoder&lt;/a&gt; and &lt;a href="http://java.sun.com/javase/6/docs/api/java/net/URLDecoder.html" target="_blank" title="Java SE 6 Decoder"&gt;URLDecoder&lt;/a&gt; classes to compute OAuth’s signature base string. Unfortunately those classes do not perform an &lt;a href="http://www.ietf.org/rfc/rfc3986.txt" target="_blank" title="RFC3986"&gt;RFC3986&lt;/a&gt; compliant encoding which is required in OAuth. The main difference is that a space character will be encoded as a + when we need it to be escaped as a %20 (more info &lt;a href="http://www.subbu.org/blog/2008/02/uri-escaping-and-javaneturlencoder" target="_blank"&gt;here&lt;/a&gt;).&lt;/p&gt;&#xD;
&lt;p&gt;To fix this, we’ve chosen to leverage Jersey’s &lt;a href="https://jersey.dev.java.net/nonav/apidocs/1.1.5/jersey/index.html?com/sun/jersey/api/uri/UriComponent.html" target="_blank" title="Jersey UriComponent"&gt;UriComponent&lt;/a&gt; class. There is one notable difference though with how one would encode a URI (see &lt;a href="http://bug4free.wordpress.com/Users/hubertlvg/Devel/jdk_6u10-docs/api/java/net/URI.html" target="_blank" title="URI"&gt;here&lt;/a&gt; for a very detailed explanation of URIs): OAuth says that the signature base string is built by concatenating the request method, the request URL and the normalized parameters (with &amp;amp; to separate them) &lt;span style="text-decoration: underline;"&gt;and&lt;/span&gt; that those elements must be encoded (prior to concatenation). In effect we are re-encoding elements that are already encoded. As &lt;a href="http://blogs.sun.com/sandoz/" target="_blank" title="Paul Sandoz"&gt;Paul&lt;/a&gt; noted, it’s as if we wanted to pass the signature base string in a URI… I remember this possibility was mentioned in conversations about debugging OAuth deployment but that’s the only case I remember for this.&lt;/p&gt;&#xD;
&lt;p&gt;Anyway, to illustrate this, below is the piece of code where the &lt;em&gt;bulk&lt;/em&gt; of the action happens:&lt;/p&gt;&#xD;
&lt;p&gt;&lt;code&gt;&lt;br&gt;&#xD;
&lt;span style="color: #339966;"&gt; StringBuffer buf = new StringBuffer(request.getRequestMethod().toUpperCase());&lt;br&gt;&#xD;
URI uri = constructRequestURL(request);&lt;br&gt;&#xD;
String tp = uri.getScheme();&lt;br&gt;&#xD;
buf.append('&amp;amp;').append(UriComponent.encode(tp, UriComponent.Type.SCHEME));&lt;br&gt;&#xD;
tp = uri.getAuthority();&lt;br&gt;&#xD;
buf.append("%3A%2F%2F").append(UriComponent.encode(tp, UriComponent.Type.AUTHORITY));&lt;br&gt;&#xD;
tp = uri.getPath();&lt;br&gt;&#xD;
buf.append(UriComponent.encode(tp, UriComponent.Type.PATH_SEGMENT));&lt;br&gt;&#xD;
buf.append('&amp;amp;').append(UriComponent.encode(normalizeParameters(request, params), UriComponent.Type.QUERY_PARAM));&lt;/span&gt;&lt;br&gt;&#xD;
&lt;/code&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Our testing code now also includes elements with spaces to make sure we got it right (thanks to Michael Werle).&lt;/p&gt;&#xD;
  &lt;a href="http://feeds.wordpress.com/1.0/gocomments/bug4free.wordpress.com/479/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/bug4free.wordpress.com/479/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godelicious/bug4free.wordpress.com/479/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/bug4free.wordpress.com/479/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gostumble/bug4free.wordpress.com/479/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/bug4free.wordpress.com/479/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godigg/bug4free.wordpress.com/479/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/bug4free.wordpress.com/479/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/goreddit/bug4free.wordpress.com/479/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/bug4free.wordpress.com/479/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=bug4free.wordpress.com&amp;amp;blog=5498788&amp;amp;post=479&amp;amp;subd=bug4free&amp;amp;ref=&amp;amp;feed=1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3b2gwlXGwTY:OOBsVegl_TI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3b2gwlXGwTY:OOBsVegl_TI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3b2gwlXGwTY:OOBsVegl_TI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=3b2gwlXGwTY:OOBsVegl_TI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/3b2gwlXGwTY" height="1" width="1"/&gt;</content>
    <updated>2010-02-03T07:51:03Z</updated>
    <category term="Uncategorized" />
    <category term="Authorization" />
    <category term="HTTP" />
    <category term="jersey" />
    <category term="OAuth" />
    <category term="REST" />
    <category term="signature" />
    <category term="web service" />
    <author>
      <name>Hubert</name>
    </author>
    <source>
      <id>http://bug4free.wordpress.com</id>
      <logo>http://www.gravatar.com/blavatar/b2d7532138bd48f15b51b4690207db28?s=96&amp;d=http://s.wordpress.com/i/buttonw-com.png</logo>
      <link href="http://bug4free.wordpress.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://bug4free.wordpress.com" rel="alternate" type="text/html" />
      <link href="http://bug4free.wordpress.com/osd.xml" rel="search" type="application/opensearchdescription+xml" />
      <title>C'est la Vie...</title>
      <updated>2010-02-03T08:02:52Z</updated>
    </source>
  <feedburner:origLink>http://bug4free.wordpress.com/2010/02/03/oauth-fix/</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/resch/2010/02/03/de-anonymizer-self-test/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ztI4RKe-_F8/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: De-Anonymizer Self-Test</title>
    
    <updated>2010-02-03T07:13:50Z</updated>
    <source>
      <id>http://blogs.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://blogs.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole-blogs" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Blogs - Kuppinger Cole + Partner</subtitle>
      <title>Kuppinger Cole Blogs</title>
      <updated>2010-02-08T13:03:05Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/resch"&gt;Joerg Resch&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;p&gt;Here is a screenshot from the self-test I did with the de-anonymizer described in my last post. I´m a member in 5 groups at Xing, but only active in just 2 of them. This is already enough to successfully de-anonymize me, at least if I use the Google Chrome Browser. Using Microsoft Internet Explorer did not lead to a result, as the default security settings (I use them in both browsers) seem to be stronger. That´s weird!&lt;/p&gt;&#xD;
&lt;div class="wp-caption alignnone" id="attachment_23" style="width: 392px;"&gt;&lt;a href="http://blogs.kuppingercole.com/resch/wp-content/uploads/pattern.jpg"&gt;&lt;img alt="" class="size-full wp-image-23" height="527" src="http://blogs.kuppingercole.com/resch/wp-content/uploads/pattern.jpg" title="De-Anonymizer Test Result" width="382"&gt;&lt;/img&gt;&lt;/a&gt;&lt;p class="wp-caption-text"&gt;De-Anonymizer Test Result&lt;/p&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ztI4RKe-_F8:4DZPMVMvv8g:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ztI4RKe-_F8:4DZPMVMvv8g:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ztI4RKe-_F8:4DZPMVMvv8g:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ztI4RKe-_F8:4DZPMVMvv8g:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ztI4RKe-_F8" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/resch/2010/02/03/de-anonymizer-self-test/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-9199325625137720826</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/9199325625137720826/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=9199325625137720826" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/9199325625137720826" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/9199325625137720826" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/6XDE52iIoKc/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Contextual Composition of Converged Services</title>
    <content type="html">&lt;a href="http://www.context.futuretext.com/"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5433779675255948338" src="http://4.bp.blogspot.com/_RI178MJjsuE/S2ip00NeRDI/AAAAAAAADuQ/J5dNE1uLYbE/s200/cover.jpg" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 69px; height: 100px;"&gt;&lt;/img&gt;&lt;/a&gt;Its great to learn more about Oracle's &lt;a href="http://www.oracle.com/industries/communications/productmaps.html"&gt;Converged Communications products&lt;/a&gt;, this week. Starting with the SDP platform that include &lt;a href="http://www.oracle.com/industries/communications/oracle-communications-services-delivery.html"&gt;Converged Communications Server (JEE, SIP Container, IMS/NGIN/WS Server, etc), Communication Services Gatekeeper (parlayX gateway, SLA/QOS Policy enforcer, etc) and the new Communications Media and Advertising Server&lt;/a&gt;, OSS/BSS Servers (end to end from Service Activation to Service Retirement), Media and Entertainment Services, GRC for Telco and an ATCA+SAF compliant Carrier Grade Framework. An awesome product line!! No wonder Telco's &lt;a href="http://www.oracle.com/us/corporate/press/044198"&gt;worldwide choose Oracle&lt;/a&gt;. Now with the Sun acquisition, every Telco I've worked with in the past 10 years (from an ID Stack perspective) - Telstra in Australia to Telus in Canada, Telcel in Mexico to Verizon in US, Vodafone in Europe to Reliance in India, Vimplecom in Moscow to China Mobile in Beijing can leverage the &lt;a href="http://identity-centric-architecture.blogspot.com/search?q=converged"&gt;Identity, Policy and Context layer&lt;/a&gt; to Deliver Revenue generating NG converged communication services and cloud services!&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-9199325625137720826?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6XDE52iIoKc:AZQ1xq_ubGQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6XDE52iIoKc:AZQ1xq_ubGQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6XDE52iIoKc:AZQ1xq_ubGQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=6XDE52iIoKc:AZQ1xq_ubGQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/6XDE52iIoKc" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T23:02:32Z</updated>
    <published>2010-02-02T22:39:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="CCCOracle" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#9199325625137720826</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-2183734490939400011</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/2183734490939400011/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=2183734490939400011" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2183734490939400011" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2183734490939400011" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/scAXCGzQ_js/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Secure SIM and SSO based Payment Services</title>
    <content type="html">&lt;a href="http://www.simposiumglobal.com/"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5433754465472214722" src="http://1.bp.blogspot.com/_RI178MJjsuE/S2iS5acp9sI/AAAAAAAADuI/gzfSEcVVNCQ/s200/sim2010.png" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 55px; height: 63px;"&gt;&lt;/img&gt;&lt;/a&gt;My &lt;a href="http://www.simalliance.org/SITEFORUM?t=/contentManager/selectCatalog&amp;amp;e=UTF-8&amp;amp;i=1185787014303&amp;amp;l=0&amp;amp;ParentID=1260895140076&amp;amp;active=no2"&gt;Keynote with Hadi Nahari, Principal Architect at Paypal&lt;/a&gt; is confirmed for april 2010. The POC will continue with an Oracle+Sun ID Stack.. We will present on the requirements and key metrics around performance and scalability that resulted in a proposed Solution Architecture (300 mill+ subscribers, 1 mill policies, 1+ billion attributes, etc.).. This will be my first as an Oracle employee!!&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-2183734490939400011?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=scAXCGzQ_js:aIOu7vQn9iU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=scAXCGzQ_js:aIOu7vQn9iU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=scAXCGzQ_js:aIOu7vQn9iU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=scAXCGzQ_js:aIOu7vQn9iU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/scAXCGzQ_js" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T21:16:07Z</updated>
    <published>2010-02-02T21:02:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="KeynoteSIM" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#2183734490939400011</feedburner:origLink></entry>

  <entry>
    <id>tag:blogs.oracle.com,2010:/mwilcox//68.16609</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/W2IeZwiBuy4/the_initial_oracle_and_sun_dir.html" rel="alternate" type="text/html" />
    <title>Mark Wilcox - Oracle: The Initial Oracle and Sun Directory Services Update</title>
    <summary type="html">Nishant wrote a nice post summarizing the information we can share on the Oracle+Sun IDM strategy.But I want to highlight the summary for Directory Services and have a reference post for people to use as comments. First - Oracle Virtual...</summary>
    <content type="html" xml:lang="en">&lt;div class="posterous_autopost"&gt;Nishant wrote a nice post summarizing the information we can share on the &lt;a href="http://blog.talkingidentity.com/2010/01/expanding-on-the-oracle-sun-idm-strategy.html"&gt;Oracle+Sun IDM strategy&lt;/a&gt;.&lt;p&gt;&lt;/p&gt;But I want to highlight the summary for Directory Services and have a reference post for people to use as comments.&lt;p&gt;&lt;/p&gt; First - Oracle Virtual Directory will be our virtual directory.&lt;p&gt;&lt;/p&gt;Second - We are going to continue to offer both Oracle Internet Directory &lt;b&gt;AND &lt;/b&gt;Sun Directory Server Enterprise Edition. &lt;p&gt;&lt;/p&gt;Third  - OpenDS will remain an open-source project&lt;p&gt;&lt;/p&gt; I welcome all of our new Sun colleagues to Oracle. And I look forward to talking to everyone to get feedback and discuss our future direction.      &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://mewldap.posterous.com/the-initial-oracle-and-sun-directory-services"&gt;Virtual Identity Dialogue&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=W2IeZwiBuy4:HiLXWrz576U:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=W2IeZwiBuy4:HiLXWrz576U:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=W2IeZwiBuy4:HiLXWrz576U:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=W2IeZwiBuy4:HiLXWrz576U:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/W2IeZwiBuy4" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T20:52:13Z</updated>
    <published>2010-02-02T20:52:13Z</published>
    <author>
      <name>mark.wilcox</name>
    </author>
    <source>
      <id>tag:blogs.oracle.com,2010:/mwilcox//68</id>
      <link href="http://blogs.oracle.com/mwilcox/" rel="alternate" type="text/html" />
      <link href="http://blogs.oracle.com/mwilcox/xml/rss.xml" rel="self" type="application/atom+xml" />
      <title>Virtual Identity Dialogue</title>
      <updated>2010-02-04T15:52:05Z</updated>
    </source>
  <feedburner:origLink>http://blogs.oracle.com/mwilcox/2010/02/the_initial_oracle_and_sun_dir.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-9018504437970422451</id>
    <link href="http://connectid.blogspot.com/feeds/9018504437970422451/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=9018504437970422451" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9018504437970422451?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9018504437970422451?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/HBhkRIVUTu8/new-line-of-greeting-cards_02.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="363" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/M1xwYC4p6Ls6Tz1upgmFAdq3AND50xxmUfdM25wbDeeVva0DnPUjpvyPvN3K/Screen_00011.jpg" width="396"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-29"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-9018504437970422451?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/HBhkRIVUTu8" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HBhkRIVUTu8:cx3cYhrMYlU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HBhkRIVUTu8:cx3cYhrMYlU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HBhkRIVUTu8:cx3cYhrMYlU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=HBhkRIVUTu8:cx3cYhrMYlU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/HBhkRIVUTu8" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T19:34:10Z</updated>
    <published>2010-02-02T19:34:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards_02.html</feedburner:origLink></entry>

  <entry>
    <id>http://blog.bavoderidder.com/?p=237</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/6jkKVMVNIyE/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Some still don’t get it!</title>
    
    <updated>2010-02-02T19:19:40Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">Then they kind of messed up. For my convenience and to make sure I would be able to use their shiny new site to buy lots of international train tickets they included my password. Yes, you read that right, they mailed me my password. Without me asking for it.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6jkKVMVNIyE:sgvajYY1iuI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6jkKVMVNIyE:sgvajYY1iuI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=6jkKVMVNIyE:sgvajYY1iuI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=6jkKVMVNIyE:sgvajYY1iuI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/6jkKVMVNIyE" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.bavoderidder.com/?p=237</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-8550132845295944731</id>
    <link href="http://connectid.blogspot.com/feeds/8550132845295944731/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=8550132845295944731" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8550132845295944731?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8550132845295944731?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7w4wmJAghd8/new-line-of-greeting-cards.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="377" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/m0GFk5hunpQLaAvSaJG0v7odcaMPwE3ANnbntq6FeW9gkHK3IdEmKQSAEui1/Screen_00002.jpg" width="306"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-28"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-8550132845295944731?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/7w4wmJAghd8" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7w4wmJAghd8:LqX6qw8NVCM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7w4wmJAghd8:LqX6qw8NVCM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7w4wmJAghd8:LqX6qw8NVCM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7w4wmJAghd8:LqX6qw8NVCM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7w4wmJAghd8" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T19:02:42Z</updated>
    <published>2010-02-02T19:02:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-02-08T14:36:17Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/02/new-line-of-greeting-cards.html</feedburner:origLink></entry>

  <entry>
    <id>http://shlomidinoor.blogspot.com/2010/02/if-you-have-same-problem-for-long-time.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/L8P0q7j1LUg/if-you-have-same-problem-for-long-time.html" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: If you have the same problem for a long time, maybe it is a fact not a problem…</title>
    
    <updated>2010-02-02T18:13:41Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">A quick recap:
Problem – weak passwords = hacking made easy
Root cause – us, the (lazy) users
Solution – replace us, the (lazy) users
Problem solved, moving on!&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L8P0q7j1LUg:G_I8jGxid3g:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L8P0q7j1LUg:G_I8jGxid3g:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L8P0q7j1LUg:G_I8jGxid3g:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=L8P0q7j1LUg:G_I8jGxid3g:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/L8P0q7j1LUg" height="1" width="1"/&gt;</content><feedburner:origLink>http://shlomidinoor.blogspot.com/2010/02/if-you-have-same-problem-for-long-time.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogs.oracle.com,2010:/mwilcox//68.16605</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/hjXkQt7_FyQ/explaining_master_data_managem.html" rel="alternate" type="text/html" />
    <title>Mark Wilcox - Oracle: Explaining Master Data Management Integration with Oracle Virtual 	Directory</title>
    <summary type="html">I got a couple of questions recently around OVD and Master Data Management (OVD).MDM is an industry standard data solution that provides a single source of truth for customer information. It's particularly useful for large organizations who have customer data...</summary>
    <content type="html" xml:lang="en">&lt;div class="posterous_autopost"&gt;I got a couple of questions recently around OVD and Master Data Management (OVD).&lt;p&gt;&lt;/p&gt;MDM is an industry standard data solution that provides a single source of truth for customer information. It's particularly useful for large organizations who have customer data in lots of different repositories such as telco or higher education. It's complimentary to a provisioning solution - MDM provides a clean source of truth for a provisioning system. But MDM is not optimized for activities like password management or related account activities. Within Oracle we market our MDM solutions as Oracle Customer Hub. &lt;p&gt;&lt;/p&gt; There are two integration points:&lt;br&gt;1 - Authentication for MDM &lt;br&gt;2 - Use MDM as an OVD Data Source&lt;p&gt;&lt;/p&gt;The authentication use case is pretty simple - OVD can be used as the LDAP server for the Siebel MDM application. For example if you have 2 LDAP servers containing users who need access Siebel MDM, you can use OVD.&lt;p&gt;&lt;/p&gt; The more interesting use case is MDM as an OVD Data Source. For example lets say you want to build a web application that provides different level of features based upon customer status (e.g. basic vs premier customer). This data is managed in MDM and OVD can use this data to create an LDAP group without needing to copy the data into another LDAP store. Thus as soon as the MDM status changes, the access control permissions are changed automatically at the same time.&lt;p&gt;&lt;/p&gt; We refer to this capability as Identity Publisher. &lt;p&gt;&lt;/p&gt;There are two papers on this subject:&lt;br&gt;&lt;span class="bodycopy"&gt;&lt;/span&gt;&lt;a class="bodylink" href="http://www.oracle.com/technology/products/id_mgmt/ovds/pdf/ovd-siebel-ds-v3.pdf"&gt;Integrating Oracle Virtual Directory with Siebel and Oracle Customer Hub&lt;/a&gt;&lt;br&gt; &lt;span class="bodycopy"&gt;&lt;a class="bodylink" href="http://www.oracle.com/technology/products/id_mgmt/ovds/ovd-siebel-cdh-configuration.zip"&gt; Configuration Instructions for Siebel, Oracle Customer Hub and Oracle Virtual Directory&lt;/a&gt;&lt;/span&gt;      &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://mewldap.posterous.com/explaining-master-data-management-integration"&gt;Virtual Identity Dialogue&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hjXkQt7_FyQ:Be97qUTdZXw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hjXkQt7_FyQ:Be97qUTdZXw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=hjXkQt7_FyQ:Be97qUTdZXw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=hjXkQt7_FyQ:Be97qUTdZXw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/hjXkQt7_FyQ" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T17:33:21Z</updated>
    <published>2010-02-02T17:33:21Z</published>
    <author>
      <name>mark.wilcox</name>
    </author>
    <source>
      <id>tag:blogs.oracle.com,2010:/mwilcox//68</id>
      <link href="http://blogs.oracle.com/mwilcox/" rel="alternate" type="text/html" />
      <link href="http://blogs.oracle.com/mwilcox/xml/rss.xml" rel="self" type="application/atom+xml" />
      <title>Virtual Identity Dialogue</title>
      <updated>2010-02-04T15:52:05Z</updated>
    </source>
  <feedburner:origLink>http://blogs.oracle.com/mwilcox/2010/02/explaining_master_data_managem.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-1592050791558866730</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/1592050791558866730/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=1592050791558866730&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/1592050791558866730?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/1592050791558866730?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/967sZO9ocGY/microsofts-computing-advancement-act.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Microsoft’s 'Cloud Computing Advancement Act'</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;I took the time on my flight to New York City to review &lt;a href="http://blog.seattlepi.com/microsoft/library/20100120smithspeech.pdf" target="_blank"&gt;Microsoft’s call for a “Cloud Computing Advancement Act”.&lt;/a&gt; Microsoft’s senior vice-president and general counsel Brad Smith spoke about this at the Brookings Institute last week. You can read Mr. Smith’s speech (PDF) by clicking on the link in the previous sentence. Smith focuses on a number of key areas in this speech: privacy, security and international sovereignty.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
While Smith focuses on the U.S. Bill of Rights and the Fourth Amendment to the Constitution he pretty much summarizes my concerns with this statement:&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;i&gt;…one obvious attribute of the cloud is that information typically is stored on a server computer that is controlled by a third party. This makes it all the more important for service providers to be thoughtful and clear in deciding and communicating what they will do with this information.&lt;/i&gt;&lt;/blockquote&gt;How true! I think many of us take for granted that the information we store in the cloud is private. I use a cloud-based backup service that provides an offline (from my PC) backup of all information on my laptop. I never read their privacy policy. Maybe it's time for me to do that but wouldn't it be nice if we knew that there was a minimal privacy baseline imposed by the government? Is it time for a set of "Miranda Rights" for our cloud-based data?&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-1592050791558866730?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/1qDVmD8cbPvhtz8I42GV02iFYHE/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/1qDVmD8cbPvhtz8I42GV02iFYHE/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/1qDVmD8cbPvhtz8I42GV02iFYHE/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/1qDVmD8cbPvhtz8I42GV02iFYHE/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/JnCnI2U4fh8" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=967sZO9ocGY:0asLOF2okYw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=967sZO9ocGY:0asLOF2okYw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=967sZO9ocGY:0asLOF2okYw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=967sZO9ocGY:0asLOF2okYw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/967sZO9ocGY" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T17:25:00Z</updated>
    <published>2010-02-02T17:25:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/02/microsofts-computing-advancement-act.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-02-08T17:27:58Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/JnCnI2U4fh8/microsofts-computing-advancement-act.html</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/resch/2010/02/02/identification-through-social-pattern-recognition/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/d6cR-QCpMQ4/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Identification through “Social Pattern Recognition”</title>
    
    <updated>2010-02-02T16:46:39Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">The combination of memberships to different groups seems to be  nearly as unique as a fingerprint. According to a paper they published (their server is overloaded at the moment, you may need to try again later), this kind of identification through pattern recognition works with most large social networks, like Xing, Linkedin, Facebook etc.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=d6cR-QCpMQ4:b_FITT63YeA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=d6cR-QCpMQ4:b_FITT63YeA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=d6cR-QCpMQ4:b_FITT63YeA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=d6cR-QCpMQ4:b_FITT63YeA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/d6cR-QCpMQ4" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/resch/2010/02/02/identification-through-social-pattern-recognition/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.sakimura.org/en/modules/wordpress/cx-on-oauth-wrap/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/OCbblQCCgqo/" rel="alternate" type="text/html" />
    <title>Nat Sakimura: CX on OAuth WRAP</title>
    <summary type="html">Like there can be OpenID GET/POST and Artifact Binding for CX, there can be WRAP binding as well. It is fairly trivial, arguably more trivial than to define OpenID bindings. 
	Send CX proposal as an additional parameter on the Verification Code Request. Use wrap_client_id as the proposer’s identifier.
On the PoP ...</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Like there can be OpenID GET/POST and Artifact Binding for CX, there can be WRAP binding as well. It is fairly trivial, arguably more trivial than to define OpenID bindings. &lt;/p&gt;&#xD;
	&lt;ol&gt;&#xD;
	&lt;li&gt;Send CX proposal as an additional parameter on the Verification Code Request. Use wrap_client_id as the proposer’s identifier. &lt;/li&gt;&#xD;
	&lt;li&gt;On the PoP verification page, display the terms and conditions included in the proposal.&lt;/li&gt;&#xD;
	&lt;li&gt;Create the Verification code from the signature of the proposal and some nonce and random.&lt;/li&gt;&#xD;
	&lt;li&gt;Web App Client sends the proposal again as an additional parameter on Access Token Request.&lt;/li&gt;&#xD;
	&lt;li&gt;Sign the proposal to create the contract, serialize it with Base64 without line end, and return it as the access token on Access Token Response.&lt;/li&gt;&#xD;
	&lt;/ol&gt;&#xD;
	&lt;p&gt;That’s all.&#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCbblQCCgqo:4vAFIhfmmkU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCbblQCCgqo:4vAFIhfmmkU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=OCbblQCCgqo:4vAFIhfmmkU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=OCbblQCCgqo:4vAFIhfmmkU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/OCbblQCCgqo" height="1" width="1"/&gt;</content>
    <updated>2010-02-02T08:53:26Z</updated>
    <category term="Digital Identity" />
    <category term="OpenID" />
    <category term="OAuth" />
    <author>
      <name>Nat &lt;&amp;#115;a&amp;#107;imu&amp;#114;a&amp;#64;marim&amp;#98;&amp;#97;&amp;#46;&amp;#111;r&amp;#103;&gt;</name>
    </author>
    <source>
      <id>http://www.sakimura.org/en/modules/wordpress/index.php</id>
      <link href="http://www.sakimura.org/en/modules/wordpress/index.php" rel="alternate" type="text/html" />
      <link href="http://www.sakimura.org/en/modules/wordpress/wp-rss2.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2010</rights>
      <subtitle>Thinking around Digital Identity loud.</subtitle>
      <title>.Nat Zone</title>
      <updated>2010-02-09T03:03:31Z</updated>
    </source>
  <feedburner:origLink>http://www.sakimura.org/en/modules/wordpress/cx-on-oauth-wrap/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.openliberty.org/blog/?p=154</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zN5J1XEePJA/" rel="alternate" type="text/html" />
    <link href="http://www.openliberty.org/blog/2010/02/01/first-open-source-igf/#comments" rel="replies" type="text/html" />
    <link href="http://www.openliberty.org/blog/2010/02/01/first-open-source-igf/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">OpenLiberty: First Open Source Reference Implementation of IGF 1.0</title>
    <summary xml:lang="en" type="html">Cross-posted from independentidentity.blogspot.com
Over the past few months, a good deal of progress has been made around IGF and the open source implementation around it. In particular, last fall, Liberty Alliance ratified the IGF 1.0 specification as final. In mid January we published ArisID 1.1, the first open source implementation of IGF 1.0. Finally in late [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;em&gt;Cross-posted from &lt;a href="http://independentidentity.blogspot.com/2010/02/first-open-source-reference.html" target="_self" title="independentidentity.blogspot.com"&gt;independentidentity.blogspot.com&lt;/a&gt;&lt;/em&gt;&lt;/p&gt;&#xD;
&lt;p&gt;Over the past few months, a good deal of progress has been made around IGF and the open source implementation around it. In particular, last fall, Liberty Alliance ratified the &lt;a href="http://www.projectliberty.org/resource_center/specifications/igf_v1_0_final/"&gt;IGF 1.0 specification as final&lt;/a&gt;. In mid January we published &lt;a href="http://www.openliberty.org/blog/2010/02/wiki/index.php/ArisID_1.1_ReleaseNotes"&gt;ArisID 1.1&lt;/a&gt;, the first open source implementation of IGF 1.0. Finally in late January, we checked in the first implementation of an open source provider based on OpenDS 2.2 (more on that below).&lt;/p&gt;&#xD;
&lt;p&gt;ArisID is an API for accessing and managing personal or identity related information using CARML as an XML data model. In addition to being useful from a privacy perspective, CARML enables important new developer features:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;The ability to automatically generate a data model in the form of Java &lt;a href="http://www.openliberty.org/blog/2010/02/wiki/index.php/ArisID_Beans"&gt;beans&lt;/a&gt;.&lt;/li&gt;&#xD;
&lt;li&gt;The ability to use sophisticated data providers that can connect applications to personal information sources using multiple protocols and virtualization.&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;If the principles of using an XML data model sounds familiar, it should. ArisID follows very similar architecture to Java Persistence Architecture. The key difference is that use of the CARML data model does not assume the pre-existance of a particular database or LDAP schema. Instead, a developer is able to create an application specific data model and write code as if the data model were a straight forward database. Then, at runtime, the provider layers of the API can be configured to connect to many different types of data repositories and network configurations including multiple directories or databases. With little effort, developers are able to create sophisticated applications that have much greater deployment flexibility in the types of data sources and repositories they can support, including remote and third-party sources.&lt;/p&gt;&#xD;
&lt;p&gt;Starting with the Oracle Fusion PS2 release, Oracle began to integrating this technology into its own products, setting the stage for a new level of support for open protocols and scalable enterprise deployment scenarios. For more information on how Oracle is using IGF and ArisID in 11gR1, check out the whitepaper, “&lt;a href="http://www.oracle.com/technology/products/id_mgmt/pdf/idm_tech_wp_11g_r1.pdf"&gt;Oracle Identity Management 11gR1&lt;/a&gt;“.&lt;/p&gt;&#xD;
&lt;p&gt;As mentioned earlier, ArisID depends on “provider” modules to do the work of implementing data model requirements as expressed in application specific CARML declarations. At present there are now 2 implementations available:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;The Oracle OVD Provider for ArisID “Preview” is the first provider to support the ArisID 1.0 API. A developer preview is available &lt;a href="http://www.oracle.com/technology/tech/standards/idm/igf/arisid/index.html"&gt;here&lt;/a&gt;. Expect an update in the next quarter regarding ArisID 1.1.&lt;/li&gt;&#xD;
&lt;li&gt;A &lt;span style="font-weight: bold;"&gt;brand new&lt;/span&gt; OpenDS 2.2 provider for ArisID is now available in the openLiberty&lt;a href="http://sourceforge.net/projects/arisid/files/"&gt; sourceforge project repository&lt;/a&gt;. The new OpenDS provider allows developers to use OpenDS instead of OVD as a repository for applications using ArisID 1.1. The OpenDS Provider for ArisiD the first fully open source ArisID Provider implementation. For more information consult the readme file contained in the OpenDS Provider for ArisID distribution zip.&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;Project Aristotle is now moving forward with efforts to support integration into popular IDEs. As always, new contributors are always welcome, please see the OpenLiberty.org web site for &lt;a href="http://www.openliberty.org/blog/2010/02/wiki/index.php/ProjectAris#Get_Involved"&gt;more information&lt;/a&gt;. Also, feel free to subscribe to the &lt;a href="http://lists.openliberty.org/mailman/listinfo/igf-dev"&gt;igf-dev&lt;/a&gt; mailing list.&lt;/p&gt;&#xD;
&lt;p&gt;Finally, thanks to the &lt;a href="http://www.opends.org/"&gt;OpenDS&lt;/a&gt; team (Ludovic, Bo, Matthew) for their assistance in helping to get the first open source implementation of a provider for ArisID done. In some respects, the Oracle/Sun merger delayed a lot of this work, but now that it is &lt;a href="http://blog.talkingidentity.com/2010/01/expanding-on-the-oracle-sun-idm-strategy.html"&gt;done&lt;/a&gt;, we can get back to work and contribute more to our respective projects. As Nishant Kaushik says, &lt;a href="http://blog.talkingidentity.com/2010/01/today-is-the-day-oracle-sun-exciting-days-ahead.html"&gt;Sun + Oracle = Exciting Days Ahead&lt;/a&gt;! By the way, click &lt;a href="http://www.oracle.com/us/products/middleware/044270.html#wbc"&gt;here&lt;/a&gt; for webcasts about Fusion Middleware and in particular Identity Management.&lt;/p&gt;&#xD;
&lt;p&gt;Cheers,&lt;/p&gt;&#xD;
&lt;p&gt;Phil Hunt, Oracle&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zN5J1XEePJA:FJQl57MQ8tU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zN5J1XEePJA:FJQl57MQ8tU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zN5J1XEePJA:FJQl57MQ8tU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zN5J1XEePJA:FJQl57MQ8tU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zN5J1XEePJA" height="1" width="1"/&gt;</content>
    <updated>2010-02-01T21:06:23Z</updated>
    <published>2010-02-01T21:06:23Z</published>
    <category scheme="http://www.openliberty.org/blog" term="ArisId" />
    <category scheme="http://www.openliberty.org/blog" term="IGF" />
    <category scheme="http://www.openliberty.org/blog" term="Updates" />
    <author>
      <name>pjdhunt</name>
      <uri>http://blogs.oracle.com/identityprivacy</uri>
    </author>
    <source>
      <id>http://www.openliberty.org/blog/feed/atom/</id>
      <link href="http://www.openliberty.org/blog" rel="alternate" type="text/html" />
      <link href="http://www.openliberty.org/blog/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">This is the general weblog for openLiberty projects and news</subtitle>
      <title xml:lang="en">OpenLiberty Blog</title>
      <updated>2010-02-01T21:06:23Z</updated>
    </source>
  <feedburner:origLink>http://www.openliberty.org/blog/2010/02/01/first-open-source-igf/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-257606627947575990</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/257606627947575990/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=257606627947575990" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/257606627947575990" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/257606627947575990" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/J-r2xwavklk/2010_02_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Top Twenty Telco - Trust Oracle+Sun</title>
    <content type="html">&lt;a href="http://www.oracle.com/us/industries/communications/index.htm"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5433372020946534786" src="http://2.bp.blogspot.com/_RI178MJjsuE/S2c3ENkQgYI/AAAAAAAADuA/wcV__e10vYQ/s200/orsun" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 93px; height: 75px;"&gt;&lt;/img&gt;&lt;/a&gt;In the 10 years I was with Sun roughly 1/2 was on leading and consulting on Telco projects worldwide as a Lead Architect (including Telcel in Mexico, Vodafone in Europe, Cingular in US and more) that included integrated EBPP, mobileSOA, ID infrastructure and more, the reminder 1/2 was in SW Sales Org focusing on Identity Infrastructure (US, Canada and LA.). I am glad I will continue playing a LEAD role in Oracle Global Telco Unit reporting direct to a VP. My roles and responsibilities will include;&lt;br&gt;&lt;ul&gt;&lt;li&gt;Acting as the GO TO GUY for Integrated ID Infra for Global Telco Deals.&lt;/li&gt;&lt;li&gt;Representing Oracle Comms at ITU, TMF, GSM, and other Industry Events, etc.&lt;/li&gt;&lt;li&gt;Integrating ID Infra for the Telco Vertical Solutions (Market Requirements, etc.).&lt;/li&gt;&lt;li&gt;Interfacing with different Product specific Product Managers for alignment.&lt;/li&gt;&lt;li&gt;Working closely with Sales/ISV/SI partner Teams focused on Telco a/c's.&lt;/li&gt;&lt;/ul&gt;Plus more... I already know the strengths that Sun brings to this Telco Industry, and combined with Oracle we will have solid momentum as Telco's roll out 4G &amp;amp; IMS worldwide and integrate Web 2.0 and Comms 2.0 services via a Common Identity, Policy and Context layer. Looking forward to the next 10 years at Oracle!! Its going to be AWESOME!!&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-257606627947575990?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J-r2xwavklk:WZ3BDtYfqkc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J-r2xwavklk:WZ3BDtYfqkc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J-r2xwavklk:WZ3BDtYfqkc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=J-r2xwavklk:WZ3BDtYfqkc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/J-r2xwavklk" height="1" width="1"/&gt;</content>
    <updated>2010-02-01T20:44:26Z</updated>
    <published>2010-02-01T20:17:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTTelco" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-02-08T14:30:01Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_02_01_archive.html#257606627947575990</feedburner:origLink></entry>

  <entry>
    <id>http://www.orlandosentinel.com/business/os-authentec-rejects-merger-bid-20100201,0,4956692.story</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/02V3drAOChs/os-authentec-rejects-merger-bid-20100201,0,4956692.story" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: AuthenTec Inc. dismisses rival's merger bid; alleges patent infringement</title>
    
    <updated>2010-02-01T19:45:03Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">AuthenTec, which makes fingerprint-recognition systems for consumer electronics, called the overture by UPEK Inc. "a highly dilutive and speculative transaction" that is not in the best interests of its shareholders.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=02V3drAOChs:GuuGAEPlmJo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=02V3drAOChs:GuuGAEPlmJo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=02V3drAOChs:GuuGAEPlmJo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=02V3drAOChs:GuuGAEPlmJo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/02V3drAOChs" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.orlandosentinel.com/business/os-authentec-rejects-merger-bid-20100201,0,4956692.story</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/imprivata_rsa_conference</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/XnQ4ELOTq9Q/imprivata_rsa_conference" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: RSA Conference Booth #2633</title>
    
    <updated>2010-02-01T19:42:36Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-02-08T21:33:02Z</updated>
    </source>
  <content type="html">Join Imprivata at the 19th annual U.S. RSA Conference.  The event will take place from March 1st-5th at the Moscone Center in San Francisco, California.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XnQ4ELOTq9Q:LyjuZBd_-aI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XnQ4ELOTq9Q:LyjuZBd_-aI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XnQ4ELOTq9Q:LyjuZBd_-aI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=XnQ4ELOTq9Q:LyjuZBd_-aI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/XnQ4ELOTq9Q" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/imprivata_rsa_conference</feedburner:origLink></entry>

  <entry>
    <id>http://www.govhealthit.com/GuestColumnist.aspx?id=73070</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/odqv_CUXLng/GuestColumnist.aspx" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: All NHIN identity management is local</title>
    
    <updated>2010-02-01T19:42:12Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-02-09T03:04:42Z</updated>
    </source>
  <content type="html">But while the NPI supports Medicare and Medicaid payments, it does not address broader provider identity management challenges that will become more critical as health information exchange (HIE) evolves and the nationwide health information network (NHIN) begins to spreads its roots.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=odqv_CUXLng:Q0n9HHLRDiw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=odqv_CUXLng:Q0n9HHLRDiw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=odqv_CUXLng:Q0n9HHLRDiw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=odqv_CUXLng:Q0n9HHLRDiw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/odqv_CUXLng" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.govhealthit.com/GuestColumnist.aspx?id=73070</feedburner:origLink></entry>
</feed>
