<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:planet="http://planet.intertwingly.net/" xmlns:indexing="urn:atom-extension:indexing" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" indexing:index="no"><access:restriction xmlns:access="http://www.bloglines.com/about/specs/fac-1.0" relationship="deny" />
  <title>Planet Identity</title>
  <updated>2010-03-15T09:34:46Z</updated>
  <generator uri="http://intertwingly.net/code/venus/">Venus</generator>
  <author>
    <name>Pat Patterson</name>
    <email>pat@superpat.com</email>
  </author>
  <id>http://planetidentity.org/atom.xml</id>
  
  <link href="http://planetidentity.org" rel="alternate" />

  <atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/PlanetIdentity" /><feedburner:info uri="planetidentity" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry>
    <id>http://pr-usa.net/index.php?option=com_content&amp;task;=view&amp;id;=351837&amp;Itemid;=95</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/XTCzIa7d82A/index.php" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: TriCipher Offers Fast OpenID Support for SaaS Providers</title>
    
    <updated>2010-03-14T21:43:30Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">TriCipher, a leading provider of Internet identity services, announced today that myOneLogin Identity Services now accepts OpenID in addition to SAML, ADFS and other federation protocols. Using myOneLogin, Software as a Service (SaaS) providers can quickly become OpenID relying parties, enabling them to accept credentials from OpenID identity providers like Google Apps.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XTCzIa7d82A:o74H-LeFA_I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XTCzIa7d82A:o74H-LeFA_I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XTCzIa7d82A:o74H-LeFA_I:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=XTCzIa7d82A:o74H-LeFA_I:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/XTCzIa7d82A" height="1" width="1"/&gt;</content><feedburner:origLink>http://pr-usa.net/index.php?option=com_content&amp;task;=view&amp;id;=351837&amp;Itemid;=95</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-4450154254120336229.post-5036964317092706948</id>
    <link href="http://futureidentity.blogspot.com/feeds/5036964317092706948/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://futureidentity.blogspot.com/2010/03/what-is-copyright-for.html#comment-form" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/5036964317092706948" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/5036964317092706948" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/RCd0m4YD3EU/what-is-copyright-for.html" rel="alternate" type="text/html" />
    <title>Robin Wilton - Future Identity: What is copyright for?</title>
    <content type="html">Something is rotten, it would seem, at the heart of copyright legislation.&lt;br&gt;&lt;br&gt;Otto von Bismarck definitely had a point when he remarked (allegedly, at least), that "the less people know about how laws and sausages are made, the easier they sleep at night". That said, if there are unnatural acts being committed in either process, there must be a point at which it's better to know than not to know.&lt;br&gt;&lt;br&gt;&lt;a href="http://news.bbc.co.uk/1/hi/technology/8544935.stm"&gt;This article&lt;/a&gt;, by Bill Thompson, rightly highlights the dangers of allowing copyright law to degenerate into an unregulated mess, devoid of due process and subject to partisan abuse. That far I agree with him. However, I disagree that the best response is to re-draft the law so that it redresses the balance in favour of the data consumer, as opposed to the copyright holder.&lt;br&gt;&lt;br&gt;The problem with that approach is that we are all, increasingly, publishers of data and (ideally) copyright-holders... of the information we disclose about ourselves. In fact, I have often made the comment that the rights which so irritate us when they are officiously enforced by media pubishers, are exactly those rights which we would dearly love to be able to enforce when they relate to our personal information. If the laws are to be re-drafted, the aim should not be to rebalance the rights of data consumers and data publishers &lt;span style="font-style: italic;"&gt;per se&lt;/span&gt;... but to ensure that the rights currently accorded to the 'traditional' holders of copyright are extended to all of us.&lt;br&gt;&lt;br&gt;In other words, it's time that the laws on publishing were extended to protect all those who publish, and not just those who published before Web 2.0 came along.&lt;br&gt;&lt;br&gt;Unfortunately, if we adopt Bismarck's attitude to the law-making process, instances such as the international Anti-Counterfeiting Trade Agreement (&lt;a href="http://www.out-law.com/page-10825"&gt;ACTA&lt;/a&gt;) and the UK Digital Economy Bill   (&lt;a href="http://www.guardian.co.uk/technology/2010/mar/11/digital-economy-bill-amendment-lobbyists"&gt;DEBill&lt;/a&gt;) make one thing quite clear: if you wait until the process has finished before worrying about the result, it will be too late.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/4450154254120336229-5036964317092706948?l=futureidentity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RCd0m4YD3EU:t_bwUMYLPN8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RCd0m4YD3EU:t_bwUMYLPN8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=RCd0m4YD3EU:t_bwUMYLPN8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=RCd0m4YD3EU:t_bwUMYLPN8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/RCd0m4YD3EU" height="1" width="1"/&gt;</content>
    <updated>2010-03-14T21:41:30Z</updated>
    <published>2010-03-14T21:12:00Z</published>
    <author>
      <name>Robin Wilton</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/04346208043850215328</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-4450154254120336229</id>
      <author>
        <name>Robin Wilton</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/04346208043850215328</uri>
      </author>
      <link href="http://futureidentity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://futureidentity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Thoughts on digital identity, privacy, public policy and their influence on our daily lives.</subtitle>
      <title>Racingsnake - the blog of Future Identity</title>
      <updated>2010-03-14T21:41:30Z</updated>
    </source>
  <feedburner:origLink>http://futureidentity.blogspot.com/2010/03/what-is-copyright-for.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.superpat.com/?p=1017</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/QnAudfRP2mI/" rel="alternate" type="text/html" />
    <title>Pat Patterson - Huawei: A Weekend in Xi’an</title>
    <summary type="html">I’ve been in Xi’an, northern China, for the past few days, visiting Huawei’s site here. Since my trip ran across the weekend, I found myself with a couple of days to explore the area.
Following Geoff’s lead, on Saturday morning, I headed out to bīngmǎ yǒng, better known in English as the Terracotta Warriors. I had [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;div style="float: right; margin-left: 10px; margin-bottom: 10px;"&gt;&lt;a href="http://www.flickr.com/photos/superpat/4428903639/" title="Who are you looking at? by superpat7, on Flickr"&gt;&lt;img alt="Who are you looking at?" height="240" src="http://farm5.static.flickr.com/4028/4428903639_a39a0be196_m.jpg" width="161"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;p&gt;I’ve been in &lt;a href="http://en.wikipedia.org/wiki/Xi%27an"&gt;Xi’an&lt;/a&gt;, northern China, for the past few days, visiting &lt;a href="http://www.huawei.com/"&gt;Huawei&lt;/a&gt;’s site here. Since my trip ran across the weekend, I found myself with a couple of days to explore the area.&lt;/p&gt;&#xD;
&lt;p&gt;Following &lt;a href="http://geoffarnold.com/?p=3580"&gt;Geoff’s lead&lt;/a&gt;, on Saturday morning, I headed out to &lt;i&gt;bīngmǎ yǒng&lt;/i&gt;, better known in English as the &lt;a href="http://en.wikipedia.org/wiki/Terra-cotta_Army"&gt;Terracotta Warriors&lt;/a&gt;. I had the hotel, &lt;a href="http://www.daysinn.cn/English/hotel/13a.htm"&gt;Days Xi’an&lt;/a&gt;, arrange a ride for me – the most expensive component of the trip at ￥380 (approx $60), but both car and driver were at my disposal for nearly six hours. After a two hour drive through the Xi’an traffic then a few miles of countryside, I arrived at the site to be greeted by an English-speaking guide named Jay, whose excellent service was an absolute bargain for ￥100 ($15). Admission was a very reasonable ￥90 ($13 or so).&lt;/p&gt;&#xD;
&lt;p&gt;Jay walked me round the initial display of a giant marionette warrior (pictured above), made for the 2008 Beijing Olympics, a pair of bronze chariots and other artifacts, then showed me to the 360 degree cinema for a 20 minute film introducing some of the historical background to the commissioning of the Terracotta Army by &lt;a href="http://en.wikipedia.org/wiki/Qin_Shi_Huang"&gt;Qin Shi Huang&lt;/a&gt;, the first emperor of a unified China. and its accidental discovery in 1974 by a local farmer digging a well. Amazingly, although the location of the imperial tomb was well known, there had been no historical record of the army itself, so the find came as a complete surprise.&lt;/p&gt;&#xD;
&lt;div style="float: left; margin-right: 10px; margin-bottom: 10px;"&gt;&lt;a href="http://www.flickr.com/photos/superpat/4429687442/" title="Pit number 1 by superpat7, on Flickr"&gt;&lt;img alt="Pit number 1" height="161" src="http://farm3.static.flickr.com/2763/4429687442_af7d9d9b3e_m.jpg" width="240"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;p&gt;After the film, it was time for the main event – ‘Pit Number 1′ – and what an &lt;i&gt;incredible&lt;/i&gt; sight it was – rank upon rank of larger than life warriors, vintage 210 BC. Pit 1 alone contains an estimated 8000 infantrymen, each an individual with different faces, hair and physique. I spent some time walking around the perimeter, just taking it all in. At this point, what was most impressive was the sheer scale of the army – it was only when I saw a couple of the warriors up close in the adjoining display area that I realized the craftsmanship that went into each one.&#xD;
&lt;/p&gt;&#xD;
&lt;div style="float: right; margin-left: 10px; margin-bottom: 10px;"&gt;&lt;a href="http://www.flickr.com/photos/superpat/4429791654/" title="'Lucky Warrior' shoe detail by superpat7, on Flickr"&gt;&lt;img alt="'Lucky Warrior' shoe detail" height="240" src="http://farm3.static.flickr.com/2722/4429791654_8437a35873_m.jpg" width="161"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;p&gt;I took a series of pictures of the ‘Lucky Warrior’ – a kneeling archer – the sole statue found intact, all the others having suffered from the collapse of the wooden roof of the tomb. You can see all of the photos in &lt;a href="http://www.flickr.com/photos/superpat/sets/72157623487285067/"&gt;my Flickr set from the day&lt;/a&gt;, but here is possibly the most interesting picture – the sole of the Lucky Warrior’s shoe – complete with &lt;i&gt;three&lt;/i&gt; different tread patterns, for the heel, mid-section and front of the sole. When you see the craftsmanship that went into a single warrior, then realize that there are over 8,000 of them, it’s easy to believe that it took 700,000 workers some 40 years to complete!&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
The tour was rounded off by a visit to the official museum store, where I had an order from &lt;a href="http://www.cryptoclarity.com/James_P_Hughes/James_P_Hughes.html"&gt;Jim&lt;/a&gt; for an ‘Old General’. I succumbed to temptation and came away with Jim’s general, an infantryman for myself, and a jade bracelet for my wife, Karen. Ah well; it’s only money, I suppose.&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
Saturday evening, I went out with Tom, one of the Xi’an engineers, and we discovered the &lt;a href="http://www.littlesheephotpot.com/"&gt;Little Sheep&lt;/a&gt; Mongolian hot pot restaurant, where we had an excellent meal of thinly sliced lamb, cooked at the table in a spicy broth, washed down by a couple of bottles of &lt;a href="http://www.tsingtaobeer.com/"&gt;Tsingtao&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
&lt;div style="float: left; margin-right: 10px; margin-bottom: 10px;"&gt;&lt;a href="http://www.flickr.com/photos/superpat/4431309431/" title="Lantern festival decorations at the South Gate by superpat7, on Flickr"&gt;&lt;img alt="Lantern festival decorations at the South Gate" height="180" src="http://farm5.static.flickr.com/4025/4431309431_71c319a8b1_m.jpg" width="240"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&#xD;
Sunday started wet, so I left my ‘real’ camera at the hotel and set off with only my iPhone to take pictures. A mistake as it turned out, as the day dried up soon after lunch – oh well – &lt;a href="http://www.flickr.com/photos/superpat/sets/72157623617444708/"&gt;the iPhone did pretty well&lt;/a&gt;, in the event. First order of the morning was to find a source of &lt;a href="http://www.chinamobile.com/en/mainland/"&gt;China Mobile&lt;/a&gt; topup cards for my prepay phone, then I relaxed for a couple of hours at the Starbucks next to the hotel with a Chai tea and free wifi – bliss! After lunch I met up with Asen, another Huawei engineer based in Xi’an, and we headed out for a walk around central Xi’an.&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
Xi’an has the most complete city wall in China, with eight and a half miles of fortifications forming a rectangle around the city center. Right now, the wall is decorated for &lt;i&gt;Yuánxiāojié&lt;/i&gt;, or the &lt;a href="http://en.wikipedia.org/wiki/Lantern_Festival"&gt;Lantern Festival&lt;/a&gt;, and we walked about a mile and a half along the southern section, photographing the decorations. Coming down off the walls, we happened on a market stall selling &lt;a href="http://en.wikipedia.org/wiki/Seal_%28East_Asia%29"&gt;chops&lt;/a&gt; (name stamps) and I had a ‘monkey’ (my birth year) chop carved with my ‘Chinese name’ – 潘德生. Heading north, we came to the &lt;a href="http://en.wikipedia.org/wiki/Bell_Tower_of_Xi%27an"&gt;Bell Tower&lt;/a&gt;, pretty much the center point of the city. ￥40 ($6) bought a ticket that also included admission to the nearby &lt;a href="http://en.wikipedia.org/wiki/Drum_Tower_of_Xi%27an"&gt;Drum Tower&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
The interior of the Bell Tower houses an exhibition of ancient Chinese pottery showing an amazing level of artistry, while the exterior gives an excellent view of the city including the four gates in the city walls. The Drum Tower contains exhibitions of antique furniture and, not surprisingly, drums. Again, you can walk around the outside of the tower, this time gaining a view of the Muslim &lt;a href="http://en.wikipedia.org/wiki/Hui_people"&gt;Hui&lt;/a&gt; quarter of Xi’an.&#xD;
&lt;/p&gt;&#xD;
&lt;div style="float: right; margin-left: 10px; margin-bottom: 10px;"&gt;&lt;a href="http://www.flickr.com/photos/superpat/4431376673/" title="Street market stall by superpat7, on Flickr"&gt;&lt;img alt="Street market stall" height="180" src="http://farm3.static.flickr.com/2742/4431376673_eef24ac9a1_m.jpg" width="240"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&#xD;
Leaving the Drum Tower, Asen and I entered the heart of the Muslim quarter, a bustling, colorful street market that seemed mainly focused on grilled beef and chicken kebabs, or &lt;a href="http://en.wikipedia.org/wiki/Chuanr"&gt;chuànr&lt;/a&gt;. After a wander around, we chose a restaurant to sample some chuànr and pào mó, a tasty soup of cubed flatbread and beef, washed down with a little more Tsingtao.&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
I must admit, I didn’t expect Xi’an to have so much to offer. I knew of the Terracotta Warriors, of course, but I was still surprised at the modest grandeur of central Xi’an. If I’m lucky enough to return, I plan to spend a couple of hours circumnavigating the city walls, this time with my ‘proper’ camera &lt;img alt=":-)" class="wp-smiley" src="http://blog.superpat.com/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/gfeEv3r5VOxIZLfXf_Q9RNZfBMA/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/gfeEv3r5VOxIZLfXf_Q9RNZfBMA/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/gfeEv3r5VOxIZLfXf_Q9RNZfBMA/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/gfeEv3r5VOxIZLfXf_Q9RNZfBMA/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/superpat/~4/jqSqKW2nzdU" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QnAudfRP2mI:SNlWM40TYyk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QnAudfRP2mI:SNlWM40TYyk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QnAudfRP2mI:SNlWM40TYyk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=QnAudfRP2mI:SNlWM40TYyk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/QnAudfRP2mI" height="1" width="1"/&gt;</content>
    <updated>2010-03-14T13:55:58Z</updated>
    <category term="General" />
    <category term="china" />
    <category term="terracottawarriors" />
    <category term="xian" /><feedburner:origlink>http://blog.superpat.com/2010/03/14/a-weekend-in-xian/</feedburner:origlink>
    <author>
      <name>Pat Patterson</name>
    </author>
    <source>
      <id>http://blog.superpat.com</id>
      <link href="http://blog.superpat.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/superpat" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Pat Patterson on Identity Management, Federation and Single Malt Scotch</subtitle>
      <title>Superpatterns</title>
      <updated>2010-03-15T01:32:36Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/superpat/~3/jqSqKW2nzdU/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-5693399326144151693</id>
    <link href="http://connectid.blogspot.com/feeds/5693399326144151693/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=5693399326144151693" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5693399326144151693?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5693399326144151693?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/gCI0wf-Wg9Q/talk-to-your-doctor.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Talk to your doctor</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;a href="http://posterous.com/getfile/files.posterous.com/paulmadsen/k6NeT0MYAjs83DL870p1qEdP3bHDlXEaJMCoeJhVPQ8NtX4FIs2oAmUokEKO/Screen_00033.jpg"&gt;&lt;img height="359" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/zTnY84PQU9hExyKQzmtBbRuzGVp1BYEz0iA9vpB5LnrrHknPCoGg3DuautRS/Screen_00033.jpg.scaled.500.jpg" width="500"&gt;&lt;/img&gt;&lt;/a&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/talk-to-your-doctor"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-5693399326144151693?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/gCI0wf-Wg9Q" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gCI0wf-Wg9Q:pzJXyW2SxGU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gCI0wf-Wg9Q:pzJXyW2SxGU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gCI0wf-Wg9Q:pzJXyW2SxGU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=gCI0wf-Wg9Q:pzJXyW2SxGU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/gCI0wf-Wg9Q" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T21:51:55Z</updated>
    <published>2010-03-13T21:51:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/talk-to-your-doctor.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6762</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/WaWg8XlFbmU/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: Dashboard containers and a distributed architecture</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I received &lt;a href="http://blog.broadbandmechanics.com/2010/02/28/digital-cities-and-fiber-optic-connectivity/#comments"&gt;this comment on my post on fiber optic connectivity&lt;/a&gt; from &lt;a href="http://www.mandalaproject.org/"&gt;Michael Flynn of the Global Mandala project&lt;/a&gt;:&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;&lt;img alt="" class="alignright" height="471" src="http://www.mandalaproject.org/Labyrinth/labdiag.jpg" style="margin-left: 8px; margin-right: 8px;" width="252"&gt;&lt;/img&gt;Marc, this is a great article. I’m looking forward to exploring ways in which the Global Mandala Project might be able to work with your vision of Citizen Dashboards, not just as part of our giving portal but also as a tool to provide a monetizable purpose to social networking. I wonder if the shared servers you refer to might not be mobile servers aka smartphones? Could a peer to peer web of servers based on a distributed architecture of mobile phones be a possible wireless network? the problem I see with the open network concept is the UI you engage with it through when every individual entity wants to protect its brand? Your thoughts?&lt;/p&gt;&#xD;
&lt;p&gt;Let me answer Michael’s questions, one at a time:&lt;/p&gt;&#xD;
&lt;p&gt;1.   Absolutely mobile devices and the software running on them - can serve as individual “servers” - for some kinds of applications and services.  Call it “wireless network” or “distributed architecture” - I think you’re getting the  point.&lt;/p&gt;&#xD;
&lt;p&gt;Individual’s dashboards not only serve as a storage of their own person data, but their groups, communities and networks data - as well.  And it’s more than storage.&lt;/p&gt;&#xD;
&lt;p&gt;Interoperability, friending, accessing other’s data, collaboration of all sorts - will all happen via one’s “dashboard”.  It already is.&lt;/p&gt;&#xD;
&lt;p&gt;2.  Obviously entity’s will want to protect and evolve their brands, but I think that exclusion from the distributed world will hurt you more, than creating a closed, propriety brand. The very nature of being open - is hanging with all the open peeps.  Those who choose to remain closed - will be shunned.  And if they want that as their brand, then God bless them.&lt;/p&gt;&#xD;
&lt;p&gt;This is where the notion of “dashboard containers” comes in.  Think of them as a new set of microformats embedded in each dashboard’s page.  These containers would describe who owns the dashboard, how it’s configured, what are it’s social graph and list fo contacts and what is the content associated with their dashboard.  And media too!  Dashboard containers will serve as a level playing field normalizer effect - so ALL dashboards can connect to each other!&lt;/p&gt;&#xD;
&lt;p&gt;Via two-way APIs.&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I received &lt;a href="http://blog.broadbandmechanics.com/2010/02/28/digital-cities-and-fiber-optic-connectivity/#comments"&gt;this comment on my post on fiber optic connectivity&lt;/a&gt; from &lt;a href="http://www.mandalaproject.org/"&gt;Michael Flynn of the Global Mandala project&lt;/a&gt;:&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;&lt;img alt="" class="alignright" height="471" src="http://www.mandalaproject.org/Labyrinth/labdiag.jpg" style="margin-left: 8px; margin-right: 8px;" width="252"&gt;&lt;/img&gt;Marc, this is a great article. I’m looking forward to exploring ways in which the Global Mandala Project might be able to work with your vision of Citizen Dashboards, not just as part of our giving portal but also as a tool to provide a monetizable purpose to social networking. I wonder if the shared servers you refer to might not be mobile servers aka smartphones? Could a peer to peer web of servers based on a distributed architecture of mobile phones be a possible wireless network? the problem I see with the open network concept is the UI you engage with it through when every individual entity wants to protect its brand? Your thoughts?&lt;/p&gt;&#xD;
&lt;p&gt;Let me answer Michael’s questions, one at a time:&lt;/p&gt;&#xD;
&lt;p&gt;1.   Absolutely mobile devices and the software running on them - can serve as individual “servers” - for some kinds of applications and services.  Call it “wireless network” or “distributed architecture” - I think you’re getting the  point.&lt;/p&gt;&#xD;
&lt;p&gt;Individual’s dashboards not only serve as a storage of their own person data, but their groups, communities and networks data - as well.  And it’s more than storage.&lt;/p&gt;&#xD;
&lt;p&gt;Interoperability, friending, accessing other’s data, collaboration of all sorts - will all happen via one’s “dashboard”.  It already is.&lt;/p&gt;&#xD;
&lt;p&gt;2.  Obviously entity’s will want to protect and evolve their brands, but I think that exclusion from the distributed world will hurt you more, than creating a closed, propriety brand. The very nature of being open - is hanging with all the open peeps.  Those who choose to remain closed - will be shunned.  And if they want that as their brand, then God bless them.&lt;/p&gt;&#xD;
&lt;p&gt;This is where the notion of “dashboard containers” comes in.  Think of them as a new set of microformats embedded in each dashboard’s page.  These containers would describe who owns the dashboard, how it’s configured, what are it’s social graph and list fo contacts and what is the content associated with their dashboard.  And media too!  Dashboard containers will serve as a level playing field normalizer effect - so ALL dashboards can connect to each other!&lt;/p&gt;&#xD;
&lt;p&gt;Via two-way APIs.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WaWg8XlFbmU:csqbQuPam2g:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WaWg8XlFbmU:csqbQuPam2g:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WaWg8XlFbmU:csqbQuPam2g:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=WaWg8XlFbmU:csqbQuPam2g:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/WaWg8XlFbmU" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T21:51:41Z</updated>
    <category term="Blog" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-03-13T21:54:01Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/03/13/dashboard-containers-and-a-distributed-architecture/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-8209396638076178505</id>
    <link href="http://connectid.blogspot.com/feeds/8209396638076178505/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=8209396638076178505" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8209396638076178505?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8209396638076178505?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/yxLOF0xnqFo/social-faux-pas.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Social faux pas</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="472" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/StCrk5tKRUM243vl5uTOg87Svrk6FomifQniJfCYURtr53iVeUD9q42phaaB/Screen_00007.jpg" width="434"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/social-faux-pas"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-8209396638076178505?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/yxLOF0xnqFo" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yxLOF0xnqFo:XR2VRiyivJM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yxLOF0xnqFo:XR2VRiyivJM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yxLOF0xnqFo:XR2VRiyivJM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=yxLOF0xnqFo:XR2VRiyivJM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/yxLOF0xnqFo" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T20:58:18Z</updated>
    <published>2010-03-13T20:58:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/social-faux-pas.html</feedburner:origLink></entry>

  <entry>
    <id>http://kveton.com/blog/?p=377</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/R0bRWBqIxec/" rel="alternate" type="text/html" />
    <link href="http://kveton.com/blog/2009/04/13/joining-the-sao/#comments" rel="replies" type="text/html" />
    <link href="http://kveton.com/blog/2009/04/13/joining-the-sao/feed/atom/" rel="replies" type="application/atom+xml" />
    <title>Scott Kveton: Joining the SAO</title>
    <summary type="html">It was only last week that I was talking about what I was going to be up to next. I’m excited to announce that as of today, I’ll be serving as the interim President of the Software Association of Oregon (SAO) for the next 90 days.
In January I joined the SAO’s board of directors with [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;It was only &lt;a href="http://kveton.com/blog/2009/04/09/bacn-and-a-business-model/"&gt;last week&lt;/a&gt; that I was talking about what I was going to be up to next. I’m excited to announce that as of today, I’ll be serving as the interim President of the &lt;a href="http://sao.org"&gt;Software Association of Oregon (SAO)&lt;/a&gt; for the next 90 days.&lt;/p&gt;&#xD;
&lt;p&gt;In January I joined the SAO’s board of directors with a very large freshman class of board members. When then-President Harvey Mathews recruited me to join the board last year, he was doing so because of my engagement with the local independent developer and consulting groups here in Portland. I was excited to bring a growing segment of software developers perspective to the board and my first few months on the board have been quite enjoyable as the organization continues to expand its programs.&lt;/p&gt;&#xD;
&lt;p&gt;With Harvey &lt;a href="http://siliconflorist.com/2009/02/25/harvey-mathews-leaves-software-association-of-oregon-sao/"&gt;stepping down&lt;/a&gt; and me spinning up my own &lt;a href="http://kveton.com/blog/2009/04/09/bacn-and-a-business-model/"&gt;consulting business&lt;/a&gt;, the timing seemed right for me to interview for the interim President role and the search committee agreed. I firmly believe there is a great opportunity to link up the experience of current SAO members with that of the entrepreneurial spirit and drive of the independent developer community here in the Northwest.&lt;/p&gt;&#xD;
&lt;p&gt;I’m really looking forward to working with the amazing staff of the SAO to continue its fantastic mission. More to come.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R0bRWBqIxec:eYRQZID3_00:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R0bRWBqIxec:eYRQZID3_00:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=R0bRWBqIxec:eYRQZID3_00:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=R0bRWBqIxec:eYRQZID3_00:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/R0bRWBqIxec" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T20:39:28Z</updated>
    <published>2009-04-13T16:28:49Z</published>
    <category scheme="http://kveton.com/blog" term="Local" />
    <category scheme="http://kveton.com/blog" term="Portland" />
    <category scheme="http://kveton.com/blog" term="sao" />
    <author>
      <name>kveton</name>
      <uri>http://kveton.myvidoop.com</uri>
    </author>
    <source>
      <id>http://kveton.com/blog/feed/atom/</id>
      <link href="http://kveton.com/blog" rel="alternate" type="text/html" />
      <link href="http://kveton.com/blog/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle>Father, entrepreneur, pizza maker &amp; bacon lover</subtitle>
      <title>Scott Kveton</title>
      <updated>2010-03-13T20:39:28Z</updated>
    </source>
  <feedburner:origLink>http://kveton.com/blog/2009/04/13/joining-the-sao/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://netmesh.info/jernst/?p=348</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/A9yj9vG_2Ys/curl-broken-in-osx" rel="alternate" type="text/html" />
    <title>Johannes Ernst - NetMesh: Curl broken in OSX?</title>
    <summary type="html">Wasted two hours today attempting to HTTP POST some content with a client certificate using curl on OSX Snow Leopard. It somehow would not show its cert to the Apache server.
In an act of desparation, I tried the exact same command with the exact same client certificate on Linux, and it worked.
So I downloaded MacPorts, [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Wasted two hours today attempting to HTTP POST some content with a client certificate using curl on OSX Snow Leopard. It somehow would not show its cert to the Apache server.&lt;/p&gt;&#xD;
&lt;p&gt;In an act of desparation, I tried the exact same command with the exact same client certificate on Linux, and it worked.&lt;/p&gt;&#xD;
&lt;p&gt;So I downloaded &lt;a href="http://www.macports.org/"&gt;MacPorts&lt;/a&gt;, built curl from there on OSX, and it works. No idea what happened, Google is of no help. I’m mostly posting this that others with my problem can find it.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=A9yj9vG_2Ys:7cftUR4vIUQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=A9yj9vG_2Ys:7cftUR4vIUQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=A9yj9vG_2Ys:7cftUR4vIUQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=A9yj9vG_2Ys:7cftUR4vIUQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/A9yj9vG_2Ys" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T05:07:33Z</updated>
    <category term="Technical" />
    <category term="curl" />
    <category term="fail" />
    <category term="osx" />
    <author>
      <name>Johannes Ernst</name>
    </author>
    <source>
      <id>http://netmesh.info/jernst</id>
      <link href="http://netmesh.info/jernst/feed" rel="self" type="application/atom+xml" />
      <link href="http://netmesh.info/jernst" rel="alternate" type="text/html" />
      <subtitle>Digital Identity, OpenID, LID, InfoGrid, NetMesh, NoSQL</subtitle>
      <title>Johannes Ernst's Blog</title>
      <updated>2010-03-13T05:07:33Z</updated>
    </source>
  <feedburner:origLink>http://netmesh.info/jernst/technical/curl-broken-in-osx</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-8148124388771860313.post-2792764839168826268</id>
    <link href="http://sunjavaidm.blogspot.com/feeds/2792764839168826268/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://sunjavaidm.blogspot.com/2010/03/windows-cross-platform-authentication.html#comment-form" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default/2792764839168826268" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default/2792764839168826268" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-2laI3_QrwA/windows-cross-platform-authentication.html" rel="alternate" type="text/html" />
    <title>Lakshman Abburi - Sun: windows cross-platform authentication + WinSSO auth module on AM/OpenSSO</title>
    <content type="html">&lt;a href="http://4.bp.blogspot.com/_Uxus1TITMLE/S5rpIy8QBPI/AAAAAAAAC3U/-Kp0tMEegQk/s1600-h/ms995329.http-sso-1-fig02(en-us,MSDN.10).gif"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5447923036580742386" src="http://4.bp.blogspot.com/_Uxus1TITMLE/S5rpIy8QBPI/AAAAAAAAC3U/-Kp0tMEegQk/s320/ms995329.http-sso-1-fig02(en-us,MSDN.10).gif" style="cursor: pointer; cursor: hand; width: 320px; height: 231px;"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&lt;br&gt;1.  When the logged-on user requests a resource from the Web server, it sends the initial HTTP GET verb.&lt;br&gt;&lt;br&gt;2. The Web server, running the SPNEGO Token Handler code, requires authentication and issues a 401 Access Denied, WWW-Authenticate: Negotiate response.&lt;br&gt;&lt;br&gt;3. The client calls AcquireCredentialsHandle()and InitializeSecurityContext() with the SPN to build the Security Context that requests the session ticket from the TGS(KDC).&lt;br&gt;&lt;br&gt;4. The TGS/KDC supplies the client with the necessary Kerberos Ticket (assuming the client is authorized) wrapped in a SPNEGO Token.&lt;br&gt;&lt;br&gt;5. The client re-sends the HTTP GET request + the Negotiate SPNEGO Token in an Authorization: Negotiate base64(token) header.&lt;br&gt;&lt;br&gt;6. The Web server's SPNEGO Token Handler code accepts and processes the token through GSS API, authenticates the user and responds with the requested URL.&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;a href="http://1.bp.blogspot.com/_Uxus1TITMLE/S5rpzKlwySI/AAAAAAAAC3k/hc4VVGXDnzA/s1600-h/ms995329.http-sso-1-fig03(en-us,MSDN.10).gif"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5447923764483377442" src="http://1.bp.blogspot.com/_Uxus1TITMLE/S5rpzKlwySI/AAAAAAAAC3k/hc4VVGXDnzA/s320/ms995329.http-sso-1-fig03(en-us,MSDN.10).gif" style="cursor: pointer; cursor: hand; width: 320px; height: 171px;"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;Process flow for Windows Desktop SSO module in AM code&lt;br&gt;&lt;br&gt;&lt;a href="http://1.bp.blogspot.com/_Uxus1TITMLE/S5ruMumqKlI/AAAAAAAAC3s/1cqvGpzb4gY/s1600-h/winsso.JPG"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5447928601694054994" src="http://1.bp.blogspot.com/_Uxus1TITMLE/S5ruMumqKlI/AAAAAAAAC3s/1cqvGpzb4gY/s320/winsso.JPG" style="cursor: pointer; cursor: hand; width: 283px; height: 320px;"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&lt;br&gt;1.  When the logged-on user (browser client) requests a protected resource from the Web server, it sends the initial HTTP GET verb. &lt;br&gt;&lt;br&gt;2. The policy agent intercepts the request, sees SSO token in cookie is not present. It redirects it to the web server hosting Sun Access Manager which has WinSSO auth module code (SPNEGO Token Handler code).&lt;br&gt;&lt;br&gt;3. The Web server, running the SPNEGO Token Handler code (Access Manager Windows desktop SSO auth module), requires authentication to access that resource. So Access Manager code on web server issues a 401 Access Denied, WWW-Authenticate: Negotiate response to the browser client.&lt;br&gt;&lt;br&gt;4. The browser client calls AcquireCredentialsHandle()and InitializeSecurityContext() with the SPN to build the Security Context. In this process, SPNEGO capable browser requests the session ticket from the Ticket Granting Server (TGS - could be windows domain controller or unix kdc server). This direct interaction between browser and KDC will provide &lt;br&gt;a) Ticket Granting Ticket (TGT - if not already present)&lt;br&gt;b) Kerberos or NTLM ticket depending upon configuration. Note AM works only with Kerberos ticket. AM does not support NTLM ticket.&lt;br&gt;This is wrapped in a SPNEGO token which is presented to AM.&lt;br&gt;&lt;br&gt;5. The TGS/KDC supplies the client (browser) with the necessary Kerberos Ticket (assuming the client is authorized) wrapped in a SPNEGO Token.&lt;br&gt;&lt;br&gt;6. The client re-sends the HTTP GET request + the Negotiate SPNEGO Token in an Authorization: Negotiate base64(token) header to Windows Desktop SSO module of Access Manager running on Unix web server.&lt;br&gt;&lt;br&gt;7. The SPNEGO Token Handler code in Windows Desktop SSO module of Access Manager running on Unix web server accepts and processes the token through GSS API, authenticates the user. After successful authentication, AM prepares SSO Token in a cookie. &lt;br&gt;&lt;br&gt;8. AM sends back response to browser with HTTP code - 200. Now browser has SSO Token wrapped in a cookie.&lt;br&gt;&lt;br&gt;9. Browser sends HTTP Get request to web server hosting policy agent so that it can handle the protected resource request.&lt;br&gt;&lt;br&gt;&lt;br&gt;References:&lt;br&gt;===========&lt;br&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms995329.aspx"&gt;MSDN Article-1&lt;/a&gt;&lt;br&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms995330.aspx"&gt;MSDN Article-2&lt;/a&gt;&lt;br&gt;&lt;a href="http://msdn.microsoft.com/en-us/library/ms995331.aspx"&gt;MSDN Article-3&lt;/a&gt;&lt;br&gt;&lt;a href="http://docs.sun.com/app/docs/doc/820-3746/gisxh?a=view"&gt;OpenSSO doc Article-1&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/8148124388771860313-2792764839168826268?l=sunjavaidm.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-2laI3_QrwA:RWGYUf6zjzc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-2laI3_QrwA:RWGYUf6zjzc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-2laI3_QrwA:RWGYUf6zjzc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-2laI3_QrwA:RWGYUf6zjzc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-2laI3_QrwA" height="1" width="1"/&gt;</content>
    <updated>2010-03-13T02:10:51Z</updated>
    <published>2010-03-13T01:21:00Z</published>
    <author>
      <name>Lakshman</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/16622225315502007403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-8148124388771860313</id>
      <author>
        <name>Lakshman</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/16622225315502007403</uri>
      </author>
      <link href="http://sunjavaidm.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://sunjavaidm.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <title>Sun Identity Management Products</title>
      <updated>2010-03-13T02:10:51Z</updated>
    </source>
  <feedburner:origLink>http://sunjavaidm.blogspot.com/2010/03/windows-cross-platform-authentication.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/alegant_health_turns_to_imprivata_to_secure_access_to_emr___imprivata</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/svdhSK-kmAQ/alegant_health_turns_to_imprivata_to_secure_access_to_emr___imprivata" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Alegent Health Turns to Imprivata for Secure Access to Electronic Medical Records in a Virtual Desktop Environment</title>
    
    <updated>2010-03-12T23:29:08Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">Imprivata OneSign Provides More Than 11,000 Clinicians with Fast Access to Patient Data from Anywhere in the Health System&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=svdhSK-kmAQ:US5ZiNL4o4Y:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=svdhSK-kmAQ:US5ZiNL4o4Y:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=svdhSK-kmAQ:US5ZiNL4o4Y:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=svdhSK-kmAQ:US5ZiNL4o4Y:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/svdhSK-kmAQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/alegant_health_turns_to_imprivata_to_secure_access_to_emr___imprivata</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-8148124388771860313.post-9203630245610117329</id>
    <link href="http://sunjavaidm.blogspot.com/feeds/9203630245610117329/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://sunjavaidm.blogspot.com/2010/03/blog-post.html#comment-form" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default/9203630245610117329" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default/9203630245610117329" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/tgX2_WjmTGs/blog-post.html" rel="alternate" type="text/html" />
    <title>Lakshman Abburi - Sun: OpenSSO Windows Desktop SSO sequence diagram</title>
    <content type="html">&lt;a href="http://3.bp.blogspot.com/_Uxus1TITMLE/S5rBjaPdtHI/AAAAAAAAC3M/TlI2glv-uH8/s1600-h/winsso.JPG"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5447879513341801586" src="http://3.bp.blogspot.com/_Uxus1TITMLE/S5rBjaPdtHI/AAAAAAAAC3M/TlI2glv-uH8/s320/winsso.JPG" style="cursor: pointer; cursor: hand; width: 283px; height: 320px;"&gt;&lt;/img&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/8148124388771860313-9203630245610117329?l=sunjavaidm.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tgX2_WjmTGs:JTG5fGtTg0w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tgX2_WjmTGs:JTG5fGtTg0w:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=tgX2_WjmTGs:JTG5fGtTg0w:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=tgX2_WjmTGs:JTG5fGtTg0w:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/tgX2_WjmTGs" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T22:36:12Z</updated>
    <published>2010-03-12T22:33:00Z</published>
    <author>
      <name>Lakshman</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/16622225315502007403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-8148124388771860313</id>
      <author>
        <name>Lakshman</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/16622225315502007403</uri>
      </author>
      <link href="http://sunjavaidm.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://sunjavaidm.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/8148124388771860313/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <title>Sun Identity Management Products</title>
      <updated>2010-03-13T01:27:07Z</updated>
    </source>
  <feedburner:origLink>http://sunjavaidm.blogspot.com/2010/03/blog-post.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-34275044.post-2210062492628983845</id>
    <link href="http://practicalid.blogspot.com/feeds/2210062492628983845/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=34275044&amp;postID=2210062492628983845" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/34275044/posts/default/2210062492628983845" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/34275044/posts/default/2210062492628983845" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/sQBLexJIzD8/openid-20-provider-support-live-aol.html" rel="alternate" type="text/html" />
    <title>George Fletcher - AOL: OpenID 2.0 Provider support live @ AOL</title>
    <content type="html">I'm excited to announce that the &lt;a href="http://www.aol.com"&gt;AOL&lt;/a&gt; Identity Services team has fully deployed OpenID 2.0 Provider support. Directed identity flows are now enabled so just entering 'aol.com' into an OpenID field will start the authentication flow. In addition to directed identity, this release also supports "check immediate" flows, SREG, AX, UI (popup browser), PAPE (as required by the ICAM OpenID 2.0 Profile) and of course the &lt;a href="http://www.idmanagement.gov/documents/ICAM_OpenID20Profile.pdf"&gt;ICAM OpenID 2.0 Profile&lt;/a&gt; itself.&lt;br&gt;&lt;br&gt;We have also improved the UI making it much cleaner and easier to follow. One feature of this new UI is a page that allows the user to choose, when first visiting a new site, whether to use their public OpenID (http://openid.aol.com/&amp;lt;username&amp;gt;) or an opaque one. Of course, this choice isn't necessary if the user provides the relying party their full OpenID or the relying party specifically requests an opaque identifier (via PAPE policy). I'd really appreciate feedback on whether this "privacy" feature is helpful to users or just adds more confusion.&lt;br&gt;&lt;br&gt;In addition to the existing SREG support, the same attributes will be supported via Attribute exchange. There is equivalent support for the http://axschema.org URIs but only partial support for the Information Card URIs as there weren't direct equivalents for all of the attributes. Here is what is currently supported.&lt;br&gt;&lt;br&gt;&lt;blockquote&gt;http://axschema.org/namePerson/friendly&lt;br&gt;http://axschema.org/contact/email&lt;br&gt;http://axschema.org/birthDate&lt;br&gt;http://axschema.org/person/gender&lt;br&gt;http://axschema.org/contact/postalCode/home&lt;br&gt;http://axschema.org/contact/country/home&lt;br&gt;http://axschema.org/pref/language&lt;br&gt;http://axschema.org/pref/timezone&lt;br&gt;&lt;br&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/emailaddress&lt;br&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/dateofbirth&lt;br&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/gender&lt;br&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/postalcode&lt;br&gt;http://schemas.xmlsoap.org/ws/2005/05/identity/claims/country&lt;/blockquote&gt;&lt;br&gt;&lt;br&gt;Suggestions or requests for specific attributes are always welcome. One point of clarification regarding email addresses and verification. The current implementation defaults the email address to the user's AOL provided email address but does allow the user to change the value returned to the relying party. &lt;br&gt;&lt;br&gt;While there is still a lot to do, it feels really good to finally reach this milestone.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/34275044-2210062492628983845?l=practicalid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=sQBLexJIzD8:y0jeiqFs8I4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=sQBLexJIzD8:y0jeiqFs8I4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=sQBLexJIzD8:y0jeiqFs8I4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=sQBLexJIzD8:y0jeiqFs8I4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/sQBLexJIzD8" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T22:36:07Z</updated>
    <published>2010-03-12T22:34:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="&quot;OpenID 2.0&quot;" />
    <category scheme="http://www.blogger.com/atom/ns#" term="PAPE" />
    <category scheme="http://www.blogger.com/atom/ns#" term="SREG" />
    <category scheme="http://www.blogger.com/atom/ns#" term="AOL" />
    <category scheme="http://www.blogger.com/atom/ns#" term="Privacy" />
    <category scheme="http://www.blogger.com/atom/ns#" term="AX" />
    <category scheme="http://www.blogger.com/atom/ns#" term="&quot;OpenID Provider&quot;" />
    <author>
      <name>George Fletcher</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/12081110172957645007</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-34275044</id>
      <author>
        <name>George Fletcher</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/12081110172957645007</uri>
      </author>
      <link href="http://practicalid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/34275044/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://practicalid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/34275044/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"Nothing to see here... move along..."</subtitle>
      <title>Identity in Practice</title>
      <updated>2010-03-14T20:06:25Z</updated>
    </source>
  <feedburner:origLink>http://practicalid.blogspot.com/2010/03/openid-20-provider-support-live-aol.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.networkworld.com/newsletters/dir/2010/031510id1.html?hpg1=bn</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/WLaq9hG00GA/031510id1.html" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Time for spring -- and conference season</title>
    
    <updated>2010-03-12T20:51:10Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">The Experts Conference and the European Identity Conference soon to get underway&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WLaq9hG00GA:o77L2RsdTMc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WLaq9hG00GA:o77L2RsdTMc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WLaq9hG00GA:o77L2RsdTMc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=WLaq9hG00GA:o77L2RsdTMc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/WLaq9hG00GA" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.networkworld.com/newsletters/dir/2010/031510id1.html?hpg1=bn</feedburner:origLink></entry>

  <entry>
    <id>http://www.indiaprwire.com/pressrelease/information-technology/2010031145497.htm</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-B4bn1xXLA4/2010031145497.htm" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Courion Announces Incorporation of India Technology Center</title>
    
    <updated>2010-03-12T16:00:36Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">The Pune technology center will support the company's Courion Connector Program by adding to an already industry-leading library of more than 250 connectors. These connectors integrate the Access Assurance Suite with key enterprise applications to further improve support for specific industries such as healthcare, financial services, manufacturing and others.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-B4bn1xXLA4:etY4yjGX3Mc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-B4bn1xXLA4:etY4yjGX3Mc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-B4bn1xXLA4:etY4yjGX3Mc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-B4bn1xXLA4:etY4yjGX3Mc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-B4bn1xXLA4" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.indiaprwire.com/pressrelease/information-technology/2010031145497.htm</feedburner:origLink></entry>

  <entry>
    <id>http://www.itp.net/579571-taking-control-of-unstructured-data</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fc06q65bVM4/579571-taking-control-of-unstructured-data" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Taking control of unstructured data</title>
    
    <updated>2010-03-12T15:58:07Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:27Z</updated>
    </source>
  <content type="html">How data governance and defining ownership can be key to managing the problem of access to unstructured data&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fc06q65bVM4:fipM-Ri18eQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fc06q65bVM4:fipM-Ri18eQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fc06q65bVM4:fipM-Ri18eQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fc06q65bVM4:fipM-Ri18eQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fc06q65bVM4" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.itp.net/579571-taking-control-of-unstructured-data</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-123723326203782994</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/123723326203782994/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=123723326203782994&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/123723326203782994?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/123723326203782994?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/EB8w2Gqmya8/true-story-ah-we-dont-have-6000.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: True story: Ah, we don’t have 6,000 contractors working here.</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;I had a great response to my earlier true story so I thought I’d relate another one. Plus, I’m on vacation and it’s easier to recount stories than deep-think authorization, why Novell - or Banyan for that matter – were unsuccessful despite having awesome products, etc. So here goes…&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I think this took place in the winter of 1998 or 1999. I was a young VP of Sales at Zoomit Corporation tagging along on a final proof of concept for one of the largest heavy equipment manufacturers in the United States. We were asked to integrate the company’s telephone system, Windows NT directory (this was before Active Directory!), their mainframe system and employee database into our meta-directory product. If you ever done something like this you know that you set up your connectors to each of these systems and then spend the bulk of your time mapping individual identities across the various namespaces.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
In this particular case we successfully mapped (“joined”) around 60,000 employees but we found that there were approximately 6,000 names that we couldn’t find telephone numbers for. Many of these names were listed in the mainframe and being an old “mainframer” I was suspicious that they had so many mainframe accounts with no associated telephone number. Our conclusion was that the employee database didn’t include their contractors.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
When we met for the final review we presented our results and told them we found 6,000 names that were not associated with a telephone number and were not in the employee database. “Did you forget to give us access to the contractor database or was this a test of our engineers?” The company’s representatives looked at each other and finally their director said “We don’t have a contractor database. And, ah, we don’t have 6,000 contractors working here.”&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
It turns out that their mainframe staff never deleted or disabled any employees who left the company. Apparently, this had been going on for years. Now the obvious security problem had manifested itself when someone was re-hired and a few years later they were still able to log-on to the mainframe with their old credentials – exactly what happened in the previous true story. However, there was a very interesting side effect of the company finally deleting all those old accounts: Once the accounts were deleted from RACF - the mainframe security database – many batch jobs failed to run and the company got back some of their mainframe computing power. So here they were running gosh knows how many jobs that no one was ever bothering to look at. Amazing.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I’m on vacation next week too so I’ll see if I can troll around the memory banks for a few more oldies but goodies. In the meantime, here’s a picture of a new friend of mine down here in &lt;a href="http://maps.google.com/maps?hl=en&amp;amp;ie=UTF8&amp;amp;q=manasota+key,+fl&amp;amp;fb=1&amp;amp;gl=us&amp;amp;ei=Bq-ZS9LGG5G8M82q5KID&amp;amp;ved=0CBMQpQY&amp;amp;view=map&amp;amp;geocode=FRzZmgEdWGgX-w&amp;amp;split=0&amp;amp;iwloc=A&amp;amp;sa=X"&gt;Manasota Key, Florida&lt;/a&gt;…&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_jpua419xcIc/S5my3-dYSoI/AAAAAAAAvRc/QRpGnYau0jI/s1600-h/IMG_0029a.jpg" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="427" src="http://3.bp.blogspot.com/_jpua419xcIc/S5my3-dYSoI/AAAAAAAAvRc/QRpGnYau0jI/s640/IMG_0029a.jpg" width="640"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:5f3c7f99-a7c2-4bd4-b820-a528200c1bc5" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/identity+management" rel="tag"&gt;identity management&lt;/a&gt;,&lt;a href="http://technorati.com/tags/security" rel="tag"&gt;security&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Zoomit" rel="tag"&gt;Zoomit&lt;/a&gt;,&lt;a href="http://technorati.com/tags/provisioning" rel="tag"&gt;provisioning&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-123723326203782994?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/E61ErGXWUHrfP89syqDvQKK6NoY/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/E61ErGXWUHrfP89syqDvQKK6NoY/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/E61ErGXWUHrfP89syqDvQKK6NoY/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/E61ErGXWUHrfP89syqDvQKK6NoY/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/fPnORn5hT5U" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EB8w2Gqmya8:RmpbRW3jMnc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EB8w2Gqmya8:RmpbRW3jMnc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EB8w2Gqmya8:RmpbRW3jMnc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=EB8w2Gqmya8:RmpbRW3jMnc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/EB8w2Gqmya8" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T15:02:00Z</updated>
    <published>2010-03-12T15:02:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/03/true-story-ah-we-dont-have-6000.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-03-14T20:29:03Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/fPnORn5hT5U/true-story-ah-we-dont-have-6000.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-2065735580978302997</id>
    <link href="http://anil-identity.blogspot.com/feeds/2065735580978302997/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=2065735580978302997" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2065735580978302997" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2065735580978302997" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/swxCOs1Btdk/internet-is-freedom.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Internet is Freedom</title>
    <content type="html">An absolutely brilliant presentation by Lawrence Lessig on the topic of "Internet is Freedom" to the Parliament of Italy.&lt;br&gt;&lt;br&gt;&lt;a href="http://blip.tv/file/3332375"&gt;&lt;br&gt;http://blip.tv/file/3332375&lt;/a&gt;&lt;br&gt;&lt;br&gt;The "Internet is Here". It is not going away. Whatever we need to do to make it safe, we have to do. &lt;br&gt;&lt;br&gt;Please do not forget to watch the entire episode. About 30 mins.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-2065735580978302997?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=swxCOs1Btdk:A6GIe0-D1HI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=swxCOs1Btdk:A6GIe0-D1HI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=swxCOs1Btdk:A6GIe0-D1HI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=swxCOs1Btdk:A6GIe0-D1HI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/swxCOs1Btdk" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T14:54:03Z</updated>
    <published>2010-03-12T07:09:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="lessig" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-12T14:54:03Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/03/internet-is-freedom.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.superpat.com/2010/03/12/bookmarks-for-march-11th-2010/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/un_62yYZk5w/" rel="alternate" type="text/html" />
    <title>Pat Patterson - Huawei: Bookmarks for March 11th 2010</title>
    <summary type="html">These are my links for March 11th 2010:

Monitoring SOAP Messages Made Easy With JAX-WS RI 2.0.1 | Java.net – Documents a couple of system properties that make a HUGE difference to debugging SOAP apps
How to Trust Any SSL Certificate From a Java Client App – REALLY useful stuff when you just need to get things [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;These are my links for March 11th 2010:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://weblogs.java.net/blog/ramapulavarthi/archive/2006/08/monitoring_soap.html"&gt;Monitoring SOAP Messages Made Easy With JAX-WS RI 2.0.1 | Java.net&lt;/a&gt; – Documents a couple of system properties that make a HUGE difference to debugging SOAP apps&lt;/li&gt;&#xD;
&lt;li&gt;&lt;a href="http://en.wikibooks.org/wiki/WebObjects/Web_Services/How_to_Trust_Any_SSL_Certificate"&gt;How to Trust Any SSL Certificate From a Java Client App&lt;/a&gt; – REALLY useful stuff when you just need to get things working.&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/6tXFXjRMegjNsfTa6TKGcWAao0w/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/6tXFXjRMegjNsfTa6TKGcWAao0w/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/6tXFXjRMegjNsfTa6TKGcWAao0w/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/6tXFXjRMegjNsfTa6TKGcWAao0w/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/superpat/~4/cpOZGq5GQ6o" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=un_62yYZk5w:cpOZGq5GQ6o:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=un_62yYZk5w:cpOZGq5GQ6o:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=un_62yYZk5w:cpOZGq5GQ6o:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=un_62yYZk5w:cpOZGq5GQ6o:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/un_62yYZk5w" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T13:00:00Z</updated>
    <category term="Links" />
    <category term="Uncategorized" />
    <category term="debugging" />
    <category term="development" />
    <category term="glassfish" />
    <category term="http" />
    <category term="java" />
    <category term="jax-ws" />
    <category term="programming" />
    <category term="security" />
    <category term="soap" />
    <category term="ssl" />
    <category term="webservices" /><feedburner:origlink>http://blog.superpat.com/2010/03/12/bookmarks-for-march-11th-2010/</feedburner:origlink>
    <author>
      <name>Pat Patterson</name>
    </author>
    <source>
      <id>http://blog.superpat.com</id>
      <link href="http://blog.superpat.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/superpat" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Pat Patterson on Identity Management, Federation and Single Malt Scotch</subtitle>
      <title>Superpatterns</title>
      <updated>2010-03-15T01:32:36Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/superpat/~3/cpOZGq5GQ6o/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://access.jiscinvolve.org/fam-for-public-libraries/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/mz9mC9QpxV4/" rel="alternate" type="text/html" />
    <title>JISC Access Management Team: FAM for Public Libraries?</title>
    <summary type="html">I had a very interesting discussion yesterday with a colleague about how it might be possible to make federated access management work for public libraries.  As usual, it gets down to the the two basic questions of access management:

Who is managing credential information to allow authentication?
Who is authorised to access the resource?

I’ll deal with [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I had a very interesting discussion yesterday with a colleague about how it might be possible to make federated access management work for public libraries.  As usual, it gets down to the the two basic questions of access management:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Who is managing credential information to allow authentication?&lt;/li&gt;&#xD;
&lt;li&gt;Who is authorised to access the resource?&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;I’ll deal with the second question first as it is perhaps the more interesting.  I know very little about how public libraries license electronic resources, but I do know that many are underused.  To give you an idea of how the extent of information available online at libraries - have a look at &lt;a href="http://www.manchester.gov.uk/site/scripts/documents_info.php?categoryID=500140&amp;amp;documentID=110"&gt;Manchester Public Library’s e-resources&lt;/a&gt;.  &lt;/p&gt;&#xD;
&lt;p&gt;Manchester Public Library currently manages access via library barcode number - i.e. you have to be a member of the library to access that resource.  Interestingly, Manchester City Council is actually responsible for the identity management - you get passed to their website to login and then passed on to the resource.  &lt;/p&gt;&#xD;
&lt;p&gt;I wonder if the licence for Manchester Public Library is for library members, or is based on some other criteria?  The reason that this is an interesting question is that anyone in the UK is &lt;a href="http://www.manchester.gov.uk/site/scripts/documents_info.php?categoryID=200062&amp;amp;documentID=78"&gt;entitled to join&lt;/a&gt; Manchester Public Library.  I can join from my home in Surrey online, and quickly get access to all of those resources.  Fantastic for me!  Not a great business model for the publishers.  The only reason this is not a real issue is because very few people exploit these access paths.  &lt;/p&gt;&#xD;
&lt;p&gt;A different model for public libraries may be not to look at licensing for members, but licensing regionally.  Pricing is normally agreed based on regional population, but conversely access is offered to members - a set of criteria that does not add up.  &lt;/p&gt;&#xD;
&lt;p&gt;So that is authorisation.  Now, authentication.&lt;/p&gt;&#xD;
&lt;p&gt;It does make sense for public libraries to look at using FAM.  Barcode access processes are often clunky, often insecure and it is yet another system for both libraries and publishers to have to manage.  &lt;/p&gt;&#xD;
&lt;p&gt;If public libraries continue to offer access based on membership, the library or a body related to that library would have to run an Identity Provider in a federated access management environment, as they have the membership information.  It may be possible for some libraries to make use of the work being undertaken by Local Authorities to provide federated access for schools - but there will still be technical implementation costs.  &lt;/p&gt;&#xD;
&lt;p&gt;A more interesting model might be to exploit the planned interfederation between the UK federation and the Government Gateway.  This will allow people with a ‘citizen’ credential within the Government Gateway to access resources within the UK federation.  If we then assume that these citizen accounts contain some sort of standard location information (i.e. I live or work within the boundaries of Greater Manchester) it would be very easy to authorise all users against a regionally negotiated licence as opposed to a member negotiated licence.  This could be achieved with very little expenditure on technical infrastructure by libraries, local authorities or publishers, but would require a change in the way the libraries negotiate licences.  That surely has to be an interesting approach to explore?&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mz9mC9QpxV4:TkkPAwg_ZS8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mz9mC9QpxV4:TkkPAwg_ZS8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mz9mC9QpxV4:TkkPAwg_ZS8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=mz9mC9QpxV4:TkkPAwg_ZS8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/mz9mC9QpxV4" height="1" width="1"/&gt;</content>
    <updated>2010-03-12T10:21:31Z</updated>
    <category term="Authorisation" />
    <category term="Authentication" />
    <category term="Identity Management" />
    <author>
      <name>nicole</name>
    </author>
    <source>
      <id>http://access.jiscinvolve.org</id>
      <link href="http://access.jiscinvolve.org" rel="alternate" type="text/html" />
      <link href="http://access.jiscinvolve.org/feed/" rel="self" type="application/rss+xml" />
      <subtitle>moving towards federated access management</subtitle>
      <title>JISC Access Management Team</title>
      <updated>2010-03-12T10:21:31Z</updated>
    </source>
  <feedburner:origLink>http://access.jiscinvolve.org/fam-for-public-libraries/</feedburner:origLink></entry>

  <entry>
    <id>http://blog.arpitnext.com/2010/03/mozilla-online-identity-management-concept.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/br9kom7mgjw/mozilla-online-identity-management-concept.html" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Mozilla Discusses The Future Of Online Identity Management</title>
    
    <updated>2010-03-12T05:42:38Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">This concept project will develop a new way to access your accounts on different websites. It will try to develop a protocol definition that sites can use to define and maintain their account-and-session management features, and a browser implementation of this protocol. Once realized, this technology will enable users to simplify the process of accessing their accounts on supported websites.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=br9kom7mgjw:YyRrzn_e21o:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=br9kom7mgjw:YyRrzn_e21o:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=br9kom7mgjw:YyRrzn_e21o:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=br9kom7mgjw:YyRrzn_e21o:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/br9kom7mgjw" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.arpitnext.com/2010/03/mozilla-online-identity-management-concept.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-5517673643828965868</id>
    <link href="http://connectid.blogspot.com/feeds/5517673643828965868/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=5517673643828965868" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5517673643828965868?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/5517673643828965868?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Qd5wMFW02Ic/new-line-of-greeting-cards.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="304" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/GLzTkq1juJbmtlPvsIM71TYrjX5VQEPIVMmRqcDVfKD8uuJCC5COYM3WGGDc/Screen_00006.jpg" width="295"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-39"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-5517673643828965868?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/Qd5wMFW02Ic" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qd5wMFW02Ic:YTy2ClV_MXg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qd5wMFW02Ic:YTy2ClV_MXg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qd5wMFW02Ic:YTy2ClV_MXg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Qd5wMFW02Ic:YTy2ClV_MXg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Qd5wMFW02Ic" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T22:21:11Z</updated>
    <published>2010-03-11T22:21:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/new-line-of-greeting-cards.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-6459782701892304872</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/6459782701892304872/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=6459782701892304872&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/6459782701892304872?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/6459782701892304872?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/JuAyc5Kzi5Q/elliott-associates-and-takeover-of.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Elliott Associates and the takeover of Novell</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;Very interesting &lt;a href="http://www.consortiuminfo.org/standardsblog/article.php?story=20100304051547830" target="_blank"&gt;blog post by Andy Updegrove&lt;/a&gt; on this topic that you may want to read. I’ve included a few paragraphs below:&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;i&gt;…Elliott is in a far better position than Novell's board and management, or of a technology company that may make a bid, so long as Elliott retains self-discipline and walks when the bidding exceeds the internal calculation that it has already certainly made that reflects a prudent purchase.&lt;/i&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;i&gt;But these other chess players do have their own advantages.  First up, no one at Novell is going to want to be acquired by Elliott.  Why?  Because Elliott will almost certainly want to break Novell up and sell the pieces.  Indeed, while it has offered $2 billion for Novell, it has already acquired over 8% of Novell at a significant discount off that per-share bid number.  And Novell has almost $1 billion in cash.  So the rewards of a quick hit, followed by a quick breakup, make far more sense than trying to turn around the business of a company that has been struggling to reinvent itself for over 15 years.&lt;/i&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;i&gt;What that means is that one would imagine that Novell's talent will be heading for the exits in droves if the Elliott bid looks like it might succeed.  Even if Elliott convinces the target that it plans to run the Company in the long term, the prospect of being managed by a fund with a reputation as a "Vulture Capitalist" better known for buying distressed third world debt is hardly likely to inspire loyalty.&lt;/i&gt;&lt;/blockquote&gt;Check out the rest of Andy’s post. It is well worth the read.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:7cd3f864-fc31-4bc7-9ef4-f72938a4f9a7" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;span style="font-size: xx-small;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/identity+management" rel="tag"&gt;identity management&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Novell" rel="tag"&gt;Novell&lt;/a&gt;,&lt;a href="http://technorati.com/tags/NOVL" rel="tag"&gt;NOVL&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Elliott+Associates" rel="tag"&gt;Elliott Associates&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-6459782701892304872?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/9DeomCBAiWOxdigNbRn-n4FLdio/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/9DeomCBAiWOxdigNbRn-n4FLdio/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/9DeomCBAiWOxdigNbRn-n4FLdio/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/9DeomCBAiWOxdigNbRn-n4FLdio/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/XrpBYMd5pYA" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JuAyc5Kzi5Q:i_HFBwru2ms:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JuAyc5Kzi5Q:i_HFBwru2ms:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JuAyc5Kzi5Q:i_HFBwru2ms:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=JuAyc5Kzi5Q:i_HFBwru2ms:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/JuAyc5Kzi5Q" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T21:44:00Z</updated>
    <published>2010-03-11T21:44:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/03/elliott-associates-and-takeover-of.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-03-14T20:29:03Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/XrpBYMd5pYA/elliott-associates-and-takeover-of.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-2060101586738416517</id>
    <link href="http://connectid.blogspot.com/feeds/2060101586738416517/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=2060101586738416517" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/2060101586738416517?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/2060101586738416517?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/JmUXbRrTfXA/rfc-2119.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: RFC 2119</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="385" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/XBAx6FqnHCVbVGbvbKaVpTupMsIWGg0GFiTQw8NccFgEJjpoHe8nbKLBfYop/Screen_00005.jpg" width="402"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/rfc-2119"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-2060101586738416517?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/JmUXbRrTfXA" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JmUXbRrTfXA:SiS_W0J7vJ8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JmUXbRrTfXA:SiS_W0J7vJ8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JmUXbRrTfXA:SiS_W0J7vJ8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=JmUXbRrTfXA:SiS_W0J7vJ8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/JmUXbRrTfXA" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T18:56:40Z</updated>
    <published>2010-03-11T18:56:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/rfc-2119.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44470.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/JGOgmPDt8Bg/content44470.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: SILICON.COM (UK) - Alder Hey CIO on Going Paperless, Face-Recognition Tech and Putting Off Lorenzo</title>
    
    <updated>2010-03-11T16:15:45Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.silicon.com/management/cio-insights/2010/03/10/alder-hey-cio-on-going-paperless-face-recognition-tech-and-putting-off-lorenzo-39745569/&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JGOgmPDt8Bg:O3Oj_2vRLe0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JGOgmPDt8Bg:O3Oj_2vRLe0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=JGOgmPDt8Bg:O3Oj_2vRLe0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=JGOgmPDt8Bg:O3Oj_2vRLe0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/JGOgmPDt8Bg" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44470.html</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/kuppinger/2010/03/11/versatile-authentication-break-through-for-mass-adoption-of-strong-authentication/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fDW-GCx5Is8/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Versatile authentication – break-through for mass adoption of strong authentication?</title>
    
    <updated>2010-03-11T15:14:24Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">Reusing existing strong authentication technologies for more use cases makes things cheaper. Being able to use expensive very strong authentication where required but relying on other, cheaper, and appropriate technologies in other use cases reduces costs. Logistics for reused strong authentication technology is cheaper. All use cases, including external users like customers and suppliers, can be supported.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fDW-GCx5Is8:iGZyYLajChw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fDW-GCx5Is8:iGZyYLajChw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fDW-GCx5Is8:iGZyYLajChw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fDW-GCx5Is8:iGZyYLajChw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fDW-GCx5Is8" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/kuppinger/2010/03/11/versatile-authentication-break-through-for-mass-adoption-of-strong-authentication/</feedburner:origLink></entry>

  <entry>
    <id>http://blog.sailpoint.com/2010/03/gartner_iam_summit/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/z1iBjPFhL1o/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Identity Governance Builds Buzz at Gartner IAM Summit</title>
    
    <updated>2010-03-11T15:12:02Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">Two years ago, it was difficult to find many people who clearly understood the difference between what they were getting from their provisioning vendor and a true identity governance solution, so we spent a lot of time on basic education.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=z1iBjPFhL1o:flNZrL-PaMA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=z1iBjPFhL1o:flNZrL-PaMA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=z1iBjPFhL1o:flNZrL-PaMA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=z1iBjPFhL1o:flNZrL-PaMA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/z1iBjPFhL1o" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.sailpoint.com/2010/03/gartner_iam_summit/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-6926883525863811592</id>
    <link href="http://connectid.blogspot.com/feeds/6926883525863811592/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=6926883525863811592" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6926883525863811592?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/6926883525863811592?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ZhOLin6gTuw/trust-negotiation_11.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Trust negotiation</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="382" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/j5f8NCGY45PRUPaQwcaXPsa1jgUOOZ6feRyd1S95afL9tJ0eWJAG8AgNJ949/Screen_00004.jpg" width="340"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/trust-negotiation"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-6926883525863811592?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/ZhOLin6gTuw" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZhOLin6gTuw:YQ4fVMaJ2Iw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZhOLin6gTuw:YQ4fVMaJ2Iw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZhOLin6gTuw:YQ4fVMaJ2Iw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ZhOLin6gTuw:YQ4fVMaJ2Iw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ZhOLin6gTuw" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T15:00:31Z</updated>
    <published>2010-03-11T15:00:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/trust-negotiation_11.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-9083567422633753760</id>
    <link href="http://connectid.blogspot.com/feeds/9083567422633753760/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=9083567422633753760" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9083567422633753760?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9083567422633753760?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7vuk9ouSFvA/trust-negotiation.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Trust negotiation</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;img height="409" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/un8pRFgcnaGW5X46h4rOCV0mofs406jVAO1JzqmT26ovovXNJilOnxiKstpQ/Screen_00003.jpg" width="322"&gt;&lt;/img&gt;  &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/trust-negotiation"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-9083567422633753760?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/7vuk9ouSFvA" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7vuk9ouSFvA:2yvdO8XjUzo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7vuk9ouSFvA:2yvdO8XjUzo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7vuk9ouSFvA:2yvdO8XjUzo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7vuk9ouSFvA:2yvdO8XjUzo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7vuk9ouSFvA" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T14:57:51Z</updated>
    <published>2010-03-11T14:57:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/trust-negotiation.html</feedburner:origLink></entry>

  <entry>
    <id>f1397696-738c-4295-afcd-943feb885714:31312</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/u2DFKXyJSts/Study-Employees-Continue-to-Put-Data-at-Risk" rel="alternate" type="text/html" />
    <title>Courion: Study: Employees Continue to Put Data at Risk</title>
    
    <updated>2010-03-11T11:20:00Z</updated>
    <author>
      <name>Todd Chambers - CMO</name>
    </author>
    <source>
      <id>http://blog.courion.com/access_assurance_blog/</id>
      <link href="http://blog.courion.com/access_assurance_blog/" rel="alternate" type="text/html" />
      <link href="http://blog.courion.com/CMS/UI/Modules/BizBlogger/rss.aspx?tabid=89075&amp;moduleid=92273&amp;maxcount=25" rel="self" type="application/rss+xml" />
      <subtitle>RSS feeds for Courion Access Assurance Blog</subtitle>
      <title>Courion Corporation</title>
      <updated>2010-03-15T09:34:36Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Courion Access Assurance Blog&lt;/p&gt;&lt;p&gt;&lt;img align="left" alt="" border="0" height="168" src="http://blog.courion.com/Portals/41102/images//Danger.jpg" style="WIDTH: 195px; HEIGHT: 130px;" title="" width="220"&gt;&lt;/img&gt;Based on a &lt;a href="http://www.prnewswire.com/news-releases/analyst-study-shows-employees-continue-to-put-data-at-risk-87217027.html" target="_new"&gt;recent study by the research firm Ponemon Institute&lt;/a&gt; it was reported that, "Despite the best efforts of IT departments, business managers continue to disengage, or turn off, their laptops' encryption solution - exposing company information to thieves should the computer go missing."  This is a concern, especially given the increase in sensitive data being made more broadly available (electronic health records, mobile computing...) and the continuing reports of lost or stolen laptops, but there was some that I found even more concerning...&lt;/p&gt;&#xD;
&lt;p&gt;In the report was the statement, "33% of IT practitioners believe encryption makes it unnecessary to use other security measures, whereas 58 percent of business managers believe this to be the case".  One third of the IT people and over half of the business people believe that encryption is the only security measure needed? Without effective management of access, how can you truly protect sensitive information in an organization?  It's like locking a door and not being sure who has a key.&lt;/p&gt;&#xD;
&lt;p&gt;In the report Dr. Larry Ponemon does state, "This study shows that business managers may be overly reliant on encryption to keep confidential information safe and secure".  That's absolutely true and it's clear that the combination of preventive AND detective controls are required to effectively manage the risk of inappropriate access to information.&lt;/p&gt;&#xD;
&lt;p&gt;The goal of any Access Assurance strategy is to assure that only the right people get the right access to the right resources and are doing the right things with it.  So, are you taking a balanced approach?&lt;/p&gt;&lt;p&gt;blog.courion.com&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=u2DFKXyJSts:sBmqMNicias:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=u2DFKXyJSts:sBmqMNicias:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=u2DFKXyJSts:sBmqMNicias:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=u2DFKXyJSts:sBmqMNicias:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/u2DFKXyJSts" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.courion.com/access_assurance_blog/bid/31312/Study-Employees-Continue-to-Put-Data-at-Risk</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://smokingmonkey.org/?p=255</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/3Fv25fgT9-8/" rel="alternate" type="text/html" />
    <title>Daniel Raskin - Sun: Make Me a Sandwich!</title>
    <content type="html">&lt;p&gt;&lt;img src="http://imgs.xkcd.com/comics/sandwich.png"&gt;&lt;/img&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3Fv25fgT9-8:8Nc7eEGCH5s:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3Fv25fgT9-8:8Nc7eEGCH5s:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3Fv25fgT9-8:8Nc7eEGCH5s:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=3Fv25fgT9-8:8Nc7eEGCH5s:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/3Fv25fgT9-8" height="1" width="1"/&gt;</content>
    <updated>2010-03-11T00:38:29Z</updated>
    <category term="All" />
    <category term="Fun" />
    <category term="OpenSSO" />
    <author>
      <name>The Smoking Monkey</name>
    </author>
    <source>
      <id>http://smokingmonkey.org</id>
      <link href="http://smokingmonkey.org/?feed=rss2" rel="self" type="application/atom+xml" />
      <link href="http://smokingmonkey.org" rel="alternate" type="text/html" />
      <subtitle>Ponderings on Identity Management</subtitle>
      <title>The Smoking Monkey</title>
      <updated>2010-03-11T01:03:54Z</updated>
    </source>
  <feedburner:origLink>http://smokingmonkey.org/?p=255</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/infosecurity_europe_april</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lNX-kJ-E7Hc/infosecurity_europe_april" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Infosecurity Europe Stand # H40</title>
    
    <updated>2010-03-10T22:09:05Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">Join Imprivata at Infosecurity Europe. At this conference, information security professionals will meet for a 3 day event, addressing the challenges of today while preparing for those of tomorrow.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lNX-kJ-E7Hc:5TXLKKlgI_4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lNX-kJ-E7Hc:5TXLKKlgI_4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lNX-kJ-E7Hc:5TXLKKlgI_4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lNX-kJ-E7Hc:5TXLKKlgI_4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lNX-kJ-E7Hc" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/infosecurity_europe_april</feedburner:origLink></entry>

  <entry>
    <id>http://www.pingidentity.com/blogs/pingtalk/index.cfm/2010/3/10/Goggle-heats-up-OpenID</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/rC7VX1TqOXU/Goggle-heats-up-OpenID" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Google heats up OpenID</title>
    
    <updated>2010-03-10T21:23:09Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">OpenID and OAuth will work in tandem to provide single sign-on to third-party applications that are OpenID relying parties.

In fact, the recommendation from Google is that application developers simply provide a button that says "Sign in using a Google Apps account" instead of presenting a log-in box.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rC7VX1TqOXU:PYu8L3N_YOI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rC7VX1TqOXU:PYu8L3N_YOI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rC7VX1TqOXU:PYu8L3N_YOI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=rC7VX1TqOXU:PYu8L3N_YOI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/rC7VX1TqOXU" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.pingidentity.com/blogs/pingtalk/index.cfm/2010/3/10/Goggle-heats-up-OpenID</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-2592080695114387736</id>
    <link href="http://anil-identity.blogspot.com/feeds/2592080695114387736/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=2592080695114387736" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2592080695114387736" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/2592080695114387736" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/73v0O8ecZYM/oasis-identity-in-cloud-technical.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Oasis Identity In The Cloud Technical Committee</title>
    <content type="html">I am pleased to have ignited the establishment of a new Technical Committee called as "Oasis Identity In The Cloud" at the Oasis standards consortium. Prominent security experts in the industry were gracious to participate in the initial brainstorming group I created.&lt;br&gt;&lt;br&gt;You can read more on the charter here: &lt;a href="http://lists.oasis-open.org/archives/oasis-charter-discuss/201002/msg00000.html"&gt;IDCloud Charter&lt;/a&gt;&lt;br&gt;&lt;br&gt;Apart from Red Hat, the proposers of the TC include Microsoft, IBM, CA, Novell, Rackspace, SafeNet, Yaana Technologies along with a few prominent individuals in the security/identity space. I am sure the proposer list will grow in a few days.&lt;br&gt;&lt;br&gt;If you are an Oasis member or your company is an Oasis member, you should definitely look at joining this effort.&lt;br&gt;&lt;br&gt;More details and a call for participation will be announced by the Oasis consortium in a few days.&lt;br&gt;&lt;br&gt;Keywords:  Oasis Cloud Security.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-2592080695114387736?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=73v0O8ecZYM:ktESga-I608:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=73v0O8ecZYM:ktESga-I608:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=73v0O8ecZYM:ktESga-I608:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=73v0O8ecZYM:ktESga-I608:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/73v0O8ecZYM" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T21:20:11Z</updated>
    <published>2010-03-10T21:12:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="identity_cloud_computing" />
    <category scheme="http://www.blogger.com/atom/ns#" term="cloud" />
    <category scheme="http://www.blogger.com/atom/ns#" term="oasis" />
    <category scheme="http://www.blogger.com/atom/ns#" term="cloudsecurity" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-12T14:54:03Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/03/oasis-identity-in-cloud-technical.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-8769044485534473749</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/8769044485534473749/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=8769044485534473749&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/8769044485534473749?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/8769044485534473749?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/jDWiZxreeKY/true-story-after-being-away-2-years-i.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: True story: After being away 2 years I wish I was de-provisioned!</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;This is a true story. Names have been changed to protect the innocent.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I had lunch with my friend “Jason” from Universal Widgets last week. We hadn’t talked for more than two years and Jason’s first comment was “Did you know I left Universal to go work for Galactic Widgets but I’ve gone back to Universal Widgets?” I was surprised because I had missed out on what my friend was up to for more than two years. But, here we were back at the beginning again. Anyway, we had a good discussion about what each of us were up to but the most interesting part of Jason’s story was his answer to this question: “How was your return to Universal?”&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Jason answered that they hadn’t allocated his desk to anyone else so it looked as if a “Jason shrine” had developed while he was gone. “But the worse part of my return was that I was able to logon with my old userid and password!” Where had I heard this before? However, rather than agreeing with me Jason’s comment was: “The worse part was when I started Outlook and I had 25,000 unread messages!”&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I guess there can be some things even worse than a security compromise with not being de-provisioned and that’s coming back to two years worth of unread e-mails! I think Jason is still too busy deleting messages to answer his phone…&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:107f5147-28bb-4e8a-aec9-c57ab3aa479c" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;span style="font-size: xx-small;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/identity+management" rel="tag"&gt;identity management&lt;/a&gt;,&lt;a href="http://technorati.com/tags/provisioning" rel="tag"&gt;provisioning&lt;/a&gt;,&lt;a href="http://technorati.com/tags/security" rel="tag"&gt;security&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-8769044485534473749?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/1YqFibC5sbmVZF-IM5kcqkERYoM/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/1YqFibC5sbmVZF-IM5kcqkERYoM/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/1YqFibC5sbmVZF-IM5kcqkERYoM/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/1YqFibC5sbmVZF-IM5kcqkERYoM/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/0KFFi1FEfro" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jDWiZxreeKY:7lw5DPtVPYQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jDWiZxreeKY:7lw5DPtVPYQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jDWiZxreeKY:7lw5DPtVPYQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=jDWiZxreeKY:7lw5DPtVPYQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/jDWiZxreeKY" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T20:30:00Z</updated>
    <published>2010-03-10T20:30:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/03/true-story-after-being-away-2-years-i.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-03-14T20:29:03Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/0KFFi1FEfro/true-story-after-being-away-2-years-i.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.dirmgr.com/blog/2010/3/10/large-result-sets-in-the-ldap-sdk.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/y3Nj7wLZ15k/large-result-sets-in-the-ldap-sdk.html" rel="alternate" type="text/html" />
    <title>Neil Wilson - UnboundID: Large result sets in the LDAP SDK</title>
    <content type="html" xml:lang="en-US">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
  One of the things that I think is particularly nice about the UnboundID LDAP SDK for Java is the way that it allows you to perform a search and have it collect the matching entries in a list that is available in the search result.  However, this is really only well suited for cases in which you're sure that you won't get a huge number of entries returned because otherwise the need to hold all of the matching entries at once can cause significant memory problems.&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
  However, if you are going to be dealing with large search result sets, then the LDAP SDK provides a couple of additional APIs that may be of use.  The &lt;tt&gt;&lt;a href="http://www.unboundid.com/products/ldapsdk/docs/javadoc/com/unboundid/ldap/sdk/SearchResultListener.html"&gt;SearchResultListener&lt;/a&gt;&lt;/tt&gt; interface defines methods that can be invoked whenever an entry or reference is returned by the server that allows you to act on that entry or reference as soon as it is received.  I've had a number of people ask for an example of how to use this interface, so I've created a simple program, &lt;tt&gt;&lt;a href="http://www.dirmgr.com/storage/WriteAttrToFileUsingListener.java"&gt;WriteAttrToFileUsingListener.java&lt;/a&gt;&lt;/tt&gt;, that you can use to accomplish this.  It's a pretty simple program that performs a search to retrieve all entries containing a specified attribute, and then writes all of the values for that attribute to a specified output file.  It's a little more complex than it absolutely needs to be in order to demonstrate just the &lt;tt&gt;SearchResultListener&lt;/tt&gt; interface, but it also serves as a nice example of the &lt;tt&gt;&lt;a href="http://www.unboundid.com/products/ldapsdk/docs/javadoc/com/unboundid/util/LDAPCommandLineTool.html"&gt;LDAPCommandLineTool&lt;/a&gt;&lt;/tt&gt; API that you can use to easily write command-line utilities that need to talk to a directory server.&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
  We also have another class, &lt;tt&gt;&lt;a href="http://www.unboundid.com/products/ldapsdk/docs/javadoc/com/unboundid/ldap/sdk/LDAPEntrySource.html"&gt;LDAPEntrySource&lt;/a&gt;&lt;/tt&gt;, which can be used to make dealing with large result sets easier.  This class provides an implementation of the &lt;tt&gt;&lt;a href="http://www.unboundid.com/products/ldapsdk/docs/javadoc/com/unboundid/ldap/sdk/EntrySource.html"&gt;EntrySource&lt;/a&gt;&lt;/tt&gt; API (which makes it easy to iterate across entries in a common way regardless of how they were obtained, like returned as search results or read from an LDIF file), and you can treat it kind of like an iterator across search entries.  I've created another version of the example program, &lt;tt&gt;&lt;a href="http://www.dirmgr.com/storage/WriteAttrToFileUsingEntrySource.java"&gt;WriteAttrToFileUsingEntrySource.java&lt;/a&gt;&lt;/tt&gt;, that demonstrates how to use the &lt;tt&gt;LDAPEntrySource&lt;/tt&gt; as an alternative to &lt;tt&gt;SearchResultListener&lt;/tt&gt; to achieve the same result.&#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=y3Nj7wLZ15k:RIl43Y_bkgA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=y3Nj7wLZ15k:RIl43Y_bkgA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=y3Nj7wLZ15k:RIl43Y_bkgA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=y3Nj7wLZ15k:RIl43Y_bkgA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/y3Nj7wLZ15k" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T18:37:30Z</updated>
    <published>2010-03-10T18:37:30Z</published>
    <category term="Directory/Identity" />
    <category term="Java" />
    <category term="LDAP" />
    <category term="Open Source" />
    <category term="UnboundID" />
    <author>
      <name>Neil A. Wilson (dirmgr)</name>
    </author>
    <source>
      <id>http://www.dirmgr.com/blog/</id>
      <link href="http://www.dirmgr.com/blog/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.dirmgr.com/blog/atom.xml" rel="self" type="application/atom+xml" />
      <subtitle>Blog</subtitle>
      <title>cn=Directory Manager Blog</title>
      <updated>2010-03-15T07:36:51Z</updated>
    </source>
  <feedburner:origLink>http://www.dirmgr.com/blog/2010/3/10/large-result-sets-in-the-ldap-sdk.html</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/oracle_and_sun_directory_services</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/cfZNfrIF6-0/oracle_and_sun_directory_services" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: Oracle and Sun Directory Services...</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt; &lt;a href="http://blogs.oracle.com/mwilcox/" title="Mark Wilcox's blog"&gt;Mark Wilcox&lt;/a&gt;, principal product manager for Oracle Virtual Directory has posted an &lt;a href="http://blogs.oracle.com/mwilcox/2010/02/the_initial_oracle_and_sun_dir.html" title="Mark on Oracle and Sun directory services"&gt;initial update with regards to Oracle and Sun directory services&lt;/a&gt;.&#xD;
&lt;br&gt;Nothing really detailed so far, but it's good place to post your comments on  the &lt;a href="http://blog.talkingidentity.com/2010/01/expanding-on-the-oracle-sun-idm-strategy.html" title="Oracle + Sun IDM strategy summary"&gt;Oracle + Sun Identity Management Strategy&lt;/a&gt; and more specifically regarding directory services.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
To me and my coworkers, the most important messages are :&#xD;
&lt;/p&gt;&#xD;
  &lt;blockquote&gt;&#xD;
We are going to continue to offer both Oracle Internet Directory&lt;strong&gt;AND &lt;/strong&gt;Sun Directory Server Enterprise Edition&#xD;
&lt;/blockquote&gt;&#xD;
  &lt;p&gt;&#xD;
and&#xD;
&lt;/p&gt;&#xD;
  &lt;blockquote&gt;&#xD;
OpenDS will remain an open-source project&#xD;
&lt;/blockquote&gt;&#xD;
  &lt;p&gt;&#xD;
Details are still being discussed and ironed out, but I hope to be able to share them soon. Stay tuned !&#xD;
&lt;/p&gt; &lt;!-- technorati tags start --&gt;&#xD;
  &lt;p&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/dsee" rel="tag"&gt;dsee&lt;/a&gt;, &lt;a href="http://technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/opends" rel="tag"&gt;opends&lt;/a&gt;, &lt;a href="http://technorati.com/tag/oracle" rel="tag"&gt;oracle&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:erflWLVVO0c:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:erflWLVVO0c:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cfZNfrIF6-0:erflWLVVO0c:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=cfZNfrIF6-0:erflWLVVO0c:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/cfZNfrIF6-0" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T17:03:55Z</updated>
    <published>2010-02-05T16:30:29Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <category scheme="http://roller.apache.org/ns/tags/" term="directory-server" />
    <category scheme="http://roller.apache.org/ns/tags/" term="dsee" />
    <category scheme="http://roller.apache.org/ns/tags/" term="identity" />
    <category scheme="http://roller.apache.org/ns/tags/" term="ldap" />
    <category scheme="http://roller.apache.org/ns/tags/" term="opends" />
    <category scheme="http://roller.apache.org/ns/tags/" term="oracle" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-03-10T17:03:55Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/oracle_and_sun_directory_services</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/the_basics_of_flash_memory</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/9wJuITIrv3Q/the_basics_of_flash_memory" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: The basics of Flash Memory</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
These days, everybody get excited with Solid State Disks, flash memory and the performance improvements they have over other mass storage solutions.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.sun.com/storage/disk_systems/sss/f20/" title="Sun Flash Accelerator F20 PCIe Card"&gt;&lt;img align="left" alt="Sun F20 Flash accelerator board" src="http://www.sun.com/images/k3/k3_flash-accelerator-f20_1.jpg" width="150"&gt;&lt;/img&gt;&lt;/a&gt;We've been running some benchmarks of &lt;a href="http://www.sun.com/software/products/directory_srvr_ee/" title="DSEE"&gt;Sun Oracle Directory Server 7.0&lt;/a&gt; leveraging new Sun flash based hardware modules. Before we go in details about their benefits, my colleague &lt;a href="http://www.thezonemanager.com/" title="Brad's blog"&gt;Brad Diggs&lt;/a&gt; posted a very educational article on the &lt;a href="http://www.thezonemanager.com/2010/02/flash-memory-basics.html" title="Flash Memory Basics"&gt;basics of Flash Memory&lt;/a&gt; to set a common understanding of the technology.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
Read on and get ready for more data points on how ZFS and Flash Memory can improve Directory Server performances and scalability.&#xD;
&lt;/p&gt; &lt;!-- technorati tags start --&gt;&#xD;
  &lt;p&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/dsee" rel="tag"&gt;dsee&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/performance" rel="tag"&gt;performance&lt;/a&gt;, &lt;a href="http://technorati.com/tag/zfs" rel="tag"&gt;zfs&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:_jGNIbS5-B0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:_jGNIbS5-B0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9wJuITIrv3Q:_jGNIbS5-B0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=9wJuITIrv3Q:_jGNIbS5-B0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/9wJuITIrv3Q" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T17:03:23Z</updated>
    <published>2010-02-08T11:44:10Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <category scheme="http://roller.apache.org/ns/tags/" term="directory-server" />
    <category scheme="http://roller.apache.org/ns/tags/" term="dsee" />
    <category scheme="http://roller.apache.org/ns/tags/" term="ldap" />
    <category scheme="http://roller.apache.org/ns/tags/" term="performance" />
    <category scheme="http://roller.apache.org/ns/tags/" term="zfs" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-03-10T17:03:55Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/the_basics_of_flash_memory</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/directory_service_performance_optimization_strategy</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/pQ4v0M4VSgo/directory_service_performance_optimization_strategy" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: Directory Service Performance Optimization Strategy: Data Priming</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
Directory servers usually run for long period of times and have stable performances as all caches are warmed by the traffic. But how to get optimum performances as fast as possible right after starting the server ? &lt;a href="http://www.thezonemanager.com/" title="Brad's blog"&gt;Brad Diggs&lt;/a&gt; has published &lt;a href="http://www.thezonemanager.com/2010/02/directory-data-priming-strategies.html"&gt;Directory Data Priming Strategies&lt;/a&gt;, another blog post added to the series of articles on &lt;a href="http://www.sun.com/software/products/directory_srvr_ee/" title="DSEE 7"&gt;Sun (now Oracle) Directory Server Enterprise Edition 7&lt;/a&gt;, ZFS and Flash Technologies.&#xD;
&lt;/p&gt; &lt;!-- technorati tags start --&gt;&#xD;
  &lt;p&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/dsee" rel="tag"&gt;dsee&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/performance" rel="tag"&gt;performance&lt;/a&gt;, &lt;a href="http://technorati.com/tag/zfs" rel="tag"&gt;zfs&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pQ4v0M4VSgo:5k3T_tLkIkw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pQ4v0M4VSgo:5k3T_tLkIkw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pQ4v0M4VSgo:5k3T_tLkIkw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=pQ4v0M4VSgo:5k3T_tLkIkw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/pQ4v0M4VSgo" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T17:02:51Z</updated>
    <published>2010-02-15T15:11:24Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <category scheme="http://roller.apache.org/ns/tags/" term="directory-server" />
    <category scheme="http://roller.apache.org/ns/tags/" term="dsee" />
    <category scheme="http://roller.apache.org/ns/tags/" term="ldap" />
    <category scheme="http://roller.apache.org/ns/tags/" term="performance" />
    <category scheme="http://roller.apache.org/ns/tags/" term="zfs" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-03-10T17:03:55Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/directory_service_performance_optimization_strategy</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2010/03/the_power_of_pull.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/UgXIj-mV6YU/the_power_of_pull.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: The Power of Pull</title>
    <summary xml:lang="en" type="html">This week on the Technometria podcast, Scott and I talk to David Siegel, the author of The Power of Pull. David talked to me one or two times quite a while back about identity as he was researching this...</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;!-- title: 
The Power of Pull
--&gt;&#xD;
&lt;!-- category: newsletter --&gt;&#xD;
&lt;!-- keywords: 
pull, semantic+web, data, standards
--&gt;&#xD;
&lt;a href="http://itc.conversationsnetwork.org/shows/detail4428.html"&gt;&lt;img align="right" alt="David Siegel" border="0" hspace="3" src="http://assets.conversationsnetwork.org/showimages/4428.jpg" style="margin-top: 10px;" title="David Siegel" vspace="3"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
&lt;p&gt;&#xD;
This week on the &lt;a href="http://itc.conversationsnetwork.org/shows/detail4428.html"&gt;Technometria podcast&lt;/a&gt;, Scott and I talk to &lt;a href="http://thepowerofpull.com/what/introduction"&gt;David Siegel&lt;/a&gt;, the author of &lt;a href="http://www.amazon.com/exec/obidos/ASIN/1591842778/superpatterns-20"&gt;The Power of Pull&lt;/a&gt;.  David talked to me one or two times quite a while back about identity as he was researching this book, but I didn't really know what the book was about or why he cared about identity.  In appreciation, he sent me a copy of the book when it came out and I left it sitting on my desk for a number of weeks before I picked it up. When I did, I was blown away.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
I'm certain that the podcast won't do justice to the material in the book--you have to read it for the full impact--but maybe it will give you and idea of why this is such an important work.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;a href="http://www.amazon.com/exec/obidos/ASIN/1591842778/superpatterns-20"&gt;&lt;img align="right" border="0" hspace="5" src="http://images.amazon.com/images/P/1591842778.01.MZZZZZZZ.jpg" style="margin-top: 10px;" vspace="5"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
&lt;p&gt;&#xD;
For years, we've heard about the semantic web and mostly it's been a bunch of talk about RDF, ontologies, and so on.  David's talking about the semantic web, but he does it by telling us how our lives will change when data is portable and systems can manage it without constant interaction with us.  These changes--and they're inevitable--will change everything from health to commerce to how we play golf.  What struck me as I've read the book was the shear ubiquity of the impact.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The title, Pull, comes from the central idea of the book that more and more people will pull things to them, rather than being at the receiving end of a push.  I wrote about what that will mean to commerce in a blog post called &lt;a href="http://www.windley.com/archives/2010/03/building_fourth_party_apps_with_kynetx.shtml"&gt;Building Fourth Party Apps with Kynetx&lt;/a&gt; where I borrowed Doc Searls metaphor of the sewage pump as an apt descriptor for the current regime.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
When I think of the changes that the Internet has caused in the last 15 years, I'm amazed, but I also realize that we're just getting a good start.  There are myriad changes yet to happen and David has done a great job in this book of laying out what the next set of changes are likely to be, why they'll happen, and what it will mean for individuals and businesses.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The bottom line: this is the most interesting tech book I've read in a long time. I bought eight copies and spread them around the office because I wanted everyone at Kynetx to read it. You should read it too.   &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UgXIj-mV6YU:io07ZHoFAxQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UgXIj-mV6YU:io07ZHoFAxQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UgXIj-mV6YU:io07ZHoFAxQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=UgXIj-mV6YU:io07ZHoFAxQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/UgXIj-mV6YU" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T16:54:52Z</updated>
    <published>2010-03-10T15:11:49Z</published>
    <category term="pull, semantic+web, data, standards, identity," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2010-03-10T16:54:52Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2010/03/the_power_of_pull.shtml</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.sun.com/Ludo/entry/opends_tab_sweep1</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/KT_YfQ9Mc20/opends_tab_sweep1" rel="alternate" type="text/html" />
    <title>Ludovic Poitou - Sun: OpenDS Tab Sweep</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
It's been a while since I last posted an OpenDS tab sweep. So here's a list of news and pointers related to our &lt;a href="http://www.opends.org/" title="OpenDS, the open source LDAP directory server in Java"&gt;open source LDAP directory server&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://pcquest.ciol.com/" title="PCQuest online"&gt;PCQuest&lt;/a&gt; Top Story this month is about the &lt;a href="http://pcquest.ciol.com/content/topstories/2010/110030301.asp" title="Top 10 Enterprise Open Source Applications"&gt;Top 10 Enterprise Open Source Apps&lt;/a&gt;, which include OpenDS and an article on &lt;a href="http://pcquest.ciol.com/content/topstories/2010/110030401.asp" title="Managing Identities with OpenDS - A PCQuest article."&gt;Managing Identities with OpenDS&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
The OpenDS project is starting to demonstrate its maturity. Several startups and software companies are now officially supporting OpenDS.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;img align="right" alt="Iconcurldapintegration" border="0" height="239" hspace="10" src="http://blogs.sun.com/Ludo/resource/iConcurLDAPIntegration.jpg" vspace="0" width="200"&gt;&lt;/img&gt;&lt;a href="http://www.iconcur-software.com/index.html" title="iConcur Software"&gt;iConcur Software&lt;/a&gt; delivers new &lt;a href="http://www.iconcur-software.com/solutions.html" title="iConcur Software Axiom"&gt;Axiom&lt;/a&gt; a Requirements management tool integrates by default with OpenDS.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.bonitasoft.com/"&gt;Bonitasoft&lt;/a&gt;, the leader in open source Business Process Management (BPM) and a Grenoble based company, uses OpenDS for testing its support of LDAP repositories and praises it to its own customers, for its ease of use. Ask &lt;a href="http://twitter.com/rodrigue"&gt;@rodrigue&lt;/a&gt; !&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.symeos.com/"&gt;Symeos&lt;/a&gt;, another high profile French startup is building its &lt;a href="http://www.symeos.com/web/guest/symeos-appliance-framework"&gt;Symeos Appliance Framework on open source projects including GlassFish, OpenSSO and OpenDS&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.janua.fr/index.htm"&gt;Janua&lt;/a&gt;, a French IT services company specialized in identity projects has included OpenDS in its product offering and has just launched a new site for its &lt;a href="http://www.ldaptools.com/index.htm"&gt;LDAPTools&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.sopera.de/en/" title="Sopera, open source SOA"&gt;Sopera&lt;/a&gt;, a german company building open source SOA is integrating OpenDS in its development tools and offering, as shown on the screenshot below (courtesy of SpringSource) &#xD;
&lt;/p&gt;&#xD;
  &lt;p&gt; &lt;a href="http://www.springsource.com/files/uploads/all/images/exchange/sopera/SOPERA_ASF_ToolSuite_DevBox.PNG" title="SOPERA ASF ToolSuite screenshot on SpringSource.com"&gt;&lt;img align="middle" alt="SOPERA ASF ToolSuite partial screenshot" border="0" height="210" hspace="10" src="http://blogs.sun.com/Ludo/resource/SOPERA_ASFToolSuite.jpg" title="SOPERA ASF ToolSuite partial screenshot" vspace="5" width="340"&gt;&lt;/img&gt;&lt;/a&gt; &lt;/p&gt;&#xD;
  &lt;p&gt;&#xD;
Also in the recent days a couple of new LDAP browsers appeared.&#xD;
&lt;/p&gt;&#xD;
  &lt;ul&gt; &#xD;
    &lt;li&gt;Symlabs announced a&lt;a href="http://symlabs.com/products/ldap-browser/" title="Symlabs free LDAP browser"&gt; Free LDAP Browser&lt;/a&gt;, tested to work against many directory servers including Sun Directory Server Enterprise Edition, Oracle Internet Directory and OpenDS. The browser is currently available for Solaris, Linux and Windows.&lt;/li&gt; &#xD;
    &lt;li&gt;For the developers who are using NetBeans, &lt;a href="http://blogs.i2m.dk/allan/"&gt;Allan Lykke Christensen&lt;/a&gt; is rapidly developing a &lt;a href="http://code.google.com/p/nb-ldap-explorer/" title="NB Ldap explorer"&gt;Maven-based NetBeans module for exploring LDAP services from within NetBeans&lt;/a&gt;. The plugin works well with OpenDS, but is currently only offering a read only view of the data.&lt;/li&gt; &#xD;
  &lt;/ul&gt;&#xD;
  &lt;p&gt;&#xD;
Finally, in a introductory article titled &lt;a href="http://www.webadminblog.com/index.php/2010/03/05/microsoft-azure-for-dummies-or-for-smarties/"&gt;Microsoft Azure for the Dummies&lt;/a&gt;, Ernest regrets the lack of flexibility in the PaaS plans from Microsoft and suggest that Java based OpenDS directory Server as a good alternative for running your own LDAP service on MS infrastructure.&#xD;
&lt;/p&gt; &lt;!-- technorati tags start --&gt;&#xD;
  &lt;p&gt;Technorati Tags: &lt;a href="http://technorati.com/tag/directory-server" rel="tag"&gt;directory-server&lt;/a&gt;, &lt;a href="http://technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://technorati.com/tag/ldap" rel="tag"&gt;ldap&lt;/a&gt;, &lt;a href="http://technorati.com/tag/opends" rel="tag"&gt;opends&lt;/a&gt;, &lt;a href="http://technorati.com/tag/opensource" rel="tag"&gt;opensource&lt;/a&gt;, &lt;a href="http://technorati.com/tag/software" rel="tag"&gt;software&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=KT_YfQ9Mc20:AY-r7nbjXjg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=KT_YfQ9Mc20:AY-r7nbjXjg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=KT_YfQ9Mc20:AY-r7nbjXjg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=KT_YfQ9Mc20:AY-r7nbjXjg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/KT_YfQ9Mc20" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T16:37:11Z</updated>
    <published>2010-03-10T15:12:41Z</published>
    <category label="Directory Services" term="/Directory Services" />
    <category scheme="http://roller.apache.org/ns/tags/" term="directory-server" />
    <category scheme="http://roller.apache.org/ns/tags/" term="identity" />
    <category scheme="http://roller.apache.org/ns/tags/" term="ldap" />
    <category scheme="http://roller.apache.org/ns/tags/" term="opends" />
    <category scheme="http://roller.apache.org/ns/tags/" term="opensource" />
    <category scheme="http://roller.apache.org/ns/tags/" term="software" />
    <author>
      <name>Ludo</name>
    </author>
    <source>
      <id>http://blogs.sun.com/Ludo/feed/entries/atom</id>
      <link href="http://blogs.sun.com/Ludo/feed/entries/atom" rel="self" type="application/atom+xml" />
      <link href="http://blogs.sun.com/Ludo/" rel="alternate" type="text/html" />
      <subtitle>Ludovic Poitou's blog</subtitle>
      <title>Ludo's sketches</title>
      <updated>2010-03-10T17:03:55Z</updated>
    </source>
  <feedburner:origLink>http://blogs.sun.com/Ludo/entry/opends_tab_sweep1</feedburner:origLink></entry>

  <entry>
    <id>tag:typepad.com,2003:post-6a00d83452381c69e201310f873405970c</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ucTtebZOxCQ/google-apps-marketplace-seamless-is-the-move.html" rel="alternate" type="text/html" />
    <link href="http://ceppi.blogs.com/arbitrage/2010/03/google-apps-marketplace-seamless-is-the-move.html" rel="replies" type="text/html" />
    <title>Chris Ceppi - Ping Identity: Google Apps Marketplace - Seamless is the Move</title>
    <summary type="html">I walked out of the Google Apps Marketplace launch last night in Mountain View convinced of a couple of things. One, Google consistently gives out cool schwag, caters well, and runs some of the best lit PR events in the...</summary>
    <content type="html" xml:lang="en-US">&lt;p&gt;I walked out of the Google Apps Marketplace launch last night in Mountain View convinced of a couple of things. One, Google consistently gives out cool schwag, caters well, and runs some of the best lit PR events in the tech space. Perhaps as important, with the new Marketplace, Google has extended the same degree of hospitality on the Apps front and in doing so, they have established a new standard for how business users should expect to use applications. The Google Apps Marketplace is a retail storefront and a set of APIs that enables a bundling of tightly integrated SaaS applications. The apps demoed last night represented a range of business processes from Intuit's payroll to Atlassian's product management to a force.com CRM app from &lt;a href="http://blog.appirio.com/2010/03/google-campfire-one-enterprise-apps-get.html?utm_source=feedburner&amp;amp;utm_medium=twitter&amp;amp;utm_campaign=Feed%3A+appirioblog+%28The+CIO%27s+Guide+to+Cloud+Computing+and+On-Demand%29" target="_blank"&gt;Appirio&lt;/a&gt; - all showed seamless integration with Google Apps such as GMail, Calendar, Chat and all kept the user completely in the browser for all tasks. &lt;/p&gt;&lt;p&gt;From an Identity standpoint, Google has positioned Single Sign On as a default integration point.  &lt;/p&gt;&lt;p&gt;&lt;img alt="" src="file://Users/chris/Library/Caches/TemporaryItems/moz-screenshot.png"&gt;&lt;/img&gt;&lt;a href="http://ceppi.blogs.com/.a/6a00d83452381c69e20120a9206525970b-pi" style="display: inline;"&gt;&lt;img alt="Appslogin" border="0" class="asset asset-image at-xid-6a00d83452381c69e20120a9206525970b image-full " src="http://ceppi.blogs.com/.a/6a00d83452381c69e20120a9206525970b-800wi" title="Appslogin"&gt;&lt;/img&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;The Apps Marketplace model lets users move into and out of all manner of secured business applications without logging in over and over. Removing logins from the flow is a huge step forward in usability. By putting SSO front and center, Google has established seamless SSO integration across multiple apps as an expected part of the user experience - other competing Cloud platforms will likely follow suit. More tightly integrated apps and less logins is all good news for end users. &lt;/p&gt;&lt;p&gt;On a personal note, it's great to see the vision for seamless access to Cloud applications that we have been working on at &lt;a href="http://www.pingidentity.com"&gt;Ping Identity&lt;/a&gt; get mainstreamed by Google. We've collaborated closely with the team at Google to develop secure solutions that make it simple for SaaS vendors to plug into the Google Apps Marketplace. Look us up if you'd like more detail on how it all works.&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogs/kare/~4/O563stbxny4" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ucTtebZOxCQ:85LbOPgvz3w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ucTtebZOxCQ:85LbOPgvz3w:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ucTtebZOxCQ:85LbOPgvz3w:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ucTtebZOxCQ:85LbOPgvz3w:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ucTtebZOxCQ" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T15:34:09Z</updated>
    <published>2010-03-10T15:34:09Z</published><feedburner:origlink>http://ceppi.blogs.com/arbitrage/2010/03/google-apps-marketplace-seamless-is-the-move.html</feedburner:origlink>
    <author>
      <name>Chris Ceppi</name>
    </author>
    <source>
      <id>tag:typepad.com,2003:weblog-91311</id>
      <link href="http://ceppi.blogs.com/arbitrage/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/blogs/kare" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Chris Ceppi's Blog</subtitle>
      <title>Arbitrage</title>
      <updated>2010-03-10T15:34:09Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/blogs/kare/~3/O563stbxny4/google-apps-marketplace-seamless-is-the-move.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6751</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/NO9kOlUahr8/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: Spring break @ Case week</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;This is when everyone can get work done - when the students are away!&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://defendyoungstown.blogspot.com/2010/03/major-economic-development-news-sweeps.html"&gt;Congrats to John Slanina on a job - in Youngstown!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;&lt;a href="http://sethgodin.typepad.com/seths_blog/2010/03/losing-andrew-carnegie.html"&gt;“Take away my people, but leave my factories and soon grass will grow on the factory floors……Take away my factories, but leave my people and soon we will have a new and better factory.” - Andrew Carnegie&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/06/jeffJarvisAndBloggercon.html"&gt;BloggerCon redux&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.techcrunchit.com/2010/03/08/the-buzz-campaign/"&gt;The Buzz campaign&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.zylstra.org/blog/archives/2010/03/tim_berners_lee.html"&gt;The year Open Data went worldwide&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.readwriteweb.com/start/2010/03/startup-demo-contests-not-just-for-the-valley-anymore.php?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+readwriteweb+%28ReadWriteWeb%29"&gt;MidVentures25 got some press&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.kauffman.org/KauffmanMultimedia.aspx?VideoId=68373973001&amp;amp;type=B&amp;amp;SearchType=All%20Types"&gt;Jon Medved on Entrepreneurism b’Israel&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://toni.org/2010/03/08/5-reasons-why-your-company-should-be-distributed/"&gt;5 reasons why your company should be distributed&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.hyperorg.com/blogger/2010/03/07/moi-2b2k-interview-on-universities-and-open-access/"&gt;Universities and Open Access - interview with David Weinberger&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/05/aliceInWonderland.html"&gt;Dave is upset that they watered down Alice, made it more palatable for American/mainstream palettes&lt;/a&gt;.  My daughters enjoyed it - regardless.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://venturebeat.com/2010/03/08/nyt-nytimes-hiring/"&gt;NYTimes is hiring&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://jaycut.com/"&gt;JayCut - white labeled on-line video editor with Open APIs&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://paidcontent.org/article/419-court-approves-quick-resolution-to-penton-bankruptcy/"&gt;Penton Publishing is bankrupt - just walked away from $270M in debt&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://news.cnet.com/8301-30686_3-10465098-266.html"&gt;100 mbps coverage coming - en masse&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://mashable.com/2010/03/08/iron-man-2-trailer/"&gt;IronMan 2 trailer&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://prezi.com/"&gt;Prezi&lt;/a&gt;, &lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;Reaktor 5,&lt;/a&gt; &lt;a href="http://www.readwriteweb.com/start/2010/03/crowdspring-adds-writing-jobs-to-creative-services-marketplace.php?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+readwriteweb+%28ReadWriteWeb%29"&gt;CrowdSpring&lt;/a&gt;, &lt;a href="http://jaycut.com/"&gt;JayCut&lt;/a&gt;, &lt;a href="http://www.nyc.gov/html/datamine/html/data/organizations.shtml"&gt;the NYC Data mine&lt;/a&gt;, &lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;&lt;/a&gt;&lt;a href="http://ostatic.com/blog/filling-the-gap-open-clip-art-library-provides-more-than-26-000-images"&gt;Open Clip Art Library&lt;/a&gt;, sfe&lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;This is when everyone can get work done - when the students are away!&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://defendyoungstown.blogspot.com/2010/03/major-economic-development-news-sweeps.html"&gt;Congrats to John Slanina on a job - in Youngstown!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p style="padding-left: 30px;"&gt;&lt;a href="http://sethgodin.typepad.com/seths_blog/2010/03/losing-andrew-carnegie.html"&gt;“Take away my people, but leave my factories and soon grass will grow on the factory floors……Take away my factories, but leave my people and soon we will have a new and better factory.” - Andrew Carnegie&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/06/jeffJarvisAndBloggercon.html"&gt;BloggerCon redux&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.techcrunchit.com/2010/03/08/the-buzz-campaign/"&gt;The Buzz campaign&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.zylstra.org/blog/archives/2010/03/tim_berners_lee.html"&gt;The year Open Data went worldwide&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.readwriteweb.com/start/2010/03/startup-demo-contests-not-just-for-the-valley-anymore.php?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+readwriteweb+%28ReadWriteWeb%29"&gt;MidVentures25 got some press&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.kauffman.org/KauffmanMultimedia.aspx?VideoId=68373973001&amp;amp;type=B&amp;amp;SearchType=All%20Types"&gt;Jon Medved on Entrepreneurism b’Israel&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://toni.org/2010/03/08/5-reasons-why-your-company-should-be-distributed/"&gt;5 reasons why your company should be distributed&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.hyperorg.com/blogger/2010/03/07/moi-2b2k-interview-on-universities-and-open-access/"&gt;Universities and Open Access - interview with David Weinberger&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/05/aliceInWonderland.html"&gt;Dave is upset that they watered down Alice, made it more palatable for American/mainstream palettes&lt;/a&gt;.  My daughters enjoyed it - regardless.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://venturebeat.com/2010/03/08/nyt-nytimes-hiring/"&gt;NYTimes is hiring&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://jaycut.com/"&gt;JayCut - white labeled on-line video editor with Open APIs&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://paidcontent.org/article/419-court-approves-quick-resolution-to-penton-bankruptcy/"&gt;Penton Publishing is bankrupt - just walked away from $270M in debt&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://news.cnet.com/8301-30686_3-10465098-266.html"&gt;100 mbps coverage coming - en masse&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://mashable.com/2010/03/08/iron-man-2-trailer/"&gt;IronMan 2 trailer&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://prezi.com/"&gt;Prezi&lt;/a&gt;, &lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;Reaktor 5,&lt;/a&gt; &lt;a href="http://www.readwriteweb.com/start/2010/03/crowdspring-adds-writing-jobs-to-creative-services-marketplace.php?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+readwriteweb+%28ReadWriteWeb%29"&gt;CrowdSpring&lt;/a&gt;, &lt;a href="http://jaycut.com/"&gt;JayCut&lt;/a&gt;, &lt;a href="http://www.nyc.gov/html/datamine/html/data/organizations.shtml"&gt;the NYC Data mine&lt;/a&gt;, &lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;&lt;/a&gt;&lt;a href="http://ostatic.com/blog/filling-the-gap-open-clip-art-library-provides-more-than-26-000-images"&gt;Open Clip Art Library&lt;/a&gt;, sfe&lt;a href="http://www.native-instruments.com/#/en/products/producer/reaktor-5/?page=565"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=NO9kOlUahr8:GuT4JDpCRf8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=NO9kOlUahr8:GuT4JDpCRf8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=NO9kOlUahr8:GuT4JDpCRf8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=NO9kOlUahr8:GuT4JDpCRf8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/NO9kOlUahr8" height="1" width="1"/&gt;</content>
    <updated>2010-03-10T06:29:42Z</updated>
    <category term="Blog" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-03-13T21:54:01Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/03/09/spring-break-case-week/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6755</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/DivGCH679fk/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: Case Connection Zone in the WSJ</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://blog.broadbandmechanics.com/wp-content/uploads/2010/03/mk-bb574_gigago_dv_20100308181022.jpg"&gt;&lt;img alt="mk-bb574_gigago_dv_20100308181022" class="alignright size-full wp-image-6756" height="394" src="http://blog.broadbandmechanics.com/wp-content/uploads/2010/03/mk-bb574_gigago_dv_20100308181022.jpg" style="margin-left: 8px; margin-right: 8px;" title="mk-bb574_gigago_dv_20100308181022" width="262"&gt;&lt;/img&gt;&lt;/a&gt;The project we’re working on here at CWRU &lt;a href="http://online.wsj.com/article/SB10001424052748703954904575109911233889350.html"&gt;was written up in the WSJ today&lt;/a&gt;.  Unfortunately I can’t link to the full article, as it’s behind a paywall.&lt;a href="http://online.wsj.com/article/SB10001424052748703954904575109911233889350.html"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;In it Lev Gonick (the CIO of CWRU) explains that we’re working on figuring out the recipes for success of ultra high-speed connectivity.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;strong&gt;&lt;span style="font-size: small;"&gt;“What do you DO with a 1G connection?”&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;&#xD;
&lt;p&gt;That is the question.&lt;/p&gt;&#xD;
&lt;p&gt;Now for some answers.&lt;/p&gt;&#xD;
&lt;p&gt;What we launch in late May ‘10 won’t be the final answer, but it’ll be a beginning.&lt;/p&gt;&#xD;
&lt;p&gt;By combining advanced health, energy, education and safety services, a personalized News page and a social network, with blogging, activity streams, live-video help, groups with media sharing we hope to start to answer the question.&lt;/p&gt;&#xD;
&lt;p&gt;Now throw in some compelling local content and services and you’ve got yourself a full fledged ultra high-speed dashboard 2.0.&lt;/p&gt;&#xD;
&lt;p&gt;And that is what is required of every Digital City.&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://blog.broadbandmechanics.com/wp-content/uploads/2010/03/mk-bb574_gigago_dv_20100308181022.jpg"&gt;&lt;img alt="mk-bb574_gigago_dv_20100308181022" class="alignright size-full wp-image-6756" height="394" src="http://blog.broadbandmechanics.com/wp-content/uploads/2010/03/mk-bb574_gigago_dv_20100308181022.jpg" style="margin-left: 8px; margin-right: 8px;" title="mk-bb574_gigago_dv_20100308181022" width="262"&gt;&lt;/img&gt;&lt;/a&gt;The project we’re working on here at CWRU &lt;a href="http://online.wsj.com/article/SB10001424052748703954904575109911233889350.html"&gt;was written up in the WSJ today&lt;/a&gt;.  Unfortunately I can’t link to the full article, as it’s behind a paywall.&lt;a href="http://online.wsj.com/article/SB10001424052748703954904575109911233889350.html"&gt;&lt;br&gt;&#xD;
&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;In it Lev Gonick (the CIO of CWRU) explains that we’re working on figuring out the recipes for success of ultra high-speed connectivity.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;strong&gt;&lt;span style="font-size: small;"&gt;“What do you DO with a 1G connection?”&lt;/span&gt;&lt;/strong&gt;&lt;/p&gt;&#xD;
&lt;p&gt;That is the question.&lt;/p&gt;&#xD;
&lt;p&gt;Now for some answers.&lt;/p&gt;&#xD;
&lt;p&gt;What we launch in late May ‘10 won’t be the final answer, but it’ll be a beginning.&lt;/p&gt;&#xD;
&lt;p&gt;By combining advanced health, energy, education and safety services, a personalized News page and a social network, with blogging, activity streams, live-video help, groups with media sharing we hope to start to answer the question.&lt;/p&gt;&#xD;
&lt;p&gt;Now throw in some compelling local content and services and you’ve got yourself a full fledged ultra high-speed dashboard 2.0.&lt;/p&gt;&#xD;
&lt;p&gt;And that is what is required of every Digital City.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=DivGCH679fk:fyd5qIccDiQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=DivGCH679fk:fyd5qIccDiQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=DivGCH679fk:fyd5qIccDiQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=DivGCH679fk:fyd5qIccDiQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/DivGCH679fk" height="1" width="1"/&gt;</content>
    <updated>2010-03-09T22:11:24Z</updated>
    <category term="Blog" />
    <category term="Build the Open Mesh" />
    <category term="dashboard" />
    <category term="digital city" />
    <category term="fiber optic" />
    <category term="ultra highspeed" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-03-13T21:54:01Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/03/09/case-connection-zone-in-the-wsj/</feedburner:origLink></entry>

  <entry>
    <id>http://www.axiomatics.com/latest-news/149-axiomatics-european-entitlement-management-specialist-accelerates-its-us-expansion-by-hiring-top-iam-analyst-gerry-gebel.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fjR-tSWr4Uo/149-axiomatics-european-entitlement-management-specialist-accelerates-its-us-expansion-by-hiring-top-iam-analyst-gerry-gebel.html" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Axiomatics, European Entitlement Management specialist, accelerates its US expansion by hiring top IAM analyst Gerry Gebel</title>
    
    <updated>2010-03-09T19:02:43Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">Former VP and Service Director for Burton Group Identity and Privacy Strategies, Gerry Gebel, has joined leading entitlement management experts, Axiomatics. Gebel brings more than 25 years of relevant experience to the company both from the Burton Group and from his time in the financial services industry.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fjR-tSWr4Uo:4RV5I0Zpkoo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fjR-tSWr4Uo:4RV5I0Zpkoo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fjR-tSWr4Uo:4RV5I0Zpkoo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fjR-tSWr4Uo:4RV5I0Zpkoo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fjR-tSWr4Uo" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.axiomatics.com/latest-news/149-axiomatics-european-entitlement-management-specialist-accelerates-its-us-expansion-by-hiring-top-iam-analyst-gerry-gebel.html</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/cole/2010/03/09/the-business-of-business-is-trust/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/UdwKd6l6oTE/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: The business of business is trust</title>
    
    <updated>2010-03-09T16:06:33Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:27Z</updated>
    </source>
  <content type="html">The role of government, Jánszky says, is simple: Stop trying to build walls around the consumer and instead focus on passing laws that enable companies to use personal information, provided they do so in a responsible way and with the full content and oversight of the consumer.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UdwKd6l6oTE:4Rl1wPH9XqM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UdwKd6l6oTE:4Rl1wPH9XqM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UdwKd6l6oTE:4Rl1wPH9XqM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=UdwKd6l6oTE:4Rl1wPH9XqM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/UdwKd6l6oTE" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/cole/2010/03/09/the-business-of-business-is-trust/</feedburner:origLink></entry>

  <entry>
    <id>http://jacksonshaw.blogspot.com/2010/03/saml-vs-xacml-for-authorization-vhs.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/xd_UK2UoJhI/saml-vs-xacml-for-authorization-vhs.html" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: SAML vs. XACML for Authorization: VHS versus Betamax?</title>
    
    <updated>2010-03-09T15:44:34Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">Who will win the war? I don’t know but there’s something to be said about the fact that progress is being made faster with SAML than XACML.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xd_UK2UoJhI:X9DxMhxwJmo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xd_UK2UoJhI:X9DxMhxwJmo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xd_UK2UoJhI:X9DxMhxwJmo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=xd_UK2UoJhI:X9DxMhxwJmo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/xd_UK2UoJhI" height="1" width="1"/&gt;</content><feedburner:origLink>http://jacksonshaw.blogspot.com/2010/03/saml-vs-xacml-for-authorization-vhs.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-205400882391780193</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/205400882391780193/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=205400882391780193&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/205400882391780193?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/205400882391780193?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/1-nR3i_UlzU/saml-vs-xacml-for-authorization-vhs.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: SAML vs. XACML for Authorization: VHS versus Betamax?</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;I’ve had my first customer discussion around implementation of a SAML-based authorization system. Yes, I said SAML – not XACML. There are lots of companies out there building XACML management products. &lt;a href="http://www.axiomatics.com/" target="_blank"&gt;Axiomatics&lt;/a&gt; and &lt;a href="http://www.bitkoo.com/" target="_blank"&gt;BitKoo&lt;/a&gt; come to mind but while customers have been discussing the potential use of XACML I have yet to run into a customer who is actually writing applications that use XACML. But I have run into my first customer who is already using SAML for the authentication side of an application and now wants to enable &lt;a href="http://saml.xml.org/attribute-based-authorization" target="_blank"&gt;attribute-based authorization via SAML&lt;/a&gt;. Why SAML? Because they are already using it for authentication.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Is SAML the right “thing” for authorization? Hmmm, I guess if I were a purist I’d say “No” but since I’m a pragmatist I’d say “If it works for your application then use it”. In either case, this brings me to wonder about SAML and XACML from an authorization perspective. Will there be a Betamax versus VHS war in the authorization space? Hard to say. I know Microsoft will be support SAML tokens with the release of ADFS V2 later this quarter. They won’t be supporting XACML.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Who will win the war? I don’t know but there’s something to be said about the fact that progress is being made faster with SAML than XACML. Draw your own conclusions…As they say, time will tell.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:ae7dde01-3d98-422c-8d8e-c50a1d525ddd" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;span style="font-size: xx-small;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/SAML" rel="tag"&gt;SAML&lt;/a&gt;,&lt;a href="http://technorati.com/tags/XACML" rel="tag"&gt;XACML&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Axiomatics" rel="tag"&gt;Axiomatics&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Bitkoo" rel="tag"&gt;Bitkoo&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Active+Directory" rel="tag"&gt;Active Directory&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Microsoft" rel="tag"&gt;Microsoft&lt;/a&gt;,&lt;a href="http://technorati.com/tags/MSFT" rel="tag"&gt;MSFT&lt;/a&gt;,&lt;a href="http://technorati.com/tags/ADFS" rel="tag"&gt;ADFS&lt;/a&gt;,&lt;a href="http://technorati.com/tags/federation" rel="tag"&gt;federation&lt;/a&gt;,&lt;a href="http://technorati.com/tags/identity+management" rel="tag"&gt;identity management&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-205400882391780193?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/60Cfik7EstsqKMbzEPpBks4-tvw/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/60Cfik7EstsqKMbzEPpBks4-tvw/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/60Cfik7EstsqKMbzEPpBks4-tvw/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/60Cfik7EstsqKMbzEPpBks4-tvw/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/xd_UK2UoJhI" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1-nR3i_UlzU:MeTLwhCc4Eo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1-nR3i_UlzU:MeTLwhCc4Eo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1-nR3i_UlzU:MeTLwhCc4Eo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=1-nR3i_UlzU:MeTLwhCc4Eo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/1-nR3i_UlzU" height="1" width="1"/&gt;</content>
    <updated>2010-03-09T13:56:00Z</updated>
    <published>2010-03-09T13:56:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/03/saml-vs-xacml-for-authorization-vhs.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-03-14T20:29:03Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/xd_UK2UoJhI/saml-vs-xacml-for-authorization-vhs.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://access.jiscinvolve.org/can-you-solve-this-problem-for-me/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/uhMEFDvJB-I/" rel="alternate" type="text/html" />
    <title>JISC Access Management Team: Can you solve this problem for me?</title>
    <summary type="html">I have a bunch of spreadsheets.  Each spreadsheet represents one institution.  Each spreadsheet contains a list of resources that institution subscribes to.  
I want to turn this around so that I end up with one spreadsheet with each resource as column, and each institution that subscribes to that resource underneath it.  [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I have a bunch of spreadsheets.  Each spreadsheet represents one institution.  Each spreadsheet contains a list of resources that institution subscribes to.  &lt;/p&gt;&#xD;
&lt;p&gt;I want to turn this around so that I end up with one spreadsheet with each resource as column, and each institution that subscribes to that resource underneath it.  &lt;/p&gt;&#xD;
&lt;p&gt;Can anyone suggest ways to make this happen?&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=uhMEFDvJB-I:AiQSQOHfGQ8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=uhMEFDvJB-I:AiQSQOHfGQ8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=uhMEFDvJB-I:AiQSQOHfGQ8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=uhMEFDvJB-I:AiQSQOHfGQ8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/uhMEFDvJB-I" height="1" width="1"/&gt;</content>
    <updated>2010-03-09T13:05:10Z</updated>
    <category term="Uncategorized" />
    <author>
      <name>nicole</name>
    </author>
    <source>
      <id>http://access.jiscinvolve.org</id>
      <link href="http://access.jiscinvolve.org" rel="alternate" type="text/html" />
      <link href="http://access.jiscinvolve.org/feed/" rel="self" type="application/rss+xml" />
      <subtitle>moving towards federated access management</subtitle>
      <title>JISC Access Management Team</title>
      <updated>2010-03-12T10:21:31Z</updated>
    </source>
  <feedburner:origLink>http://access.jiscinvolve.org/can-you-solve-this-problem-for-me/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-8364514858672002729</id>
    <link href="http://anil-identity.blogspot.com/feeds/8364514858672002729/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=8364514858672002729" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/8364514858672002729" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/8364514858672002729" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7WygioEHZ3E/picketlink-v102-is-released.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Picketlink v1.0.2 is released</title>
    <content type="html">Project Page: &lt;a href="http://jboss.org/picketlink"&gt;PicketLink&lt;/a&gt;&lt;br&gt;&lt;br&gt;If you are looking for SAMLv2, WS-Trust and OpenID support for your web applications, then &lt;a href="http://jboss.org/picketlink"&gt;PicketLink&lt;/a&gt; is the destination. PicketLink has deeper bindings with JBoss Application Server and Apache Tomcat. But we do offer support for any generic web container.&lt;br&gt;&lt;br&gt;PicketLink is also the ideal choice for Single Sign On for Seam Applications.&lt;br&gt;&lt;br&gt;Get it &lt;a href="http://jboss.org/picketlink"&gt;here&lt;/a&gt;.&lt;br&gt;&lt;br&gt;Please stay tuned for more information on this release.&lt;br&gt;&lt;br&gt;======================&lt;br&gt;&lt;br&gt;Release Notes for PicketLink Federated Identity&lt;br&gt;Includes versions: PLFED_1.0.2&lt;br&gt;&lt;br&gt;** Feature Request&lt;br&gt;    *  [ PLFED-5 ] Seam authentication filter: add OpenID support&lt;br&gt;&lt;br&gt;** Bug&lt;br&gt;    *  [ PLFED-19 ] FileBasedMetadataConfigurationStore.loadTrustedProviders keeps trustedFile locked for some indeterminate period&lt;br&gt;    *  [ PLFED-25 ] FileBasedMetadataConfigurationStore trusted providers file has improper extension&lt;br&gt;    *  [ PLFED-13 ] HTTP_Redirect binding: query string parameter SigAlg is not filled properly&lt;br&gt;&lt;br&gt;** Task&lt;br&gt;    *  [ PLFED-7 ] PicketLink STS - parse the OnBehalfOf contents of WS-Trust request&lt;br&gt;&lt;br&gt;** Release&lt;br&gt;    *  [ PLFED-44 ] Release PL Fed 1.0,2 &lt;br&gt;=====================================&lt;br&gt;&lt;br&gt;Some new exciting features for Seam and PicketLink integration from Marcel:&lt;br&gt;&lt;br&gt;&lt;a href="http://community.jboss.org/wiki/HowtoaddSAMLandOpenIDauthenticationtoyourSeamapplication"&gt;http://community.jboss.org/wiki/HowtoaddSAMLandOpenIDauthenticationtoyourSeamapplication&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;a href="http://community.jboss.org/wiki/ExternalauthenticationexampleusingSSOCircle"&gt;&lt;br&gt;http://community.jboss.org/wiki/ExternalauthenticationexampleusingSSOCircle&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;a href="http://community.jboss.org/wiki/ExternalauthenticationexampleusingOpenSSO"&gt;&lt;br&gt;http://community.jboss.org/wiki/ExternalauthenticationexampleusingOpenSSO&lt;br&gt;&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;a href="http://community.jboss.org/thread/148056?tstart=0"&gt;PicketLink's Seam Module V1.0.2: many new features!&lt;/a&gt;&lt;br&gt;&lt;br&gt;Note from &lt;span style="font-weight: bold;"&gt;Marcel&lt;/span&gt;: It's a big leap forward. The sample app is now a proof that the Seam module of PicketLink integrates well with external SAML and OpenID identity providers. And installing it in a JBoss AS 5.1 server is as simple as deploying the war file. I'm looking forward to the experiences of the community when using it.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;Documentation&lt;/span&gt;:&lt;br&gt;&lt;a href="http://community.jboss.org/en/picketlink?view=documents"&gt;&lt;br&gt;http://community.jboss.org/en/picketlink?view=documents&lt;/a&gt;&lt;br&gt;&lt;br&gt;If you are looking for a cheat sheet to run SAML on JBoss AS5.1, &lt;a href="http://community.jboss.org/docs/DOC-14912"&gt;take this cheatsheet&lt;/a&gt;.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;Note&lt;/span&gt;:&lt;br&gt;1. All software has bugs. If not, they are lying.&lt;br&gt;2. Feedback is greatly appreciated.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-8364514858672002729?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7WygioEHZ3E:MTchvokWDaw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7WygioEHZ3E:MTchvokWDaw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7WygioEHZ3E:MTchvokWDaw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7WygioEHZ3E:MTchvokWDaw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7WygioEHZ3E" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T20:38:04Z</updated>
    <published>2010-02-10T21:42:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="IdentityManagement" />
    <category scheme="http://www.blogger.com/atom/ns#" term="SAML" />
    <category scheme="http://www.blogger.com/atom/ns#" term="OpenID" />
    <category scheme="http://www.blogger.com/atom/ns#" term="picketlink" />
    <category scheme="http://www.blogger.com/atom/ns#" term="ws-trust" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossSSO" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-12T14:54:03Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/02/picketlink-v102-is-released.html</feedburner:origLink></entry>

  <entry>
    <id>f1397696-738c-4295-afcd-943feb885714:31224</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/jScaFGll6xQ/A-Busy-Week-at-Both-HIMSS-and-RSA-Conferences" rel="alternate" type="text/html" />
    <title>Identropy: A Busy Week at Both HIMSS and RSA Conferences</title>
    
    <updated>2010-03-08T19:30:00Z</updated>
    <author>
      <name>Frank Villavicencio</name>
    </author>
    <source>
      <id>http://www.identropy.com/blog/</id>
      <link href="http://www.identropy.com/blog/" rel="alternate" type="text/html" />
      <link href="http://www.identropy.com/CMS/UI/Modules/BizBlogger/rss.aspx?tabid=85591&amp;moduleid=85510&amp;maxcount=25" rel="self" type="application/rss+xml" />
      <subtitle>RSS feeds for</subtitle>
      <title>Blog</title>
      <updated>2010-03-15T09:32:04Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt; I am just returning from a week of travel and conference activity, which start for me in Newark, NJ on Monday March 1, from there to Atlanta, GA for the &lt;a href="http://www.himssconference.org/"&gt;HIMSS Conference 2010&lt;/a&gt; (north of 25,000 attendees), and then on to San Francisco, CA on Wednesday March 3 for the last 2 days of &lt;a href="http://www.rsaconference.com/2010/usa/"&gt;RSA Conference 2010&lt;/a&gt; (about 16,000 attendees), and then back home in NJ on Friday March 5. In all, last week was very busy but very productive for me. &lt;/p&gt;&#xD;
&lt;p&gt;It was good to see a lot of familiar faces as well as new ones, and to see that despite the economy, both of these conferences seem to be well-attended, with tons of vendor participation, and great sessions all around. Maybe this is an uncommon economic indicator (worthy of mention in the NY &lt;a href="http://www.wnyc.org/shows/bl/economic_indicators/"&gt;NPR radio show by Brian Lehrer&lt;/a&gt;). This time around I must confess that I spent most of my time outside of the conference session and exhibits meeting with colleagues, prospective customers and friends. For me, this was one of the most productive conference trips I've had in a few years.  Since my focus is always on identity and access management&lt;a name="_GoBack" title="_GoBack"&gt;&lt;/a&gt;, it is exciting to see the convergence of business [and in many cases technical] requirements and various trends across industries, which drive the need for identity and access management as both an enabler and risk mitigation approach. &lt;/p&gt;&#xD;
&lt;p&gt;At the HIMSS conference, a theme that was very top of mind was "&lt;a href="http://healthit.hhs.gov/portal/server.pt?open=512&amp;amp;objID=1325&amp;amp;parentname=CommunityPage&amp;amp;parentid=46&amp;amp;mode=2&amp;amp;in_hi_userid=11113&amp;amp;cached=true"&gt;meaningful use&lt;/a&gt;" which is driving a lot of vendors and healthcare providers towards electronic health record (EHR) technology, and specifically, the &lt;a href="http://edocket.access.gpo.gov/2010/pdf/E9-31216.pdf"&gt;45 CFR Part 170&lt;/a&gt; specifications. It is clear the US Government incentives for those providers (both professionals and hospitals) that can demonstrate adherence to the meaningful use guidelines is generating momentum.&lt;/p&gt;&#xD;
&lt;p&gt;I had the opportunity to present at HIMSS, thanks to our partner &lt;a href="http://www.novell.com/solutions/identity-and-security/"&gt;Novell&lt;/a&gt;. My topic was "Identity Assurance in Healthcare: what does it mean to you?" (below is my slide deck)&lt;/p&gt;&#xD;
&lt;center&gt;&#xD;
&#xD;
&lt;p&gt;&lt;/p&gt;&lt;/center&gt;&#xD;
&lt;p&gt;&lt;img align="left" alt="On the Internet, nobody knows you’re a dog" border="0" height="410" src="http://www.identropy.com/Portals/40850/images//The-New-Yorker-Cartoon-July-5-1993.JPG" style="WIDTH: 223px; HEIGHT: 267px;" title="" width="309"&gt;&lt;/img&gt;While the 45 CFR Part 170 criteria was published on December 30, 2009, it is interesting to see that at the heart of the requirements regarding authentication, specifically §170.210 "Standards for health information technology to protect electronic health information created, maintained, and exchanged", is the issue of identity assurance, which was captured very cleverly in the 1993 New Yorker cartoon by Peter Steiner, where one dog with a paw on a computer's keyboard tells another: "On the Internet, nobody knows you're a dog".  For well over 15 years, this very issue: knowing, with certainty, who is at the end of the keyboard, has been one of the biggest challenges in the enablement of true paperless transactions and trusted online services in all industry verticals. And healthcare has been no exception.&lt;/p&gt;&#xD;
&lt;p&gt;Inevitably, these requirements and standards will impact the way healthcare information systems will operate and interconnect, whether they are new or legacy, and inaction will most likely not be an option.&lt;/p&gt;&#xD;
&lt;div&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jScaFGll6xQ:6FWmDDXJSHo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jScaFGll6xQ:6FWmDDXJSHo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=jScaFGll6xQ:6FWmDDXJSHo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=jScaFGll6xQ:6FWmDDXJSHo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/jScaFGll6xQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.identropy.com/blog/bid/31224/A-Busy-Week-at-Both-HIMSS-and-RSA-Conferences</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-3529143.post-5995600010714141702</id>
    <link href="http://www.blogger.com/feeds/3529143/5995600010714141702/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=3529143&amp;postID=5995600010714141702" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/3529143/posts/default/5995600010714141702" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/3529143/posts/default/5995600010714141702" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Qz_ppIMRFaI/european-identity-conference-2010.html" rel="alternate" type="text/html" />
    <title>Dave Kearns: European Identity Conference 2010</title>
    <content type="html">Less than two months to go until the 4th annual &lt;a href="http://www.id-conf.com/events/eic2010/"&gt;European Identity Conference&lt;/a&gt;, and &lt;a href="http://www.id-conf.com/events/eic2010/registration"&gt;registration&lt;/a&gt; is now open! Once again, as last year, I'll be delivering an opening keynote as well as hosting two session tracks.&lt;br&gt;&lt;br&gt;On Tuesday (5/4/10),  I'll keynote on "&lt;a href="http://www.id-conf.com/sessions/691" style="text-decoration: none;"&gt;Convergence: Better Control, Lower Cost&lt;/a&gt;". Since it's the keynote between a break and Kim Cameron, I should at least get those who want to come early to get a good seat for Kim!&lt;br&gt;&lt;br&gt;On Wednesday (5/5/10),  I'll continue the "convergence" theme with a track called "&lt;a href="http://www.id-conf.com/tracks/112" style="text-decoration: none;"&gt;Value Through Convergence - Consolidate for Better Value,  Efficiency and Security"&lt;/a&gt;.This will feature a conversation with Martin Kuppinger ("&lt;a href="http://www.id-conf.com/sessions/703" style="text-decoration: none;"&gt;5 Quick-Wins to Leverage your Existing Identity Infrastructure through Convergence&lt;/a&gt;"), a conversation with Kim Cameron ("&lt;a href="http://www.id-conf.com/sessions/707" style="text-decoration: none;"&gt;Converging User-centric &amp;amp; Enterprise-centric IDs&lt;/a&gt;") and two panel discussions: "&lt;a href="http://www.id-conf.com/sessions/703#2" style="text-decoration: none;"&gt;Converging Data Governance and Access Governance&lt;/a&gt;," and "&lt;a href="http://www.id-conf.com/sessions/707#2" style="text-decoration: none;"&gt;Establishing an Advanced Level of Enterprise Identity Maturity&lt;/a&gt;."&lt;br&gt;&lt;br&gt;Then, on Thursday (5/6/10) I'll tackle "&lt;a href="http://www.id-conf.com/tracks/123" style="text-decoration: none;"&gt;Cloud Platforms &amp;amp; Data Portability&lt;/a&gt;". This track will feature an intro talk ("&lt;a href="http://www.id-conf.com/sessions/742" style="text-decoration: none;"&gt;Data Statelessness and the Continuum of Individuals' Data Portability on the Web&lt;/a&gt;") by &lt;a href="http://www.xmlgrrl.com/blog/welcome/"&gt;XMLgrrl&lt;/a&gt; herself, Eve Maler. We'll follow this up with two great panels: "&lt;a href="http://www.id-conf.com/sessions/742#2" style="text-decoration: none;"&gt;Social Data Portability&lt;/a&gt;," and "&lt;a href="http://www.id-conf.com/sessions/746" style="text-decoration: none;"&gt;Business/Cloud portability&lt;/a&gt;."&lt;br&gt;&lt;br&gt;There'll be other great sessions, also - there always are. Plus, the &lt;a href="http://www.deutsches-museum.de/index.php?id=1&amp;amp;L=1"&gt;Deutsches Museum&lt;/a&gt; in Munich is a fabulous venue. I hope to see you there.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/3529143-5995600010714141702?l=vquill.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qz_ppIMRFaI:rcKRrkLLKDg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qz_ppIMRFaI:rcKRrkLLKDg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Qz_ppIMRFaI:rcKRrkLLKDg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Qz_ppIMRFaI:rcKRrkLLKDg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Qz_ppIMRFaI" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T19:23:45Z</updated>
    <published>2010-03-08T18:58:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="EIC" />
    <category scheme="http://www.blogger.com/atom/ns#" term="cloud" />
    <category scheme="http://www.blogger.com/atom/ns#" term="enterprise" />
    <author>
      <name>Dave Kearns</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/11089258393497844520</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-3529143</id>
      <author>
        <name>Dave Kearns</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/11089258393497844520</uri>
      </author>
      <link href="http://www.blogger.com/feeds/3529143/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://vquill.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/3529143/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <link href="http://vquill.com/blog/blogger_rss.xml" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <subtitle>Scratchings from the mind of Dave Kearns</subtitle>
      <title>The Virtual Quill</title>
      <updated>2010-03-14T19:06:30Z</updated>
    </source>
  <feedburner:origLink>http://vquill.com/2010/03/european-identity-conference-2010.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-7161127790471058030</id>
    <link href="http://anil-identity.blogspot.com/feeds/7161127790471058030/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=7161127790471058030" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/7161127790471058030" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/7161127790471058030" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/QakW6ka5jfs/is-opensso-alive.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Is OpenSSO alive?</title>
    <content type="html">Reading Rich Sharples &lt;a href="http://blog.softwhere.org/archives/993"&gt;post&lt;/a&gt; and also this post saying &lt;a href="http://www.h-online.com/open/news/item/Oracle-kills-OpenSSO-Express-ForgeRock-steps-in-939634.html"&gt;Oracle kills OpenSSO Express&lt;/a&gt;, I am left to wonder if OpenSSO as an open source project is alive?  Let me ping Pat Patterson and see if he knows anything.&lt;br&gt;&lt;br&gt;It is always sad to see any open source project unplugged from the community.&lt;br&gt;&lt;br&gt;I do hope majority of the migrations from OpenSSO adopt our open source project called &lt;a href="http://jboss.org/picketlink"&gt;PicketLink&lt;/a&gt;, rather than adopt some commercial solution. At PicketLink, we have strived hard (yeah, really really hard) to keep things as simple and nimble as possible.&lt;br&gt;&lt;br&gt;Info on &lt;a href="http://anil-identity.blogspot.com/2010/02/picketlink-v102-is-released.html"&gt;PicketLink v1.0.2&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-7161127790471058030?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QakW6ka5jfs:UC3aoPWoGkI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QakW6ka5jfs:UC3aoPWoGkI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QakW6ka5jfs:UC3aoPWoGkI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=QakW6ka5jfs:UC3aoPWoGkI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/QakW6ka5jfs" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T16:35:51Z</updated>
    <published>2010-03-08T15:34:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="opensso" />
    <category scheme="http://www.blogger.com/atom/ns#" term="IdentityManagement" />
    <category scheme="http://www.blogger.com/atom/ns#" term="picketlink" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-12T14:54:03Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/03/is-opensso-alive.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/onesign_platform_security_webinar_march</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/YO_F3_K5LJQ/onesign_platform_security_webinar_march" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: Webinar Demo: An Introduction to Imprivata OneSign</title>
    
    <updated>2010-03-08T16:25:40Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">In this webinar, you will learn firsthand how Imprivata OneSign can help your organization strengthen user authentication to desktops, applications and networks; streamline application access; and simplify the process of compliance reporting.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=YO_F3_K5LJQ:hD9eb7uKj3I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=YO_F3_K5LJQ:hD9eb7uKj3I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=YO_F3_K5LJQ:hD9eb7uKj3I:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=YO_F3_K5LJQ:hD9eb7uKj3I:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/YO_F3_K5LJQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/onesign_platform_security_webinar_march</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/articles/sr_auth_stongflex_8310</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/QRRD7NS6e-w/sr_auth_stongflex_8310" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Can authentication be both strong and flexible?</title>
    
    <updated>2010-03-08T15:15:03Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:26Z</updated>
    </source>
  <content type="html">Whether you want to place a bid at Bay, check your bank balance online or your credit rating at Schufa or Experian, or access your corporate SAP account: Instead of asking you to please enter your user name and password, chances are the system nowadays will demand some other method of authentication like a token or a smartcard, or it may offer to scan your finger or iris.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QRRD7NS6e-w:m8FVV3LCVjU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QRRD7NS6e-w:m8FVV3LCVjU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QRRD7NS6e-w:m8FVV3LCVjU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=QRRD7NS6e-w:m8FVV3LCVjU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/QRRD7NS6e-w" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/articles/sr_auth_stongflex_8310</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44266.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/a9KgN_CbTgw/content44266.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: MVSITE (BLOG) - Imprivata Introduces OneSign Secure Walk-Away to Help Hospitals Increase Patient Safety and Secure Unattended ...</title>
    
    <updated>2010-03-08T15:06:24Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://mvsite.com/computer_hardware_software_technology/new-media-lab-offers-high-tech-equipment.html&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=a9KgN_CbTgw:-hWlM4KP8zY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=a9KgN_CbTgw:-hWlM4KP8zY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=a9KgN_CbTgw:-hWlM4KP8zY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=a9KgN_CbTgw:-hWlM4KP8zY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/a9KgN_CbTgw" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44266.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44265.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-fKFlAsLILs/content44265.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: INFO4SECURITY (UK) - Healthcare Division for Imprivata</title>
    
    <updated>2010-03-08T15:01:54Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.info4security.com/story.asp?sectioncode=12&amp;amp;storycode=4124286&amp;amp;c=1&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-fKFlAsLILs:Ef0bQJyIisU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-fKFlAsLILs:Ef0bQJyIisU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-fKFlAsLILs:Ef0bQJyIisU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-fKFlAsLILs:Ef0bQJyIisU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-fKFlAsLILs" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44265.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content43874.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/LXoULOFMIYI/content43874.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: DIGITALID NEWS - QUESTIONS RAISED ABOUT BIOMETRICS USABILITY IF DATA IS HACKED</title>
    
    <updated>2010-03-08T14:02:50Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.digitalidnews.com/2010/02/25/questions-raised-about-biometrics-usability-if-data-is-hacked&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LXoULOFMIYI:8LiWIbiLJdw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LXoULOFMIYI:8LiWIbiLJdw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LXoULOFMIYI:8LiWIbiLJdw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=LXoULOFMIYI:8LiWIbiLJdw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/LXoULOFMIYI" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content43874.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/st__croix_regional_medical_center_secures_access_to_emr_with_imprivata___imprivata__inc__</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/kdNsKHxz84w/st__croix_regional_medical_center_secures_access_to_emr_with_imprivata___imprivata__inc__" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: St. Croix Regional Medical Center Secures Access to Electronic Medical Records with Imprivata</title>
    
    <updated>2010-03-08T13:56:45Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">Imprivata OneSign® Integrated with Fingerprint Biometrics Provides Fast and Secure Access to Patient Health Information&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kdNsKHxz84w:kpNzgyl2QW0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kdNsKHxz84w:kpNzgyl2QW0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kdNsKHxz84w:kpNzgyl2QW0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=kdNsKHxz84w:kpNzgyl2QW0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/kdNsKHxz84w" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/st__croix_regional_medical_center_secures_access_to_emr_with_imprivata___imprivata__inc__</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-5458314809716720410</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/5458314809716720410/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=31038959&amp;postID=5458314809716720410" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/5458314809716720410" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/5458314809716720410" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ytUXU2vMB30/2010_03_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Must Attend event in May at Munich</title>
    <content type="html">&lt;a href="http://www.id-conf.com/events/eic2010/agenda"&gt;&lt;img alt="" border="0" id="BLOGGER_PHOTO_ID_5446258877667671330" src="http://4.bp.blogspot.com/_RI178MJjsuE/S5T_l_4y_SI/AAAAAAAADzM/qSbz6dIBGcg/s200/eic2010banner.jpg" style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer; width: 200px; height: 22px;"&gt;&lt;/img&gt;&lt;/a&gt;A premier IDM and GRC event in May 2010. Registration is OPEN!! Do not Miss it.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-5458314809716720410?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytUXU2vMB30:K7HAC1Tn1mE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytUXU2vMB30:K7HAC1Tn1mE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytUXU2vMB30:K7HAC1Tn1mE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ytUXU2vMB30:K7HAC1Tn1mE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ytUXU2vMB30" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T13:47:19Z</updated>
    <published>2010-03-08T13:45:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="MMM2010" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open and stakeholder/owner controlled "digital identity" (Construct of Credentials in a Context) at the center." IDEA enables an Identity Layer that securely exchanges the Authentication context, Authorization context, Network and Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise Architecture (IDEA!!)</title>
      <updated>2010-03-08T13:47:19Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2010_03_01_archive.html#5458314809716720410</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44246.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/PtT8WwbLpC0/content44246.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: E-HEALTH INSIDER (UK) - Imprivata Brings Secure Walk Away to UK</title>
    
    <updated>2010-03-08T13:41:35Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.e-health-insider.com/news/5701/imprivata_brings_secure_walk_away_to_uk&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PtT8WwbLpC0:mhUgnTyayC0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PtT8WwbLpC0:mhUgnTyayC0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PtT8WwbLpC0:mhUgnTyayC0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=PtT8WwbLpC0:mhUgnTyayC0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/PtT8WwbLpC0" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44246.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44244.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lUYU8SCp03w/content44244.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: CRN - 10 Hot Security Products For Health Care</title>
    
    <updated>2010-03-08T13:41:21Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.crn.com/healthcare/223101372;jsessionid=FBGZUMQOAEFD1QE1GHPCKHWATMY32JVN?pgno=8&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lUYU8SCp03w:M-72pJLZkN8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lUYU8SCp03w:M-72pJLZkN8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lUYU8SCp03w:M-72pJLZkN8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lUYU8SCp03w:M-72pJLZkN8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lUYU8SCp03w" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44244.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.imprivata.com/content44243.html</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/CXjteLjIT9I/content44243.html" rel="alternate" type="text/html" />
    <title>Identity 360 - Imprivata: HEALTHCARE INFORMATICS - Bits and Bytes from HIMSS10</title>
    
    <updated>2010-03-08T13:39:27Z</updated>
    <source>
      <id>http://www.imprivata.com/</id>
      <author>
        <name>Identity 360 - Imprivata</name>
      </author>
      <link href="http://www.imprivata.com/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/ImprivataNews" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Updates from Imprivata.</subtitle>
      <title>Imprivata News</title>
      <updated>2010-03-13T00:03:16Z</updated>
    </source>
  <content type="html">http://www.healthcare-informatics.com/ME2/dirmod.asp?sid=349DF6BB879446A1886B65F332AC487F&amp;amp;nm=Blogs&amp;amp;type=Blog&amp;amp;mod=BlogTopics&amp;amp;mid=67D6564029914AD3B204AD35D8F5F780&amp;amp;tier=7&amp;amp;id=9858E9FEBA4C4DAA8C781919B34A7&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CXjteLjIT9I:GdYku9iIIFg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CXjteLjIT9I:GdYku9iIIFg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=CXjteLjIT9I:GdYku9iIIFg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=CXjteLjIT9I:GdYku9iIIFg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/CXjteLjIT9I" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.imprivata.com/content44243.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-1732743253466992801</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/1732743253466992801/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=11222552&amp;postID=1732743253466992801&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/1732743253466992801?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/1732743253466992801?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/4jfrPEVN_AY/windows-licensing-in-unix-linux-apple.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Windows Licensing in a Unix, Linux, Apple Mac, Java and Web World</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;b&gt;Caution:&lt;/b&gt; I only play a Microsoft licensing expert on TV. However, I do have 6 years of experience in this area both working on Windows licensing and answering licensing questions while I worked at Microsoft.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Last week, during the RSA Conference, I had the opportunity to meet many customers and partners – always one of the most favorite parts of my job. One pleasant dinner at the &lt;a href="http://mobile.townhallsf.com/" target="_blank"&gt;Town Hall&lt;/a&gt; restaurant in San Francisco was memorable in what our customer had been told his Microsoft licensing requirements would be if he integrated his Unix and Linux systems with Windows and Active Directory. So, rather than pull all the relevant information together in an email I figured I write a blog post explaining the licensing, with references, and send him a link to this blog article. Perhaps someone else will benefit from this, too. Now, on to the questions:&lt;br&gt;&#xD;
&lt;blockquote&gt;&lt;b&gt;Q: Do you need to purchase Windows client access licenses (CALs) for the Unix, Linux or Mac systems you are integrating with Windows and Active Directory?&lt;/b&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;b&gt;A: Generally, no.&lt;/b&gt; I say generally because when you set up your Windows servers during installation you get asked if you want to set up your server for &lt;b&gt;&lt;i&gt;device-based CALs&lt;/i&gt;&lt;/b&gt; or &lt;i&gt;&lt;b&gt;user-based CALs&lt;/b&gt;&lt;/i&gt;. Nearly every customer I have worked with sets up their servers for &lt;b&gt;&lt;i&gt;user-based CALs&lt;/i&gt;&lt;/b&gt;. If you use user-based CALs then &lt;u&gt;you do not need to purchase any additional CALs&lt;/u&gt; for the Unix, Linux or Mac systems that you integrate with Active Directory. The text directly below is cut-and-paste from this &lt;a href="http://www.microsoft.com/windowsserver2008/en/us/client-licensing.aspx" target="_blank"&gt;page&lt;/a&gt; on Windows Server 2008 R2 Client Licensing. Clearly, “Windows CAL for every named user accessing your servers from any device” is the way to go. (Licensing for previous versions of Windows Server are identical.)&lt;/blockquote&gt;&lt;blockquote&gt;&lt;h5&gt;&lt;i&gt;&lt;u&gt;Device-based or User-based Windows Client Access Licenses&lt;/u&gt;&lt;/i&gt;&lt;/h5&gt;&lt;i&gt;There are two types of Windows Client Access Licenses from which to choose: device-based or user-based, also known as Windows Device CALs or Windows User CALs. This means you can choose to acquire a Windows CAL for every device (used by any user) accessing your servers, or you can choose to acquire a Windows CAL for every named user accessing your servers (from any device).&lt;/i&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;i&gt;The option to choose between the two types of Windows CALs offers you the flexibility to use the licensing that best suits the needs of your organization. For example:&lt;/i&gt;&lt;br&gt;&#xD;
&lt;ul&gt;&lt;li&gt;        &lt;i&gt;Windows Device CALs might make most economic and administrative sense for an organization with multiple users for one device, such as shift workers.&lt;/i&gt;&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;li&gt;        &lt;i&gt;Whereas, Windows User CALs might make most sense for an organization with many employees who need access to the corporate network from unknown devices (for example, when traveling) and/or an organization with employees who access the network from multiple devices.&lt;/i&gt;&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;/blockquote&gt;&lt;blockquote&gt;&lt;b&gt;Q: My customers and suppliers are authenticating to Active Directory via a web service (Java, .Net, SAML, ADFS, etc.). I have &lt;i&gt;insertyournumberhere&lt;/i&gt; of customers and suppliers who will be using this web service. Do I need a Windows CAL for each person who uses this web service or web application?&lt;/b&gt;&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;b&gt;A: No.&lt;/b&gt; You must have a Windows CAL for anyone who could be reasonably classified as an employee, temporary worker or a contractor. However, for customers, suppliers or others who are “at arms-length” &lt;u&gt;you do not need a Windows CAL&lt;/u&gt;. Again, the text below is pulled from the same &lt;a href="http://www.microsoft.com/windowsserver2008/en/us/client-licensing.aspx" target="_blank"&gt;page&lt;/a&gt; on Windows Server 2008 R2 Client Licensing. The relevant text is contained in the 3rd bullet below which discusses “external users” and the Windows Server 2008 External Connector license. The External Connector license costs $1,999 per server but this is far cheaper than purchasing Windows CALs for a large number of external users.&lt;br&gt;&#xD;
&lt;h5&gt;&lt;b&gt;&lt;u&gt;Client Access Licensing Requirements&lt;/u&gt;&lt;/b&gt;&lt;/h5&gt;Every user or device that accesses or uses the Windows Server 2008 or Windows Server 2008 R2 server software requires the purchase of a Windows Server 2008 Client Access License (Windows Server CAL) except under the following circumstances:&lt;br&gt;&#xD;
&lt;ul&gt;&lt;li&gt;        If access to the instances of server software is only through the Internet without being authenticated or otherwise individually identified by the server software or through any other means&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;li&gt;        If access is to Windows Web Server 2008 or Windows Web Server 2008 R2 &lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;li&gt;        If external users are accessing the instances of server software and you have acquired a &lt;a href="http://www.microsoft.com/windowsserver2008/en/us/external-connectors.aspx" target="_blank"&gt;Windows Server 2008 External Connector license&lt;/a&gt; for each server being accessed&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;li&gt;        For up to two devices or users to access your instances of the server software only to administer those instances&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;li&gt;        If you are using Windows Server 2008 R2 solely as a virtualization host (you will still require CALs for your appropriate WS edition running in the virtual machine(s) )&lt;br&gt;&#xD;
&lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;/blockquote&gt;It pays to be educated about these lesser known Windows licensing details – you could save yourself a ton of money and aggravation. &lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="wlWriterEditableSmartContent" id="scid:0767317B-992E-4b12-91E0-4F059A8CECA8:d8cd5b19-edc8-4da0-b0e3-821b7c823db0" style="display: inline; float: none; margin: 0px; padding: 0px;"&gt;&lt;span style="font-size: xx-small;"&gt;Technorati Tags: &lt;a href="http://technorati.com/tags/Microsoft" rel="tag"&gt;Microsoft&lt;/a&gt;,&lt;a href="http://technorati.com/tags/MSFT" rel="tag"&gt;MSFT&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Microsoft+licensing" rel="tag"&gt;Microsoft licensing&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Windows+CAL" rel="tag"&gt;Windows CAL&lt;/a&gt;,&lt;a href="http://technorati.com/tags/CAL" rel="tag"&gt;CAL&lt;/a&gt;,&lt;a href="http://technorati.com/tags/CALs" rel="tag"&gt;CALs&lt;/a&gt;,&lt;a href="http://technorati.com/tags/Active+Directory+licensing" rel="tag"&gt;Active Directory licensing&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-1732743253466992801?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/XFnCCwDBH2Q3_DyvMc6tmb-ufss/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/XFnCCwDBH2Q3_DyvMc6tmb-ufss/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/XFnCCwDBH2Q3_DyvMc6tmb-ufss/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/XFnCCwDBH2Q3_DyvMc6tmb-ufss/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/OnsKDy88eHs" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4jfrPEVN_AY:Z1QRVTa-lLY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4jfrPEVN_AY:Z1QRVTa-lLY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4jfrPEVN_AY:Z1QRVTa-lLY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=4jfrPEVN_AY:Z1QRVTa-lLY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/4jfrPEVN_AY" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T11:49:00Z</updated>
    <published>2010-03-08T11:49:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2010/03/windows-licensing-in-unix-linux-apple.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>jackson.shaw@gmail.com</email>
      <uri>http://www.blogger.com/profile/00014140177974348471</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <author>
        <name>Jackson Shaw</name>
        <email>jackson.shaw@gmail.com</email>
        <uri>http://www.blogger.com/profile/00014140177974348471</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2010-03-14T20:29:03Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/OnsKDy88eHs/windows-licensing-in-unix-linux-apple.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://self-issued.info/?p=163</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/XRvjcSR58t8/" rel="alternate" type="text/html" />
    <link href="http://self-issued.info/?p=163#comments" rel="replies" type="text/html" />
    <link href="http://self-issued.info/?feed=atom&amp;p=163" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Mike Jones - Microsoft: Information Card Standard Approved!</title>
    <summary xml:lang="en" type="html">I’m thrilled to announce that the Identity Metasystem Interoperability Version 1.0 specification has been approved as an OASIS standard, with 56 votes in favor and none against. This standard benefitted substantially from the input received during the process.  Numerous clarifications were incorporated as a result, while still maintaining compatibility with the Identity Selector Interoperability [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;span class="plain"&gt;&lt;img align="right" alt="Information Card Icon" hspace="2" src="http://self-issued.info/infocard_icon/images/infocard_114x80.png"&gt;&lt;/img&gt;&lt;img align="right" alt="OASIS logo" hspace="10" src="http://self-issued.info/images/oasis.png"&gt;&lt;/img&gt;&lt;/span&gt;I’m thrilled to announce that the &lt;a href="http://docs.oasis-open.org/imi/identity/v1.0/identity.html"&gt;Identity Metasystem Interoperability Version 1.0&lt;/a&gt; specification has been &lt;a href="http://lists.oasis-open.org/archives/imi/200907/msg00000.html"&gt;approved as an OASIS standard&lt;/a&gt;, with 56 votes in favor and none against. This standard benefitted substantially from the input received during the process.  Numerous clarifications were incorporated as a result, while still maintaining compatibility with the &lt;a href="http://self-issued.info/?p=80"&gt;Identity Selector Interoperability Profile V1.5&lt;/a&gt; (ISIP 1.5) specification.&lt;/p&gt;&#xD;
&lt;p&gt;While this is often said, this achievement is truly the result of a community effort.  While by no means a comprehensive list, thanks are due to many, including the &lt;a href="http://osis.idcommons.net/"&gt;OSIS&lt;/a&gt; members whose diligent efforts ensured that Information Cards are interoperable across vendors and platforms, the &lt;a href="http://informationcard.net/"&gt;Information Card Foundation&lt;/a&gt; members for their adoption and thought leadership work, and the &lt;a href="http://www.oasis-open.org/committees/membership.php?wg_abbrev=imi"&gt;IMI TC members&lt;/a&gt;, including co-chairs Marc Goodner and Tony Nadalin, and Mike McIntosh, who was my co-editor.  &lt;a href="http://www.incontextblog.com/"&gt;Paul Trevithick&lt;/a&gt; and Mary Ruddy get enormous credit for starting and leading the &lt;a href="http://www.eclipse.org/higgins/"&gt;Higgins Project&lt;/a&gt;, as does &lt;a href="http://virtualsoul.org/"&gt;Dale Olds&lt;/a&gt; for the &lt;a href="http://www.bandit-project.org/"&gt;Bandit Project&lt;/a&gt;.   &lt;a href="http://www.identitywoman.net/"&gt;Kaliya Hamlin&lt;/a&gt; and &lt;a href="http://www.windley.com/"&gt;Phil Windley&lt;/a&gt; were instrumental behind the scenes by running the &lt;a href="http://iiw.idcommons.net/"&gt;IIW&lt;/a&gt;s.  &lt;a href="http://ignisvulpis.blogspot.com/"&gt;Axel Nennker&lt;/a&gt; has been a tireless force, producing both ideas and software, as has &lt;a href="http://eternallyoptimistic.com/"&gt;Pamela Dingle&lt;/a&gt;.  &lt;a href="http://www.burtongroupblogs.com/jamielewis/"&gt;Jamie Lewis&lt;/a&gt;, &lt;a href="http://notabob.blogspot.com/"&gt;Bob Blakley&lt;/a&gt;, and &lt;a href="http://www.craigburton.com/"&gt;Craig Burton&lt;/a&gt; all provided insightful guidance on the practical aspects of birthing a new technology.  Arun Nanda deserves enormous thanks for doing the heavy lifting to produce the ISIP 1.0 spec.  And of course, none of this would have occurred without the leadership and vision of &lt;a href="http://www.identityblog.com/"&gt;Kim Cameron&lt;/a&gt;.  Thanks one and all!&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XRvjcSR58t8:3OmPoqf10fE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XRvjcSR58t8:3OmPoqf10fE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XRvjcSR58t8:3OmPoqf10fE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=XRvjcSR58t8:3OmPoqf10fE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/XRvjcSR58t8" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T07:09:15Z</updated>
    <published>2009-07-01T17:41:39Z</published>
    <category scheme="http://self-issued.info" term="Documentation" />
    <category scheme="http://self-issued.info" term="Information Cards" />
    <category scheme="http://self-issued.info" term="Interoperability" />
    <author>
      <name>Mike Jones</name>
      <uri>http://self-issued.info/</uri>
    </author>
    <source>
      <id>http://self-issued.info/?feed=atom</id>
      <link href="http://self-issued.info" rel="alternate" type="text/html" />
      <link href="http://self-issued.info/?feed=atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Musings on Digital Identity</subtitle>
      <title xml:lang="en">Mike Jones: self-issued</title>
      <updated>2010-03-08T07:10:07Z</updated>
    </source>
  <feedburner:origLink>http://self-issued.info/?p=163</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-8364058786383094061</id>
    <link href="http://anil-identity.blogspot.com/feeds/8364058786383094061/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=8364058786383094061" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/8364058786383094061" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/8364058786383094061" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Siz4nMjg6sM/project-picketbox-security-for-java.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: Project PicketBox (Security for Java Applications)</title>
    <content type="html">I would like to introduce you to Project PicketBox, a security framework for Java Application developers. &lt;br&gt;&lt;br&gt;Project Page:  &lt;a href="http://jboss.org/picketbox"&gt;PicketBox&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;What does it provide?&lt;/span&gt;&lt;br&gt;An API that can provide the following security features:&lt;br&gt;*  Authentication using JAAS.&lt;br&gt;*  Authorization (Coarse Grained and Fine Grained).&lt;br&gt;*  Audit&lt;br&gt;*  Security Mapping.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;What is the latest version?&lt;/span&gt;&lt;br&gt;Latest version for download is 3.0.0.Beta3&lt;br&gt;Since PicketBox is derived out of "JBoss Security" v2.0 code base, we have chosen to start with v3.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;Where I can read the documentation?&lt;/span&gt;&lt;br&gt;You can read it here: &lt;a href="http://community.jboss.org/wiki/PicketBoxOverview"&gt;PicketBox Overview&lt;/a&gt;&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;Does it provide annotations?&lt;/span&gt;&lt;br&gt;Yes, it does provide Security annotations. (&lt;a href="http://community.jboss.org/docs/DOC-14926"&gt;PicketBoxSecurityAnnotations&lt;/a&gt;)&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;Who is planning to use PicketBox?&lt;/span&gt;&lt;br&gt;* The Seam Development team has immediate plans to use PicketBox for Seam v3.&lt;br&gt;* PicketBox will be available in JBoss Application Server v6.0 M3 and beyond.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-8364058786383094061?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Siz4nMjg6sM:fRfN1_xhPAU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Siz4nMjg6sM:fRfN1_xhPAU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Siz4nMjg6sM:fRfN1_xhPAU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Siz4nMjg6sM:fRfN1_xhPAU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Siz4nMjg6sM" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T06:07:07Z</updated>
    <published>2010-03-05T16:38:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="picketbox" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-12T14:54:03Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2010/03/project-picketbox-security-for-java.html</feedburner:origLink></entry>

  <entry>
    <id>http://blog.identityjunkie.com/2010/03/07/talking-end-to-end-identity-management-for-the-cloud-authnauthz/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lGI6ybtLKuo/" rel="alternate" type="text/html" />
    <title>Dave Kearns' IdM Newsletter: Talking end-to-end identity management for the cloud (AuthN/AuthZ)</title>
    
    <updated>2010-03-08T05:46:21Z</updated>
    <source>
      <id>http://idmjournal.com/</id>
      <author>
        <name>Dave Kearns' IdM Newsletter</name>
      </author>
      <link href="http://idmjournal.com/" rel="alternate" type="text/html" />
      <link href="http://idmjournal.com/rssfeed.php" rel="self" type="application/rss+xml" />
      <rights>Copyright 2007, the Virtual Quill</rights>
      <subtitle>A Journal of Identity Management</subtitle>
      <title>IdM</title>
      <updated>2010-03-15T09:34:27Z</updated>
    </source>
  <content type="html">AD FS provides Web SSO for on-premise and internet browser based applications. FIM 2010 provides enterprise identity management in the form of provisioning, synchronization, and workflow. Both are products of the Microsoft ForeFront Security Suite.&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lGI6ybtLKuo:zJFyHrunXQw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lGI6ybtLKuo:zJFyHrunXQw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lGI6ybtLKuo:zJFyHrunXQw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lGI6ybtLKuo:zJFyHrunXQw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lGI6ybtLKuo" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.identityjunkie.com/2010/03/07/talking-end-to-end-identity-management-for-the-cloud-authnauthz/</feedburner:origLink></entry>

  <entry xml:lang="en-US">
    <id>http://blogs.msdn.com/vbertocci/archive/2010/03/07/using-the-windows-identity-foundation-and-windows-azure-passive-federation-lab-with-the-february2010-windows-azure-tools.aspx</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Ux3jiD85Pcc/using-the-windows-identity-foundation-and-windows-azure-passive-federation-lab-with-the-february2010-windows-azure-tools.aspx" rel="alternate" type="text/html" />
    <title xml:lang="en-US">Vittorio Bertocci - Microsoft: Using the “Windows Identity Foundation and Windows Azure passive federation” lab with the February2010 Windows Azure Tools</title>
    <content type="html" xml:lang="en-US">&lt;div class="wlWriterHeaderFooter" style="float: right; margin: 0px; padding: 0px 0px 4px 8px;"&gt;&lt;/div&gt;&lt;p&gt;&lt;img alt="image" border="0" height="203" src="http://blogs.msdn.com/blogfiles/vbertocci/WindowsLiveWriter/UsingtheWindowsIdentityFoundationandWind_FCD5/image_bbbc9d45-9258-4985-b78c-4950adacad14.png" style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px;" title="image" width="200"&gt;&lt;/img&gt; &lt;/p&gt;  &lt;p&gt;Quite a lot of you guys are trying to use the “Windows Identity Foundation and Windows Azure passive federation” lab (available in the &lt;a href="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;amp;FamilyID=c3e315fa-94e2-4028-99cb-904369f177c0"&gt;Identity Developer Training Kit&lt;/a&gt;, &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=413E88F8-5966-4A83-B309-53B7B77EDF78&amp;amp;displaylang=en"&gt;Windows Azure Platform Training Kit&lt;/a&gt; and &lt;a href="http://code.msdn.microsoft.com/wifwazpassive"&gt;standalone&lt;/a&gt;) with the latest version of the &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=5664019E-6860-4C33-9843-4EB40B297AB6&amp;amp;displaylang=en"&gt;Windows Azure Tools for Visual Studio&lt;/a&gt;. The dependency checker in the versions of the lab currently available, however, checks for the November release of the Windows Azure tool and gets quite upset if it doesn’t find it. &lt;/p&gt;  &lt;p&gt;Eventually we are going to release new versions of the above with updated system requirements, but if you want to go through the lab TODAY with the latest Windows Azure bits all you need to do is changing one of the cmdlets in the setup:&lt;/p&gt;  &lt;blockquote&gt;   &lt;p&gt;&lt;b&gt;&lt;i&gt;&lt;u&gt;Current&lt;/u&gt;&lt;/i&gt;&lt;/b&gt;&lt;i&gt;&lt;u&gt; CheckAzureToolsForVS.ps1 file:&lt;/u&gt;&lt;/i&gt;&lt;/p&gt;    &lt;p&gt;&lt;i&gt;$res1 = SearchUninstall -SearchFor 'Windows Azure Tools for Microsoft Visual Studio 2008 1.0*' -SearchVersion '1.0.21016.3' -UninstallKey 'HKLM:SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\';&lt;/i&gt;&lt;/p&gt;    &lt;p&gt;&lt;i&gt;&lt;/i&gt;&lt;/p&gt;    &lt;p&gt;&lt;b&gt;&lt;i&gt;&lt;u&gt;Fix to apply on&lt;/u&gt;&lt;/i&gt;&lt;/b&gt;&lt;i&gt;&lt;u&gt; CheckAzureToolsForVS.ps1 file:&lt;/u&gt;&lt;/i&gt;&lt;/p&gt;    &lt;p&gt;&lt;i&gt;$res1 = SearchUninstall -SearchFor 'Windows Azure Tools for Microsoft Visual Studio 2008 1.*' -SearchVersion '1.0.21016.3' -UninstallKey 'HKLM:SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\';&lt;/i&gt;&lt;/p&gt; &lt;/blockquote&gt;  &lt;p&gt;Note, the requirement for VS2008 still stands.&lt;/p&gt;  &lt;p&gt;Happy HOL-ing!&lt;/p&gt;&lt;img height="1" src="http://blogs.msdn.com/aggbug.aspx?PostID=9974537" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ux3jiD85Pcc:NVfUDAjUIFo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ux3jiD85Pcc:NVfUDAjUIFo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Ux3jiD85Pcc:NVfUDAjUIFo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Ux3jiD85Pcc:NVfUDAjUIFo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Ux3jiD85Pcc" height="1" width="1"/&gt;</content>
    <updated>2010-03-08T01:58:48Z</updated>
    <published>2010-03-08T01:58:48Z</published>
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/Identity/default.aspx" term="Identity" />
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/Windows+Identity+Foundation/default.aspx" term="Windows Identity Foundation" />
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/WIF/default.aspx" term="WIF" />
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/Windows+Azure/default.aspx" term="Windows Azure" />
    <author>
      <name>vibro</name>
      <uri>http://blogs.msdn.com/members/vibro.aspx</uri>
    </author>
    <source>
      <id>http://blogs.msdn.com/vbertocci/atom.xml</id>
      <link href="http://blogs.msdn.com/vbertocci/default.aspx" rel="alternate" type="text/html" />
      <link href="http://blogs.msdn.com/vbertocci/atom.xml" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en-US">Scatter thoughts</subtitle>
      <title xml:lang="en-US">Vibro.NET</title>
      <updated>2009-11-17T11:14:57Z</updated>
    </source>
  <feedburner:origLink>http://blogs.msdn.com/vbertocci/archive/2010/03/07/using-the-windows-identity-foundation-and-windows-azure-passive-federation-lab-with-the-february2010-windows-azure-tools.aspx</feedburner:origLink></entry>

  <entry xml:lang="en-US">
    <id>http://blogs.msdn.com/vbertocci/archive/2010/03/06/the-idelement-on-zune-marketplace-and-itunes.aspx</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/WGODfeCHqKU/the-idelement-on-zune-marketplace-and-itunes.aspx" rel="alternate" type="text/html" />
    <title xml:lang="en-US">Vittorio Bertocci - Microsoft: The IdElement on Zune Marketplace and iTunes</title>
    <content type="html" xml:lang="en-US">&lt;div class="wlWriterHeaderFooter" style="float: right; margin: 0px; padding: 0px 0px 4px 8px;"&gt;&lt;/div&gt;&lt;p&gt;If you are on the go, doing groceries or sweating on a treadmill, and all of a sudden you feel that you *absolutely* must  get NOW your dose of &lt;a href="http://channel9.msdn.com/shows/Identity/"&gt;claims-based goodness&lt;/a&gt;… we’ve got you covered!&lt;/p&gt;  &lt;p&gt;The oh-so-lucky owners of Zune HDs will be able to get a quick fix in crystal-clear OLED awesomeness via the Channel9 main feed podcast; in few days the direct &lt;a href="http://channel9.msdn.com/shows/Identity/"&gt;IdElement&lt;/a&gt; feed should appear. That works with pre-HD Zunes as well, or course.&lt;/p&gt;  &lt;p&gt;&lt;img alt="image" border="0" height="309" src="http://blogs.msdn.com/blogfiles/vbertocci/WindowsLiveWriter/TheIdElementonZuneMarketplaceandiTunes_FFDE/image_b3d8d7c9-a561-4184-98e6-0efbb23e7f21.png" style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px;" title="image" width="400"&gt;&lt;/img&gt; &lt;/p&gt;  &lt;p&gt;There’s more: thanks to Caleb’s notification and Duncan’s assistance, &lt;a href="http://channel9.msdn.com/shows/Identity/"&gt;the IdElement&lt;/a&gt; is now available via iTunes as well :)&lt;/p&gt;  &lt;p&gt;&lt;img alt="image" border="0" height="316" src="http://blogs.msdn.com/blogfiles/vbertocci/WindowsLiveWriter/TheIdElementonZuneMarketplaceandiTunes_FFDE/image_1001ff8d-d972-497c-800b-ab2cd16de258.png" style="border-bottom: 0px; border-left: 0px; display: inline; border-top: 0px; border-right: 0px;" title="image" width="400"&gt;&lt;/img&gt;&lt;/p&gt;&lt;img height="1" src="http://blogs.msdn.com/aggbug.aspx?PostID=9974248" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WGODfeCHqKU:Iyf5jkupqRg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WGODfeCHqKU:Iyf5jkupqRg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=WGODfeCHqKU:Iyf5jkupqRg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=WGODfeCHqKU:Iyf5jkupqRg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/WGODfeCHqKU" height="1" width="1"/&gt;</content>
    <updated>2010-03-07T02:11:51Z</updated>
    <published>2010-03-07T02:11:51Z</published>
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/Identity/default.aspx" term="Identity" />
    <category scheme="http://blogs.msdn.com/vbertocci/archive/tags/IdElement/default.aspx" term="IdElement" />
    <author>
      <name>vibro</name>
      <uri>http://blogs.msdn.com/members/vibro.aspx</uri>
    </author>
    <source>
      <id>http://blogs.msdn.com/vbertocci/atom.xml</id>
      <link href="http://blogs.msdn.com/vbertocci/default.aspx" rel="alternate" type="text/html" />
      <link href="http://blogs.msdn.com/vbertocci/atom.xml" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en-US">Scatter thoughts</subtitle>
      <title xml:lang="en-US">Vibro.NET</title>
      <updated>2009-11-17T11:14:57Z</updated>
    </source>
  <feedburner:origLink>http://blogs.msdn.com/vbertocci/archive/2010/03/06/the-idelement-on-zune-marketplace-and-itunes.aspx</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-7900123756995436189</id>
    <link href="http://connectid.blogspot.com/feeds/7900123756995436189/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=12447072&amp;postID=7900123756995436189" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/7900123756995436189?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/7900123756995436189?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7MpUukqPvto/stupid-is-as-stupid-does.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: Stupid is as stupid does</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;a href="http://posterous.com/getfile/files.posterous.com/paulmadsen/t4B3rNaxs6ZUTjsfs2U1ebjM8Zz2jCA2AQqCmK2pGAi2N7xbEppXidnMmB0D/Screen_00030.jpg"&gt;&lt;img height="200" src="http://posterous.com/getfile/files.posterous.com/paulmadsen/0g1koi1r3rfENSNI9NG2Cg31gknU5XgNkannyT0uhk6c9kLPMTvJVSLEuf7Q/Screen_00030.jpg.scaled.500.jpg" width="500"&gt;&lt;/img&gt;&lt;/a&gt; &lt;p&gt;Microsoft HealthVault sends me an email asking for an alternate email. &lt;/p&gt;&lt;p&gt;&lt;/p&gt; Follows up a warning of being phished with a nice phat phishy link. &lt;p&gt;&lt;/p&gt; If you dont want users to click on it, dont make it a link.&lt;p&gt;&lt;/p&gt; &lt;p style="font-size: 10px;"&gt; &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;  from &lt;a href="http://paulmadsen.posterous.com/stupid-is-as-stupid-does-4"&gt;Paul's posterous&lt;/a&gt; &lt;/p&gt; &lt;/div&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-7900123756995436189?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/7MpUukqPvto" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7MpUukqPvto:JJMN_cGjZlE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7MpUukqPvto:JJMN_cGjZlE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7MpUukqPvto:JJMN_cGjZlE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7MpUukqPvto:JJMN_cGjZlE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7MpUukqPvto" height="1" width="1"/&gt;</content>
    <updated>2010-03-06T11:12:25Z</updated>
    <published>2010-03-06T11:12:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kids can be cruel. I really miss that.</subtitle>
      <title>ConnectID</title>
      <updated>2010-03-13T21:51:55Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2010/03/stupid-is-as-stupid-does.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-3202333073278756422.post-8494096886673246227</id>
    <link href="http://independentidentity.blogspot.com/feeds/8494096886673246227/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=3202333073278756422&amp;postID=8494096886673246227" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default/8494096886673246227" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default/8494096886673246227" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/K6IM4LmVRqY/ot-just-write-once-run-anywhere-but.html" rel="alternate" type="text/html" />
    <title>Phil Hunt - Oracle: Not just write once, run anywhere, but delpoy and deliver anywhere too!</title>
    <content type="html">"Not just write once, run anywhere, but delpoy and deliver anywhere too."&lt;br&gt;&lt;br&gt;That statement is a quote from Nandini Ramani, Director of Java Development at Oracle (formerly Sun), recently talking about the need for &lt;a href="https://channelsun.sun.com/media/show/15059"&gt;JavaFX in this video&lt;/a&gt;. Instead of dealing with the many types of display devices, mobile phones, etc, JavaFX provides a platform for abstracting away the complexities of the myriad of displays and desktops.&lt;br&gt;&lt;br&gt;I can't help but think how the same problem occurs for application  developers writing applications that consume and use personal  information. Just as applications have to deal with differing displays, keyboards and keys, identity applications have to deal with different methods of transfer and differing ceremonies (e.g. with user-centric protocols) with each exchange of information, and even differing modalities (as I &lt;a href="http://independentidentity.blogspot.com/2009/02/defining-identity-modality.html"&gt;described last year&lt;/a&gt;).&lt;br&gt;&lt;br&gt;Developers that want applications to deploy and deliver anywhere, have to consider how to support the huge variety of data stores, network configurations, and protocols (LDAP, federated, user-centric), and as well as information governance and assurance issues.&lt;br&gt;&lt;br&gt;Just as abstracting implementations into layers helps JavaFX, layered abstraction is a key cornerstone to how we are developing the &lt;a href="http://www.arisid.org/"&gt;ArisID API&lt;/a&gt; going forwards.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/3202333073278756422-8494096886673246227?l=independentidentity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=K6IM4LmVRqY:b09qSbPD-Lk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=K6IM4LmVRqY:b09qSbPD-Lk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=K6IM4LmVRqY:b09qSbPD-Lk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=K6IM4LmVRqY:b09qSbPD-Lk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/K6IM4LmVRqY" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T21:23:50Z</updated>
    <published>2010-03-05T21:14:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="app-centric" />
    <category scheme="http://www.blogger.com/atom/ns#" term="Identity Theory" />
    <category scheme="http://www.blogger.com/atom/ns#" term="ArisID" />
    <author>
      <name>Phil Hunt</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08974996068290136413</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-3202333073278756422</id>
      <author>
        <name>Phil Hunt</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08974996068290136413</uri>
      </author>
      <link href="http://independentidentity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://independentidentity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/3202333073278756422/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Phil Hunt's blog on issues of Identity and Privacy and other stuff.</subtitle>
      <title>Independent Identity</title>
      <updated>2010-03-12T07:40:47Z</updated>
    </source>
  <feedburner:origLink>http://independentidentity.blogspot.com/2010/03/ot-just-write-once-run-anywhere-but.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.talkingidentity.com/?p=794</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/gAwD-QvG_3E/a-twittorial-on-trust-frameworks.html" rel="alternate" type="text/html" />
    <title>Nishant Kaushik - Oracle: A Twittorial on Trust Frameworks</title>
    <summary type="html">(Updated to reflect provisional status of OIX approval per this – thanks to Brett for telling me)
I just got back home from the RSA Conference in San Francisco this week, where the topic of Trust was second only to all things Cloud. While sessions on Identity Management were few and far between, there was lots [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;em&gt;&lt;strong&gt;(Updated to reflect provisional status of OIX approval per &lt;a href="http://bit.ly/aAEZEs"&gt;this&lt;/a&gt; – thanks to Brett for telling me)&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;&#xD;
&lt;p&gt;I just got back home from the RSA Conference in San Francisco this week, where the topic of &lt;strong&gt;Trust&lt;/strong&gt; was second only to all things Cloud. While sessions on Identity Management were few and far between, there was lots of interesting news coming out of the conference (like &lt;a href="http://bit.ly/cDxfRZ" target="_blank"&gt;the U-Prove announcement&lt;/a&gt;). I &lt;a href="http://twitter.com/NishantK/status/9930608994" target="_blank"&gt;tweeted about&lt;/a&gt; the announcements that concern &lt;em&gt;Trust Frameworks&lt;/em&gt;, a way for one site (Relying Party) to trust the identity, security, and privacy assertions/claims from a different site (Identity Provider) acting on behalf of a user.&lt;/p&gt;&#xD;
&lt;p&gt;The first announcement was on the &lt;a href="http://bit.ly/deZYyF," target="_blank"&gt;launch of the &lt;strong&gt;Open Identity Exchange&lt;/strong&gt;&lt;/a&gt;&lt;strong&gt; (OIX)&lt;/strong&gt;, a (yet another) non-profit organization (coming out of the &lt;em&gt;OpenID Foundation&lt;/em&gt; and &lt;em&gt;Information Card Foundation&lt;/em&gt;) that is dedicated to building trust in the exchange of        online identity credentials across public and private sectors. The second announcement was regarding the US Federal Government’s &lt;strong&gt;&lt;a href="http://www.idmanagement.gov/drilldown.cfm?action=icam" target="_new"&gt;Identity, Credential, and Access Management (ICAM)&lt;/a&gt; Trust Framework Evaluation Team (TFET)&lt;/strong&gt; provisionally approving both OIX and &lt;strong&gt;Kantara Initiative&lt;/strong&gt; as a &lt;em&gt;Trust Framework Provider&lt;/em&gt; to certify online identity management providers to U.S. federal standards for identity assurance (read more &lt;a href="http://bit.ly/aAEZEs" target="_blank"&gt;here&lt;/a&gt;).&lt;/p&gt;&#xD;
&lt;p&gt;Trying to digest all of this was a little difficult, so as I was stuck in traffic on my way home from the airport, I found myself riveted by a twitter exchange that was flying fast and furious between &lt;a href="http://twitter.com/paulmadsen" target="_blank"&gt;&lt;strong&gt;Paul Madsen&lt;/strong&gt;&lt;/a&gt; (everyone’s favorite source for biting identity musings) and &lt;a href="http://twitter.com/brettmcdowell" target="_blank"&gt;&lt;strong&gt;Brett McDowell&lt;/strong&gt;&lt;/a&gt; (till recently Executive Director of the &lt;em&gt;Kantara Initiative&lt;/em&gt;, and now technology evangelist at &lt;em&gt;Paypal&lt;/em&gt;, one of the first IdPs certified by OIX – so you can see he has unique insight). I have reproduced it here for everyone’s benefit (with their permission, of course).&lt;/p&gt;&#xD;
&lt;blockquote&gt;&#xD;
&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&#xD;
&lt;tbody&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
ICAM is one federation willing to deal with multiple trust frameworks. Will others?&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; ICAM isn’t actually dealing with multiple trust frameworks. It’s all just NIST SP800-63 w/ various means to prove you comply.&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; ICAM is ‘accepting’  OIX, KI-IAF, InCommon . To me those are all trust frameworks (ie certification programs)&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; ah, but what is a “trust framework”? The criteria for trust itself  (M04-04 &amp;amp; 800-63) or the method for demonstrating compliance?&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; P.S., in the Kantara case, IAF has criteria as well, but it’s been “mapped” to prove comparability to US Federal requirements.&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
Components of a trust framework – policies, accreditation, certification, admin, metadata infrastructure, keg parties….&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; if everybody agrees on 800 63 for the former, trust frameworks are distinguished by the latter&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; IAF/OITF (frameworks) differentiated by criteria, KI/OIX (.org’s who certify) differentiated by due diligence on applicant&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; thus KI (conditionally) approved for up to non-crypto LOA3 …&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; M04-04 &amp;amp; SP800-63 is like the “spec”, IAF is like the SCR, and OIX is a registry of those asserting compliance to the spec&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; “non-crypto” is another misleading term/issue. It rules out “pure PKI” but not “signed” assertions (SAML) or claims (IMI)&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; but IAF is more than an extra level of policy detail on top of 800 63 criteria. And OIX is more than a registry&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; for KI to be approved for AL3 PKI &amp;amp; AL4 in US Gov, it needs to cross-certify with the Federal Bridge&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; re: “but IAF is more than” and “OIX is more than” Paul, cut me some slack, this is Twitter, some nuances are going to be lost!&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; point was less about the ‘crypto’ part, and more that diff frameworks may target different parts of ‘assurance space’&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; that’s why I avoid all subtleties &amp;amp; nuances &lt;img alt=":-)" class="wp-smiley" src="http://blog.talkingidentity.com/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; &lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; I wouldn’t draw conclusions (or battle lines) regarding trust frameworks just yet. Remember the OIX RFI dialog w/KI is ongoing&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; as I complained to @&lt;a href="http://twitter.com/ve7jtb" rel="nofollow"&gt;ve7jtb&lt;/a&gt; , want to see matrix laying out components of a generic framework, specific instances mapped on&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/brettmcdowell"&gt;brettmcdowell&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/paulmadsen" rel="nofollow"&gt;paulmadsen&lt;/a&gt; that sounded like a proposal not a complaint.  I accept your matrix proposal. Looking forward to reading it when you finish &lt;img alt=":-)" class="wp-smiley" src="http://blog.talkingidentity.com/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; &lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;/tbody&gt;&#xD;
&lt;/table&gt;&#xD;
&lt;/blockquote&gt;&#xD;
&lt;p&gt;And of course, Paul had to have the last word, and it was typically Madsen-istic.&lt;/p&gt;&#xD;
&lt;blockquote&gt;&#xD;
&lt;table border="0" cellpadding="0" cellspacing="0"&gt;&#xD;
&lt;tbody&gt;&#xD;
&lt;tr&gt;&#xD;
&lt;td&gt;&lt;strong&gt;&lt;a href="http://twitter.com/paulmadsen"&gt;paulmadsen&lt;/a&gt;&lt;/strong&gt;&lt;br&gt;&#xD;
@&lt;a href="http://twitter.com/brettmcdowell" rel="nofollow"&gt;brettmcdowell&lt;/a&gt; you know, my wife made that same interpretation 16 years ago. Must be more precise&lt;/td&gt;&#xD;
&lt;/tr&gt;&#xD;
&lt;/tbody&gt;&#xD;
&lt;/table&gt;&#xD;
&lt;/blockquote&gt;&#xD;
&lt;p&gt;Hopefully that exchange was illuminating, and gave you enough pointers to standards and topics that might help deepen your understanding of Trust Frameworks. It certainly has given me a lot to think about. While RSA may have been weak on identity related discussions, these announcements are likely to have a huge impact on the identity landscape going forward.&lt;/p&gt;&#xD;
&lt;p class="tags"&gt;Tags: &lt;a href="http://blog.talkingidentity.com/tag/brett-mcdowell" rel="tag"&gt;Brett McDowell&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/icam" rel="tag"&gt;ICAM&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/kantara-initiative" rel="tag"&gt;Kantara Initiative&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/open-identity-exchange" rel="tag"&gt;Open Identity Exchange&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/paul-madsen" rel="tag"&gt;Paul Madsen&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/trust-frameworks" rel="tag"&gt;Trust Frameworks&lt;/a&gt;, &lt;a href="http://blog.talkingidentity.com/tag/user-centric-identity" rel="tag"&gt;User-Centric Identity&lt;/a&gt;&lt;/p&gt;&#xD;
&#xD;
&#xD;
Share This:&#xD;
&#xD;
&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%3Fstatus%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%2520-%2520http%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html';" id="twitter" rel="nofollow" title="Twitter"&gt;&lt;img alt="Twitter" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/twitter.png" title="Twitter"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fdigg.com%2Fsubmit%3Fphase%3D2%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Bbodytext%3D%2528Updated%2520to%2520reflect%2520provisional%2520status%2520of%2520OIX%2520approval%2520per%2520this%2520-%2520thanks%2520to%2520Brett%2520for%2520telling%2520me%2529%250D%250A%250D%250AI%2520just%2520got%2520back%2520home%2520from%2520the%2520RSA%2520Conference%2520in%2520San%2520Francisco%2520this%2520week%252C%2520where%2520the%2520topic%2520of%2520Trust%2520was%2520second%2520only%2520to%2520all%2520things%2520Cloud.%2520While%2520sessions';" id="digg" rel="nofollow" title="Digg"&gt;&lt;img alt="Digg" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/digg.png" title="Digg"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fwww.facebook.com%2Fshare.php%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Bt%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks';" id="facebook" rel="nofollow" title="Facebook"&gt;&lt;img alt="Facebook" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/facebook.png" title="Facebook"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fwww.linkedin.com%2FshareArticle%3Fmini%3Dtrue%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Bsource%3DTalking%2BIdentity%2BAn%2BArchitect%2527s%2BQuest%2Bto%2Bmake%2Bsense%2Bof%2Bthe%2Bworld%2Bof%2BIdentity%2Band%2BAccess%2BManagement%26amp%3Bsummary%3D%2528Updated%2520to%2520reflect%2520provisional%2520status%2520of%2520OIX%2520approval%2520per%2520this%2520-%2520thanks%2520to%2520Brett%2520for%2520telling%2520me%2529%250D%250A%250D%250AI%2520just%2520got%2520back%2520home%2520from%2520the%2520RSA%2520Conference%2520in%2520San%2520Francisco%2520this%2520week%252C%2520where%2520the%2520topic%2520of%2520Trust%2520was%2520second%2520only%2520to%2520all%2520things%2520Cloud.%2520While%2520sessions';" id="linkedin" rel="nofollow" title="LinkedIn"&gt;&lt;img alt="LinkedIn" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/linkedin.png" title="LinkedIn"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fwww.stumbleupon.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks';" id="stumbleupon" rel="nofollow" title="StumbleUpon"&gt;&lt;img alt="StumbleUpon" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/stumbleupon.png" title="StumbleUpon"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fwww.google.com%2Fbookmarks%2Fmark%3Fop%3Dedit%26amp%3Bbkmk%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Bannotation%3D%2528Updated%2520to%2520reflect%2520provisional%2520status%2520of%2520OIX%2520approval%2520per%2520this%2520-%2520thanks%2520to%2520Brett%2520for%2520telling%2520me%2529%250D%250A%250D%250AI%2520just%2520got%2520back%2520home%2520from%2520the%2520RSA%2520Conference%2520in%2520San%2520Francisco%2520this%2520week%252C%2520where%2520the%2520topic%2520of%2520Trust%2520was%2520second%2520only%2520to%2520all%2520things%2520Cloud.%2520While%2520sessions';" id="google" rel="nofollow" title="Google Bookmarks"&gt;&lt;img alt="Google Bookmarks" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/googlebookmark.png" title="Google Bookmarks"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fidenti.ca%2Fnotice%2Fnew%3Fstatus_textarea%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html';" id="identi.ca" rel="nofollow" title="Identi.ca"&gt;&lt;img alt="Identi.ca" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/identica.png" title="Identi.ca"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fdelicious.com%2Fpost%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Bnotes%3D%2528Updated%2520to%2520reflect%2520provisional%2520status%2520of%2520OIX%2520approval%2520per%2520this%2520-%2520thanks%2520to%2520Brett%2520for%2520telling%2520me%2529%250D%250A%250D%250AI%2520just%2520got%2520back%2520home%2520from%2520the%2520RSA%2520Conference%2520in%2520San%2520Francisco%2520this%2520week%252C%2520where%2520the%2520topic%2520of%2520Trust%2520was%2520second%2520only%2520to%2520all%2520things%2520Cloud.%2520While%2520sessions';" id="del.icio.us" rel="nofollow" title="del.icio.us"&gt;&lt;img alt="del.icio.us" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/delicious.png" title="del.icio.us"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Freddit.com%2Fsubmit%3Furl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Btitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks';" id="reddit" rel="nofollow" title="Reddit"&gt;&lt;img alt="Reddit" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/reddit.png" title="Reddit"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Ftechnorati.com%2Ffaves%3Fadd%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html';" id="technorati" rel="nofollow" title="Technorati"&gt;&lt;img alt="Technorati" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/technorati.png" title="Technorati"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fwww.newsvine.com%2F_tools%2Fseed%26amp%3Bsave%3Fu%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%26amp%3Bh%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks';" id="newsvine" rel="nofollow" title="NewsVine"&gt;&lt;img alt="NewsVine" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/newsvine.png" title="NewsVine"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Fslashdot.org%2Fbookmark.pl%3Ftitle%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Burl%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html';" id="slashdot" rel="nofollow" title="Slashdot"&gt;&lt;img alt="Slashdot" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/slashdot.png" title="Slashdot"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='http%3A%2F%2Ftwitter.com%2Fhome%2F%3Fstatus%3Dtip%2520%40Techmeme%2520http%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html%2520A%2520Twittorial%2520on%2520Trust%2520Frameworks';" id="techmeme" rel="nofollow" title="Suggest to Techmeme via Twitter"&gt;&lt;img alt="Suggest to Techmeme via Twitter" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/techmeme.png" title="Suggest to Techmeme via Twitter"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
	&lt;a href="javascript:window.location='mailto%3A%3Fsubject%3DA%2520Twittorial%2520on%2520Trust%2520Frameworks%26amp%3Bbody%3Dhttp%253A%252F%252Fblog.talkingidentity.com%252F2010%252F03%252Fa-twittorial-on-trust-frameworks.html';" id="email" rel="nofollow" title="E-mail this story to a friend!"&gt;&lt;img alt="E-mail this story to a friend!" class="sociable-hovers" src="http://blog.talkingidentity.com/wp-content/plugins/sociable/images/email_link.png" title="E-mail this story to a friend!"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
&#xD;
&#xD;
&lt;br&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gAwD-QvG_3E:h3Op4FNbqQY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gAwD-QvG_3E:h3Op4FNbqQY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=gAwD-QvG_3E:h3Op4FNbqQY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=gAwD-QvG_3E:h3Op4FNbqQY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/gAwD-QvG_3E" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T17:57:41Z</updated>
    <category term="Insight IdM" />
    <category term="Brett McDowell" />
    <category term="ICAM" />
    <category term="Kantara Initiative" />
    <category term="Open Identity Exchange" />
    <category term="Paul Madsen" />
    <category term="Trust Frameworks" />
    <category term="User-Centric Identity" />
    <author>
      <name>Nishant Kaushik</name>
    </author>
    <source>
      <id>http://blog.talkingidentity.com</id>
      <link href="http://blog.talkingidentity.com/feed" rel="self" type="application/atom+xml" />
      <link href="http://blog.talkingidentity.com" rel="alternate" type="text/html" />
      <subtitle>An Architect's Quest to make sense of the world of Identity and Access Management</subtitle>
      <title>Talking Identity</title>
      <updated>2010-03-06T03:33:21Z</updated>
    </source>
  <feedburner:origLink>http://blog.talkingidentity.com/2010/03/a-twittorial-on-trust-frameworks.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2010/03/amazon_products_in_krl_a_new_distribution_model.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/vK2Iuam97WY/amazon_products_in_krl_a_new_distribution_model.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Amazon Products in KRL: A New Distribution Model</title>
    <summary xml:lang="en" type="html">The first Web service that Amazon put up, years ago, was the ECommerce API that allowed API access to Amazon's product information. That API has gone through several name changes and is now called the Product Advertising API. Thousands...</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;!-- title: 
Amazon Products in KRL: A New Distribution Model
--&gt;&#xD;
&lt;!-- category: newsletter --&gt;&#xD;
&lt;!-- keywords: 
kynetx, krl, amazon
--&gt;&#xD;
&lt;a href="http://apps.kynetx.com/app/a41x96"&gt;&lt;img align="right" alt="Kynetx Amazon API Demo App" border="0" hspace="3" src="http://appresource.s3.amazonaws.com/appdir/a41x96/appimage.jpg" title="Kynetx Amazon API Demo App" vspace="0" width="150px"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
&lt;p&gt;&#xD;
The first Web service that Amazon put up, years ago, was the ECommerce API that allowed API access to Amazon's product information.  That API has gone through several name changes and is now called the &lt;a href="http://docs.amazonwebservices.com/AWSECommerceService/latest/DG/"&gt;Product Advertising API&lt;/a&gt;.  Thousands of people have used this API to add data about products--and the opportunity to buy them--to their Web sites.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
That's the problem, of course.  You can use it on your Web site, but you &lt;em&gt;can't conveniently use them in a browser extension to build client-side community apps&lt;/em&gt; because your Amazon developer keys would be exposed to the world.  The most recent build of KRL changes that by making the Amazon Product Advertising API (PAA)  available as a library. That means that it's possible to use Kynetx to build client-side applications that use the PAA without exposing your developer tokens.  That opens up a whole host of possible uses for Amazon product information that were difficult to achieve before.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&#xD;
&lt;p&gt;&#xD;
Here's a video that shows this at work:&#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Of course, to create client-side applications that people will install and use requires more than just &lt;a href="http://www.windley.com/archives/2010/03/building_fourth_party_apps_with_kynetx.shtml"&gt;pumping more product at them&lt;/a&gt;.  The KRL integration of PAA includes the ability to access all the user-generated reviews, product information, photos, and other product data that would allow a developer to create a first-rate experience that adds real value for people who download and use their apps.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
KRL makes using PAA easy.  To get started, you simple put your Amazon developer secrets and associate ID in the meta block of your application:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;meta {&#xD;
  key amazon {&#xD;
    "token"        : "absjj99a9ad9ad8799",&#xD;
    "secret_key"   : "absjj99a9ad9ad8799abs79999a9ad9ad8799",&#xD;
    "associate_id" :  "windleyofente-20"&#xD;
  }&#xD;
}&#xD;
&lt;/pre&gt;&#xD;
&lt;p&gt;&#xD;
These are stored securely in the cloud and not divulged to users of the application.  &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The KRL Amazon library has two primary methods: &lt;a href="http://docs.kynetx.com/krl/report-on-krl/libraries/amazon/#item_search"&gt;&lt;code&gt;ItemSearch&lt;/code&gt;&lt;/a&gt; and &lt;a href="http://docs.kynetx.com/krl/report-on-krl/libraries/amazon/itemlookup/"&gt;&lt;code&gt;ItemLookup&lt;/code&gt;&lt;/a&gt;.  With &lt;code&gt;ItemSearch&lt;/code&gt; the search index is a parameter and additional parameters depend on the particular index.  &lt;code&gt;ItemLookup&lt;/code&gt; takes an Amazon product ID (ASIN) as it's primary parameter.  Here's an example:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;amazon:item_lookup({"ItemId" : "B00008OE6I",&#xD;
                "response_group" : "ItemIds" })&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The response is returned as JSON so that you can use &lt;a href="http://docs.kynetx.com/krl/report-on-krl/expressions/jsonpath/"&gt;JSONPath&lt;/a&gt; to pick it apart and use it.  Here's a piece of the response to the previous query:&#xD;
&lt;/p&gt;&#xD;
&lt;pre class="code"&gt;"Item" : {&#xD;
            "OfferSummary" : {&#xD;
               "LowestUsedPrice" : {&#xD;
                  "Amount" : "3999",&#xD;
                  "CurrencyCode" : "USD",&#xD;
                  "FormattedPrice" : "$39.99"&#xD;
               },&#xD;
               "TotalRefurbished" : {},&#xD;
               "TotalUsed" : "8",&#xD;
               "TotalCollectible" : {},&#xD;
               "TotalNew" : {}&#xD;
            },&#xD;
            "ASIN" : "B00008OE6I"&#xD;
         }&#xD;
&lt;/pre&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Here's a video showing a little more about how this is done and giving a working example.  &#xD;
&lt;/p&gt;&#xD;
&lt;p&gt;&#xD;
&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
You can install the example that we used for the first video or just view the source code &lt;a href="http://apps.kynetx.com/app/a41x96"&gt;using the app detail page&lt;/a&gt; in the Apps Directory.  &#xD;
Here's the &lt;a href="http://docs.kynetx.com/krl/report-on-krl/libraries/amazon/"&gt;documentation for the Amazon library&lt;/a&gt;.&#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The Amazon integration with KRL allows Amazon developers to build client-side application that use Amazon product data without exposing the Amazon developer credentials--something that's been hard in the past.  KRL is designed to make using online data like Amazon or &lt;a href="http://www.windley.com/archives/2010/01/using_oauth_to_access_twitter_from_krl.shtml"&gt;Twitter&lt;/a&gt; easy and quick.  We'll be annnouncing some other major data and service integrations over the next few weeks as we gear up for &lt;a href="http://kynetximpactspring2010.eventbrite.com/"&gt;Kynetx Impact&lt;/a&gt; in April.  Come join us.  &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vK2Iuam97WY:aiMtROtYm_Q:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vK2Iuam97WY:aiMtROtYm_Q:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vK2Iuam97WY:aiMtROtYm_Q:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=vK2Iuam97WY:aiMtROtYm_Q:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/vK2Iuam97WY" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T17:56:07Z</updated>
    <published>2010-03-05T17:40:47Z</published>
    <category term="kynetx, krl, amazon," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2010-03-10T16:54:52Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2010/03/amazon_products_in_krl_a_new_distribution_model.shtml</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.broadbandmechanics.com/?p=6746</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/rTF-XhjpHMo/" rel="alternate" type="text/html" />
    <title>Marc Canter - Broadband Mechanics: 1st weekend of March blogging - ‘10</title>
    <summary type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://valleywag.gawker.com/5485675/scam+trafficking-games-company-insists-its-haiti-charity-was-not-a-scam-too"&gt;Once again Zynga proves that…..&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://techcrunch.com/2010/03/04/yahoo-contacts-gets-facebook-connect/"&gt;Yahoo makes good on their open promises!  Yahoo Contacts connects to Facebook Connect! &lt;/a&gt; I wonder if I can import a client’s mail list of 15k names?&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/everything-you-need-to-know-about-tivo-premiere-2010-3?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;&lt;img alt="" class="alignright" height="200" src="http://static.businessinsider.com/image/4b8feab67f8b9a9f4ffb0100/tivo-premiere-hands-on.jpg" style="margin-left: 8px; margin-right: 8px;" width="266"&gt;&lt;/img&gt;TiVO rising - coolio new Internet rev 4&lt;/a&gt; &amp;amp; &lt;a href="http://paidcontent.org/article/419-dish-echostar-lose-tivo-contempt-appeal-will-seek-full-courts-review/"&gt;they just won a $300M judgement against Echostar!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://sherlock.ischool.berkeley.edu/wells/world_brain.html"&gt;Permanent World Encyclopedia - by H.G. Wells (circa 1938)&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://techdirt.com/articles/20100303/1051248391.shtml"&gt;WHAT!  Apple acting like an evil company!  No!  Tell me it isn’t so!&lt;/a&gt; &lt;img alt=":-)" class="wp-smiley" src="http://blog.broadbandmechanics.com/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; &lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://policeapi.rkh.co.uk/"&gt;The Guardian’s Police API!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.youtube.com/watch?v=S9xnYBVqLws&amp;amp;feature=autoshare"&gt;What is Hadoop?&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://planning.co.cuyahoga.oh.us/blog/2010/03/#010162"&gt;Collinwood will finally get it’s giant Red center!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://blog.case.edu/lev.gonick/2010/03/04/the_future_of_higher_education"&gt;The future of higher education - Lev is quoting Frank Zappa&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.engadget.com/2010/03/05/microsofts-courier-digital-journal-exclusive-pictures-and-de/"&gt;MyPad, MySchmad - this is what Microsoft has percolating….&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;img alt="" class="alignnone" height="455" src="http://www.blogcdn.com/www.engadget.com/media/2010/03/03-05-10courier.jpg" width="600"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://battellemedia.com/archives/005141.php"&gt;I really like John Battelle’s weekly blog summary posts.&lt;/a&gt; His combo of linking and commentary is what I strive for.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://blogs.zdnet.com/BTL/?p=31584&amp;amp;utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+zdnet%2FBTL+%28ZDNet+Between+the+Lines%29"&gt;How many YEARS did I spend pitching virtual trade shows?  And here they are - finally appearing!  Conference vendors shoudl think long and hard about keeping up the momentum of their brand and the conversations - 24/7/365. &lt;/a&gt; Loic?&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/04/lastNightsSohoParty.html"&gt;The other BigDave is partying in NYC&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/04/renewedEvangelismBloggerco.html"&gt;&lt;strong&gt;NOTE to iDEA Institute peeps:&lt;/strong&gt; BloggerCon format!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://matt.blogs.it/entries/00003008.html"&gt;&lt;strong&gt;NOTE TO SELF:&lt;/strong&gt; Learn Reactor and Reichatron!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://prezi.com/"&gt;prezi&lt;/a&gt;, &lt;a href="http://www.readwriteweb.com/enterprise/2010/03/will-statusnet-be-another-open.php"&gt;StatusNet&lt;/a&gt;, &lt;a href="http://ostatic.com/blog/best-buy-releases-idea-gathering-app-under-open-source-licence"&gt;BBYIDX&lt;/a&gt;, &lt;a href="http://techcrunch.com/2010/03/04/foodspotting/"&gt;Foodspotting&lt;/a&gt;,&lt;/p&gt;&lt;/div&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://valleywag.gawker.com/5485675/scam+trafficking-games-company-insists-its-haiti-charity-was-not-a-scam-too"&gt;Once again Zynga proves that…..&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://techcrunch.com/2010/03/04/yahoo-contacts-gets-facebook-connect/"&gt;Yahoo makes good on their open promises!  Yahoo Contacts connects to Facebook Connect! &lt;/a&gt; I wonder if I can import a client’s mail list of 15k names?&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.businessinsider.com/everything-you-need-to-know-about-tivo-premiere-2010-3?utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+typepad%2Falleyinsider%2Fsilicon_alley_insider+%28Silicon+Alley+Insider%29"&gt;&lt;img alt="" class="alignright" height="200" src="http://static.businessinsider.com/image/4b8feab67f8b9a9f4ffb0100/tivo-premiere-hands-on.jpg" style="margin-left: 8px; margin-right: 8px;" width="266"&gt;&lt;/img&gt;TiVO rising - coolio new Internet rev 4&lt;/a&gt; &amp;amp; &lt;a href="http://paidcontent.org/article/419-dish-echostar-lose-tivo-contempt-appeal-will-seek-full-courts-review/"&gt;they just won a $300M judgement against Echostar!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="https://sherlock.ischool.berkeley.edu/wells/world_brain.html"&gt;Permanent World Encyclopedia - by H.G. Wells (circa 1938)&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://techdirt.com/articles/20100303/1051248391.shtml"&gt;WHAT!  Apple acting like an evil company!  No!  Tell me it isn’t so!&lt;/a&gt; &lt;img alt=":-)" class="wp-smiley" src="http://blog.broadbandmechanics.com/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; &lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://policeapi.rkh.co.uk/"&gt;The Guardian’s Police API!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.youtube.com/watch?v=S9xnYBVqLws&amp;amp;feature=autoshare"&gt;What is Hadoop?&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://planning.co.cuyahoga.oh.us/blog/2010/03/#010162"&gt;Collinwood will finally get it’s giant Red center!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://blog.case.edu/lev.gonick/2010/03/04/the_future_of_higher_education"&gt;The future of higher education - Lev is quoting Frank Zappa&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.engadget.com/2010/03/05/microsofts-courier-digital-journal-exclusive-pictures-and-de/"&gt;MyPad, MySchmad - this is what Microsoft has percolating….&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;img alt="" class="alignnone" height="455" src="http://www.blogcdn.com/www.engadget.com/media/2010/03/03-05-10courier.jpg" width="600"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://battellemedia.com/archives/005141.php"&gt;I really like John Battelle’s weekly blog summary posts.&lt;/a&gt; His combo of linking and commentary is what I strive for.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://blogs.zdnet.com/BTL/?p=31584&amp;amp;utm_source=feedburner&amp;amp;utm_medium=feed&amp;amp;utm_campaign=Feed%3A+zdnet%2FBTL+%28ZDNet+Between+the+Lines%29"&gt;How many YEARS did I spend pitching virtual trade shows?  And here they are - finally appearing!  Conference vendors shoudl think long and hard about keeping up the momentum of their brand and the conversations - 24/7/365. &lt;/a&gt; Loic?&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/04/lastNightsSohoParty.html"&gt;The other BigDave is partying in NYC&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.scripting.com/stories/2010/03/04/renewedEvangelismBloggerco.html"&gt;&lt;strong&gt;NOTE to iDEA Institute peeps:&lt;/strong&gt; BloggerCon format!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://matt.blogs.it/entries/00003008.html"&gt;&lt;strong&gt;NOTE TO SELF:&lt;/strong&gt; Learn Reactor and Reichatron!&lt;/a&gt;&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://prezi.com/"&gt;prezi&lt;/a&gt;, &lt;a href="http://www.readwriteweb.com/enterprise/2010/03/will-statusnet-be-another-open.php"&gt;StatusNet&lt;/a&gt;, &lt;a href="http://ostatic.com/blog/best-buy-releases-idea-gathering-app-under-open-source-licence"&gt;BBYIDX&lt;/a&gt;, &lt;a href="http://techcrunch.com/2010/03/04/foodspotting/"&gt;Foodspotting&lt;/a&gt;,&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rTF-XhjpHMo:_w3l8-tlIQw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rTF-XhjpHMo:_w3l8-tlIQw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=rTF-XhjpHMo:_w3l8-tlIQw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=rTF-XhjpHMo:_w3l8-tlIQw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/rTF-XhjpHMo" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T16:39:02Z</updated>
    <category term="Blog" />
    <category term="Dad" />
    <author>
      <name>marc</name>
    </author>
    <source>
      <id>http://blog.broadbandmechanics.com</id>
      <link href="http://blog.broadbandmechanics.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blog.broadbandmechanics.com" rel="alternate" type="text/html" />
      <subtitle>building the open web one bit at a time</subtitle>
      <title>Marc's Voice</title>
      <updated>2010-03-13T21:54:01Z</updated>
    </source>
  <feedburner:origLink>http://blog.broadbandmechanics.com/2010/03/05/1stweekend-of-march-blogging-10/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-6940728126479075612.post-4972891382904369293</id>
    <link href="http://anil-identity.blogspot.com/feeds/4972891382904369293/comments/default" rel="replies" type="application/atom+xml" />
    <link href="https://www.blogger.com/comment.g?blogID=6940728126479075612&amp;postID=4972891382904369293" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/4972891382904369293" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default/4972891382904369293" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/UPx_ql6qj5M/as5-specifying-security-domain.html" rel="alternate" type="text/html" />
    <title>Anil Saldhana - Red Hat: AS5: Specifying Security Domain Configuration</title>
    <content type="html">Historically, JBoss AS has provided the &lt;a href="http://www.jboss.org/community/wiki/DynamicLoginConfig"&gt;DynamicLoginConfig&lt;/a&gt; service to specify your security domain configuration (JAAS login modules). Starting JBoss AS 5.0, we provide a simplified xml version of that as follows:&lt;br&gt;&lt;br&gt;You will need to create a xxx-jboss-beans.xml file and then you can define your login modules as follows:&lt;br&gt;===================================&lt;br&gt;&amp;lt;?xml version="1.0" encoding="UTF-8"?&amp;gt;&lt;br&gt;&lt;br&gt;&amp;lt;deployment xmlns="urn:jboss:bean-deployer:2.0"&amp;gt;&lt;br&gt;&lt;br&gt;   &amp;lt;application-policy xmlns="urn:jboss:security-beans:1.0" name="web-test"&amp;gt;&lt;br&gt;     &amp;lt;authentication&amp;gt;&lt;br&gt;        &amp;lt;login-module code = "org.jboss.security.auth.spi.UsersRolesLoginModule"&lt;br&gt;            flag = "required"&amp;gt;&lt;br&gt;            &amp;lt;module-option name = "unauthenticatedIdentity"&amp;gt;anonymous&amp;lt;/module-option&amp;gt;&lt;br&gt;            &amp;lt;module-option name="usersProperties"&amp;gt;u.properties&amp;lt;/module-option&amp;gt;&lt;br&gt;            &amp;lt;module-option name="rolesProperties"&amp;gt;r.properties&amp;lt;/module-option&amp;gt;&lt;br&gt;         &amp;lt;/login-module&amp;gt;&lt;br&gt;      &amp;lt;/authentication&amp;gt;&lt;br&gt;   &amp;lt;/application-policy&amp;gt;&lt;br&gt;&lt;br&gt;   &amp;lt;application-policy xmlns="urn:jboss:security-beans:1.0" name="ejb-test"&amp;gt;&lt;br&gt;      &amp;lt;authentication&amp;gt;&lt;br&gt;        &amp;lt;login-module code = "org.jboss.security.auth.spi.UsersRolesLoginModule"&lt;br&gt;            flag = "required"&amp;gt;&lt;br&gt;            &amp;lt;module-option name = "unauthenticatedIdentity"&amp;gt;anonymous&amp;lt;/module-option&amp;gt;&lt;br&gt;            &amp;lt;module-option name="usersProperties"&amp;gt;u.properties&amp;lt;/module-option&amp;gt;&lt;br&gt;            &amp;lt;module-option name="rolesProperties"&amp;gt;r.properties&amp;lt;/module-option&amp;gt;&lt;br&gt;        &amp;lt;/login-module&amp;gt;&lt;br&gt;      &amp;lt;/authentication&amp;gt;&lt;br&gt;   &amp;lt;/application-policy&amp;gt;&lt;br&gt;&lt;br&gt;&amp;lt;/deployment&amp;gt;&lt;br&gt;&lt;br&gt;&lt;br&gt;==================================&lt;br&gt;&lt;br&gt;We still support the &lt;a href="http://www.jboss.org/community/wiki/DynamicLoginConfig"&gt;DynamicLoginConfig&lt;/a&gt; mbean definition approach also. But the afore mentioned approach is simpler.&lt;br&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;DZone Article&lt;/span&gt;: &lt;a href="http://server.dzone.com/articles/security-features-jboss-510"&gt;http://server.dzone.com/articles/security-features-jboss-510&lt;/a&gt;&lt;br&gt;&lt;span style="font-weight: bold;"&gt;&lt;br&gt;Frequently Asked Questions&lt;/span&gt;:&lt;br&gt;1. Where do I place the xxx.properties files for the UsersRolesLoginModule?&lt;br&gt;You can place them under the conf directory.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/6940728126479075612-4972891382904369293?l=anil-identity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UPx_ql6qj5M:WDnYF-0-Fes:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UPx_ql6qj5M:WDnYF-0-Fes:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UPx_ql6qj5M:WDnYF-0-Fes:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=UPx_ql6qj5M:WDnYF-0-Fes:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/UPx_ql6qj5M" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T16:31:59Z</updated>
    <published>2009-05-15T21:05:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossTips" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBoss/Tomcat" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBossAS5" />
    <category scheme="http://www.blogger.com/atom/ns#" term="JBoss5" />
    <author>
      <name>Anil Saldhana</name>
      <email>noreply@blogger.com</email>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-6940728126479075612</id>
      <author>
        <name>Anil Saldhana</name>
        <email>noreply@blogger.com</email>
      </author>
      <link href="http://anil-identity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://anil-identity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/6940728126479075612/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>This blog is a personal online diary of Security and Identity Management Related thoughts, muses, stories and rumors. The blog posts are a personal opinion only and neither reflect the views of current or past employers nor any OTHER person living or dead on this planet.

I am the Lead Security Architect at JBoss (Middleware for Red Hat Inc). I strive to make JBoss secure for users and customers alike.</subtitle>
      <title>Anil's Security and Identity Management Blog</title>
      <updated>2010-03-05T16:31:59Z</updated>
    </source>
  <feedburner:origLink>http://anil-identity.blogspot.com/2009/05/as5-specifying-security-domain.html</feedburner:origLink></entry>

  <entry>
    <id>tag:typepad.com,2003:post-6a00d83420ad7a53ef0120a901f9b0970b</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/kw35NEqFWUM/catalyst-europe-is-coming-up-fast.html" rel="alternate" type="text/html" />
    <link href="http://identityblog.burtongroup.com/bgidps/2010/03/catalyst-europe-is-coming-up-fast.html" rel="replies" type="text/html" />
    <title>Burton Group: Catalyst Europe is Coming Up Fast!</title>
    <summary type="html">Blogger: Bob Blakley We hit the stage for Catalyst Europe on April 19. If you haven't already made your plans to join us in Prague, we've got a little treat for you at the end of this post. We're going...</summary>
    <content type="html" xml:lang="en-US">&lt;p&gt;Blogger: Bob Blakley&lt;/p&gt;&lt;p&gt;We hit the stage for Catalyst Europe on April 19.  If you haven't already made your plans to join us in Prague, we've got a little treat for you at the end of this post.&lt;/p&gt;&lt;p&gt;We're going to focus this year on the emerging identity architecture.  If you're looking, you can see this identity architecture around you already, in offerings from mainstream identity vendors like Microsoft and Oracle, but also in offerings from smaller firms like Gluu, Unbound ID, Radiant Logic, and others.&lt;/p&gt;&lt;p&gt;The elevator-pitch version of the story is this: licensed provisioning software packages compete in a market for identity management systems.  User-centric identity providers compete in a market for identity providers.  What enterprises need is neither a market for identity management systems nor a market for identity providers - what they need is a market for identities.&lt;/p&gt;&lt;p&gt;Federation technology, directory virtualization, and contextual access control can be combined to create a technical architecture on top of which this market for identities can emerge.  The market for identities has many advantages, but getting there will take time and it will take work.  We'll lay out the roadmap in Prague.&lt;/p&gt;&lt;p&gt;If (like me) you're a last-minute kinda person and you haven't registered yet, here's your reward for waiting: &lt;strong&gt;use the promo code "INSIDER" during registration, and you'll get your ticket for the discounted price of only 995 Euro&lt;/strong&gt;.&lt;/p&gt;&lt;p&gt;Sign up today and we'll see you there!&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kw35NEqFWUM:trvTmNTdnRQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kw35NEqFWUM:trvTmNTdnRQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=kw35NEqFWUM:trvTmNTdnRQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=kw35NEqFWUM:trvTmNTdnRQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/kw35NEqFWUM" height="1" width="1"/&gt;</content>
    <updated>2010-03-05T16:07:53Z</updated>
    <published>2010-03-05T16:07:53Z</published>
    <category scheme="http://www.sixapart.com/ns/types#category" term="Bob Blakley" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="burtongroupcatalyst10" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="emerging technologies" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="entitlement management" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="federation" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="identity management" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="identity services" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="new identity business models" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="provisioning" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="relationship" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="SaaS" />
    <category scheme="http://www.sixapart.com/ns/types#category" term="user centric identity" /><feedburner:origlink>http://identityblog.burtongroup.com/bgidps/2010/03/catalyst-europe-is-coming-up-fast.html</feedburner:origlink>
    <author>
      <name>Burton Group IdPS</name>
    </author>
    <source>
      <id>tag:typepad.com,2003:weblog-500218</id>
      <link href="http://identityblog.burtongroup.com/bgidps/" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/bgidps/indexrdf" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <title>Burton Group Identity Blog</title>
      <updated>2010-03-05T16:07:53Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/bgidps/indexrdf/~3/jy5sk0-Mm_8/catalyst-europe-is-coming-up-fast.html</feedburner:origLink></entry>
</feed>
