<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:planet="http://planet.intertwingly.net/" xmlns:indexing="urn:atom-extension:indexing" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" indexing:index="no"><access:restriction xmlns:access="http://www.bloglines.com/about/specs/fac-1.0" relationship="deny" />
  <title>Planet Identity</title>
  <updated>2012-02-05T19:05:27Z</updated>
  <generator uri="http://intertwingly.net/code/venus/">Venus</generator>
  <author>
    <name>Pat Patterson</name>
    <email>pat@superpat.com</email>
  </author>
  <id>http://planetidentity.org/atom.xml</id>
  
  <link href="http://planetidentity.org" rel="alternate" />

  <atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/PlanetIdentity" /><feedburner:info uri="planetidentity" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry xml:lang="en">
    <id>http://www.links.org/?p=1219</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/55CgqnErV_k/" rel="alternate" type="text/html" />
    <title>Ben Laurie - Apache / The Bunker: Certificate Transparency Sites</title>
    <summary type="html">I may not have said much more about Certificate Transparency, but we’ve been working on it. So, those interested in following along (or joining in) are welcome to look at…
Website.
Mailing list.
Code repository.
The code repository also includes the spec, in xml2rfc format.
Share This</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;I may not have said much more about &lt;a href="http://www.links.org/?p=1212"&gt;Certificate Transparency&lt;/a&gt;, but we’ve been working on it. So, those interested in following along (or joining in) are welcome to look at…&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.certificate-transparency.org/"&gt;Website&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://groups.google.com/group/certificate-transparency"&gt;Mailing list&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://code.google.com/p/certificate-transparency/"&gt;Code repository&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;The code repository also includes the spec, in xml2rfc format.&lt;/p&gt;&#xD;
&lt;p class="akst_link"&gt;&lt;a class="akst_share_link" href="http://www.links.org/?p=1219&amp;amp;akst_action=share-this" id="akst_link_1219" rel="nofollow" title="E-mail this, post to del.icio.us, etc."&gt;Share This&lt;/a&gt;&#xD;
&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/links/ZvUZ/~4/g-_JHLKRdYU" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=55CgqnErV_k:g-_JHLKRdYU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=55CgqnErV_k:g-_JHLKRdYU:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=55CgqnErV_k:g-_JHLKRdYU:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=55CgqnErV_k:g-_JHLKRdYU:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/55CgqnErV_k" height="1" width="1"/&gt;</content>
    <updated>2012-02-04T21:50:54Z</updated>
    <category term="Crypto" />
    <category term="Security" /><feedburner:origlink>http://www.links.org/?p=1219</feedburner:origlink>
    <author>
      <name>Ben</name>
    </author>
    <source>
      <id>http://www.links.org</id>
      <link href="http://www.links.org" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/links/ZvUZ" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Ben Laurie blathering</subtitle>
      <title>Links</title>
      <updated>2012-02-04T22:02:54Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/links/ZvUZ/~3/g-_JHLKRdYU/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-11222552.post-486801412772521383</id>
    <link href="http://jacksonshaw.blogspot.com/feeds/486801412772521383/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=11222552&amp;postID=486801412772521383&amp;isPopup=true" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/486801412772521383?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/11222552/posts/default/486801412772521383?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/BVaCe-3OSc8/multifactor-authentication-for-dummies.html" rel="alternate" type="text/html" />
    <title>Jackson Shaw - Quest: Multifactor Authentication for Dummies</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;a href="http://lh3.ggpht.com/-RCZgM2whSNY/TywckNcyhaI/AAAAAAAAy4c/-OqL98dOE90/s1600-h/9781118129500_220x340%25255B2%25255D.jpg"&gt;&lt;img align="right" alt="Multifactor Authentication For Dummies®, Quest Software Edition" border="0" height="244" src="http://lh4.ggpht.com/-l6P26K4sbFU/TywckUKidYI/AAAAAAAAy4k/zV4FTqMCsxk/9781118129500_220x340_thumb.jpg?imgmax=800" style="background-image: none; border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px; display: inline; float: right; margin: 0px 0px 5px; padding-left: 0px; padding-right: 0px; padding-top: 0px;" title="Multifactor Authentication For Dummies®, Quest Software Edition" width="159"&gt;&lt;/img&gt;&lt;/a&gt;We just released this “for Dummies” book which gives a good overview of what multifactor authentication is, the challenges it helps to solve and how the &lt;a href="http://www.quest.com/defender/" target="_blank"&gt;Quest Defender&lt;/a&gt; product fits into solving customer’s problems in this area.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
You can download your copy of this book &lt;a href="https://sites.google.com/site/jacksonshaw/Home/MultifactorAuthenticationforDummies.pdf?attredirects=0&amp;amp;d=1" target="_blank"&gt;here&lt;/a&gt;. I hope you find it useful.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/11222552-486801412772521383?l=jacksonshaw.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/kUb5WQtkgCemUArEabfF_BlowxU/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/kUb5WQtkgCemUArEabfF_BlowxU/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/kUb5WQtkgCemUArEabfF_BlowxU/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/kUb5WQtkgCemUArEabfF_BlowxU/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~4/aPpAAX5ITeQ" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BVaCe-3OSc8:5tiiufQfcYg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BVaCe-3OSc8:5tiiufQfcYg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BVaCe-3OSc8:5tiiufQfcYg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=BVaCe-3OSc8:5tiiufQfcYg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/BVaCe-3OSc8" height="1" width="1"/&gt;</content>
    <updated>2012-02-04T19:57:01Z</updated>
    <published>2012-02-04T19:57:00Z</published><feedburner:origlink>http://jacksonshaw.blogspot.com/2012/02/multifactor-authentication-for-dummies.html</feedburner:origlink>
    <author>
      <name>Jackson Shaw</name>
      <email>noreply@blogger.com</email>
      <uri>https://profiles.google.com/117634898820545364909</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-11222552</id>
      <category term="provisioning" />
      <category term="Red Hat" />
      <category term="ActivIdentity" />
      <category term="Mycroft" />
      <category term="SafeKeeping" />
      <category term="Arcot" />
      <category term="Novell" />
      <category term="SDM Software" />
      <category term="identity management" />
      <category term="Banyan" />
      <category term="camera strap" />
      <category term="Seagate" />
      <category term="I-5" />
      <category term="Dave Kearns" />
      <category term="Q" />
      <category term="advanced metering infrastructure" />
      <category term="Cisco" />
      <category term="privacy" />
      <category term="Quest Authentication Services" />
      <category term="PowerGUI" />
      <category term="open source" />
      <category term="Apple" />
      <category term="ILM" />
      <category term="QAS" />
      <category term="RSA" />
      <category term="Halifax" />
      <category term="GridSure" />
      <category term="SAP" />
      <category term="Entrust" />
      <category term="group policy" />
      <category term="QSFT" />
      <category term="Joel Oleson" />
      <category term="eTrust" />
      <category term="Dell" />
      <category term="NetPro" />
      <category term="Sitka" />
      <category term="The Experts Conference" />
      <category term="DEC 2009" />
      <category term="Gartner" />
      <category term="Burton Group" />
      <category term="EOS" />
      <category term="Defender" />
      <category term="TEC 2009" />
      <category term="Adobe" />
      <category term="IBM" />
      <category term="UPStrap" />
      <category term="VMWare" />
      <category term="Power Presentations" />
      <category term="NOVL" />
      <category term="Rulon Gardner" />
      <category term="authentication" />
      <category term="Clear" />
      <category term="security" />
      <category term="NBC" />
      <category term="X.500" />
      <category term="Windows Identity Foundation" />
      <category term="federation" />
      <category term="SecureDoc" />
      <category term="ADFS" />
      <category term="Liberty" />
      <category term="QuestSoftware" />
      <category term="OpenLDAP" />
      <category term="Kerberos" />
      <category term="SSO" />
      <category term="OSX" />
      <category term="Sentillion" />
      <category term="root" />
      <category term="CardSpace" />
      <category term="SAML" />
      <category term="LDAP" />
      <category term="OpenID" />
      <category term="MaxWare" />
      <category term="Raymond Khoury" />
      <category term="Digital Persona" />
      <category term="ENTU" />
      <category term="single sign-on" />
      <category term="iPhone" />
      <category term="VAS" />
      <category term="Symantec" />
      <category term="XACML" />
      <category term="SPML" />
      <category term="RHT" />
      <category term="Netscape" />
      <category term="NGAD" />
      <category term="trout" />
      <category term="X.400" />
      <category term="ActiveRoles Server" />
      <category term="SiteMinder" />
      <category term="biometrics" />
      <category term="ForeFront" />
      <category term="OpenSSH" />
      <category term="Alaska" />
      <category term="PassGo" />
      <category term="Unix" />
      <category term="virtualization" />
      <category term="Vista" />
      <category term="ESSO" />
      <category term="Microsoft" />
      <category term="trust" />
      <category term="WIF" />
      <category term="MSFT" />
      <category term="XP" />
      <category term="strong authentication" />
      <category term="Exchange" />
      <category term="Samba" />
      <category term="OATH" />
      <category term="passwords" />
      <category term="Microsoft Operations Manager" />
      <category term="Systems Center Operations Manager 2007" />
      <category term="Mary-Jo Foley" />
      <category term="root access control" />
      <category term="Oracle" />
      <category term="Azure" />
      <category term="Vintela" />
      <category term="IPSec" />
      <category term="Ping Identity" />
      <category term="Conformity" />
      <category term="privileged account management" />
      <category term="First Tech Credit Union" />
      <category term="vodka" />
      <category term="MIIS" />
      <category term="Catalyst" />
      <category term="igniteseattle" />
      <category term="Montana" />
      <category term="ACTI" />
      <category term="RedHat" />
      <category term="Kim Cameron" />
      <category term="SaaS" />
      <category term="Kuppinger Cole" />
      <category term="identity managment" />
      <category term="SMTP" />
      <category term="Seattle" />
      <category term="Active Directory Federation Services" />
      <category term="PowerShell" />
      <category term="STS" />
      <category term="PING" />
      <category term="Jerry Weissman" />
      <category term="Noorda" />
      <category term="Canon" />
      <category term="EIC" />
      <category term="Geneva" />
      <category term="Securent" />
      <category term="self-service" />
      <category term="Zoomit" />
      <category term="ScriptLogic" />
      <category term="productmarketing.com" />
      <category term="iToken" />
      <category term="next generation active directory" />
      <category term="Mira Sorvino" />
      <category term="authorization" />
      <category term="WS-*" />
      <category term="Directory Experts Conference" />
      <category term="ADBE" />
      <category term="MOM" />
      <category term="cloud computing" />
      <category term="two-factor authentication" />
      <category term="Montreal" />
      <category term="Quest Software" />
      <category term="M-Tech" />
      <category term="Don Bowen" />
      <category term="SharePoint" />
      <category term="Sybase" />
      <category term="PowerPoint" />
      <category term="AAPL" />
      <category term="Google" />
      <category term="Centeris" />
      <category term="Bowen Family Trust" />
      <category term="Pragmatic Marketing" />
      <category term="Identity 2.0" />
      <category term="sudo" />
      <category term="Sun" />
      <category term="Comcast" />
      <category term="30D" />
      <category term="PKI" />
      <category term="Omar Sharif" />
      <category term="ORCL" />
      <category term="compiance" />
      <category term="Active Directory" />
      <category term="identity" />
      <category term="Linux" />
      <category term="Charlie Plumb" />
      <category term="FIM" />
      <category term="eXc Software" />
      <category term="compliance" />
      <category term="ADAM" />
      <category term="Symark" />
      <category term="InfoCard" />
      <category term="rosoft" />
      <category term="The Last Templar" />
      <author>
        <name>Jackson Shaw</name>
        <email>noreply@blogger.com</email>
        <uri>https://profiles.google.com/117634898820545364909</uri>
      </author>
      <link href="http://jacksonshaw.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://jacksonshaw.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/11222552/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle type="xhtml"><div xmlns="http://www.w3.org/1999/xhtml"><em>Jackson's comments, commiserations, confabulations and simplifications on identity management and Microsoft's Active Directory all based on his continuous "reality tour" of meetings with customers, ISVs and Microsoft.</em></div>
      </subtitle>
      <title>Jackson's Identity Management &amp; Active Directory Reality Tour Travelblog</title>
      <updated>2012-02-04T19:57:01Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/JacksonsIdentityManagementActiveDirectoryRealityTourTravelblog/~3/aPpAAX5ITeQ/multifactor-authentication-for-dummies.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2012/02/an_operating_system_for_your_personal_cloud.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/PCh73LXgEvk/an_operating_system_for_your_personal_cloud.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: An Operating System for Your Personal Cloud</title>
    <summary xml:lang="en" type="html">A personal event network is like an OS for your personal cloud. You can install apps to customize it for your purpose, it can store and manage your personal data, and it provides generalized services through APIs that any app can take advantage of.</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;a href="http://www.flickr.com/photos/19779889@N00/3000614098/"&gt;&#xD;
&lt;img align="right" alt="Lenticular Clouds Over Timpanogos" border="0" hspace="3" src="http://farm4.staticflickr.com/3187/3000614098_8e8924a8d3_m.jpg" style="margin-top: 10px;" title="Lenticular Clouds Over Timpanogos" vspace="0" width="150px"&gt;&lt;/img&gt;&#xD;
&lt;/a&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Everyone has a cloud strategy these days. Of course, when you hear about clouds, you hear questions like "Are we talking about IaaS, PaaS, or SaaS?" This assumes an enterprise-centric view of clouds that is belied by what Robert Scoble calls &lt;a href="http://scobleizer.com/2011/09/11/the-game-of-all-games-content-and-context-why-mark-zuckerberg-marc-benioff-and-larry-page-are-carving-up-the-social-world/"&gt;the game of games&lt;/a&gt;. Facebook, Google, and Apple are most selling clouds in various guises and see their cloud strategy as a key to their future. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
The problems with these "personal clouds" is that they have no operating system. An operating system is what makes your personal computer &lt;em&gt;personal&lt;/em&gt;. Without an OS, it would be a special purpose appliance that does specific things (like run an office suite) but not others (like play a game). There are &lt;a href="http://itc.conversationsnetwork.org/shows/detail5151.html"&gt;certainly those who wish that was the norm&lt;/a&gt;, but for now, at least, we have general purpose computers that run a variety of applications and can be configured according to the dictates and wishes of their owners. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
[An aside for those of you getting ready to comment: yes Facebook allows apps and is an app platform, but they are ancillary to the experience, not core. The core experience is still very much a Facebook-determined thing.]&#xD;
&lt;/p&gt;&#xD;
&#xD;
&#xD;
&lt;p&gt;&#xD;
The user-focused clouds we see today are special purpose. You can't customize them much or make them do something their builders didn't envision in the selection of applications that they offer. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
In contrast &lt;a href="http://www.windley.com/archives/2011/12/notifications_in_a_personal_event_networks.shtml"&gt;a personal event network is like an OS for your personal cloud&lt;/a&gt;. You can install apps to customize it for your purpose, it can &lt;a href="http://www.windley.com/archives/2012/01/foursquare_and_personal_data_in_a_personal_event_network.shtml"&gt;store and manage your personal data&lt;/a&gt;, and it provides &lt;a href="http://www.windley.com/archives/2011/12/notifications_in_a_personal_event_networks.shtml"&gt;generalized services through APIs&lt;/a&gt; that any app can take advantage of. &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PCh73LXgEvk:LtFfw5VncUw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PCh73LXgEvk:LtFfw5VncUw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=PCh73LXgEvk:LtFfw5VncUw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=PCh73LXgEvk:LtFfw5VncUw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/PCh73LXgEvk" height="1" width="1"/&gt;</content>
    <updated>2012-02-04T00:58:01Z</updated>
    <published>2012-02-04T00:12:02Z</published>
    <category term="krl, kynetx, event+network, personal+cloud," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2012-02-04T00:58:01Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2012/02/an_operating_system_for_your_personal_cloud.shtml</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-36930068.post-5183748039781685165</id>
    <link href="http://blog.ianyip.com/feeds/5183748039781685165/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=36930068&amp;postID=5183748039781685165" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/36930068/posts/default/5183748039781685165?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/36930068/posts/default/5183748039781685165?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/njbEcLgOo-0/f-it-im-lighting-100-candles.html" rel="alternate" type="text/html" />
    <title>Ian Yip: F*** it, I'm lighting 100 candles - Entitlement Management 2012</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;table align="center" cellpadding="0" cellspacing="0" class="tr-caption-container" style="margin-left: auto; margin-right: auto; text-align: center;"&gt;&lt;tbody&gt;&#xD;
&lt;tr&gt;&lt;td style="text-align: center;"&gt;&lt;a href="http://www.flickr.com/photos/silipo/298990217/" style="clear: left; margin-bottom: 1em; margin-left: auto; margin-right: auto;" target="_blank"&gt;&lt;img border="0" height="213" src="http://3.bp.blogspot.com/-vucLzt3Uobs/TyvqpDT_tDI/AAAAAAAAAKE/iDtWnuR-NNw/s320/candles.jpg" width="320"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&#xD;
&lt;tr&gt;&lt;td class="tr-caption" style="text-align: center;"&gt;&lt;a href="http://www.flickr.com/photos/silipo/298990217/" target="_blank"&gt;Photo credit: Alessandro Silipo&lt;/a&gt;&lt;/td&gt;&lt;/tr&gt;&#xD;
&lt;/tbody&gt;&lt;/table&gt;&#xD;
One of the most widely read series of posts on my blog relate to &lt;b&gt;entitlement management&lt;/b&gt; (&lt;a href="http://blog.ianyip.com/2009/05/entitlement-and-access-management.html" target="_blank"&gt;part 1&lt;/a&gt;, &lt;a href="http://blog.ianyip.com/2009/05/spinning-entitlements.html" target="_blank"&gt;part 2&lt;/a&gt;). In fact, do a &lt;a href="http://www.google.com/search?btnG=1&amp;amp;pws=0&amp;amp;q=entitlement+management" target="_blank"&gt;search on Google for "entitlement management"&lt;/a&gt; and part 1 appears on the first page of search results (albeit below the fold). Don't read them yet. You'll get tired and won't come back to continue reading this :-) &lt;br&gt;&#xD;
&lt;br&gt;&#xD;
I wrote those posts over 2 years ago to stir the pot. They served their purpose and garnered some great discussion with a few luminaries in this space (including esteemed analysts from Gartner and Forrester).&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
At the time, I argued that the term "entitlement management" was typically used to refer to fine-grained access management &lt;u&gt;or&lt;/u&gt; real-time, attribute-based, authorisation enforcement (e.g. as per the products offered by &lt;a href="http://www-01.ibm.com/software/tivoli/products/security-policy-mgr/" target="_blank"&gt;IBM&lt;/a&gt;, &lt;a href="http://www.oracle.com/us/products/middleware/identity-management/oracle-entitlements-server/overview/index.html" target="_blank"&gt;Oracle&lt;/a&gt;, &lt;a href="http://www.axiomatics.com/" target="_blank"&gt;Axiomatics&lt;/a&gt; and &lt;a href="http://www.bitkoo.com/" target="_blank"&gt;BiTKOO&lt;/a&gt; (now part of &lt;a href="http://www.quest.com/" target="_blank"&gt;Quest&lt;/a&gt; Software)). But on the flip side, I did acknowledge (in part 2) that there were other ways to define it:&lt;br&gt;&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;The processes and solutions around gathering, interpreting, and cleansing entitlements.&lt;/li&gt;&#xD;
&lt;li&gt;User-managed (or user-centric) entitlement management.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
Point number 2 is a topic best left for another day, especially as it involves discussions around online services (see &lt;a href="http://kantarainitiative.org/confluence/display/uma/Home" target="_blank"&gt;UMA&lt;/a&gt; for more info).&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
The first point however, is what we now commonly refer to as &lt;b&gt;access governance&lt;/b&gt; (e.g. &lt;a href="http://www.sailpoint.com/" target="_blank"&gt;SailPoint&lt;/a&gt;, &lt;a href="http://www.aveksa.com/" target="_blank"&gt;Aveksa&lt;/a&gt;). Some use "identity intelligence" (thanks to the analysts), but in my opinion, identity intelligence is a broader term that also includes data analytics and Security Information and Event Management (SIEM). However, "manage user entitlements" is another commonly used term in access governance discussions. In fact, it is used so often that I'm starting to find when anyone talks about entitlement management, more often than not, they mean managing user entitlements for access governance purposes.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Back in 2009 (when I wrote the posts referenced above), I was convinced that real-time, attribute-based, fine-grained authorisation enforcement would take off. IBM and Oracle certainly thought so too. I have yet to come across a security architect who doesn't think it's a good idea. I still think it's a great idea. But in the world of Information Security, just because something is a good idea does not make it compelling. Compelling; aye, there's the rub. If I had to distil security spending decisions down to one word, it would be: "compelling". In a recent presentation I gave, I said:&lt;br&gt;&#xD;
&lt;blockquote class="tr_bq"&gt;&#xD;
"Sexy technology doesn't sell security. Interesting technology doesn't sell security. But give someone a compelling reason, and they'll buy a security solution."&lt;/blockquote&gt;&#xD;
That statement sums up why &lt;b&gt;entitlement management has evolved to be more about access governance than fine-grained access management&lt;/b&gt;.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Trying to sell someone on the fine-grained access management story is an almost impossible, thankless task. If any of you have ever had to sell a provisioning solution without out-of-the-box adapters (or agents, or drivers, depending on which vendor's solution you are familiar with), multiply that pain by a factor of 100 and you might start to get close to the challenges faced with selling a fine-grained access management solution. It's like saying: "please buy our power station, but you have to figure out how to build the light bulbs yourself after ripping out the ceiling to install wires and by the way, there are 1000 ways you can build light bulbs using 1000 different sockets into the wiring with each bulb running at a different wattage".&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Access governance initiatives on the other hand, are almost always driven by regulatory compliance requirements. This makes access governance initiatives compelling. It is also why SailPoint and Aveksa are doing so well.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
To be successful at selling fine-grained access management solutions, you have to go to customers with a pre-built set of light bulbs and only focus on the ones with wiring compatible with your set of light bulbs. It's why BiTKOO does well in Microsoft SharePoint environments.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Essentially, access governance solutions are much less intrusive, much easier to integrate and are supported by compelling reasons to buy.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
As reliant as we are on electricity nowadays, if we were told we had to &#xD;
rip our ceiling out, install wiring ourselves and build our own light &#xD;
bulbs, most of us would say:&lt;br&gt;&#xD;
&lt;blockquote class="tr_bq"&gt;&#xD;
&lt;span style="font-size: large;"&gt;"F@#$ it, I'm lighting 100 candles."&lt;/span&gt; &lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/36930068-5183748039781685165?l=blog.ianyip.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/ianyipblog/~4/CI1Em2-zeeM" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=njbEcLgOo-0:qGC9NidM5m4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=njbEcLgOo-0:qGC9NidM5m4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=njbEcLgOo-0:qGC9NidM5m4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=njbEcLgOo-0:qGC9NidM5m4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/njbEcLgOo-0" height="1" width="1"/&gt;</content>
    <updated>2012-02-03T14:31:53Z</updated>
    <published>2012-02-03T14:30:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="access governance" />
    <category scheme="http://www.blogger.com/atom/ns#" term="entitlement management" /><feedburner:origlink>http://blog.ianyip.com/2012/02/f-it-im-lighting-100-candles.html</feedburner:origlink>
    <author>
      <name>Ian</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/07620054411151781462</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-36930068</id>
      <category term="openpages" />
      <category term="openid" />
      <category term="emc" />
      <category term="entrepreneurial" />
      <category term="help desk" />
      <category term="identity management" />
      <category term="news" />
      <category term="enterprise 2.0" />
      <category term="securent" />
      <category term="rsa conference" />
      <category term="trendmicro" />
      <category term="privacy" />
      <category term="access management" />
      <category term="guardianedge" />
      <category term="outsourcing" />
      <category term="gijo mathew" />
      <category term="cisco" />
      <category term="iphone" />
      <category term="travel" />
      <category term="sentillion" />
      <category term="web 2.0" />
      <category term="encentuate" />
      <category term="uk" />
      <category term="provilla" />
      <category term="license" />
      <category term="sun" />
      <category term="mcafee" />
      <category term="redbooks" />
      <category term="fellowes" />
      <category term="notebook" />
      <category term="laptop" />
      <category term="commoditisation" />
      <category term="business" />
      <category term="role management" />
      <category term="russia" />
      <category term="authentication" />
      <category term="higgins" />
      <category term="bharosa" />
      <category term="vmware" />
      <category term="security" />
      <category term="humour" />
      <category term="government" />
      <category term="geek" />
      <category term="oracle" />
      <category term="pet peeve" />
      <category term="sxip" />
      <category term="online identity brand" />
      <category term="bandit" />
      <category term="parallels" />
      <category term="access governance" />
      <category term="android" />
      <category term="verdasys" />
      <category term="last day" />
      <category term="p2 security" />
      <category term="amit jasuja" />
      <category term="x-ray" />
      <category term="software" />
      <category term="directories" />
      <category term="vendors" />
      <category term="mac" />
      <category term="hsbc" />
      <category term="book review" />
      <category term="saas" />
      <category term="wipro" />
      <category term="orchestria" />
      <category term="governance" />
      <category term="dave arbeitel" />
      <category term="surveillance society" />
      <category term="framework" />
      <category term="feedburner" />
      <category term="tivoli" />
      <category term="project" />
      <category term="janrain" />
      <category term="verisign" />
      <category term="hp" />
      <category term="google" />
      <category term="federated identity" />
      <category term="analysts" />
      <category term="url" />
      <category term="technology" />
      <category term="data security" />
      <category term="yahoo pipes" />
      <category term="pci-dss" />
      <category term="charles phillips" />
      <category term="oaam" />
      <category term="list" />
      <category term="apple" />
      <category term="reputation" />
      <category term="rsa" />
      <category term="CA" />
      <category term="customers" />
      <category term="access card" />
      <category term="youtube" />
      <category term="itdi" />
      <category term="password chart" />
      <category term="conference" />
      <category term="entitlement management" />
      <category term="systems management" />
      <category term="profilestamp" />
      <category term="managed services" />
      <category term="social networking" />
      <category term="results" />
      <category term="ibm" />
      <category term="bank" />
      <category term="survey" />
      <category term="enterprise" />
      <category term="contact" />
      <category term="macbook" />
      <category term="single sign on" />
      <category term="tom mchale" />
      <category term="paul adams" />
      <category term="bea" />
      <category term="sc magazine" />
      <category term="passlogix" />
      <category term="centrify" />
      <category term="altiris" />
      <category term="comments" />
      <category term="bigfix" />
      <category term="hitachi" />
      <category term="rss feed" />
      <category term="social engineering" />
      <category term="personal" />
      <category term="grouped" />
      <category term="bridgestream" />
      <category term="novell" />
      <category term="cardspace" />
      <category term="new year resolution" />
      <category term="vontu" />
      <category term="grc" />
      <category term="monitoring" />
      <category term="symantec" />
      <category term="reconnex" />
      <category term="miis" />
      <category term="infosecurity europe" />
      <category term="data leakage" />
      <category term="blog" />
      <category term="hmrc" />
      <category term="marc camm" />
      <category term="sap" />
      <category term="password management" />
      <category term="safeboot" />
      <category term="pingidentity" />
      <category term="m-tech" />
      <category term="maxware" />
      <category term="courion" />
      <category term="identity" />
      <category term="awards" />
      <category term="eurekify" />
      <category term="microsoft" />
      <category term="authorisation" />
      <category term="standards" />
      <category term="siem" />
      <category term="mozilla" />
      <category term="virtualisation" />
      <category term="browserid" />
      <category term="to-do" />
      <category term="telco" />
      <category term="gartner" />
      <author>
        <name>Ian</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/07620054411151781462</uri>
      </author>
      <link href="http://blog.ianyip.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://blog.ianyip.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/36930068/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/ianyipblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <title>Ian Yip's Security and Identity Thought Stream</title>
      <updated>2012-02-03T14:31:53Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/ianyipblog/~3/CI1Em2-zeeM/f-it-im-lighting-100-candles.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-36930068.post-2306401806325018320</id>
    <link href="http://blog.ianyip.com/feeds/2306401806325018320/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=36930068&amp;postID=2306401806325018320" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/36930068/posts/default/2306401806325018320?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/36930068/posts/default/2306401806325018320?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fojpPniAGRc/book-review-grouped.html" rel="alternate" type="text/html" />
    <title>Ian Yip: Book Review - Grouped</title>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;I've never done a book review, and I don't plan on making it a habit. But this one is worth a mention given many of us have to do some level of marketing, even if it's not officially in our job description. And in today's Facebook/Twitter centric world, marketing's changed a lot from the good old days.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;&#xD;
&lt;a href="http://1.bp.blogspot.com/-LcBzZqadlo0/TyvnWQvIrbI/AAAAAAAAAJ8/lNbXSuc8_qg/s1600/grouped.JPG" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="200" src="http://1.bp.blogspot.com/-LcBzZqadlo0/TyvnWQvIrbI/AAAAAAAAAJ8/lNbXSuc8_qg/s200/grouped.JPG" width="128"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;a href="http://www.amazon.com/Grouped-groups-friends-influence-social/dp/0321804112" target="_blank"&gt;Grouped&lt;/a&gt;, by &lt;a href="http://twitter.com/padday" target="_blank"&gt;Paul Adams&lt;/a&gt; is an easy, interesting, worthwhile read. It has the distinction of being the very first e-book I've ever bought. Essentially, it talks about the social web and how people are influenced in today's constantly connected world. You'll feel smarter after reading it, but you don't need a PhD to understand it. Paul's done a great job of distilling and simplifying copious amounts of PhD-worthy research for the masses.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
If what you do relates to marketing in any way, you'll appreciate the ideas Paul puts forward. Even if you're not, you'll learn enough to make it worth your while and it'll make you see many things in a different light. For example, where you may not have realised an online interaction is actually influencing your behaviour in the past, you'll sure as hell notice once you've finished the book. Our emotions and subconscious play a much bigger part in our seemingly logical decisions than we realise.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
The best ideas are the ones that are easy to understand and seem obvious, except they didn't occur to you until now. For example, the fact we work hard to conform to social norms, observe how others react to understand what is acceptable thus shaping our behaviour seems obvious. But we don't consciously realise that's how we tend to behave. We apparently also communicate with the same 5 to 10 people most of the time, but it's not something I realised until I thought about it. I'm not doing the content justice in my paraphrasing, so you're better off reading the book than trying to gain any useful insights here.&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
The book is well researched, has a nice selection of case studies and examples, and best of all, doesn't take long to read. I should point out a lot of the examples are from Paul's experiences at Facebook, but I don't think he means for the book to be a big advertisement for the Facebook platform. He simply used the relevant data he had access to given his position at the company. &lt;br&gt;&#xD;
&lt;br&gt;&#xD;
Then again, the fact I'm being positive about this book could be because we generally don't want to appear to be negative in public, especially when doing so in a non-anonymous manner. Perhaps I've been &lt;a href="http://starwars.wikia.com/wiki/Mind_trick" target="_blank"&gt;Jedi Mind Tricked&lt;/a&gt; into this way of thinking by Mr Adams.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/36930068-2306401806325018320?l=blog.ianyip.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/ianyipblog/~4/ygNt6rrkqi8" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fojpPniAGRc:X_miaPy_lf0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fojpPniAGRc:X_miaPy_lf0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fojpPniAGRc:X_miaPy_lf0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fojpPniAGRc:X_miaPy_lf0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fojpPniAGRc" height="1" width="1"/&gt;</content>
    <updated>2012-02-03T14:24:01Z</updated>
    <published>2012-02-03T11:26:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="paul adams" />
    <category scheme="http://www.blogger.com/atom/ns#" term="grouped" />
    <category scheme="http://www.blogger.com/atom/ns#" term="book review" /><feedburner:origlink>http://blog.ianyip.com/2012/02/book-review-grouped.html</feedburner:origlink>
    <author>
      <name>Ian</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/07620054411151781462</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-36930068</id>
      <category term="openpages" />
      <category term="openid" />
      <category term="emc" />
      <category term="entrepreneurial" />
      <category term="help desk" />
      <category term="identity management" />
      <category term="news" />
      <category term="enterprise 2.0" />
      <category term="securent" />
      <category term="rsa conference" />
      <category term="trendmicro" />
      <category term="privacy" />
      <category term="access management" />
      <category term="guardianedge" />
      <category term="outsourcing" />
      <category term="gijo mathew" />
      <category term="cisco" />
      <category term="iphone" />
      <category term="travel" />
      <category term="sentillion" />
      <category term="web 2.0" />
      <category term="encentuate" />
      <category term="uk" />
      <category term="provilla" />
      <category term="license" />
      <category term="sun" />
      <category term="mcafee" />
      <category term="redbooks" />
      <category term="fellowes" />
      <category term="notebook" />
      <category term="laptop" />
      <category term="commoditisation" />
      <category term="business" />
      <category term="role management" />
      <category term="russia" />
      <category term="authentication" />
      <category term="higgins" />
      <category term="bharosa" />
      <category term="vmware" />
      <category term="security" />
      <category term="humour" />
      <category term="government" />
      <category term="geek" />
      <category term="oracle" />
      <category term="pet peeve" />
      <category term="sxip" />
      <category term="online identity brand" />
      <category term="bandit" />
      <category term="parallels" />
      <category term="access governance" />
      <category term="android" />
      <category term="verdasys" />
      <category term="last day" />
      <category term="p2 security" />
      <category term="amit jasuja" />
      <category term="x-ray" />
      <category term="software" />
      <category term="directories" />
      <category term="vendors" />
      <category term="mac" />
      <category term="hsbc" />
      <category term="book review" />
      <category term="saas" />
      <category term="wipro" />
      <category term="orchestria" />
      <category term="governance" />
      <category term="dave arbeitel" />
      <category term="surveillance society" />
      <category term="framework" />
      <category term="feedburner" />
      <category term="tivoli" />
      <category term="project" />
      <category term="janrain" />
      <category term="verisign" />
      <category term="hp" />
      <category term="google" />
      <category term="federated identity" />
      <category term="analysts" />
      <category term="url" />
      <category term="technology" />
      <category term="data security" />
      <category term="yahoo pipes" />
      <category term="pci-dss" />
      <category term="charles phillips" />
      <category term="oaam" />
      <category term="list" />
      <category term="apple" />
      <category term="reputation" />
      <category term="rsa" />
      <category term="CA" />
      <category term="customers" />
      <category term="access card" />
      <category term="youtube" />
      <category term="itdi" />
      <category term="password chart" />
      <category term="conference" />
      <category term="entitlement management" />
      <category term="systems management" />
      <category term="profilestamp" />
      <category term="managed services" />
      <category term="social networking" />
      <category term="results" />
      <category term="ibm" />
      <category term="bank" />
      <category term="survey" />
      <category term="enterprise" />
      <category term="contact" />
      <category term="macbook" />
      <category term="single sign on" />
      <category term="tom mchale" />
      <category term="paul adams" />
      <category term="bea" />
      <category term="sc magazine" />
      <category term="passlogix" />
      <category term="centrify" />
      <category term="altiris" />
      <category term="comments" />
      <category term="bigfix" />
      <category term="hitachi" />
      <category term="rss feed" />
      <category term="social engineering" />
      <category term="personal" />
      <category term="grouped" />
      <category term="bridgestream" />
      <category term="novell" />
      <category term="cardspace" />
      <category term="new year resolution" />
      <category term="vontu" />
      <category term="grc" />
      <category term="monitoring" />
      <category term="symantec" />
      <category term="reconnex" />
      <category term="miis" />
      <category term="infosecurity europe" />
      <category term="data leakage" />
      <category term="blog" />
      <category term="hmrc" />
      <category term="marc camm" />
      <category term="sap" />
      <category term="password management" />
      <category term="safeboot" />
      <category term="pingidentity" />
      <category term="m-tech" />
      <category term="maxware" />
      <category term="courion" />
      <category term="identity" />
      <category term="awards" />
      <category term="eurekify" />
      <category term="microsoft" />
      <category term="authorisation" />
      <category term="standards" />
      <category term="siem" />
      <category term="mozilla" />
      <category term="virtualisation" />
      <category term="browserid" />
      <category term="to-do" />
      <category term="telco" />
      <category term="gartner" />
      <author>
        <name>Ian</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/07620054411151781462</uri>
      </author>
      <link href="http://blog.ianyip.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://blog.ianyip.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/36930068/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/ianyipblog" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <title>Ian Yip's Security and Identity Thought Stream</title>
      <updated>2012-02-03T14:31:53Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/ianyipblog/~3/ygNt6rrkqi8/book-review-grouped.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.wayf.dk/?p=99</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ytxsxnurJvE/" rel="alternate" type="text/html" />
    <title>Blogging 'bout WAYF: Why is the configuration called metadata?</title>
    <summary type="html">Metadata is the ‘configuration’ of the identity federation. In a point-to-point-federation, where all entities must know each other, the configuration needs to be updated at all entities at regular intervals. Thus the name ‘metadata’. In a hub-and-spoke model, like WAYF, each IdP and SP only needs to know the configuration of one other entity, namely [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Metadata is the ‘configuration’ of the identity federation.&lt;/p&gt;&#xD;
&lt;p&gt;In a point-to-point-federation, where all entities must know each other, the configuration needs to be updated at all entities at regular intervals. Thus the name ‘metadata’.&lt;/p&gt;&#xD;
&lt;p&gt;In a hub-and-spoke model, like WAYF, each IdP and SP only needs to know the configuration of one other entity, namely the hub. The ‘metadata’ is updated much less frequently and can be thought of as almost static.&lt;/p&gt;&#xD;
&lt;p&gt;In principle it should only be updated if the certificate of the hub is changed.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytxsxnurJvE:O-or48uYJ9Y:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytxsxnurJvE:O-or48uYJ9Y:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ytxsxnurJvE:O-or48uYJ9Y:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ytxsxnurJvE:O-or48uYJ9Y:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ytxsxnurJvE" height="1" width="1"/&gt;</content>
    <updated>2012-02-03T07:31:54Z</updated>
    <category term="federation architeture" />
    <category term="federation stuff" />
    <category term="hub and spoke" />
    <category term="Uncategorized" />
    <author>
      <name>David Simonsen</name>
    </author>
    <source>
      <id>http://blog.wayf.dk</id>
      <link href="http://blog.wayf.dk/?feed=rss2" rel="self" type="application/atom+xml" />
      <link href="http://blog.wayf.dk" rel="alternate" type="text/html" />
      <subtitle>WAYF, Danish eID federation, hub-and-spoke, thoughts and comments</subtitle>
      <title>The WAYF (DK) blog</title>
      <updated>2012-02-03T08:02:09Z</updated>
    </source>
  <feedburner:origLink>http://blog.wayf.dk/?p=99</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/watch/back_to_the_roots</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zFnRewSdHlo/back_to_the_roots" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Back to the ROOTs</title>
    
    <updated>2012-02-02T20:52:41Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://www.kuppingercole.com/podcasts"&gt;Kuppinger Cole Podcasts&lt;/a&gt; &lt;br&gt;&lt;br&gt; In diesem Webinar erläutert zunächst Martin Kuppinger die aktuellen Trends im Markt für PxM (Privileged Access, Account, Identity, User Management) und die Frage, wo und wie man PxM-Lösungen mit seiner übrigen Identity und Access Management-Infrastruktur verbinden sollte. Daran anschliessend stellt Jochen Koehler von Cyber-Ark praktische Ansätze zur Verwaltung von privilegierten Identitäten vor.&lt;br&gt;&lt;br&gt;&#xD;
			&lt;a href="http://www.kuppingercole.com/watch/back_to_the_roots"&gt;&lt;img src="http://www.kuppingercole.com/videothumb/back_to_the_roots/400"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
			&lt;br&gt;&lt;br&gt;&lt;a href="http://www.kuppingercole.com/watch/back_to_the_roots"&gt;Watch online&lt;/a&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/zFnRewSdHlo" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zFnRewSdHlo:TH9diSOrWxc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zFnRewSdHlo:TH9diSOrWxc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zFnRewSdHlo:TH9diSOrWxc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zFnRewSdHlo:TH9diSOrWxc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zFnRewSdHlo" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/watch/back_to_the_roots</feedburner:origLink></entry>

  <entry>
    <id>f1397696-738c-4295-afcd-943feb885714:81374</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/1NOvihy0X_A/And-the-Answer-is-Access-Intelligence" rel="alternate" type="text/html" />
    <title>Courion: And the Answer is…Access Intelligence</title>
    
    <updated>2012-02-02T18:45:00Z</updated>
    <author>
      <name>Courion Corporation</name>
    </author>
    <source>
      <id>http://blog.courion.com/</id>
      <link href="http://blog.courion.com/" rel="alternate" type="text/html" />
      <link href="http://blog.courion.com/CMS/UI/Modules/BizBlogger/rss.aspx?tabid=89075&amp;moduleid=92273&amp;maxcount=25" rel="self" type="application/rss+xml" />
      <subtitle>RSS feeds for Courion Access Assurance Blog</subtitle>
      <title>Courion Corporation</title>
      <updated>2012-02-05T19:05:12Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Access Risk Management Blog | Courion&lt;/p&gt;&lt;p&gt;&lt;img alt="Access Intelligence" border="0" class="alignLeft" height="164" id="img-1328208822125" src="http://blog.courion.com/Portals/41102/images/AccessIntelligence.jpg" style="float: left;" width="190"&gt;&lt;/img&gt;Protecting against loss of intellectual property and vital data is mission critical, and a big part of what keeps IT managers up at night.&lt;/p&gt;&#xD;
&lt;p&gt;But a recent survey conducted by Courion of IT managers revealed there's a disconnect between the top concerns of IT managers and what they're doing to protect vital corporate information.&lt;/p&gt;&#xD;
&lt;p&gt;While potential loss of sensitive data, corporate reputation, intellectual property or revenue topped the list of risks to the organization, IT managers also struggle with actually identifying their biggest access risks and the need to put processes in place to manage them.&lt;/p&gt;&#xD;
&lt;p&gt;But surprisingly, only 12 percent of those responding conduct reviews more than monthly to certify that user access risk poses no threat to their critical assets. Over 60 percent of IT managers review user access privileges only four times per year or less, and those reviews only ensure companies are observing security and best audit practices — they're not focused on identifying new or growing areas of access risk — such as internal users abusing privileges.&lt;/p&gt;&#xD;
&lt;p&gt;That said, more than half of the survey respondents know they need to start doing things differently. They'd like to use near-real-time graphical profiles of Identity and Access Management (IAM) activities to help them manage the most critical risks to corporate information, but said they currently lack visibility into the access risk management data they need to create the profiles.&lt;/p&gt;&#xD;
&lt;p&gt;Lack of data also prevents IT managers from identifying user access associations and patterns that violate company policies or could enable users to circumvent internal controls. Nearly 60 percent of those polled said they can't compile the data for that kind of analysis from their existing IAM systems, and many who use IAM data to manage risk are doing it manually — it's not only time consuming; it doesn't provide a business context for evaluating access risk.&lt;/p&gt;&#xD;
&lt;p&gt;While survey results show obvious gaps in access risk management programs, they also show that IT managers are very aware about what’s needed to address these gaps. The key is having more access intelligence about their access risk — insight into which users have access to what vital information and knowing if they’re doing the right things with that access.&lt;/p&gt;&#xD;
&lt;p&gt;To learn more, &lt;a href="http://www.courion.com/company/press_room.html?id=1093" target="_blank"&gt;click here&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;blog.courion.com&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1NOvihy0X_A:2Yls7fwWY0E:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1NOvihy0X_A:2Yls7fwWY0E:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1NOvihy0X_A:2Yls7fwWY0E:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=1NOvihy0X_A:2Yls7fwWY0E:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/1NOvihy0X_A" height="1" width="1"/&gt;</content><feedburner:origLink>http://blog.courion.com/access_assurance_blog/bid/81374/And-the-Answer-is-Access-Intelligence</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-13465455.post-4346025293886468358</id>
    <link href="http://identityman.blogspot.com/feeds/4346025293886468358/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=13465455&amp;postID=4346025293886468358" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/13465455/posts/default/4346025293886468358" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/13465455/posts/default/4346025293886468358" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/EwE_MfaXOVQ/identropy-reviews-cutting-identity.html" rel="alternate" type="text/html" />
    <title>Ashraf Motiwala - Identropy: Identropy Reviews Cutting Identity Management Operating Costs</title>
    <content type="html">Identropy will be hosting a webinar with our friends at IDC entitled "Reducing your IDM Operating Costs Using IDaaS" in a couple of weeks (Tuesday, Feb 14).  &lt;a href="http://blog.talkingidentity.com"&gt;Nishant&lt;/a&gt; from Identropy and &lt;a href="http://www.idc.com/getdoc.jsp?containerId=PRF000168"&gt;Sally Hudson&lt;/a&gt; from IDC will be presenting. Hope you can join us!  You can read the abstract below, and &lt;a href="https://www2.gotomeeting.com/register/720418882"&gt;register here&lt;/a&gt;...&lt;div&gt;&lt;br&gt;&lt;/div&gt;&lt;div&gt;&lt;span&gt;&lt;/span&gt;&lt;blockquote&gt;&lt;span&gt;Would you like to reduce your IDM Operations costs by 50%, while still proving that the IDM program is meeting its goal? &lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span&gt;Is your IT team overburdened with IDM operational support in response to a constant stream of patches and updates that were never budgeted for? &lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span&gt;Do they lack the bandwidth to get to strategic new tasks in an ever-evolving, increasingly important IDM program? &lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span&gt;Do they lack the time or subject matter expertise to enhance your IDM solution in response to changing organizational needs and business objectives? &lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span&gt;If so, this webinar is for you. &lt;/span&gt;&lt;br&gt;&lt;br&gt;&lt;span&gt;The successful deployment of an Identity Management (IDM) infrastructure is only the first step of a continuous journey. Join Identropy and IDC for a webinar on how Identity Management-as-a-Service can help overcome the challenges of successfully and cost-effectively running an IAM program. During this webinar, guest speaker Sally Hudson, Research Director within IDC's Security Products and Services group, will discuss why many of these projects fail and what operational areas need to be accounted for to help bridge the divide between project-go-live and long-term success. Nishant Kaushik, Chief Architect at Identropy, will discuss how their SCUID Operations offering has helped many customers address their operational concerns and yield long-term and increasing value from their IDM investment.&lt;/span&gt;&lt;/blockquote&gt;&lt;span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/13465455-4346025293886468358?l=identityman.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EwE_MfaXOVQ:SdB7RI3C5pk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EwE_MfaXOVQ:SdB7RI3C5pk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=EwE_MfaXOVQ:SdB7RI3C5pk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=EwE_MfaXOVQ:SdB7RI3C5pk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/EwE_MfaXOVQ" height="1" width="1"/&gt;</content>
    <updated>2012-02-02T05:22:28Z</updated>
    <published>2012-02-02T05:12:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="Identropy Reviews" />
    <author>
      <name>Ashraf Motiwala</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/06659523320698728171</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-13465455</id>
      <category term="managed identity services" />
      <category term="provisioning" />
      <category term="bpm" />
      <category term="identity management" />
      <category term="Sympified" />
      <category term="saas provisioning" />
      <category term="open source" />
      <category term="rapid identity management" />
      <category term="Haliburton" />
      <category term="Paul Graham" />
      <category term="hspd-12" />
      <category term="identity management open source provisioning" />
      <category term="identity management processes" />
      <category term="phil windley" />
      <category term="William Reid" />
      <category term="ping federation identity management services department of jusice" />
      <category term="ian yip" />
      <category term="kpmg" />
      <category term="sun" />
      <category term="identity management open source provisioning velo" />
      <category term="business process" />
      <category term="didw" />
      <category term="acquisition" />
      <category term="wam" />
      <category term="federation identity management" />
      <category term="openid screencast demo simon willison infocards" />
      <category term="kundra" />
      <category term="identity management novell" />
      <category term="kerberos primer" />
      <category term="onstartups.com dharmesh shah advice it startups entrepreneurs" />
      <category term="idaas" />
      <category term="Identity Management Projects" />
      <category term="cloud" />
      <category term="gartner identity management courion sun" />
      <category term="identity management workshop" />
      <category term="oracle" />
      <category term="identity as a service" />
      <category term="identity management role management vaau sun courion bridgestream eurekify" />
      <category term="spml" />
      <category term="hipaa" />
      <category term="jamie lewis keynote" />
      <category term="patent" />
      <category term="saas" />
      <category term="identity management bmc courion novell oracle" />
      <category term="iterations" />
      <category term="idm services" />
      <category term="identity management project failure" />
      <category term="google" />
      <category term="oracle igf liberty ca sun novell" />
      <category term="ESSO" />
      <category term="business model alex osterwalder" />
      <category term="jetblue ceo" />
      <category term="identity management poc" />
      <category term="kathy sierra words of wisdom zone of mediocrity" />
      <category term="identity management project management" />
      <category term="attestation" />
      <category term="deprovisioning" />
      <category term="managed services" />
      <category term="sharepoint" />
      <category term="fischer international" />
      <category term="identity management roadmap" />
      <category term="ibm" />
      <category term="bhold" />
      <category term="sushi" />
      <category term="healthcare sun identity management federation" />
      <category term="self-service" />
      <category term="identity management kim cameron" />
      <category term="iphone verizon seidenberg" />
      <category term="jonathan schwartz" />
      <category term="Integralis" />
      <category term="identity management consulting" />
      <category term="startup advice" />
      <category term="Identropy" />
      <category term="angel investors ceg funding" />
      <category term="t-mobile ameo smartphone" />
      <category term="digital id world" />
      <category term="Y Combinator" />
      <category term="context management" />
      <category term="financial crisis" />
      <category term="policy development" />
      <category term="poc" />
      <category term="novell" />
      <category term="symplified" />
      <category term="financial model" />
      <category term="Protecht" />
      <category term="web access management" />
      <category term="identity management Neuenschwander burton mycroft" />
      <category term="jackson shaw identity management quest" />
      <category term="identity management services market" />
      <category term="anonymity" />
      <category term="courion" />
      <category term="healthcare" />
      <category term="virtual directory" />
      <category term="identity management use cases project management" />
      <category term="metadirectory" />
      <category term="re-engineering processes" />
      <category term="AD" />
      <category term="identity management marketing" />
      <category term="Identropy Reviews" />
      <category term="repealing sox" />
      <author>
        <name>Ashraf Motiwala</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/06659523320698728171</uri>
      </author>
      <link href="http://identityman.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/13465455/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identityman.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/13465455/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Identity Management, Access Management</subtitle>
      <title>Ash's Identity Management Rantings</title>
      <updated>2012-02-03T03:49:42Z</updated>
    </source>
  <feedburner:origLink>http://identityman.blogspot.com/2012/02/identropy-reviews-cutting-identity.html</feedburner:origLink></entry>

  <entry xml:lang="ja">
    <id>http://www.sakimura.org/?p=1487</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/vY_VNwefwi4/" rel="alternate" type="text/html" />
    <title>Nat Sakimura: 単なる OAuth 2.0 を認証に使うと、車が通れるほどのどでかいセキュリティー・ホールができる</title>
    <summary type="html">OAuth 2.0 の implicit grant flow を認証に使うと、車が通れる程どてかいセキュリティ・ホールが開くよ、と言う、ジョン・ブラッドレー氏[1]による良記事。コメントも読み応えあります。ちょっとチェ...</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;div&gt;&#xD;
&lt;div&gt;&lt;a href="http://www.sakimura.org/wp-content/uploads/2012/02/big-hole1.png"&gt;&lt;img alt="" class="alignright size-medium wp-image-1491" height="200" src="http://www.sakimura.org/wp-content/uploads/2012/02/big-hole1-300x200.png" title="big-hole with OAuth 2.0 implicit" width="300"&gt;&lt;/img&gt;&lt;/a&gt;OAuth 2.0 の &lt;strong&gt;implicit grant flow&lt;/strong&gt; を認証に使うと、車が通れる程どてかいセキュリティ・ホールが開くよ、と言う、ジョン・ブラッドレー氏[1]による良記事。コメントも読み応えあります。ちょっとチェックした見たところは、全滅。RP側を治さなきゃいけないから、とっとと公開アナウンスしたほうが良いのでしょうね。いちいちコンタクトしてられないし。&lt;/div&gt;&#xD;
&lt;div&gt;&lt;/div&gt;&#xD;
&lt;div&gt;Facebook や、その他OAuthログインしているサイトはみんなチェク！&lt;/div&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;div style="width: 80%; background-color: #dddddd;"&gt;&#xD;
&lt;div&gt;&lt;img alt="" src="https://s2.googleusercontent.com/s2/favicons?domain=www.thread-safe.com" style="float: left;"&gt;&lt;/img&gt;&lt;a href="http://www.thread-safe.com/2012/01/problem-with-oauth-for-authentication.html"&gt;The problem with OAuth for Authentication. | Thread Safe&lt;/a&gt;&lt;/div&gt;&#xD;
&lt;div&gt;&#xD;
&lt;p&gt;&lt;img src="https://lh6.googleusercontent.com/-1sJGlVoHT68/AAAAAAAAAAI/AAAAAAAAABY/rJ6sSi8Ds2w/s120-c/photo.jpg"&gt;&lt;/img&gt;&lt;/p&gt;&#xD;
&lt;p&gt;In some of the feedback I have gotten on the openID Connect spec, the statement is made that Connect is too complicated. That OAuth 2.0 is all you need to do authentication. Many point to Identity Pro…&lt;/p&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;div&gt;&lt;/div&gt;&#xD;
&lt;/div&gt;&#xD;
&lt;p&gt;英語読みたくないという人のために簡単に解説すると…&lt;/p&gt;&#xD;
&lt;p&gt;OAuth 2.0 の implicit flow を使って「認証」をしようとすると、とっても大きな穴が開きます。&lt;/p&gt;&#xD;
&lt;p&gt;カット＆ペーストアタックが可能だからです。&lt;/p&gt;&#xD;
&lt;p&gt;OAuth 認証？は、図１のような流れになります。&lt;/p&gt;&#xD;
&lt;div class="wp-caption alignnone" style="width: 513px;"&gt;&lt;img class=" " height="463" src="http://www.websequencediagrams.com/cgi-bin/cdraw?lz=ClVBLT5TaXRlX0E644Ot44Kw44Kk44OzCgAOBi0-VUE6IGNsaWVudF9pZCwgcmVkaXJlY3RfdXJpLCBzY29wZQA-BUF1dGh6AAkhACEFAE4G44OR44K544Ov44O844OJ44GP44Gg44GV44GEAEUMABgPADoIABUJgeOCp-ODg-OCrwBRDGFjY2Vzc190b2tlbl9BAIFYDAALEACBXwhHcmFwaEFQSQAuDgoADwgtADcKdXNlcgCCBgVlbWFpbCwgZXRjLiAKCg&amp;amp;s=omegapple" width="503"&gt;&lt;/img&gt;&lt;p class="wp-caption-text"&gt;図１ OAuth 認証？の流れ&lt;/p&gt;&lt;/div&gt;&#xD;
&lt;p&gt;一見、問題なさそうに見えます。しかし、それはすべてのサイトが「良いサイト」ならばです。&lt;/p&gt;&#xD;
&lt;p&gt;Site_A が実は悪いサイトだったとしましょう。すると、Site_A は、このユーザになり変わる access_token をまんまと入手してしまったことになります。&lt;/p&gt;&#xD;
&lt;p&gt;Site_A は、以後、このユーザになりすまして、任意の「OAuth 認証？」をやっているサイトにログインすることができます。&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.sakimura.org/2011/05/1087/" rel="bookmark" title="2011/05/15"&gt;非技術者のためのOAuth認証(?)とOpenIDの違い入門&lt;/a&gt; にも書きましたが、宛先の書いてない合鍵渡しちゃって、それを持っている人は誰でも私の分身ですと言っているわけですから当たり前ですね。&lt;/p&gt;&#xD;
&lt;p&gt;具体的に書くと、&lt;/p&gt;&#xD;
&lt;p&gt;Site_A はブラウザ(User Agent) UAを使って、Site_B に行ってログインしようとします。すると、上記と同じ手続で Site_B は「認証」をしようとします。UAは Site_B用の、攻撃者用のアクセストークン access_token_B をOAuth の Authorization Endpoint (Authz) からもらいますが、これをSite_Bには渡さずに、さっき取得した、ユーザ（＝被害者）のアクセストークン access_token_A を代わりに渡します。&lt;strong&gt;Site_Bがこのトークンが本当はSite_A用のものだと認識する手段はありません。なので、自分向けのものとして受け取ってしまいます。そして&lt;/strong&gt;、Site_Bは GraphAPI に access_token を投げて、被害者のemail や user_id を取得しようとします。&lt;strong&gt;GraphAPI が、このSite_A用のトークンを送ってきているのがSite_Bだということを認識する手段もありません&lt;/strong&gt;。したがって、GraphAPIは、Site_Aがリクエストしてきたのと同様に、被害者のemailやuser_idを送り返してしまいます。&lt;strong&gt;結果、Site_Bは、攻撃者を被害者としてログインさせてしまいます[5]。&lt;/strong&gt;この流れが図２です。&lt;/p&gt;&#xD;
&lt;div class="wp-caption alignnone" style="width: 513px;"&gt;&lt;img class=" " height="463" src="http://www.websequencediagrams.com/cgi-bin/cdraw?lz=VUEtPlNpdGVfQjrjg63jgrDjgqTjg7MKAA4GLT5VQTogY2xpZW50X2lkLCByZWRpcmVjdF91cmksIHNjb3BlClVBLT5BdXRoegAJIQAhBQBOBuODkeOCueODr-ODvOODieOBj-OBoOOBleOBhABFDAAYDwA6CAAVCYHjgqfjg4Pjgq8AUQxhY2Nlc3NfdG9rZW5fQgCBHAVVQTrjgIzjg4jjg7zjgq_jg7Pnva7mj5vjgYjmlLvmkoPjgI0AgUUFAIIGBwA2DkEAggcJR3JhcGhBUEkAEBEAEQgtADkKdXNlcgCCMQVlbWFpbCwgZXRjLiAKCg&amp;amp;s=omegapple" title="Replacing Access Token" width="503"&gt;&lt;/img&gt;&lt;p class="wp-caption-text"&gt;図２ OAuth の access_token 置換え攻撃&lt;/p&gt;&lt;/div&gt;&#xD;
&lt;p&gt;これは、OAuth の state パラメータを使って XSRF 対策をしていても防げません。つまり、OAuth 2.0 の Client は、そのClient (サイト)にログインしたすべての人になりすまして、任意の他のOAuth 対応サイトにログインできるのです。&lt;/p&gt;&#xD;
&lt;p&gt;&lt;span style="color: #ff0000;"&gt;これは、OAuth の問題ではありません。&lt;/span&gt;&lt;/p&gt;&#xD;
&lt;p&gt;OAuth は Authorization Delegation Protocol = 認可をデリゲーションするためのプロトコルであって、ユーザ認証のためのプロトコルではないからです[5]。はっきり言って、楽ちんだからといって、それを単体で認証の代わりに使っている方が悪い。&lt;/p&gt;&#xD;
&lt;p&gt;実は、Facebook もこのことは気づいていて、&lt;a href="http://developers.facebook.com/docs/authentication/signed_request/"&gt;signed_request&lt;/a&gt; というAPIを持っています。これはほとんど OpenID Connect と同じです[2]。Facebook でログインするためには、こちらを使わなければいけないのです。scope=signed_request ってやるんですよ。でも、使っている人、どれくらい居ますか？やってます？ほとんどは、access token を取得するための &lt;a href="https://developers.facebook.com/docs/authentication/#client-side-flow" target="_blank"&gt;client side flow&lt;/a&gt; (Facebook のデフォルト） を認証の代わりにつかっちゃってますよね？！&lt;/p&gt;&#xD;
&lt;p&gt;Google の Identity Service の責任者の Eric Sachs 氏の、John の blog に寄せられた投稿も、このことの重要性を指摘しています。&lt;/p&gt;&#xD;
&lt;blockquote&gt;&lt;p&gt;OpenID Connect ではなく、単なるOAuth を認証に使っているIdPが巨大なセキュリティホールを生み出しているということに関する、ジョン・ブラッドレー氏によるすばらしい記事。これは、至るところで繰り返し言い続けなければならない。IdPに対しては、パートナーに対してセキュリティ上の問題を生んでいるということを理解してもらうために。RPsには、数行のコードをケチったために、自らのセキュリティを台無しにしているということに気付いてもらうために。数年前、Googleが現在のOAuthにあたる独自API「AuthSub」を公開したときは、まさにこの理由のために「認証に使ってはいけない」旨を、ドキュメントの最後に大きく掲載していた。[3]&lt;/p&gt;&lt;/blockquote&gt;&#xD;
&lt;p&gt;問題の原因は、access_token の audience は resource endpoint であるのに対して、認証に使うトークンの audience は client でなければいけないというところにあります。だから、OpenID Connect では、client を audience にした id_token という、access_token とは別のトークンを発行しているのです。Facebook の signed_request も同じです。&lt;/p&gt;&#xD;
&lt;p&gt;&lt;span style="color: #ff0000;"&gt;ちゃんと治してくださいね、皆さん。治すってことは、OpenID Connect 対応するってことですよ！&lt;/span&gt;&lt;/p&gt;&#xD;
&lt;p&gt;大した工数じゃないんだから。数行を惜しんでユーザを危険に晒す[4]のは、ぜひやめていただきたいところです。&lt;/p&gt;&#xD;
&lt;p&gt; &lt;/p&gt;&#xD;
&lt;p&gt;[1] John Bradley. アメリカ政府の ICAMの中の人で、IMI, OpenID, SAML のプロファイルを書いている。OpenID Foundation 理事。Kantara Initiative リーダーシップカウンシル議長。今回の記事は、OAuth 認証のプロファイルを書こうとして、「だめだこりゃ」ということらしい。&lt;/p&gt;&#xD;
&lt;p&gt;[2] signed_request は、Facebook 独自の署名方式をとっているのに対して、OpenID Connect は IETF JOSE WG で標準化されているJWSを利用しています。また、signed_request では、access_token 自体をsigned_request の中に入れていますが、OpenID Connect では、他のOAuth 2.0 サイトとの互換性を考慮して、外出しにしています。&lt;/p&gt;&#xD;
&lt;p&gt;[3] 原文: Great post by John Bradley on the huge security hole many IDPs have created by using plain OAuth, instead of OpenIDConnect, for authentication. We need to keep hammering away on this point both so IDPs realize the security problems they are creating for their partners, and to get RPs to realize how easily they can compromise their own security just because of the lack of a few additional lines of code. Years ago when Google first launched its proprietary equivalent of OAuth, called AuthSub, we had a big section at the bottom warning people not to use it for authentication for exactly this reason. (source: https://plus.google.com/u/0/102425765611793764729/posts/UKcZQzuvosQ )&lt;/p&gt;&#xD;
&lt;p&gt;[4] 乗っ取られたとしても何も起きないのならば良いのですが、ユーザの個人情報を貯めてたりしたら、当然個人情報漏えい事件になりますよね。&lt;/p&gt;&#xD;
&lt;p&gt;[5] &lt;strong&gt;太字部分&lt;/strong&gt;、2/3追記。&lt;/p&gt;&#xD;
&lt;p&gt;[6] （2/3追記）攻撃者であるSite_Aが、自分あての access_token を他の人に渡すのは、Site_Aが自分でアクセスした結果を渡すのと得られる結果は同じです。したがって、GraphAPI/Resourceの提供者の立場からしたら、Site_A用の access_token を Site_Bが使うことは、別にリスクが増加していることにはなりません。&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vY_VNwefwi4:rFrxe5HR0Ls:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vY_VNwefwi4:rFrxe5HR0Ls:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=vY_VNwefwi4:rFrxe5HR0Ls:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=vY_VNwefwi4:rFrxe5HR0Ls:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/vY_VNwefwi4" height="1" width="1"/&gt;</content>
    <updated>2012-02-02T03:20:34Z</updated>
    <category term="identity" />
    <category term="OpenID" />
    <category term="セキュリティ" />
    <category term="プライバシー" />
    <category term="oauth" />
    <category term="OpenID Connect" />
    <category term="security hole" />
    <category term="web" />
    <category term="セキュリティ・ホール" />
    <author>
      <name>Nat</name>
    </author>
    <source>
      <id>http://www.sakimura.org</id>
      <link href="http://www.sakimura.org/feed/" rel="self" type="application/atom+xml" />
      <link href="http://www.sakimura.org" rel="alternate" type="text/html" />
      <subtitle>Identity and Privacy</subtitle>
      <title>.Nat Zone</title>
      <updated>2012-02-03T03:33:45Z</updated>
    </source>
  <feedburner:origLink>http://www.sakimura.org/2012/02/1487/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.idcommons.org/?p=655</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/QWw4HYJ40QU/" rel="alternate" type="text/html" />
    <link href="http://www.idcommons.org/nstic-moving-forward-with-pilots-and-steering-group/#comments" rel="replies" type="text/html" />
    <link href="http://www.idcommons.org/nstic-moving-forward-with-pilots-and-steering-group/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Identity Commons: NSTIC Moving Forward with Pilots and Steering Group</title>
    
    <updated>2012-02-02T00:28:43Z</updated>
    <published>2012-02-02T00:28:43Z</published>
    <category scheme="http://www.idcommons.org" term="Uncategorized" />
    <author>
      <name>jayunger</name>
    </author>
    <source>
      <id>http://www.idcommons.org/feed/atom/</id>
      <link href="http://www.idcommons.org" rel="alternate" type="text/html" />
      <link href="http://www.idcommons.org/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Creating a place for collaboration for those working on the identity (for people) layer of the network.</subtitle>
      <title xml:lang="en">Identity Commons</title>
      <updated>2012-02-02T00:28:43Z</updated>
    </source>
  <content type="html" xml:lang="en">The following announcement was just sent from NIST's Jeremy Grant, with important updates on the coming NSTIC funded pilots and plans for constituting a Steering Group, among other updates.  
We'll be providing information on these items and more over the next several days.  Looks like 2012 will be the year NSTIC begins true implementation.



Dear NSTIC [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QWw4HYJ40QU:hjUTvOeC6XY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QWw4HYJ40QU:hjUTvOeC6XY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QWw4HYJ40QU:hjUTvOeC6XY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=QWw4HYJ40QU:hjUTvOeC6XY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/QWw4HYJ40QU" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.idcommons.org/nstic-moving-forward-with-pilots-and-steering-group/</feedburner:origLink></entry>

  <entry xml:lang="en-us">
    <id>https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/2/1/This-Week-in-Identity--Take-2-at-G-for-names-and-nyms</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/xbeohnIbGtM/This-Week-in-Identity--Take-2-at-G-for-names-and-nyms" rel="alternate" type="text/html" />
    <title>Ping Talk - Ping Identity: This Week in Identity - Take 2 at G+ for names and nyms</title>
    
    <updated>2012-02-01T22:04:00Z</updated>
    <category term="This Week in Identity" />
    <source>
      <id>https://www.pingidentity.com/blogs/pingtalk/index.cfm</id>
      <category scheme="http://www.itunes.com/" term="Technology" />
      <category scheme="http://www.itunes.com/" term="Podcasting" />
      <category scheme="http://www.itunes.com/" term="Tech News" />
      <author>
        <name>Ping Talk - Ping Identity</name>
        <email>pingtalkblog@pingidentity.com</email>
      </author>
      <link href="https://www.pingidentity.com/blogs/pingtalk/index.cfm" rel="alternate" type="text/html" />
      <link href="http://www.pingidentity.com/blogs/pingtalk/rss.cfm?mode=full" rel="self" type="application/rss+xml" />
      <title>Ping Talk Blog</title>
      <updated>2012-02-05T20:26:16Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;div&gt;As Google+ continues to grow, reason prevailed over insanity: they relented on their silly pseudonym policy.  Sort of.  Read the official announcement and rationale from Google’s Bradley Horowitz, then read Identity Woman’s reaction:    &#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="https://plus.google.com/100535338638690515335/posts/FifpbKxZEHV"&gt;Toward a more inclusive naming policy for Google+&lt;/a&gt;&lt;br class="kix-line-break"&gt;“Today we’re pleased to be launching features that will address and remedy the majority of these issues. To be clear - our work here isn’t done, but I’m really pleased to be shipping a milestone on our journey.”&lt;br class="kix-line-break"&gt;&lt;a href="http://www.identitywoman.net/the-new-google-names-process#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;Identity Woman: The new Google+ Names process&lt;/a&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;span style="line-height: 20px;"&gt;There were several other items of interest to the identity community (click more for the list and links):&lt;br&gt;&lt;/span&gt;  &lt;a href="https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/2/1/This-Week-in-Identity--Take-2-at-G-for-names-and-nyms"&gt;[More]&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xbeohnIbGtM:W4m0LHOZP6E:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xbeohnIbGtM:W4m0LHOZP6E:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xbeohnIbGtM:W4m0LHOZP6E:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=xbeohnIbGtM:W4m0LHOZP6E:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/xbeohnIbGtM" height="1" width="1"/&gt;</content><feedburner:origLink>https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/2/1/This-Week-in-Identity--Take-2-at-G-for-names-and-nyms</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.idcommons.org/?p=650</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/dkzp6FZVP9c/" rel="alternate" type="text/html" />
    <link href="http://www.idcommons.org/id-collaboration-day-will-happen-in-san-francisco-the-monday-before-rsa/#comments" rel="replies" type="text/html" />
    <link href="http://www.idcommons.org/id-collaboration-day-will-happen-in-san-francisco-the-monday-before-rsa/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Identity Commons: ID Collaboration Day Will Happen in San Francisco the Monday before RSA !</title>
    
    <updated>2012-02-01T17:57:30Z</updated>
    <published>2012-02-01T17:56:44Z</published>
    <category scheme="http://www.idcommons.org" term="Uncategorized" />
    <author>
      <name>jayunger</name>
    </author>
    <source>
      <id>http://www.idcommons.org/feed/atom/</id>
      <link href="http://www.idcommons.org" rel="alternate" type="text/html" />
      <link href="http://www.idcommons.org/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Creating a place for collaboration for those working on the identity (for people) layer of the network.</subtitle>
      <title xml:lang="en">Identity Commons</title>
      <updated>2012-02-02T00:28:43Z</updated>
    </source>
  <content type="html" xml:lang="en">This is an important opportunity to collaborate for all members of the Identity Community so please update your schedule and try to attend.
 
For More Information Click Here&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dkzp6FZVP9c:AwmaWOF8v58:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dkzp6FZVP9c:AwmaWOF8v58:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=dkzp6FZVP9c:AwmaWOF8v58:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=dkzp6FZVP9c:AwmaWOF8v58:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/dkzp6FZVP9c" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.idcommons.org/id-collaboration-day-will-happen-in-san-francisco-the-monday-before-rsa/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blog.beuchelt.com/?p=444</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ERPyM7xOVVo/" rel="alternate" type="text/html" />
    <link href="http://creativecommons.org/licenses/by/2.5/" rel="license" />
    <title>Gerry Beuchelt - MITRE: Doing the Security Thing</title>
    <summary type="html">In a very refreshing article, Brendan Williams talks about the fallacies of securing systems based on compliance models, with an army of clerical staff working checklists to determine the security architecture for a new system. For a lot of my cyber security related activities, I have been trying to implement …&lt;p&gt;&lt;a class="more-link" href="http://blog.beuchelt.com/?p=444"&gt;&lt;span&gt;Continue Reading →&lt;/span&gt;&lt;/a&gt;&lt;/p&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;img alt="" class="alignright" height="270" src="http://www.globalsecurity.org/military/library/policy/army/accp/it0468/fig3-1a.gif" width="340"&gt;&lt;/img&gt;In a very refreshing &lt;a href="http://blogs.rsa.com/williams/intelligence-driven-security/" target="_blank"&gt;article&lt;/a&gt;, Brendan Williams talks about the fallacies of securing systems based on compliance models, with an army of clerical staff working checklists to determine the security architecture for a new system. For a lot of my cyber security related activities, I have been trying to implement a risk management approach, where a security architecture is firmly rooted in the evaluated threats, their likelihood and impact, and most cost effective mitigations.&lt;/p&gt;&#xD;
&lt;p&gt;To address the problem, NIST has provided the &lt;a href="http://csrc.nist.gov/publications/PubsSPs.html" target="_blank"&gt;SP&lt;/a&gt; &lt;a href="http://csrc.nist.gov/publications/PubsDrafts.html#SP-800-30-Rev.%201" target="_blank"&gt;800-30&lt;/a&gt; risk management process for some time now. And while high-level threats are very application specific, the National Vulnerability Database provides a low-level overview for what vulnerabilities a threat actor could attempt to exploit.&lt;/p&gt;&#xD;
&lt;p&gt; &lt;/p&gt;&#xD;
&lt;img height="1" src="http://feeds.feedburner.com/~r/beuchelt/~4/te3GT-iWFJs" width="1"&gt;&lt;/img&gt;&#xD;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/5lysVd3IAfbZDceSF8EO_OVU3vw/0/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/5lysVd3IAfbZDceSF8EO_OVU3vw/0/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br&gt;&#xD;
&lt;a href="http://feedads.g.doubleclick.net/~a/5lysVd3IAfbZDceSF8EO_OVU3vw/1/da"&gt;&lt;img border="0" ismap="true" src="http://feedads.g.doubleclick.net/~a/5lysVd3IAfbZDceSF8EO_OVU3vw/1/di"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/WebServicesContraptions/~4/sOkgXhX-K6Q" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ERPyM7xOVVo:te3GT-iWFJs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ERPyM7xOVVo:te3GT-iWFJs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ERPyM7xOVVo:te3GT-iWFJs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ERPyM7xOVVo:te3GT-iWFJs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ERPyM7xOVVo" height="1" width="1"/&gt;</content>
    <updated>2012-02-01T17:02:30Z</updated>
    <category term="Security" />
    <category term="architecture" />
    <category term="cyber security" /><feedburner:origlink>http://feedproxy.google.com/~r/beuchelt/~3/te3GT-iWFJs/</feedburner:origlink>
    <author>
      <name>Gerald Beuchelt</name>
    </author>
    <source>
      <id>http://blog.beuchelt.com</id>
      <logo>http://clustrmaps.com/counter/index2.php?url=http://blog.beuchelt.com</logo>
      <author>
        <name>Gerry Beuchelt - MITRE</name>
      </author>
      <link href="http://blog.beuchelt.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/WebServicesContraptions" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Evolving Web Services Contraptions</subtitle>
      <title>Gerald Beuchelt's Contraptions</title>
      <updated>2012-02-04T13:33:40Z</updated>
    </source>
  <feedburner:origLink>http://feedproxy.google.com/~r/WebServicesContraptions/~3/sOkgXhX-K6Q/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2012/02/placebased_networks.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/w6lOL3WIUV0/placebased_networks.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Place-Based Networks</title>
    <summary xml:lang="en" type="html">A thought-provoking piece on place-based networks from Gideon Rosenblatt.</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;a href="http://www.flickr.com/photos/earlhamcollege/4388225096/"&gt;&#xD;
&lt;img align="right" alt="In the Classroom" border="0" hspace="3" src="http://farm5.staticflickr.com/4051/4388225096_1585bf767c_m.jpg" style="margin-top: 10px;" title="In the Classroom" vspace="0" width="150px"&gt;&lt;/img&gt;&#xD;
&lt;/a&gt;&#xD;
          &#xD;
&lt;p&gt;&#xD;
Here's a thought-provoking piece on &lt;a href="http://www.alchemyofchange.net/place-based-networks/"&gt;place-based networks&lt;/a&gt; from Gideon Rosenblatt. &#xD;
&lt;/p&gt;&#xD;
&lt;blockquote class="webquote"&gt;&#xD;
Imagine if the Internet worked the way the real world does - and that physical places still helped build connection and community.&#xD;
That's the idea behind Place-Based Networks; it's mobile, social technology to help you connect with people based on your shared interest in a place.&#xD;
&lt;div class="quoteref"&gt;From &lt;a href="http://www.alchemyofchange.net/place-based-networks/"&gt;Place-Based Networks: A New Kind of Social Network » Alchemy of Change by Gideon Rosenblatt&lt;/a&gt;&lt;br&gt;Referenced Wed Feb 01 2012 07:27:40 GMT-0700 (MST)&lt;/div&gt;&lt;/blockquote&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
I imagine that our personal event networks could help with that. If your &lt;a href="http://www.windley.com/archives/2012/01/foursquare_and_personal_data_in_a_personal_event_network.shtml"&gt;personal event network knows where you are and what venues you frequent&lt;/a&gt;, it can automate things like tagging in your communications, negotiating meet-ups, and so on. &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=w6lOL3WIUV0:JTmjm1ajlaA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=w6lOL3WIUV0:JTmjm1ajlaA:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=w6lOL3WIUV0:JTmjm1ajlaA:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=w6lOL3WIUV0:JTmjm1ajlaA:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/w6lOL3WIUV0" height="1" width="1"/&gt;</content>
    <updated>2012-02-01T14:32:04Z</updated>
    <published>2012-02-01T14:25:39Z</published>
    <category term="place, geotagging, personal+events," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2012-02-04T00:58:01Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2012/02/placebased_networks.shtml</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-34275044.post-6683319066740035845</id>
    <link href="http://practicalid.blogspot.com/feeds/6683319066740035845/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=34275044&amp;postID=6683319066740035845" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/34275044/posts/default/6683319066740035845" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/34275044/posts/default/6683319066740035845" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/5tpuEJRLIAs/openid-foundation-elections-in-progress.html" rel="alternate" type="text/html" />
    <title>George Fletcher - AOL: OpenID Foundation Elections in Progress</title>
    <content type="html">&lt;div&gt;The election of two new Community Board members for the OpenID Foundation is now in progress. The current list of candidates includes:&lt;br&gt;&lt;ul&gt;&lt;li&gt;Axel Nennker&lt;/li&gt;&lt;li&gt;George Fletcher &amp;lt;-- That's me :)&lt;br&gt;&lt;/li&gt;&lt;li&gt;Greg Keegstra&lt;/li&gt;&lt;li&gt;David Marceau&lt;/li&gt;&lt;li&gt;Patrice Vuillard&lt;/li&gt;&lt;li&gt;Sébastien Brault&lt;/li&gt;&lt;li&gt;Yosef Vuillard&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;If you are an OpenID Foundation member, please log into the &lt;a href="https://openid.net/foundation/members/elections/8" target="_blank"&gt;OpenID Foundation&lt;/a&gt; and exercise your right vote! You can easily sign up for an individual membership for only $25 US.&lt;br&gt;&lt;/p&gt;&lt;p&gt;I'm excited about OpenID's future with the release of the OpenID Connect implementor's draft specs. This body of work is important for moving OpenID from just a federated authentication solution to one that can solve many identity authentication and authorization use cases. These use cases are not limited just to non-risk transactions but can cover higher levels of assurance as well.&lt;br&gt;&lt;/p&gt;&lt;p&gt;Adoption is going to be critical in the next two years and that's one of the reasons I'm running for one of the available board seats. Adoption is more than just OpenID Connect implementations; adoption includes moving beyond low-risk transactions into higher value use cases and really providing convenience and security to consumers. Whether this is a goal that can be accomplished in the next 2 years remains to be seen, but it's a goal worth shooting for.&lt;/p&gt;&lt;p&gt;Of course I'd appreciate your vote!&lt;br&gt;&lt;/p&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/34275044-6683319066740035845?l=practicalid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=5tpuEJRLIAs:wIfh7EyY1s8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=5tpuEJRLIAs:wIfh7EyY1s8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=5tpuEJRLIAs:wIfh7EyY1s8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=5tpuEJRLIAs:wIfh7EyY1s8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/5tpuEJRLIAs" height="1" width="1"/&gt;</content>
    <updated>2012-01-31T22:22:00Z</updated>
    <published>2012-01-31T22:22:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="User Experience" />
    <category scheme="http://www.blogger.com/atom/ns#" term="OpenID Connect" />
    <category scheme="http://www.blogger.com/atom/ns#" term="OpenID Foundation" />
    <category scheme="http://www.blogger.com/atom/ns#" term="Security" />
    <category scheme="http://www.blogger.com/atom/ns#" term="Elections" />
    <category scheme="http://www.blogger.com/atom/ns#" term="Identity" />
    <author>
      <name>George Fletcher</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/12081110172957645007</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-34275044</id>
      <category term="humorous" />
      <category term="Gnip" />
      <category term="Strong Authentication" />
      <category term="Subscription" />
      <category term="AOL" />
      <category term="Photo" />
      <category term="DST" />
      <category term="Credit Card" />
      <category term="PayPal" />
      <category term="Protocols" />
      <category term="eBay" />
      <category term="Correlation" />
      <category term="Trust" />
      <category term="iiw2007" />
      <category term="Open" />
      <category term="Discovery" />
      <category term="Software Bugs" />
      <category term="Identity" />
      <category term="Community" />
      <category term="Tagging" />
      <category term="Signing" />
      <category term="Travel" />
      <category term="Cardspace" />
      <category term="Fraud" />
      <category term="Privacy" />
      <category term="Mac OS X" />
      <category term="TEG" />
      <category term="Whitelist" />
      <category term="People Service" />
      <category term="Federation" />
      <category term="Classification" />
      <category term="Theology" />
      <category term="North Carolina" />
      <category term="Independence Day" />
      <category term="Convergence" />
      <category term="iiw2009b" />
      <category term="OpenAuth" />
      <category term="Token" />
      <category term="Christmas" />
      <category term="Offline Identity" />
      <category term="BurtonCatalyst2007" />
      <category term="Identity Relationship" />
      <category term="UX" />
      <category term="Aggregation" />
      <category term="Social Networks" />
      <category term="Symmetry" />
      <category term="Information Card" />
      <category term="SSO" />
      <category term="Access Control" />
      <category term="Elections" />
      <category term="SAML" />
      <category term="Protable Contacts" />
      <category term="OpenID" />
      <category term="Poll" />
      <category term="OpenID Foundation" />
      <category term="ID-WSF" />
      <category term="Obj-c 1.x" />
      <category term="DataPortability" />
      <category term="User Experience" />
      <category term="Concordia" />
      <category term="Dynamic" />
      <category term="Dogwood" />
      <category term="Easter" />
      <category term="SREG" />
      <category term="Liberty Alliance" />
      <category term="Activity" />
      <category term="Interoperability" />
      <category term="Phishing" />
      <category term="Trust Framework Provider" />
      <category term="Architecture" />
      <category term="OAuth" />
      <category term="Instant Message" />
      <category term="Sharing" />
      <category term="iiw2008b" />
      <category term="Friends" />
      <category term="OpenSocial" />
      <category term="Thanksgiving" />
      <category term="email2url" />
      <category term="Authorization" />
      <category term="webfinger" />
      <category term="conference" />
      <category term="Security" />
      <category term="Relationship" />
      <category term="&quot;OpenID 2.0&quot;" />
      <category term="Service Invocation" />
      <category term="Chi.mp" />
      <category term="SFO" />
      <category term="DIDW 2007" />
      <category term="Framework" />
      <category term="Open Government" />
      <category term="&quot;Open Stack&quot;" />
      <category term="Identity Meta-System" />
      <category term="Push" />
      <category term="Levels of Assurance" />
      <category term="iiw" />
      <category term="Facebook" />
      <category term="Service Provider" />
      <category term="Parental Controls" />
      <category term="Portable Contacts" />
      <category term="Mobile" />
      <category term="Technical" />
      <category term="XRDS" />
      <category term="metasystem" />
      <category term="OpenID Connect" />
      <category term="ProtectServ" />
      <category term="AX" />
      <category term="Web Service" />
      <category term="IdP Discovery" />
      <category term="United" />
      <category term="OpenAIM" />
      <category term="Double Standard" />
      <category term="Registration" />
      <category term="&quot;OpenID Provider&quot;" />
      <category term="Political Correctness" />
      <category term="MapQuest" />
      <category term="Sunrise" />
      <category term="Relying Party" />
      <category term="Authentication" />
      <category term="Foundation" />
      <category term="OSIS" />
      <category term="Reputation" />
      <category term="XRI" />
      <category term="XRDS-Simple" />
      <category term="AIM" />
      <category term="PAPE" />
      <author>
        <name>George Fletcher</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/12081110172957645007</uri>
      </author>
      <link href="http://practicalid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/34275044/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://practicalid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/34275044/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"Nothing to see here... move along..."</subtitle>
      <title>Identity in Practice</title>
      <updated>2012-01-31T22:22:00Z</updated>
    </source>
  <feedburner:origLink>http://practicalid.blogspot.com/2012/01/openid-foundation-elections-in-progress.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2012/01/in_class_exercise.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/VvAJxUv7AlA/in_class_exercise.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: In Class Exercise</title>
    <summary xml:lang="en" type="html">We did an in class exercise today that will continue for the first part of Thursday on the Fast Flower Delivery use case. If you missed, do it on your own before Thursday and show me you work....</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&#xD;
We did an in class exercise today that will continue for the first part of Thursday on the &lt;a href="http://classes.windley.com/462/lectures/index.cgi?FastFlowerDelivery"&gt;Fast Flower Delivery use case&lt;/a&gt;. If you missed, do it on your own before Thursday and show me you work.&#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VvAJxUv7AlA:6KbhLHugHEs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VvAJxUv7AlA:6KbhLHugHEs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=VvAJxUv7AlA:6KbhLHugHEs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=VvAJxUv7AlA:6KbhLHugHEs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/VvAJxUv7AlA" height="1" width="1"/&gt;</content>
    <updated>2012-01-31T16:15:04Z</updated>
    <published>2012-01-31T16:13:37Z</published>
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2012-01-31T16:15:04Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2012/01/in_class_exercise.shtml</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-25881969.post-4883366671026819458</id>
    <link href="http://idm-thoughtplace.blogspot.com/feeds/4883366671026819458/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=25881969&amp;postID=4883366671026819458" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/25881969/posts/default/4883366671026819458" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/25881969/posts/default/4883366671026819458" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/qmFwiMap9Zs/calling-all-dispatchers.html" rel="alternate" type="text/html" />
    <title>Matt Pollicove - CTI: Calling all Dispatchers</title>
    <content type="html">&lt;br&gt;&lt;div style="text-align: left;"&gt;There are two items of general NetWeaver Identity Managementmaintenance that I get asked about frequently.&lt;/div&gt;&lt;div style="text-align: left;"&gt;&lt;ul&gt;&lt;li&gt;&lt;span&gt;How do you prevent deadlocks&lt;/span&gt;&lt;span&gt;&lt;span&gt;    &lt;/span&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span&gt;What is the best way to configure my dispatchersin IDM?&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/div&gt;&lt;div class="MsoListParagraphCxSpFirst"&gt;&lt;/div&gt;&lt;div class="MsoListParagraphCxSpLast"&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;All too often these issues are actually related asinefficient dispatcher setup can cause database deadlocks. In this blog entryI’d like to recommend some possible architecture scenarios that will help outwith this. For the purposes of this discussion, we’ll be talking about aNetWeaver IDM 7.1 installation on Microsoft SQL Server 2008 R2. According to &lt;a href="http://msdn.microsoft.com/en-us/library/ms178104.aspx"&gt;Microsoft&lt;/a&gt;:&lt;br&gt;&lt;br&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoQuote" style="margin-bottom: 10.0pt; margin-left: .5in; margin-right: .5in; margin-top: 0in;"&gt;A deadlock occurs when two or more tasks permanently blockeach other by each task having a lock on a resource which the other tasks aretrying to lock. The following graph presents a high level view of a deadlockstate where:&lt;/div&gt;&lt;div class="MsoQuote"&gt;&lt;span style="font-family: Symbol;"&gt;·&lt;span&gt;        &lt;/span&gt;&lt;/span&gt;Task T1 has a lock on resource R1 and hasrequested a lock on resource R2.&lt;/div&gt;&lt;div class="MsoQuote"&gt;&lt;span style="font-family: Symbol;"&gt;·&lt;span&gt;        &lt;/span&gt;&lt;/span&gt;Task T2 has a lock on resource R2 and has requesteda lock on resource R1.&lt;/div&gt;&lt;div class="MsoQuote"&gt;&lt;span style="font-family: Symbol;"&gt;·&lt;span&gt;        &lt;/span&gt;&lt;/span&gt;Because neither task can continue until aresource is available and neither resource can be released until a taskcontinues, a deadlock state exists.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Attaching multiple dispatchers to the same task would thenseem to create the potential for deadlocks to occur in the database,particularly if they are all trying to access the same rows in the various IDMtables. But wait, we’re supposed to be able to do this to encourage HighAvailability, Load balancing and failover, so what gives?&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Well the secret lies in the architecture, of course. If therequests come from separate physical hosts, it is much easier for the both IDMand the database to manage the threads and requests. Let’s look at a couple ofexamples. First here is a basic dispatcher setup assuming one server with acouple of dispatchers on it.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div align="center" class="MsoNormal" style="text-align: center;"&gt;                              &lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/-Sj8PdlVO8W8/TybCn2ngooI/AAAAAAAAAOM/lBlOapPxlUQ/s1600/blog1.png" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="173" src="http://3.bp.blogspot.com/-Sj8PdlVO8W8/TybCn2ngooI/AAAAAAAAAOM/lBlOapPxlUQ/s320/blog1.png" width="320"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;This setup is OK since each dispatcher (D) is connected to adistinct Job (J) or set of jobs. Sometimes there is a need to have aconfiguration like this, which usually something like one dispatcher for provisioningjobs, one for housekeeping(HK) and one that provides some sort of elevatedaccess for Directory Services(DS) access.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Based on this there might be a temptation to set up thedispatcher/job relationship to look something like this to provide additionalfail over and support for some specific jobs. Consider the following examplewhere I outline a scenario with a crossover between multiple dispatcherspointing to jobs in a many to one relationship:&lt;/div&gt;&lt;div align="center" class="MsoNormal" style="text-align: center;"&gt; &lt;/div&gt;&lt;div class="MsoNormal"&gt;This scenario is exactly what we do not want to have as itis most likely to create a deadlock scenario as having multiple dispatchers accessingthe same jobs that are accessing the same database resources. What we have hereis a potential for deadlocks as the system is trying to manage multipledatabase resources (rows) at the same time. &lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;What tends to compound this situation is the way that thedatabase is being accessed. Using the To Identity Store Pass creates the leastamount of deadlock strain on the system, since this is under the direct controlof the workflow system and its dispatchers, while using techniques such as the &lt;span&gt;uIS_SetValue&lt;/span&gt; function, that can becalled from anywhere, at any time, create the greatest possibility as thesystem is managing standard job based access with unforeseen access via &lt;span&gt;uIS_SetValue&lt;/span&gt;.&lt;br&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;This scenario should be replaced by something like this:&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-PFp1OsFt-AA/TybCor8zolI/AAAAAAAAAOQ/0Mq7cLvVa48/s1600/blog2.png" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://1.bp.blogspot.com/-PFp1OsFt-AA/TybCor8zolI/AAAAAAAAAOQ/0Mq7cLvVa48/s1600/blog2.png"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&lt;/div&gt;&lt;div align="center" class="MsoNormal" style="text-align: center;"&gt; &lt;/div&gt;&lt;div class="MsoNormal"&gt;In this case the potential for deadlocks is significantlyreduced since there is separate management of the database connections. It alsoprovides a degree of load-balancing and failover since if the D&lt;sub&gt;1&lt;/sub&gt; or D&lt;sub&gt;3&lt;/sub&gt;Dispatchers are busy or unable to process an assigned task then the D&lt;sub&gt;4&lt;/sub&gt;or D&lt;sub&gt;5&lt;/sub&gt; dispatchers respectively can take over. A good resource forthis can be found in the SAP document &lt;i&gt;&lt;a href="http://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/1069b670-621a-2e10-9598-99d3b7d99a69"&gt;SAPNetWeaver Identity Management Identity Center Implementation Guide OptimizingDispatcher Performance&lt;/a&gt;&lt;/i&gt;.&lt;b&gt;&lt;/b&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;What also needs to be recognized is that it’s not always asmuch “where” the requests come from, but when the requests come. Care should betaken to monitor the frequency and duration of the larger and more intensivetasks and workflows to make sure that the more involved tasks do not run at thesame time (For example the HCM load should probably not happen the same timethat the Directory Service reconciliation is occurring). These should be thefirst candidates for having their down dedicated dispatchers if there is a needto run them on similar schedules and this cannot be avoided.&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;Given all of this, the thing to remember when consideringdispatcher allocation is to make sure that there are not multiple dispatchersthat are competing for the same set of Identity Store resources at the sametime. As long as this is kept in mind when setting up dispatchers, thepossibility of deadlocks is minimized.&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;A related question to this is how many dispatchers are neededto assign for provisioning and de-provisioning operations. I have always used25,000 objects per dispatcher as a general rule. Based on this the scenarioshown above would be good for an enterprise where there are a maximum of 50,000users, roles, privileges or groups that are being managed in any given task.&lt;/div&gt;&lt;br&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;As a final note, it is a good thing to remember that thedispatchers do not need to be installed on Microsoft Windows based systemsonly. Any UNIX/LINUX environment is just fine for setting up IDM Dispatchers.For more information, check out the SAP document: &lt;i&gt;&lt;a href="http://www.sdn.sap.com/irj/sdn/go/portal/prtroot/docs/library/uuid/00e7da17-26a1-2c10-c5a7-b9886cbc2a14"&gt;HowTo: Setting Up An Identity Management Dispatcher On A Unix Host Flavor&lt;/a&gt;&lt;/i&gt;.&lt;i&gt;&lt;/i&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="MsoNormal"&gt;&lt;br&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/25881969-4883366671026819458?l=idm-thoughtplace.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qmFwiMap9Zs:Efk_ZLu2YJ0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qmFwiMap9Zs:Efk_ZLu2YJ0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qmFwiMap9Zs:Efk_ZLu2YJ0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=qmFwiMap9Zs:Efk_ZLu2YJ0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/qmFwiMap9Zs" height="1" width="1"/&gt;</content>
    <updated>2012-01-31T14:27:28Z</updated>
    <published>2012-01-30T16:20:00Z</published>
    <author>
      <name>Matt Pollicove</name>
      <email>noreply@blogger.com</email>
      <uri>https://profiles.google.com/117668783690956870813</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-25881969</id>
      <category term="on boarding" />
      <category term="Personal" />
      <category term="provisioning" />
      <category term="Legal" />
      <category term="SECUDE Global Consulting" />
      <category term="User Interface" />
      <category term="SAP TechEd 2010" />
      <category term="Microsoft" />
      <category term="SQL" />
      <category term="MaXware" />
      <category term="risk management" />
      <category term="passwords" />
      <category term="Customization" />
      <category term="SP5" />
      <category term="Security" />
      <category term="Oracle" />
      <category term="risk" />
      <category term="David Kearns" />
      <category term="Metadirectory" />
      <category term="white paper" />
      <category term="Identity" />
      <category term="SAP" />
      <category term="managed services" />
      <category term="SaaS" />
      <category term="Compliance" />
      <category term="IC" />
      <category term="planning" />
      <category term="Conference" />
      <category term="Humor" />
      <category term="Gartner" />
      <category term="SP2" />
      <category term="post-provisioning" />
      <category term="de-provisioning" />
      <category term="blogs" />
      <category term="training" />
      <category term="Gregg Dippold" />
      <category term="SAP TechEd 2011" />
      <category term="ROI" />
      <category term="GRC" />
      <category term="Virtual Directory" />
      <category term="IdM" />
      <category term="php" />
      <category term="troubleshooting practices" />
      <category term="MMC" />
      <category term="economy" />
      <category term="best practices" />
      <category term="SP1" />
      <category term="implementation" />
      <category term="Tips" />
      <category term="Jackson Shaw" />
      <category term="commentary" />
      <category term="blog" />
      <category term="Burton" />
      <category term="Ian Daniel" />
      <category term="LDAP" />
      <category term="Matt Flynn" />
      <category term="CUA" />
      <category term="infrastructure" />
      <category term="Upgrade" />
      <category term="NW IDM" />
      <category term="consolidation" />
      <category term="administration" />
      <category term="BI" />
      <category term="Dispatcher" />
      <category term="governance" />
      <category term="javascripting" />
      <category term="summary" />
      <category term="caching" />
      <category term="Audit" />
      <author>
        <name>Matt Pollicove</name>
        <email>noreply@blogger.com</email>
        <uri>https://profiles.google.com/117668783690956870813</uri>
      </author>
      <link href="http://idm-thoughtplace.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/25881969/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://idm-thoughtplace.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/25881969/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>My personal thoughts and observations on the Identity Management landscape.</subtitle>
      <title>IdM Thoughtplace</title>
      <updated>2012-02-01T21:04:46Z</updated>
    </source>
  <feedburner:origLink>http://idm-thoughtplace.blogspot.com/2012/01/calling-all-dispatchers.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/report/cb_productnoteblackbird31012012</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/XPs7NwKIkhc/cb_productnoteblackbird31012012" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Product Research Note: Blackbird Management Suite - 70402</title>
    
    <updated>2012-01-31T13:07:49Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">In &lt;a href="http://www.kuppingercole.com"&gt;KuppingerCole&lt;/a&gt; &lt;br&gt;&lt;br&gt; &lt;p style="text-align: justify;"&gt;The Blackbird Management Suite is well architected and is designed to include high levels of integration with the existing support modules for Active Directory and the Windows Server File System. The administrative interface for Active Directory makes use of the Windows Snap-in architecture for 3rd party products with the Microsoft Management Console (MMC). The File System management is done through an extended explorer thus maintaining the familiarity with the...&lt;br&gt;&lt;a href="http://www.kuppingercole.com/report/cb_productnoteblackbird31012012"&gt;more&lt;/a&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/XPs7NwKIkhc" width="1"&gt;&lt;/img&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XPs7NwKIkhc:F94hQfHtFLo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XPs7NwKIkhc:F94hQfHtFLo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XPs7NwKIkhc:F94hQfHtFLo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=XPs7NwKIkhc:F94hQfHtFLo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/XPs7NwKIkhc" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/report/cb_productnoteblackbird31012012</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/kuppinger/2012/01/31/linkedin-the-next-bad-guy/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/96z7Ax36_mU/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: LinkedIn – the next bad guy</title>
    
    <updated>2012-01-31T12:10:28Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/kuppinger"&gt;Martin Kuppinger&lt;/a&gt; &lt;br&gt;&lt;br&gt;&lt;p&gt;Last Friday, I received two identical emails from LinkedIn contacts informing me about changes in the privacy conditions of LinkedIn. Without user consent, LinkedIn is now allowed to use names and pictures of the users in advertisements. Users can revoke the permission in a simple way (see below). However, what LinkedIn has done raises the question whether the providers of today’s social networks never will learn their privacy lessons.&lt;/p&gt;&#xD;
&lt;p&gt;LinkedIn once again has shown the fundamental misunderstanding of social network providers, that all data therein is their data. However, it is the data of the users, not of the social network. There are some upcoming approaches like personal.com which change that paradigm and give users control over their data. Changing privacy policies in a way like LinkedIn just shows that they probably never will understand this.&lt;/p&gt;&#xD;
&lt;p&gt;But even when you look at what LinkedIn has done from a business perspective, it doesn’t really make sense. What is the value of using the names and pictures of users in advertisements? I don’t believe that it is a really big value. However, changing privacy policies without informing users and without asking for consent automatically has led to a lot of negative reactions, like mails LinkedIn users are sending to their contacts to inform them about this change or like press articles and blogs. To me it appears that the negative impact is far bigger than the positive outcome of that change.&lt;/p&gt;&#xD;
&lt;p&gt;LinkedIn has successfully managed to change its image from being a fairly serious network for business professionals to being just another bad guy like Facebook and the others. Maybe they will learn from the reaction of their users, but, I doubt that. It looks like the classical social networks which build their value on the understanding that everything we enter is automatically theirs, won’t ever learn that lesson. At least not until other concepts become sufficiently successful to drive them out of the market. But then it might be too late.&lt;/p&gt;&#xD;
&lt;p&gt;To change the privacy settings use the following steps:&lt;/p&gt;&#xD;
&lt;p&gt;1. Place the cursor on your name at the top right corner of the screen. From the small pull down menu that appears, select “Settings”&lt;/p&gt;&#xD;
&lt;p&gt;2. Then click “Account” on the left/bottom&lt;/p&gt;&#xD;
&lt;p&gt;3. In the column next to Account, select the option “Manage Social Advertising”&lt;/p&gt;&#xD;
&lt;p&gt;4. Finally un-tick the box “LinkedIn may use my name and photo in social advertising”&lt;/p&gt;&#xD;
&lt;p&gt;5. and Save&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/96z7Ax36_mU" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=96z7Ax36_mU:_PA8Q7732n8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=96z7Ax36_mU:_PA8Q7732n8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=96z7Ax36_mU:_PA8Q7732n8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=96z7Ax36_mU:_PA8Q7732n8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/96z7Ax36_mU" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/kuppinger/2012/01/31/linkedin-the-next-bad-guy/</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/kearns/2012/01/31/evil-or-just-different/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zn31KGD8YoQ/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Evil, or just different</title>
    
    <updated>2012-01-31T12:01:58Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/kearns"&gt;Dave Kearns&lt;/a&gt; &lt;br&gt;&lt;br&gt;&lt;p&gt;Well that didn’t take long.&lt;/p&gt;&#xD;
&lt;p&gt;Less than a week after I &lt;a href="http://feeds.feedburner.com/../2012/01/17/2012-another-one-like-the-other-ones/"&gt;predicted&lt;/a&gt; that “2012 could be a very good year for privacy,” Google announced a &lt;a href="http://googleblog.blogspot.com/2012/01/updating-our-privacy-policies-and-terms.html"&gt;new privacy policy&lt;/a&gt;, one which would apply across almost all of its services. Far from being seen as a good thing, though, the initial reaction was a large outpouring of grief by the privacy community. Even the general media portrayed the move in a dark light.&lt;/p&gt;&#xD;
&lt;p&gt;The Washington Post, for example, was quick to &lt;a href="http://www.washingtonpost.com/business/technology/google-tracks-consumers-across-products-users-cant-opt-out/2012/01/24/gIQArgJHOQ_story.html"&gt;point out&lt;/a&gt; that “A user signing up for Gmail, for instance, might never have imagined that the content of his or her messages could affect the experience on seemingly unrelated Web sites such as YouTube.”&lt;/p&gt;&#xD;
&lt;p&gt;Some of the headlines for the stories about the change:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Google Privacy Change Provokes Outrage (Information Week)&lt;/li&gt;&#xD;
&lt;li&gt;Use Google? Time to Get Real About Protecting Your Digital Self (The Atlantic)&lt;/li&gt;&#xD;
&lt;li&gt;How to close your Google Account (The Washington Post)&lt;/li&gt;&#xD;
&lt;li&gt;Google’s New Privacy Policy Raising Questions in Washington (AdWeek)&lt;/li&gt;&#xD;
&lt;li&gt;Google changes privacy policy to make the company one big product (VentureBeat)&lt;/li&gt;&#xD;
&lt;li&gt;Google Changes Again, Launches One Privacy Policy to Rule Them All (Mashable)&lt;/li&gt;&#xD;
&lt;li&gt;Google’s new privacy policy: Is this war? (KPCC radio)&lt;/li&gt;&#xD;
&lt;li&gt;Big Brother? Google’s new privacy policy creates one massive database (Tecca)&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;And there’s many more just like them.&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://www.commonsensemedia.org/"&gt;Common Sense Media&lt;/a&gt; claims to be “…dedicated to improving the lives of kids and families by providing the trustworthy information, education, and independent voice they need to thrive in a world of media and technology.” Their chief executive, James Steyer, was quoted in the Washington Post article as saying: “Google’s new privacy announcement is frustrating and a little frightening. Even if the company believes that tracking users across all platforms improves their services, consumers should still have the option to opt out — especially the kids and teens who are avid users of YouTube, Gmail and Google Search.”&lt;/p&gt;&#xD;
&lt;p&gt;Of course, everyone does have the option to “opt out,” by not using the service. Well, there is another way, which I’ll tell you about later.&lt;/p&gt;&#xD;
&lt;p&gt;Not all of the media was negative, though. Forbes magazine noted in its headline: “Internet Freak-out Over Google’s New Privacy Policy Proves Again That No One Actually Reads Privacy Policies”.&lt;/p&gt;&#xD;
&lt;p&gt;Google isn’t going to be collecting any more, or any different, information with this policy change. As explained in a &lt;a href="http://googleblog.blogspot.com/2012/01/updating-our-privacy-policies-and-terms.html"&gt;Google blog entry&lt;/a&gt; (by Alma Whitten, Google’s Director of Privacy, Product and Engineering): “…we still have more than 70 (yes, you read right … 70) privacy documents covering all of our different products. This approach is somewhat complicated.” So the company is taking 60 or so of them (the others have legal reasons to be kept separate) and rolling them into one which “…covers the majority of our products and explains what information we collect, and how we use it, in a much more readable way.”&lt;/p&gt;&#xD;
&lt;p&gt;As a consequence of this, the new policy “…makes clear that, if you’re signed in, we [i.e., Google] may combine information you’ve provided from one service with information from other services. In short, we’ll treat you as a single user across all our products.”&lt;/p&gt;&#xD;
&lt;p&gt;Again, nothing new will be collected; it will simply be amalgamated into one record rather than 2, 5, 15 or more under the current policy. Will this help users, or hurt them?&lt;/p&gt;&#xD;
&lt;p&gt;The jury is still out on that, of course, but I personally believe it will help many more people than it might possibly hurt. The telling point is who gets to see that accumulated data.&lt;/p&gt;&#xD;
&lt;p&gt;As the above cited blog post notes, “We remain committed to data liberation, so if you want to take your information elsewhere you can. We don’t sell your personal information, nor do we share it externally without your permission except in very limited circumstances like a valid court order. We try hard to be transparent about the information we collect, and to give you meaningful choices about how it is used.”&lt;/p&gt;&#xD;
&lt;p&gt;Ah, so how will it be used?&lt;/p&gt;&#xD;
&lt;p&gt;Generally, Google’s critics and the company itself agree that the data will be used to personalize your experience across the multiple Google platforms (search, Gmail, Google+, YouTube, Android, etc. – each of those “70 plus” privacy policies referenced earlier refers to a different service/platform). Some see that as, well, in Gizmodo’s words: “The End of ‘Don’t Be Evil’.”&lt;/p&gt;&#xD;
&lt;p&gt;Google, though, thinks this will – for the great majority of its users – improve their on-line experience and improve it dramatically.&lt;/p&gt;&#xD;
&lt;p&gt;Not only will the search engine know more about what you’re searching for (if you enter “Jaguar” as a search term, do you mean automobiles or wild animals?), but it can tailor the advertising you see (and you will see advertising) to your tastes and desires. So if I enter “Mannequin Pis” as a search term (or to find pictures) I might see that priority is given to the &lt;a href="http://en.wikipedia.org/wiki/Manneken_Pis"&gt;famous Brussels statue&lt;/a&gt; or it might be to the &lt;a href="http://www.mannequinpis.com/"&gt;restaurant&lt;/a&gt; in Olney, Maryland (about 10 miles from my office). The deciding point might be where my Android phone indicates I’m located at the time I search.&lt;/p&gt;&#xD;
&lt;p&gt;Some people find that “creepy.” I’m not one of them.&lt;/p&gt;&#xD;
&lt;p&gt;For twenty years I’ve been waiting for a personalization service like this. It was one of the reasons I became so interested in directory services and, later, identity services. It’s the promise of being my personal assistant, in theory, that’s finally being delivered.&lt;/p&gt;&#xD;
&lt;p&gt;One example that Google’s Whitten points out: “We can provide reminders that you’re going to be late for a meeting based on your location, your calendar and an understanding of what the traffic is like that day.” She could have added that emails could be automatically sent to other others scheduled for that meeting letting them know you would be late – and actually reschedule the meeting knowing what their calendars look like and approximately how long it will take you to get to the office. I find that to be an excellent use of technology. If it also means I’ll see more ads for cruises, antiques and restaurants (things I’m interested in) and fewer for shoes, fast food and skiing (which I’m not interested in) then I consider that a plus.&lt;/p&gt;&#xD;
&lt;p&gt;Now, if Google was going to package this information and distribute it to its advertisers or sell it to other third parties to do so, then I’d be in the forefront of those protesting – and I’d quite possibly be looking to replace those Google services I do use. But they aren’t. Google’s policy regarding this data stays the same, “&lt;strong&gt;We don’t sell your personal information, nor do we share it externally without your permission.&lt;/strong&gt; [emphasis added]” No one has ever shown that Google violates this pledge.&lt;/p&gt;&#xD;
&lt;p&gt;Forbes’ Kashmir Hill &lt;a href="http://www.forbes.com/sites/kashmirhill/2012/01/25/internet-freak-out-over-googles-new-privacy-policy-proves-no-one-actually-reads-privacy-policies/"&gt;sums it up&lt;/a&gt; best, I think: “When Google starts bundling everything it knows about its users and selling that to insurance companies, background check companies, and the Department of Homeland Security, that’s when I’ll trot out the ‘evil label.’ But using information from Gmail to suggest more appropriate YouTube videos or reminding an Android smartphone user that they have a Google calendar appointment in a half hour on the other side of town doesn’t strike me as the work of Lucifer.”&lt;/p&gt;&#xD;
&lt;p&gt;I did promise you a way to stop Google from amalgamating all of your data, didn’t I? It’s quite simple, just create separate accounts for the services you want to keep separate – Gmail, YouTube, Picassa, what have you. Google can’t force you to put every service under one account, so you can do this to maintain relative privacy – just remember which accounts cover which services!&lt;/p&gt;&#xD;
&lt;p&gt;In other privacy news, the EU has &lt;a href="http://www.businessweek.com/news/2012-01-25/firms-face-fines-as-much-as-2-of-sales-under-eu-privacy-law.html"&gt;proposed updated regulations&lt;/a&gt; covering data breaches and the mis-handling of personal information. Companies could face penalties as high as 2% of their yearly &lt;strong&gt;global&lt;/strong&gt; sales (not just EU sales) but, on the plus side, companies would now only have to deal with the privacy agency of the country they’re headquartered in rather than face all 27 EU data-protection agencies. So, stricter rules, bigger “teeth” in the law but easier compliance – it’s too soon to tell if this is a plus or a minus – and for whom.&lt;/p&gt;&#xD;
&lt;p&gt;Finally, a new debate is starting in the US about privacy and healthcare. Some have proposed what’s called a universal patient identifier, or UPI – a single unique health-care identification number for every inhabitant. This would be very useful for doctors, emergency workers, hospitals, pharmacists – and patients. Proponents say UPIs not only facilitate information sharing among doctors and guard against needless medical errors, but may also offer a safety advantage in that health records would never again need to be stored alongside financial data like Social Security numbers. Privacy activists say the data would be collected and sold to third parties causing a rise in distrust of the medical profession and a deterioration in care. Expect this debate to go one for quite some time.&lt;/p&gt;&#xD;
&lt;p&gt;Here at KuppingerCole we’ll be following these issues – as well as all identity privacy issues – as they play out round the world.&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/zn31KGD8YoQ" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zn31KGD8YoQ:DSG6dUzrI7I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zn31KGD8YoQ:DSG6dUzrI7I:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zn31KGD8YoQ:DSG6dUzrI7I:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zn31KGD8YoQ:DSG6dUzrI7I:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zn31KGD8YoQ" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/kearns/2012/01/31/evil-or-just-different/</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/events/n40157</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/1fUpAYJK6Z4/n40157" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: 13.03.2012: Access Risks - from SAP to the Outer Space: an Identity &amp; Access Governance Journey</title>
    
    <updated>2012-01-31T11:27:45Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:43Z</updated>
    </source>
  <content type="html">In &lt;a href="http://www.kuppingercole.com"&gt;KuppingerCole&lt;/a&gt; &lt;br&gt;&lt;br&gt; Access Governance applies across the entire application landscape, but has the largest impact on SAP where key business processes are managed. As SAP pose unique Access Security needs, it tends to be left in isolation. This webinar will explain how to address SAP specific needs without losing the benefits of an Enterprise wide Identity &amp;amp; Access Governance implementation.&lt;br&gt;&lt;a href="http://www.kuppingercole.com/events/n40157"&gt;more&lt;/a&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/1fUpAYJK6Z4" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1fUpAYJK6Z4:H69kBvnFR_Q:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1fUpAYJK6Z4:H69kBvnFR_Q:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=1fUpAYJK6Z4:H69kBvnFR_Q:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=1fUpAYJK6Z4:H69kBvnFR_Q:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/1fUpAYJK6Z4" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/events/n40157</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://self-issued.info/?p=634</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ieIuk5CG-T8/" rel="alternate" type="text/html" />
    <link href="http://self-issued.info/?p=634#comments" rel="replies" type="text/html" />
    <link href="http://self-issued.info/?feed=atom&amp;p=634" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Mike Jones - Microsoft: OAuth 2.0 Bearer Token Specification Draft -16</title>
    <summary xml:lang="en" type="html">Draft 16 of the OAuth 2.0 Bearer Token Specification has been published. This version contains a proposed resolution to the auth-param syntax issue that has been reviewed by Julian Reschke, Mark Nottingham, and the OAuth WG chairs. It also addresses the Gen-ART review comments by Alexey Melnikov. It contains the following changes: Use the HTTPbis [...]</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;span class="plain"&gt;&lt;img align="right" alt="OAuth logo" src="http://self-issued.info/images/oauth_logo_120x120.png"&gt;&lt;/img&gt;&lt;/span&gt;&lt;a href="http://self-issued.info/docs/draft-ietf-oauth-v2-bearer-16.html"&gt;Draft 16&lt;/a&gt; of the &lt;a href="http://self-issued.info/docs/draft-ietf-oauth-v2-bearer.html"&gt;OAuth 2.0 Bearer Token Specification&lt;/a&gt; has been published. This version contains a proposed resolution to the auth-param syntax issue that has been reviewed by Julian Reschke, Mark Nottingham, and the OAuth WG chairs.  It also addresses the Gen-ART review comments by Alexey Melnikov. &lt;/p&gt;&#xD;
&lt;p&gt;It contains the following changes:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Use the HTTPbis auth-param syntax for Bearer challenge attributes.&lt;/li&gt;&#xD;
&lt;li&gt;Dropped the sentence “The realm value is intended for programmatic use and is not meant to be displayed to end users”.&lt;/li&gt;&#xD;
&lt;li&gt;Reordered form-encoded body parameter description bullets for better readability.&lt;/li&gt;&#xD;
&lt;li&gt;Added [USASCII] reference.&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;The draft is available at:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://tools.ietf.org/html/draft-ietf-oauth-v2-bearer-16"&gt;http://tools.ietf.org/html/draft-ietf-oauth-v2-bearer-16&lt;/a&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&lt;p&gt;An HTML-formatted version is available at:&lt;/p&gt;&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://self-issued.info/docs/draft-ietf-oauth-v2-bearer-16.html"&gt;http://self-issued.info/docs/draft-ietf-oauth-v2-bearer-16.html&lt;/a&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ieIuk5CG-T8:n9-IQlYWuOs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ieIuk5CG-T8:n9-IQlYWuOs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ieIuk5CG-T8:n9-IQlYWuOs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ieIuk5CG-T8:n9-IQlYWuOs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ieIuk5CG-T8" height="1" width="1"/&gt;</content>
    <updated>2012-01-30T23:56:45Z</updated>
    <published>2012-01-30T23:56:45Z</published>
    <category scheme="http://self-issued.info" term="OpenID" />
    <category scheme="http://self-issued.info" term="Specifications" />
    <author>
      <name>Mike Jones</name>
      <uri>http://self-issued.info/</uri>
    </author>
    <source>
      <id>http://self-issued.info/?feed=atom</id>
      <link href="http://self-issued.info" rel="alternate" type="text/html" />
      <link href="http://self-issued.info/?feed=atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Musings on Digital Identity</subtitle>
      <title xml:lang="en">Mike Jones: self-issued</title>
      <updated>2012-01-30T23:56:45Z</updated>
    </source>
  <feedburner:origLink>http://self-issued.info/?p=634</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/events/n10074</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/J81bEe0Z8q4/n10074" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: 28.02.2012: Access Governance richtig gemacht: Investitionsschutz und zielgerichtete Weiterentwicklung</title>
    
    <updated>2012-01-30T18:01:33Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">In &lt;a href="http://www.kuppingercole.com"&gt;KuppingerCole&lt;/a&gt; &lt;br&gt;&lt;br&gt; Access Governance – dieser Begriff steht für Lösungen, mit denen sich Zugriffsrechte besser steuern und kontrollieren lassen. Die regelmäßige Re-Zertifizierung und damit Überprüfung von Zugriffsberechtigungen gehört ebenso dazu wie analytische Funktionen für den Status von Zugriffsberechtigungen und Rollenmanagement-Funktionen. Die Lösungen müssen aber auch das Management von Zugriffsberechtigungen mit einfachen Bestellfunktionen für Berechtigungen durch Endanwender und damit auch eine gute...&lt;br&gt;&lt;a href="http://www.kuppingercole.com/events/n10074"&gt;more&lt;/a&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/J81bEe0Z8q4" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J81bEe0Z8q4:vc5dAtMDSYI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J81bEe0Z8q4:vc5dAtMDSYI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=J81bEe0Z8q4:vc5dAtMDSYI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=J81bEe0Z8q4:vc5dAtMDSYI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/J81bEe0Z8q4" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/events/n10074</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>8d07cc69-a460-48f1-844d-25b05ba87317:8501</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/L6yAEPDlOTg/cloud-iam-services-everyone-s-new-punching-bag.aspx" rel="alternate" type="text/html" />
    <title>CA on Security Management: Cloud IAM Services-Everyone’s New Punching Bag</title>
    
    <updated>2012-01-30T15:36:00Z</updated>
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/IAM+Trends/default.aspx" term="IAM Trends" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/Federation/default.aspx" term="Federation" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/SaaS+Security/default.aspx" term="SaaS Security" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/Identity+Services/default.aspx" term="Identity Services" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/cloud+computing/default.aspx" term="cloud computing" />
    <category scheme="http://community.ca.com/blogs/iam/archive/tags/Identity+and+Access+Management/default.aspx" term="Identity and Access Management" /><feedburner:origlink>http://community.ca.com/blogs/iam/archive/2012/01/30/cloud-iam-services-everyone-s-new-punching-bag.aspx</feedburner:origlink>
    <author>
      <name>Merritt Maxim</name>
    </author>
    <source>
      <id>http://community.ca.com/blogs/iam/default.aspx</id>
      <logo>http://www.ca.com/images/global/logo_172900.gif</logo>
      <link href="http://community.ca.com/blogs/iam/default.aspx" rel="alternate" type="text/html" />
      <link href="http://feeds.ca.com/CS_CAIAMBlog" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Insight and opinion on the world of security management. This is the place for commentary on industry issues, articles and reports on topics such as managing identities and their lifecycles; securing access to data and resources; securing Web business applications and services; and managing security logs and information.</subtitle>
      <title>CA on Security Management</title>
      <updated>2012-01-31T10:02:49Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;Any new product or technology is invariably accompanied by certain levels of skepticism and cynicism.  Whether it is the latest smart phone lacking a certain mega-pixel camera or a new version of enterprise software not supporting a given operating system or standard, critics will always appear to question these new products' viability.&#xD;
&#xD;
As we enter 2012, cloud computing, or more...&lt;br&gt;&#xD;
&lt;br&gt;&#xD;
 &lt;img height="1" src="http://feeds.feedburner.com/~r/CS_CAIAMBlog/~4/R5S76wQwmVs" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L6yAEPDlOTg:oPLeybQJumw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L6yAEPDlOTg:oPLeybQJumw:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=L6yAEPDlOTg:oPLeybQJumw:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=L6yAEPDlOTg:oPLeybQJumw:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/L6yAEPDlOTg" height="1" width="1"/&gt;</content><feedburner:origLink>http://feeds.ca.com/~r/CS_CAIAMBlog/~3/R5S76wQwmVs/cloud-iam-services-everyone-s-new-punching-bag.aspx</feedburner:origLink></entry>

  <entry>
    <id>tag:travisspencer.com,2012://1.141</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/cFneVlU3Gs0/a-managable-system-for-managin.html" rel="alternate" type="text/html" />
    <title>Travis Spencer - Ping Identity: A Manageable System for Managing Passwords</title>
    <summary type="html">Tons of passwords are an unfortunate reality. I'm working hard every day to reduce the number of passwords that we have to use around the Web. Till it gets to a management number though, we need a way to cope....</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Tons of passwords are an unfortunate reality. I'm working hard every day to reduce the number of passwords that we have to use around the Web. Till it gets to a management number though, we need a way to cope. Everyone has a technique -- some put their passwords in a spreadsheet, others write them on post-its stuck to their computer screen, others use the same password(s) everywhere, some use a password manager in their browser. All of tese techniques have various security implications, however. We have to manage this chaos some how though, so the security issues are often disregarded. Is there a more secure way?&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;A better alternative would be one that doesn't require you to write anything down, isn't locked away in a computer that you don't have ready access to, and is unique per site and per account. One such technique is to create a set of steps, an algorithm, that you follow to create a unique password for every user account on every site that requires one. To do this, start by using something from the Web site that won't change, like the name; this is your "seed" value. For instance, your algorithm could be something like this:&#xD;
&lt;/p&gt;&lt;ol&gt;&#xD;
&lt;li&gt;Capitalize the first letter of the Web site's name and make the rest lowercase.&lt;/li&gt;&#xD;
&lt;li&gt;Take the first 4 characters of this name. If it is less than four characters, add underscores to make it at least four characters long.&lt;/li&gt;&#xD;
&lt;li&gt;Add some word that contains a symbol and a number and is easy to remember (e.g., P@nda1). The result is the password to use on the site.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;So, using this sample algorithm, the password for CNN would be this:&#xD;
&lt;/p&gt;&lt;ol&gt;&#xD;
&lt;li&gt;Cnn&lt;/li&gt;&#xD;
&lt;li&gt;Cnn_&lt;/li&gt;&#xD;
&lt;li&gt;Cnn_P@nda1&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;For Spotify, it would be this:&#xD;
&lt;/p&gt;&lt;ol&gt;&#xD;
&lt;li&gt;Spot&lt;/li&gt;&#xD;
&lt;li&gt;Spot&lt;/li&gt;&#xD;
&lt;li&gt;SpotP@nda1&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&lt;p&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;The result is a strong passwords that while difficult to remember is easy to reproduce because the necessary steps are memorable. There's a problem w/ this though. If a baddie ever sees just two of your passwords, they'll have a very easy time guessing any of your others because they are so similar. So, here's an easy fix that makes things more secure&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Download an app to your phone that can generate a password from an input phrase. This app should produce the same password every time it's given the same input. It should produce passwords that includes uppercase, lowercase, numbers, and symbols.  This app should not have permission to access the Internet. Some of the free ones require it, so they can download ads. Who knows though? They might also be uploading your passwords. An example of a good one for Android is &lt;a href="https://market.android.com/details?id=com.quicosoft.passwordgeneratorpro"&gt;Password Generator Pro&lt;/a&gt;.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Now, when you have to sign up for a new account and create a password, use your algorithm as described above. However, don't use that as the password. Instead, use it as input to the app. This will produce a random password from a phrase that's hard to guess but associated to the site you're visiting. With the the site-specific "seed," the common algorithm, and an app that's running on your phone which generates strong passwords, you'll have a pretty easy system for managing the chaos where you don't have to write anything down, each password is unique, and they can't be guessed.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&lt;b&gt;Make sure you don't let people know your algorithm though or all this security breaks down.&lt;/b&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;If you have a better way to manage this mess or if you think there are issues w/ this system, leave a comment here or &lt;a href="http://travisspencer.com/contact-me.html"&gt;drop me a line&lt;/a&gt;.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cFneVlU3Gs0:clTaKfU1Jv4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cFneVlU3Gs0:clTaKfU1Jv4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=cFneVlU3Gs0:clTaKfU1Jv4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=cFneVlU3Gs0:clTaKfU1Jv4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/cFneVlU3Gs0" height="1" width="1"/&gt;</content>
    <updated>2012-01-30T12:11:52Z</updated>
    <published>2012-01-18T14:47:52Z</published>
    <category scheme="http://www.sixapart.com/ns/types#category" term="Security" />
    <category label="passwords" scheme="http://www.sixapart.com/ns/types#tag" term="passwords" />
    <category label="security" scheme="http://www.sixapart.com/ns/types#tag" term="security" />
    <author>
      <name>Travis Spencer</name>
      <uri>http://travisspencer.com</uri>
    </author>
    <source>
      <id>tag:travisspencer.com,2008-11-06://1</id>
      <link href="http://travisspencer.com/" rel="alternate" type="text/html" />
      <link href="http://travisspencer.com/atom.xml" rel="self" type="application/atom+xml" />
      <subtitle>My blog with news and thoughts of interest to software engineers and their friends</subtitle>
      <title>Travis Spencer - Software Engineer</title>
      <updated>2012-01-22T21:05:05Z</updated>
    </source>
  <feedburner:origLink>http://travisspencer.com/blog/2012/01/a-managable-system-for-managin.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-8980537759168128471</id>
    <link href="http://connectid.blogspot.com/feeds/8980537759168128471/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=12447072&amp;postID=8980537759168128471" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8980537759168128471?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/8980537759168128471?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/Xp6JpM50S0M/new-line-of-greeting-cards_29.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;div class="p_embed p_image_embed"&gt; &lt;img alt="Screen_shot_2012-01-29_at_3" height="482" src="http://getfile4.posterous.com/getfile/files.posterous.com/paulmadsen/CN9PXcaKrX4SpMnQNsxv6c5FmwwHNvGsQv2JwCp67n7VcLOa3J3VEHFLB7Wu/Screen_shot_2012-01-29_at_3.56.png" width="451"&gt;&lt;/img&gt; &lt;/div&gt; &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-32597"&gt;Pre(posterous)&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-8980537759168128471?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/Xp6JpM50S0M" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Xp6JpM50S0M:YNm-e_nWwZo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Xp6JpM50S0M:YNm-e_nWwZo:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=Xp6JpM50S0M:YNm-e_nWwZo:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=Xp6JpM50S0M:YNm-e_nWwZo:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/Xp6JpM50S0M" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T20:57:26Z</updated>
    <published>2012-01-29T20:57:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <category term="Liberty Alliance" />
      <category term="federated authorization" />
      <category term="threads" />
      <category term="identity" />
      <category term="tribute" />
      <category term="history" />
      <category term="tidbits" />
      <category term="privacy" />
      <category term="Grid" />
      <category term="Sirius radio" />
      <category term="phish" />
      <category term="NBC Identity" />
      <category term="XRI" />
      <category term="health" />
      <category term="Google" />
      <category term="SAML" />
      <category term="security privacy" />
      <category term="OpenID" />
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>When you don't have anything nice to say, well then perhaps its time consider a career as an analyst.</subtitle>
      <title>ConnectID</title>
      <updated>2012-01-29T20:57:26Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2012/01/new-line-of-greeting-cards_29.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-8623828480142129448</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/8623828480142129448/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=8623828480142129448" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/8623828480142129448" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/8623828480142129448" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/_Y0FkSDL3Ms/2012_01_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 41</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/-nltlueEFVkw/TyTcYzy1EoI/AAAAAAAAENI/3dsfR1qWmcw/s1600/sts.jpg" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="127" src="http://2.bp.blogspot.com/-nltlueEFVkw/TyTcYzy1EoI/AAAAAAAAENI/3dsfR1qWmcw/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;This is a link to the &lt;a href="http://www.oasis-open.org/committees/download.php/44489/rakesh-talk-v1.pdf"&gt;presentation &lt;/a&gt;I gave to the Trust Elevation WG at OASIS, headed by Dr. Abbie Barbir.  I might extend the time frame to post the reminder 59 thoughts around token trends (not within the 100 days) to late 2012.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-8623828480142129448?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=_Y0FkSDL3Ms:8pBt9lm5gOI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=_Y0FkSDL3Ms:8pBt9lm5gOI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=_Y0FkSDL3Ms:8pBt9lm5gOI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=_Y0FkSDL3Ms:8pBt9lm5gOI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/_Y0FkSDL3Ms" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T06:03:27Z</updated>
    <published>2012-01-29T05:45:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT41" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2012_01_01_archive.html#8623828480142129448</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-9095423354045931776</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/9095423354045931776/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=9095423354045931776" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/9095423354045931776" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/9095423354045931776" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/LRQ4ghafaR0/2012_01_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 40</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;br&gt;&lt;div class="separator" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em; text-align: center;"&gt;&lt;img border="0" height="127" src="http://2.bp.blogspot.com/-r70Uq6Yl1KM/TyTb30JbnCI/AAAAAAAAENA/mHGwe_2XNm0/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/div&gt;&lt;br&gt;And also Microsoft supports a type of&lt;a href="http://en.wikipedia.org/wiki/Access_token"&gt; Access Tokens&lt;/a&gt; in its operating system.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-9095423354045931776?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LRQ4ghafaR0:EYYj0W1er0w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LRQ4ghafaR0:EYYj0W1er0w:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=LRQ4ghafaR0:EYYj0W1er0w:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=LRQ4ghafaR0:EYYj0W1er0w:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/LRQ4ghafaR0" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T05:42:37Z</updated>
    <published>2012-01-29T05:42:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT40" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2012_01_01_archive.html#9095423354045931776</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-2717451600553987033</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/2717451600553987033/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=2717451600553987033" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2717451600553987033" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/2717451600553987033" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/UflqdRm1R1E/2012_01_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 39</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-JVd9tRCEzL0/TyTX4liji4I/AAAAAAAAEM4/h1DYnTOh6sY/s1600/sts.jpg" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="127" src="http://4.bp.blogspot.com/-JVd9tRCEzL0/TyTX4liji4I/AAAAAAAAEM4/h1DYnTOh6sY/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;In the Data Tokenization space -- we need to go beyond simple data element tokenization (such as SS# and PAN) and leverage a Data Tokenization Platform such as the &lt;a href="http://intelasip.nebrina.com/redfort/Expressway-Tokenization-Broker-Reduce-PCI-Scope/"&gt;Intel Token Broker&lt;/a&gt;. The idea is to have a tokenized representation of all "data" resource - which includes a table, a db or directory. See the demo and read the papers. Such Data STS are also integrated into XACML based entitlement systems (such as Axiomatics and Oracle EM).&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-2717451600553987033?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UflqdRm1R1E:RxQkpJIiXHk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UflqdRm1R1E:RxQkpJIiXHk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=UflqdRm1R1E:RxQkpJIiXHk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=UflqdRm1R1E:RxQkpJIiXHk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/UflqdRm1R1E" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T05:27:38Z</updated>
    <published>2012-01-29T05:27:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT39" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2012_01_01_archive.html#2717451600553987033</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-7798034125340976851</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/7798034125340976851/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=7798034125340976851" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/7798034125340976851" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/7798034125340976851" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/63y8qrBzzXE/2012_01_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 38</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-cPAx1uNB6ks/TyTWvGucAzI/AAAAAAAAEMw/RcKy4_2P5nw/s1600/sts.jpg" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="127" src="http://1.bp.blogspot.com/-cPAx1uNB6ks/TyTWvGucAzI/AAAAAAAAEMw/RcKy4_2P5nw/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;Of course when you have major mainframe applications and mainframe batch jobs still in production, we need to extend the legacy RACF authentication of such legacy systems and specialized implementation such as &lt;a href="http://www.csl-int.com/pages_docs/ezToken.pdf"&gt;eZtoken &lt;/a&gt;enables these tokenized representation.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-7798034125340976851?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63y8qrBzzXE:ZeNLf_aqfVc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63y8qrBzzXE:ZeNLf_aqfVc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=63y8qrBzzXE:ZeNLf_aqfVc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=63y8qrBzzXE:ZeNLf_aqfVc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/63y8qrBzzXE" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T05:21:09Z</updated>
    <published>2012-01-29T05:21:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT38" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2012_01_01_archive.html#7798034125340976851</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-3370947086690205512</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/3370947086690205512/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=3370947086690205512" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/3370947086690205512" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/3370947086690205512" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/18vHmzBcJsc/2012_01_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 37</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-VrGisrsZeu8/TyTVflvAERI/AAAAAAAAEMo/hGN7gK2Faiw/s1600/sts.jpg" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="127" src="http://1.bp.blogspot.com/-VrGisrsZeu8/TyTVflvAERI/AAAAAAAAEMo/hGN7gK2Faiw/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;While OATH tokens are Authentication tokens we also have &lt;a href="http://oauth.net/2/"&gt;OAUTH&lt;/a&gt; tokens as access tokens. Amongst Access tokens we can have tokens such as an RBACtoken or a XrML token that offers tokenized representation of access privileges for a user. Very useful when access decisions are taken for multiple distributed resources and in collaboration with multiple access tokens.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-3370947086690205512?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=18vHmzBcJsc:XvdQp01ktWM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=18vHmzBcJsc:XvdQp01ktWM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=18vHmzBcJsc:XvdQp01ktWM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=18vHmzBcJsc:XvdQp01ktWM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/18vHmzBcJsc" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T05:17:08Z</updated>
    <published>2012-01-29T05:17:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT37" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2012_01_01_archive.html#3370947086690205512</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-31038959.post-4968878929946749024</id>
    <link href="http://identity-centric-architecture.blogspot.com/feeds/4968878929946749024/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=31038959&amp;postID=4968878929946749024" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/4968878929946749024" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/31038959/posts/default/4968878929946749024" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/trlaVNslyzM/2011_11_01_archive.html" rel="alternate" type="text/html" />
    <title>Rakesh Radhakrishnan - Sun: Thoughts on Token Technology Trends- No: 35</title>
    <content type="html">&lt;div dir="ltr" style="text-align: left;"&gt;&lt;br&gt;&lt;div class="separator" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em; text-align: center;"&gt;&lt;img border="0" height="127" src="http://4.bp.blogspot.com/-t2PrFeyF5Aw/Tr_AsT-GyWI/AAAAAAAAELw/5dFZL1R2RiY/s200/sts.jpg" width="200"&gt;&lt;/img&gt;&lt;/div&gt;&lt;br&gt;Similar to the approach taken by the SPENGO effort in the past (negotiated authentication), OATH is another initiative that aligns a few Authentication methods and tokens, such as; Standalone OTP generators, Smart Cards, USB Key FOBs, Software tokens and Trusted Platform Module (TPM) tokens via client negotiated framework with STS (secure token services). The power of &lt;a href="http://www.openauthentication.org/webfm_send/13"&gt;OATH token&lt;/a&gt; is that it is a framework that is token agnostic and authN mechanism agnostic, and that it will have commercial implementations via Ping STS and others. Therefore if you see a OATH token in a STS representing a subject - you can expect that it is negotiated with the client application or application type before it is generated.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/31038959-4968878929946749024?l=identity-centric-architecture.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=trlaVNslyzM:YwgHOqvkAuQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=trlaVNslyzM:YwgHOqvkAuQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=trlaVNslyzM:YwgHOqvkAuQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=trlaVNslyzM:YwgHOqvkAuQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/trlaVNslyzM" height="1" width="1"/&gt;</content>
    <updated>2012-01-29T05:10:50Z</updated>
    <published>2011-11-13T13:07:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="TTT35" />
    <author>
      <name>Rakesh</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/05795934513331666808</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-31038959</id>
      <category term="AAAAuthority" />
      <category term="PPPAM" />
      <category term="sudarshan" />
      <category term="444" />
      <category term="sunser" />
      <category term="CSSS" />
      <category term="GObama" />
      <category term="SSSAB" />
      <category term="InterwrokingIII" />
      <category term="AAAP" />
      <category term="IIIndia" />
      <category term="AAA6" />
      <category term="PPPPOsso" />
      <category term="EEExpress" />
      <category term="AAANY" />
      <category term="AAANM3" />
      <category term="netid09" />
      <category term="mmus" />
      <category term="mmm" />
      <category term="egovtelecom" />
      <category term="CCCCoalmine" />
      <category term="SSSolaris" />
      <category term="dc" />
      <category term="FCCCC" />
      <category term="IDCCCC" />
      <category term="AAANM2" />
      <category term="CCCCPD" />
      <category term="RRR" />
      <category term="ssscisco" />
      <category term="EEethics" />
      <category term="KeynoteSIM" />
      <category term="XACML_ABAC_project" />
      <category term="AAA7" />
      <category term="RRRatify" />
      <category term="CCCOracle" />
      <category term="SEI" />
      <category term="AAA4" />
      <category term="BBBasel" />
      <category term="AAApertio" />
      <category term="IIIPTV" />
      <category term="TTT39" />
      <category term="improveimp" />
      <category term="IIIO" />
      <category term="mmmtut" />
      <category term="idtrust2008" />
      <category term="DDDDesign" />
      <category term="AAAustin" />
      <category term="AAA5" />
      <category term="AdAA" />
      <category term="10GKGrad" />
      <category term="firstfew" />
      <category term="IIIDEA" />
      <category term="MMMobile" />
      <category term="FFFAM" />
      <category term="TTT2" />
      <category term="AOP" />
      <category term="DIM2008" />
      <category term="RRRRBAC" />
      <category term="TTT40" />
      <category term="IDTrust2009" />
      <category term="ll" />
      <category term="CFPTPC" />
      <category term="SSOS" />
      <category term="ravir" />
      <category term="CCContext" />
      <category term="memmom" />
      <category term="TTT3" />
      <category term="AAASOA" />
      <category term="SSSec" />
      <category term="CClientContext" />
      <category term="GGGen" />
      <category term="NSNGN" />
      <category term="SSSSec" />
      <category term="CCCB" />
      <category term="GGGain" />
      <category term="PPPairs" />
      <category term="CCCommunity" />
      <category term="SSSMS" />
      <category term="GGGloop" />
      <category term="BBBailout" />
      <category term="TTT1" />
      <category term="TTT41" />
      <category term="ddvi" />
      <category term="OrGRC" />
      <category term="PPPworkshop" />
      <category term="CCCdance" />
      <category term="nnnnetid" />
      <category term="SSStrategy" />
      <category term="sssdsee" />
      <category term="LLL" />
      <category term="wwwwebcast" />
      <category term="Keynote" />
      <category term="AAAObama" />
      <category term="ValidIII" />
      <category term="OOOpenet" />
      <category term="Keynotes" />
      <category term="ieccc" />
      <category term="IDXML" />
      <category term="midm" />
      <category term="AAAgate" />
      <category term="PPCP" />
      <category term="ppprivacy" />
      <category term="IIIITIL" />
      <category term="SSSriSri" />
      <category term="USAFRICA" />
      <category term="OpenSSOEEE" />
      <category term="LLLogic" />
      <category term="XiiML" />
      <category term="WWWash" />
      <category term="TTT26" />
      <category term="SOASIG" />
      <category term="SSSS" />
      <category term="RRRpolicy" />
      <category term="vvvesu" />
      <category term="RiskBAC" />
      <category term="HHHE" />
      <category term="AAAssurance" />
      <category term="CCClouds" />
      <category term="TTT35" />
      <category term="anand" />
      <category term="RRRl" />
      <category term="CASonacard" />
      <category term="TTT27" />
      <category term="IIIGRC" />
      <category term="TTT32" />
      <category term="LLLT" />
      <category term="ACMAC" />
      <category term="IDMunich" />
      <category term="SSStar" />
      <category term="ShankarTrinity" />
      <category term="TPPP" />
      <category term="AAAAlignment" />
      <category term="TTTax" />
      <category term="ABACRBAC" />
      <category term="cccautism" />
      <category term="OOOJava" />
      <category term="CCCV" />
      <category term="TTT28" />
      <category term="MMM2010" />
      <category term="AAAIDS" />
      <category term="ciscosun" />
      <category term="CCCtelcomysql" />
      <category term="TTTrans" />
      <category term="wwworkshop" />
      <category term="TTTb" />
      <category term="TTT33" />
      <category term="VVVFP" />
      <category term="CCCUC" />
      <category term="EMSXACML" />
      <category term="JGMMM" />
      <category term="TTTNXTComm08" />
      <category term="CCConv" />
      <category term="DIDW2008" />
      <category term="VVVolgenau" />
      <category term="sailfin" />
      <category term="netID" />
      <category term="CCCplaces" />
      <category term="TTT37" />
      <category term="TTT29" />
      <category term="mmmove" />
      <category term="sspot" />
      <category term="RRRBAC" />
      <category term="sssschool" />
      <category term="SSSweekend" />
      <category term="MMMunich" />
      <category term="SOASISec" />
      <category term="TTT38" />
      <category term="uuuam" />
      <category term="motodev" />
      <category term="LEEE" />
      <category term="analogies" />
      <category term="CCCCon" />
      <category term="IIIindigo" />
      <category term="evem" />
      <category term="DIM2010" />
      <category term="PPProtocols" />
      <category term="AAAAAA" />
      <category term="IIIPhone" />
      <category term="CCCMobile" />
      <category term="IIINHIN" />
      <category term="AAANM" />
      <category term="CCCGB" />
      <category term="CommcustCT" />
      <category term="cccc" />
      <category term="HHSS" />
      <category term="TTT19" />
      <category term="RRRaji" />
      <category term="DDDIDT" />
      <category term="CIA4CC" />
      <category term="RRRM" />
      <category term="DDDivide" />
      <category term="OpeningKeynote" />
      <category term="AAAUTHN" />
      <category term="idpbook" />
      <category term="idendev" />
      <category term="TTT36" />
      <category term="WWWin" />
      <category term="arjunaa" />
      <category term="hhssrs" />
      <category term="TTTotT" />
      <category term="TTTFTC" />
      <category term="TOLTTT" />
      <category term="SASSOSAML" />
      <category term="OOOpNGDC" />
      <category term="FFFGS" />
      <category term="cccmouli" />
      <category term="SSSOSession" />
      <category term="AAAservices" />
      <category term="AAAC" />
      <category term="TTT18" />
      <category term="TTTech" />
      <category term="IEEEIDM" />
      <category term="SIMSCWSSSO" />
      <category term="TTT17" />
      <category term="andreasfrank" />
      <category term="SSSworld" />
      <category term="MMMDM" />
      <category term="PPpermutation" />
      <category term="CCC" />
      <category term="bookatparis" />
      <category term="alignSOA" />
      <category term="SSSOA" />
      <category term="TTT16" />
      <category term="TTT21" />
      <category term="mtv" />
      <category term="IIWITU" />
      <category term="pppbook" />
      <category term="FFFISMA" />
      <category term="VVVpdc" />
      <category term="INIDIN" />
      <category term="IIIPP" />
      <category term="TTT15" />
      <category term="sun25" />
      <category term="TTTelco" />
      <category term="AAAMTune" />
      <category term="idenabledTA" />
      <category term="soaatsd" />
      <category term="TTT20" />
      <category term="FFFTNC" />
      <category term="SSSIDworld2010" />
      <category term="AAAF" />
      <category term="superG" />
      <category term="TTT14" />
      <category term="tmftmw" />
      <category term="RRRR" />
      <category term="IDPVC" />
      <category term="AAAJ1" />
      <category term="cccdc" />
      <category term="TTT31" />
      <category term="TTT22" />
      <category term="HHHitsp" />
      <category term="LLLGO" />
      <category term="RRRefuteUrRep" />
      <category term="JGD" />
      <category term="pppnortel" />
      <category term="Insights2Integration" />
      <category term="TTT30" />
      <category term="DDDMB" />
      <category term="LLLondon" />
      <category term="SSSHC" />
      <category term="CCCS" />
      <category term="chandrusss" />
      <category term="vaau" />
      <category term="IDTrustAAA" />
      <category term="FFFusion" />
      <category term="KKKishore" />
      <category term="KKKeynotes" />
      <category term="AAAplliance" />
      <category term="PPPbnm" />
      <category term="IDDev" />
      <category term="TTT13" />
      <category term="EEEdad" />
      <category term="MMMM" />
      <category term="SSSipDA" />
      <category term="CCCbook" />
      <category term="SunSAI" />
      <category term="TTTTokens" />
      <category term="TTT24" />
      <category term="TOGAF2008" />
      <category term="VDVVM" />
      <category term="CCComments" />
      <category term="TTT12" />
      <category term="CCCust" />
      <category term="TTTr" />
      <category term="PPProfile" />
      <category term="AAAIDMR" />
      <category term="NNNHT" />
      <category term="IIInt" />
      <category term="IIIIBI" />
      <category term="TTT8" />
      <category term="TTSCIT" />
      <category term="CCidC" />
      <category term="websense" />
      <category term="uva" />
      <category term="TTT11" />
      <category term="VVVAAU" />
      <category term="webCworkS" />
      <category term="SSOA" />
      <category term="trends" />
      <category term="carsandroads" />
      <category term="AAArjuna" />
      <category term="EEEID" />
      <category term="2020Cricket" />
      <category term="SSSwift" />
      <category term="TTT10" />
      <category term="eeeve" />
      <category term="WWWFI" />
      <category term="SSSL7" />
      <category term="IDMindsurty" />
      <category term="Policy 2010" />
      <category term="PPPID" />
      <category term="IIIImedia" />
      <category term="nnn" />
      <category term="WWW" />
      <category term="CCCpapers" />
      <category term="TTTT" />
      <category term="REREBE" />
      <category term="nnnb" />
      <category term="DIDW07SSS" />
      <category term="sunopenid" />
      <category term="CCCyber" />
      <category term="RRRepurcussions" />
      <category term="pppp" />
      <category term="EEEE" />
      <category term="GGGRC" />
      <category term="SSSumathi" />
      <category term="LLLon" />
      <category term="AAAmber" />
      <category term="TTT" />
      <category term="TTT9" />
      <category term="pb" />
      <category term="AAArjun" />
      <category term="RSRRR" />
      <category term="TenatSun" />
      <category term="stdatdc" />
      <category term="SSSOS" />
      <category term="CCContextMEP" />
      <category term="VVVV" />
      <category term="OCCC" />
      <category term="ideniptv" />
      <category term="VofVI" />
      <category term="VVVivek" />
      <category term="PPPat" />
      <category term="BBBOSSO" />
      <category term="IIITelco" />
      <category term="GoObama" />
      <category term="obamabiden" />
      <category term="SSSNAC" />
      <category term="AFandMe" />
      <category term="TTT5" />
      <category term="CCCConvergence" />
      <category term="IIIWarrior" />
      <category term="Net Dialogue" />
      <category term="DallasTM" />
      <category term="SABSA" />
      <category term="CIIII" />
      <category term="VZW" />
      <category term="worththewait" />
      <category term="LLLA" />
      <category term="IASAIDEA" />
      <category term="CMCC" />
      <category term="SunBWPPPP" />
      <category term="TTT4" />
      <category term="glimpse" />
      <category term="SSSFS" />
      <category term="CCCC1" />
      <category term="CCCM" />
      <category term="SSSOSSO" />
      <category term="PPProt" />
      <category term="idpbook2" />
      <category term="RAAA" />
      <category term="iiii" />
      <category term="UVAArc" />
      <category term="rbacjone" />
      <category term="TTT7" />
      <category term="ScottSS" />
      <category term="IDenabledSDP" />
      <category term="authnjsr279" />
      <category term="FFFED" />
      <category term="RRRBar" />
      <category term="glennbblog" />
      <category term="ccccMIT" />
      <category term="TTT6" />
      <category term="OOOut" />
      <category term="DrRimland" />
      <category term="IIITol" />
      <category term="savaje" />
      <category term="PPPGMU" />
      <category term="SSSolve" />
      <category term="XXXDI" />
      <category term="PEPPIP" />
      <category term="RARR" />
      <category term="SAAS" />
      <category term="drkalam" />
      <author>
        <name>Rakesh</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/05795934513331666808</uri>
      </author>
      <link href="http://identity-centric-architecture.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://identity-centric-architecture.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/31038959/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>"The IDEA is to design systems that put the concepts of secure, distributed, open &amp; controlled "digital identity" at the core of ESA." IDEA enables an Identity Layer that securely exchanges the AuthN &amp; AuthZ context, Network &amp; Device context, User context and other contextual data for "Contextual Composition of Converged Services" - while adhering to pervasive policies and establishing (transactional) Trust Through Transparency.</subtitle>
      <title>Identity Driven Enterprise (Security) Architecture (IDEAs!!)</title>
      <updated>2012-01-29T06:03:27Z</updated>
    </source>
  <feedburner:origLink>http://identity-centric-architecture.blogspot.com/2011_11_01_archive.html#4968878929946749024</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-3200930.post-2589981955063807401</id>
    <link href="http://epeus.blogspot.com/feeds/2589981955063807401/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=3200930&amp;postID=2589981955063807401" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/3200930/posts/default/2589981955063807401" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/3200930/posts/default/2589981955063807401" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/4GHfaBaFSOg/qr-codes-bad-idea-or-terrible-idea.html" rel="alternate" type="text/html" />
    <title>Kevin Marks: QR Codes: bad idea or terrible idea?</title>
    <content type="html">&lt;p&gt;People have a problem finding your URL. You post a QR Code. Now they have 2 problems. Or more:&lt;br&gt;&lt;br&gt;&lt;/p&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/-yC-tQ3Fhx-U/TyQzmPEh70I/AAAAAAAAADw/LWwr3GOyRY4/s1600/QRpost.png" style="clear: right; float: right; margin-left: 1em; margin-bottom: 1em;"&gt;&lt;img border="0" height="320" src="http://4.bp.blogspot.com/-yC-tQ3Fhx-U/TyQzmPEh70I/AAAAAAAAADw/LWwr3GOyRY4/s320/QRpost.png" width="320"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/div&gt;&lt;br&gt;&lt;ol&gt;&lt;li&gt;They see a chunk of &lt;a href="http://robotbarf.com"&gt;robot barf&lt;/a&gt; on your poster, and have to realise it isn't a crossword puzzle, but a QR code.&lt;br&gt;&lt;/li&gt;&lt;li&gt;They need to take a digital photograph of it with their phone. If they have a laptop, even with a camera, this requires physical contortions&lt;br&gt;&lt;/li&gt;&lt;li&gt;They need an application on their phone that can make sense of a QR code. &lt;br&gt;&lt;/li&gt;&lt;li&gt;They need a lot of patience as they fiddle with it.&lt;br&gt;&lt;/li&gt;&lt;li&gt;They need a working network connection to resolve it.&lt;/li&gt;&lt;/ol&gt;&lt;p&gt;Conversely, with a URL they could type it in, take a photograph of it and type it in later, or if they have the right app, it will recognise the URL text from the image and make it clickable.  &lt;/p&gt;&lt;p&gt;That is the irony of this. QR Codes ignore years of research and culture on how to communicate meaning in symbolic form designed to be captured by image processing tools behind a lens. We have this technology. It is called writing. &lt;/p&gt;&lt;p&gt;Written language has a set of symbols that are relatively unambiguous, that are formed of curves rather than hard edges making them resilient to noise, and have been market-tested for milennia. QR Codes don't just ignore this, they ignore the relative success of one dimensional barcodes. Notice something about a barcode? It has the number printed on it as well, so you can type it in if the scan fails. QR Codes don't do this, so it's far too easy to put the wrong one in, or fail to replace a mockup. Which is why so many QR codes &lt;a href="http://justinsomnia.org/2011/03/why-does-that-qr-code-take-me-to-justinsomnia-org/"&gt;link to Justin's site instead&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;The only place you should use QR codes is if you have a dedicated reader for them, like a classic barcode scanner, and a workflow that is designed for this that actually saves time. If you do empirical research on using QR codes for the public, you'll likely see 80% worse performance than text &lt;a href="https://www.brooklynmuseum.org/community/blogosphere/2012/01/04/qr-in-the-new-year/"&gt;like this museum did&lt;/a&gt;. By all means try the experiment and report your results. Put up a QR code and a printed URL and see which gets the most usage.&lt;/p&gt;&lt;p&gt;Or &lt;a href="http://www.wired.com/beyond_the_beyond/2011/11/web-semantics-those-little-microchip-square-box-things/"&gt;listen to others&lt;/a&gt;:&lt;/p&gt;&lt;blockquote&gt;a majority of our respondents knew more or less what they were for, very few (n=2, or around 7%) were successfully able to use QR codes to resolve a URL, even when coached by a knowledgeable researcher.[..] A strong theme that emerged — which we certainly found entirely unsurprising, but which ought to give genuine pause to the cleverer sort of marketers — is that, even where respondents displayed sufficient awareness and understanding of QR codes to make use of them, virtually no one expressed any interest in actually doing so.&lt;/blockquote&gt;&lt;p&gt;As &lt;a href="http://www.theatlantic.com/technology/archive/2012/01/qr-codes-are-the-rolling-skating-horses-of-advertising/252128/"&gt;Alexis Madrigal puts it&lt;/a&gt;:&lt;/p&gt;&lt;blockquote&gt;Is it really faster and better to use a QR code that will direct you to part of a marketing campaign rather than getting a broader sweep of information by simply using the browser that you already use all the time on your phone? In the instant cost-benefit analysis I do every time I see a QR code, it has yet to make sense for me to fire up the decoder app I have installed on my phone.&lt;/blockquote&gt;&lt;p&gt;&lt;/p&gt;&lt;blockquote class="twitter-tweet"&gt;&lt;p&gt;QR code at the bus stop to get time of next bus. Really useful in the dark. Not. &lt;a href="http://t.co/vwnrXFcU" title="http://yfrog.com/mgicpqj"&gt;yfrog.com/mgicpqj&lt;/a&gt;&lt;/p&gt;— Martin Geddes (@martingeddes) &lt;a href="https://twitter.com/martingeddes/status/162962422758506496"&gt;January 27, 2012&lt;/a&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/3200930-2589981955063807401?l=epeus.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4GHfaBaFSOg:u_KnxEGHYdk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4GHfaBaFSOg:u_KnxEGHYdk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=4GHfaBaFSOg:u_KnxEGHYdk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=4GHfaBaFSOg:u_KnxEGHYdk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/4GHfaBaFSOg" height="1" width="1"/&gt;</content>
    <updated>2012-01-28T17:43:47Z</updated>
    <published>2012-01-28T17:40:00Z</published>
    <category scheme="http://www.blogger.com/atom/ns#" term="URLs" />
    <category scheme="http://www.blogger.com/atom/ns#" term="advice" />
    <category scheme="http://www.blogger.com/atom/ns#" term="QR codes" />
    <author>
      <name>Kevin Marks</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/18338939297948690534</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-3200930</id>
      <category term="flash" />
      <category term="Macworld" />
      <category term="WWDC" />
      <category term="earthlight" />
      <category term="s3" />
      <category term="Ted Nelson" />
      <category term="China" />
      <category term="movies" />
      <category term="Mandelson" />
      <category term="books" />
      <category term="Authority" />
      <category term="lexicon" />
      <category term="Bitcoin" />
      <category term="SVG" />
      <category term="album cover" />
      <category term="vacuous" />
      <category term="parsing" />
      <category term="Apple" />
      <category term="vlabfeb08" />
      <category term="Identity" />
      <category term="Middlesbrough" />
      <category term="buzz" />
      <category term="truth" />
      <category term="audio" />
      <category term="san jose" />
      <category term="zeroconf" />
      <category term="Stardust" />
      <category term="spam" />
      <category term="cloud computing." />
      <category term="Censorship" />
      <category term="video" />
      <category term="email" />
      <category term="VRM" />
      <category term="Survivorship bias" />
      <category term="hcard" />
      <category term="fraud" />
      <category term="David Weinberger" />
      <category term="Digital Economy Bill" />
      <category term="Andrew Keen" />
      <category term="power law" />
      <category term="facebook" />
      <category term="Gordon Ramsay" />
      <category term="homographophobia" />
      <category term="Tolkein" />
      <category term="global warming" />
      <category term="CSS" />
      <category term="disruption" />
      <category term="data leaks" />
      <category term="Tom Baker" />
      <category term="hegemony" />
      <category term="tummler" />
      <category term="memory" />
      <category term="sxd" />
      <category term="reification" />
      <category term="Live TV is dead" />
      <category term="APIs" />
      <category term="UK" />
      <category term="infographic" />
      <category term="Tom Coates" />
      <category term="patents" />
      <category term="shock of the new" />
      <category term="iPhone" />
      <category term="iTunes" />
      <category term="Bittorrent" />
      <category term="bacn" />
      <category term="journalists" />
      <category term="marketing" />
      <category term="design" />
      <category term="net neutrality" />
      <category term="statistics" />
      <category term="panopticon" />
      <category term="obsequious" />
      <category term="Christy Canida" />
      <category term="Webkit" />
      <category term="blogging" />
      <category term="SOPA" />
      <category term="idtail" />
      <category term="google" />
      <category term="feeds" />
      <category term="nomenclature" />
      <category term="homogenous" />
      <category term="abstemious" />
      <category term="poem" />
      <category term="social software" />
      <category term="geisha" />
      <category term="OAuth" />
      <category term="MapReduce" />
      <category term="xenophobe" />
      <category term="Amateur" />
      <category term="rhizomatic" />
      <category term="bad science" />
      <category term="touchstones" />
      <category term="Social Web" />
      <category term="Harry Potter" />
      <category term="event" />
      <category term="trolling" />
      <category term="Luddism" />
      <category term="public speaking" />
      <category term="Layer Cake" />
      <category term="Kevin Marks" />
      <category term="Clay Shirky" />
      <category term="Slutsky" />
      <category term="Steve Jobs" />
      <category term="Paradigm shift" />
      <category term="akamai" />
      <category term="QuickTime" />
      <category term="Flow" />
      <category term="digital rights" />
      <category term="Tummeling" />
      <category term="voice" />
      <category term="Social Graph" />
      <category term="Obama" />
      <category term="FCC" />
      <category term="code" />
      <category term="firewall" />
      <category term="ceremony" />
      <category term="nymwars" />
      <category term="URLs" />
      <category term="miscellaneous" />
      <category term="theory" />
      <category term="Lift" />
      <category term="bee aware" />
      <category term="Flow Past Web" />
      <category term="Tim Burton" />
      <category term="danah boyd" />
      <category term="lunar" />
      <category term="Open Stack" />
      <category term="google io" />
      <category term="QR codes" />
      <category term="music" />
      <category term="bubble" />
      <category term="botnet" />
      <category term="leweb08" />
      <category term="banks" />
      <category term="organic" />
      <category term="Long Tail" />
      <category term="pop-up" />
      <category term="copyright" />
      <category term="Comcast" />
      <category term="Humpty Dumpty" />
      <category term="blogosphere" />
      <category term="supercilious" />
      <category term="words" />
      <category term="Ridley Scott" />
      <category term="sheet music" />
      <category term="EFF" />
      <category term="affordance" />
      <category term="standards" />
      <category term="DAAP" />
      <category term="Keynote" />
      <category term="OLPC" />
      <category term="jejune" />
      <category term="film" />
      <category term="social media" />
      <category term="writing" />
      <category term="IIW" />
      <category term="VOIP" />
      <category term="ORG" />
      <category term="mobile" />
      <category term="mediation" />
      <category term="BBC" />
      <category term="Snatch" />
      <category term="WOFF" />
      <category term="animateur" />
      <category term="emergent" />
      <category term="web" />
      <category term="graduates" />
      <category term="cultural objects" />
      <category term="Data portability" />
      <category term="Technorati" />
      <category term="predictions" />
      <category term="gestures" />
      <category term="Social Cloud" />
      <category term="Geek" />
      <category term="GSP" />
      <category term="rock band" />
      <category term="Annie Hall" />
      <category term="oligarchy" />
      <category term="chicanery" />
      <category term="hackathon" />
      <category term="Teresa Nielsen-Hayden" />
      <category term="netflix" />
      <category term="RealTime" />
      <category term="iPod" />
      <category term="danah" />
      <category term="hAtom" />
      <category term="PIPA" />
      <category term="video ad" />
      <category term="Safari" />
      <category term="Mac" />
      <category term="lunar eclipse" />
      <category term="DRM" />
      <category term="Chief Conversation Officer" />
      <category term="hReview" />
      <category term="performance" />
      <category term="MI6" />
      <category term="eclipse" />
      <category term="taxonomy" />
      <category term="grass roots" />
      <category term="Doctor Who" />
      <category term="miasma" />
      <category term="advice" />
      <category term="unctuous" />
      <category term="Hartlepool" />
      <category term="mortality" />
      <category term="curation" />
      <category term="semantic web" />
      <category term="Magna Carta" />
      <category term="parody" />
      <category term="Phatic" />
      <category term="XML" />
      <category term="moderation" />
      <category term="conversational catalyst" />
      <category term="OpenID" />
      <category term="bees" />
      <category term="microformats" />
      <category term="Pink Floyd" />
      <category term="PR" />
      <category term="social networks" />
      <category term="android" />
      <category term="four candles" />
      <category term="respect" />
      <category term="MPAA" />
      <category term="HTML" />
      <category term="editing" />
      <category term="hubris" />
      <category term="Charlene Li" />
      <category term="slumming" />
      <category term="bit.ly" />
      <category term="Out-groups" />
      <category term="loquacious" />
      <category term="w3c" />
      <category term="DEBill" />
      <category term="Douglas Adams" />
      <category term="mind" />
      <category term="Faces" />
      <category term="media" />
      <category term="Kindle" />
      <category term="Twitter" />
      <category term="Activity Streams" />
      <category term="public" />
      <category term="moon" />
      <category term="OpenSocial" />
      <category term="change" />
      <category term="Woody Allen" />
      <category term="Bladerunner" />
      <category term="social" />
      <category term="http" />
      <category term="viral marketing" />
      <category term="Pagan Kennedy" />
      <category term="1984" />
      <category term="the ghost map" />
      <category term="publics" />
      <category term="Morality" />
      <category term="andrew marks" />
      <category term="pecuniary" />
      <category term="namespaces" />
      <category term="Mimi Ito" />
      <category term="amazon" />
      <category term="enterprise" />
      <category term="DRM destroys value" />
      <category term="internet" />
      <category term="Vaughn" />
      <category term="Shenzen" />
      <category term="Caja" />
      <category term="Open Rights Group" />
      <category term="Google Instant" />
      <category term="wave" />
      <category term="social objects" />
      <category term="Gaiman" />
      <category term="HTML5" />
      <category term="tinyurl" />
      <category term="cock-up" />
      <category term="Portable Contacts" />
      <category term="meme" />
      <category term="viral" />
      <category term="homophonophobia" />
      <category term="nano" />
      <category term="conspiracy" />
      <category term="culture" />
      <category term="Cory Doctorow" />
      <category term="Capability-based security" />
      <category term="mushrooms" />
      <category term="pseudonyms" />
      <category term="iChat" />
      <category term="YouTube" />
      <category term="Web 2.0" />
      <category term="fruitful" />
      <category term="TummelVision" />
      <category term="BBC America" />
      <category term="bacon" />
      <category term="stupid network" />
      <category term="xfn" />
      <category term="Little Brother" />
      <category term="supernova" />
      <category term="Fantasy" />
      <category term="Planet Money" />
      <category term="economics" />
      <category term="org-cbde" />
      <category term="blogger" />
      <category term="Web2Expo" />
      <category term="multilingual" />
      <category term="Restaurants" />
      <category term="cinema" />
      <category term="icon" />
      <category term="Marshall McLuhan" />
      <category term="bndwidth" />
      <category term="scandal" />
      <category term="iPad" />
      <category term="CSS naked day" />
      <category term="identity theft" />
      <category term="AIM" />
      <category term="money" />
      <category term="leweb" />
      <category term="open web" />
      <author>
        <name>Kevin Marks</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/18338939297948690534</uri>
      </author>
      <link href="http://epeus.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/3200930/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://epeus.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/3200930/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Edifying exquisite equine entrapments</subtitle>
      <title>Epeus' epigone</title>
      <updated>2012-02-03T07:04:20Z</updated>
    </source>
  <feedburner:origLink>http://epeus.blogspot.com/2012/01/qr-codes-bad-idea-or-terrible-idea.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-7825348865090201863</id>
    <link href="http://connectid.blogspot.com/feeds/7825348865090201863/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=12447072&amp;postID=7825348865090201863" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/7825348865090201863?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/7825348865090201863?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/nAy_14Duqjk/new-line-of-greeting-cards_27.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;div class="p_embed p_image_embed"&gt; &lt;a href="http://getfile2.posterous.com/getfile/files.posterous.com/paulmadsen/lwT725yTXGOdd2oohZ6ufkMUD1ITi7NhyPbng2LuuS9LfmvvZCiQG8aTsesY/Screen_shot_2012-01-27_at_4.44.png"&gt;&lt;img alt="Screen_shot_2012-01-27_at_4" height="421" src="http://getfile3.posterous.com/getfile/files.posterous.com/paulmadsen/A6uOfpVsD4XOf9sxUMasxiH6JtlzlrEBtN1ta9z6hhovbhygcmoxijorMMd4/Screen_shot_2012-01-27_at_4.44.png.scaled.500.jpg" width="500"&gt;&lt;/img&gt;&lt;/a&gt; &lt;/div&gt; &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-14144"&gt;Pre(posterous)&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-7825348865090201863?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/nAy_14Duqjk" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=nAy_14Duqjk:vTowIUw30nc:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=nAy_14Duqjk:vTowIUw30nc:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=nAy_14Duqjk:vTowIUw30nc:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=nAy_14Duqjk:vTowIUw30nc:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/nAy_14Duqjk" height="1" width="1"/&gt;</content>
    <updated>2012-01-27T21:46:03Z</updated>
    <published>2012-01-27T21:46:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <category term="Liberty Alliance" />
      <category term="federated authorization" />
      <category term="threads" />
      <category term="identity" />
      <category term="tribute" />
      <category term="history" />
      <category term="tidbits" />
      <category term="privacy" />
      <category term="Grid" />
      <category term="Sirius radio" />
      <category term="phish" />
      <category term="NBC Identity" />
      <category term="XRI" />
      <category term="health" />
      <category term="Google" />
      <category term="SAML" />
      <category term="security privacy" />
      <category term="OpenID" />
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>When you don't have anything nice to say, well then perhaps its time consider a career as an analyst.</subtitle>
      <title>ConnectID</title>
      <updated>2012-01-29T20:57:26Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2012/01/new-line-of-greeting-cards_27.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-4450154254120336229.post-1271330628148988229</id>
    <link href="http://futureidentity.blogspot.com/feeds/1271330628148988229/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://futureidentity.blogspot.com/2012/01/time-for-rant.html#comment-form" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/1271330628148988229" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/1271330628148988229" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/zdQ-F2q2MAs/time-for-rant.html" rel="alternate" type="text/html" />
    <title>Robin Wilton - Future Identity: Time for a rant...</title>
    <content type="html">... about some really irritating developments in TV advertising.&lt;br&gt;&lt;br&gt;I apoplogise in advance, but I think some of these peeves have been simmering for a while now, and it would be healthier all round if I can permit myself a little vent. There are two advertising trends at the moment which are really starting to grate.&lt;br&gt;&lt;br&gt;The first is when the advertiser treats us like imbeciles, incapable of logical thought. Two examples:&lt;br&gt;&lt;br&gt;1 - the dishwasher tablet which is sold on the premise that, if you don't use it, filth accumulates in your dishwasher's plumbing tubes and is then swilled around your cutlery and crockery, bathing them in a vile brew which is, by implication, not far short of raw sewage. Of course, being  imbeciles we fail to notice that the pipes &lt;span style="font-style: italic;"&gt;into &lt;/span&gt;the dishwasher come from the water main, and are presumably not already clogged with sewage; and the pipes &lt;span style="font-style: italic;"&gt;out &lt;/span&gt;of the dishwasher do not convey anything back &lt;span style="font-style: italic;"&gt;into&lt;/span&gt; it.&lt;br&gt;&lt;br&gt;2 - the kitchen soap dispenser whose great selling point is that it includes a sensor, so that you can get your dollop of soap without having to do anything insanitary like press down on a squirter.  Again, being imbeciles, we have never noticed that the first thing you do after pressing down on a (presumably plague-ridden) soap dispenser is... wash your hands.&lt;br&gt;&lt;br&gt;Here's the enigma: are these advertisements fatally flawed, foolishly insulting their target market... or are they perfectly crafted, aimed precisely at a market of imbeciles?&lt;br&gt;&lt;br&gt;The other irritant is a variant on the old "vox pop" technique. Classically, this involves a reassuring third party, such as an interviewer or someone in a white coat, getting totally spontaneous product endorsements out of enthusiastic consumers who are totally surprised at the effectiveness of the product.&lt;br&gt;&lt;br&gt;The variant (toothpaste being far and away the worst offender) is that when sound-editing your vox pops, you have to remove tiny snippets of silence from between random words. The result sounds something like this:&lt;br&gt;&lt;br&gt;"I had never realisedthat some things I eatevery day, suchas battery acid, can eataway at tooth enameland cause cavities andbrain rot."&lt;br&gt;&lt;br&gt;Why? Why do they do this?&lt;br&gt;&lt;br&gt;I am seriously considering applying for that job, snipping out the tiny gaps between words in fatuous vox pops. Then, like one of my literary heroes, &lt;a href="https://en.wikipedia.org/wiki/Murke%27s_Collected_Silences"&gt;Doktor Murke&lt;/a&gt;, I would splice them carefully together again and luxuriate in the resulting silence. Listening to it might even bring my blood pressure down again...&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/4450154254120336229-1271330628148988229?l=futureidentity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zdQ-F2q2MAs:gNHsY2uHeT0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zdQ-F2q2MAs:gNHsY2uHeT0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=zdQ-F2q2MAs:gNHsY2uHeT0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=zdQ-F2q2MAs:gNHsY2uHeT0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/zdQ-F2q2MAs" height="1" width="1"/&gt;</content>
    <updated>2012-01-27T19:17:29Z</updated>
    <published>2012-01-27T18:42:00Z</published>
    <author>
      <name>Robin Wilton</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/04346208043850215328</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-4450154254120336229</id>
      <category term="liberty" />
      <category term="encore" />
      <category term="PII" />
      <category term="anonymity" />
      <category term="Liberty Alliance pseudonymity personas" />
      <category term="identity" />
      <category term="security" />
      <category term="federation" />
      <category term="igf" />
      <category term="privacy" />
      <category term="data" />
      <category term="crypto" />
      <category term="ICO" />
      <category term="rfid" />
      <category term="identifiers" />
      <author>
        <name>Robin Wilton</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/04346208043850215328</uri>
      </author>
      <link href="http://futureidentity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://futureidentity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Thoughts about [stuff that isn't my professional area of research] and its effect on our daily lives. 
May contain traces of nuts. 
Do not trample the rocky habitat.</subtitle>
      <title>Racingsnake - Robin Wilton's Esoterica</title>
      <updated>2012-01-27T19:17:29Z</updated>
    </source>
  <feedburner:origLink>http://futureidentity.blogspot.com/2012/01/time-for-rant.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blogs.gartner.com/robin-wilton/?p=171</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/h9FJuGDXSBs/" rel="alternate" type="text/html" />
    <title>Robin Wilton - Gartner: GPS tracking and the 4th Amendment (Part 2…)</title>
    <summary type="html">My colleague Avivah Litan has given her insightful and thought-provoking read on the recent US Supreme Court decision here. Avivah correctly identifies the “opt-in”/”opt-out” dichotomy as a critical element of the discussion. Tracking for law enforcement purposes needs, of course, to be set aside from the debate over user consent… but outside law enforcement – [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;My colleague Avivah Litan has given her insightful and thought-provoking read on the recent US Supreme Court decision &lt;a href="http://blogs.gartner.com/avivah-litan/2012/01/26/supreme-court-gps-decision-could-impact-future-mobile-experiences"&gt;here&lt;/a&gt;.&lt;/p&gt;&#xD;
&lt;p&gt;Avivah correctly identifies the “opt-in”/”opt-out” dichotomy as a critical element of the discussion. Tracking for law enforcement purposes needs, of course, to be set aside from the debate over user consent… but outside law enforcement – whether in the commercial domain or for public sector service delivery – I strongly believe that there should always be an opt-out available. In fact, my personal opinion is that “opted out” should always be the default, with an opt-in choice if the user wishes.&lt;/p&gt;&#xD;
&lt;p&gt;Of course, if there’s an opt-out, some of the people who exercise it will be virtuous, and some will not. There are those whose take the old “if you have nothing to fear, you have nothing to hide” view – but as anyone who has followed my &lt;a href="http://futureidentity.blogspot.com/2010/07/privacy-and-bindweed.html"&gt;blogging &lt;/a&gt;will know, that’s a view that I find misguided, harmful and pernicious. Avivah’s distinction between law enforcement and the commercial sector helps indicate one of the reasons why: it is clearly not the case that everything the law enforcement authorities know about me should, of right, be made public. Similarly, there are things which commercial service providers know about me which law enforcement authorities have no business knowing. The “nothing to hide, nothing to fear” brigade cannot cope with the idea that those who may seek to harm me can do so whether I have anything to hide or not.&lt;/p&gt;&#xD;
&lt;p&gt;In US v Jones, the Supreme Court was explicit about the citizen’s legitimate expectation of privacy. I tend to take a strong line on that. The ‘default setting’ is not that if I have nothing to hide, I have nothing to fear… it is that unless you have a provable, legitimate reason for doing so, you have no business meddling in my affairs.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=h9FJuGDXSBs:ZQupIhPqUwM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=h9FJuGDXSBs:ZQupIhPqUwM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=h9FJuGDXSBs:ZQupIhPqUwM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=h9FJuGDXSBs:ZQupIhPqUwM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/h9FJuGDXSBs" height="1" width="1"/&gt;</content>
    <updated>2012-01-27T14:58:53Z</updated>
    <category term="Uncategorized" />
    <author>
      <name>Robin Wilton</name>
    </author>
    <source>
      <id>http://blogs.gartner.com/robin-wilton</id>
      <link href="http://blogs.gartner.com/robin-wilton/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blogs.gartner.com/robin-wilton" rel="alternate" type="text/html" />
      <subtitle>A Member of The Gartner Blog Network</subtitle>
      <title>Robin Wilton</title>
      <updated>2012-01-27T15:34:14Z</updated>
    </source>
  <feedburner:origLink>http://blogs.gartner.com/robin-wilton/2012/01/27/gps-tracking-and-the-4th-amendment-part-2/</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-9110258762552760714</id>
    <link href="http://connectid.blogspot.com/feeds/9110258762552760714/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=12447072&amp;postID=9110258762552760714" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9110258762552760714?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9110258762552760714?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/7QNNsdcAqj8/new-line-of-greeting-cards-byod.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards #byod</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;div class="p_embed p_image_embed"&gt; &lt;a href="http://getfile0.posterous.com/getfile/files.posterous.com/paulmadsen/gBKnzXHN7fWVg5DN2U1jZoP16buh1bzS217GDP6jRb5ijIVqI41RDRyrDalS/Screen_shot_2012-01-27_at_6.52.png"&gt;&lt;img alt="Screen_shot_2012-01-27_at_6" height="388" src="http://getfile1.posterous.com/getfile/files.posterous.com/paulmadsen/lzFtYH93iV1ummwRaTGMJ8Ef9tblO3Wshx7zzenKE9kyi7HTOzEPBH5VsxV8/Screen_shot_2012-01-27_at_6.52.png.scaled.500.jpg" width="500"&gt;&lt;/img&gt;&lt;/a&gt; &lt;/div&gt; &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-byod-41887"&gt;Pre(posterous)&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-9110258762552760714?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/7QNNsdcAqj8" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7QNNsdcAqj8:FFzGLPomUzM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7QNNsdcAqj8:FFzGLPomUzM:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=7QNNsdcAqj8:FFzGLPomUzM:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=7QNNsdcAqj8:FFzGLPomUzM:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/7QNNsdcAqj8" height="1" width="1"/&gt;</content>
    <updated>2012-01-27T11:54:20Z</updated>
    <published>2012-01-27T11:54:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <category term="Liberty Alliance" />
      <category term="federated authorization" />
      <category term="threads" />
      <category term="identity" />
      <category term="tribute" />
      <category term="history" />
      <category term="tidbits" />
      <category term="privacy" />
      <category term="Grid" />
      <category term="Sirius radio" />
      <category term="phish" />
      <category term="NBC Identity" />
      <category term="XRI" />
      <category term="health" />
      <category term="Google" />
      <category term="SAML" />
      <category term="security privacy" />
      <category term="OpenID" />
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>When you don't have anything nice to say, well then perhaps its time consider a career as an analyst.</subtitle>
      <title>ConnectID</title>
      <updated>2012-01-29T20:57:26Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2012/01/new-line-of-greeting-cards-byod.html</feedburner:origLink></entry>

  <entry>
    <id>http://www.kuppingercole.com/watch/privacy_by_design</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/XEW-27z_YL0/privacy_by_design" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Privacy by Design</title>
    
    <updated>2012-01-27T10:37:05Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:41Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://www.kuppingercole.com/podcasts"&gt;Kuppinger Cole Podcasts&lt;/a&gt; &lt;br&gt;&lt;br&gt; 2011 was, once again, a bad year for privacy as data breaches releasing usernames, passwords, credit card details and even medical records continued to make news right through the end of the year. Time has proven that no amount of imposed regulation can protect privacy in the face of a determined hacker. What’s needed is what’s called Privacy by Design. Join us in this webinar, where Senior Analyst Dave Kearns will discuss with Ontario´s Information and Privacy Commissioner Dr. Ann Cavoukian,...&lt;br&gt;&lt;br&gt;&#xD;
			&lt;a href="http://www.kuppingercole.com/watch/privacy_by_design"&gt;&lt;img src="http://www.kuppingercole.com/videothumb/privacy_by_design/400"&gt;&lt;/img&gt;&lt;/a&gt;&#xD;
			&lt;br&gt;&lt;br&gt;&lt;a href="http://www.kuppingercole.com/watch/privacy_by_design"&gt;Watch online&lt;/a&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/XEW-27z_YL0" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XEW-27z_YL0:lQt17Ok0jXk:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XEW-27z_YL0:lQt17Ok0jXk:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=XEW-27z_YL0:lQt17Ok0jXk:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=XEW-27z_YL0:lQt17Ok0jXk:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/XEW-27z_YL0" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.kuppingercole.com/watch/privacy_by_design</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/rohr/2012/01/27/personal-data-vault-putting-your-data-in-your-hands/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/lYHrvv7cGEU/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Personal Data Vault – putting YOUR data in YOUR hands</title>
    
    <updated>2012-01-27T09:31:24Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:42Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/rohr"&gt;Sebastian Rohr&lt;/a&gt; &lt;br&gt;&lt;br&gt;&lt;p&gt;I still remember the fun that was had when Dick Hardt first made his cool presentations on User Centric Identity Management and regaining control of who would access to what attribute of your multiple personas, be it online, at home or at work. We all know, that his company sxip identity failed because it did not gain enough momentum to monetize on the idea. Still, concepts such as the (also “failed”, much to my demise) Information Cards by Microsoft or the OpenID approach share some aspects of the sxipper product – putting you in control of your data. The current hype around the new EU privacy and data security legislation is putting some more focus to this!&lt;br&gt;&#xD;
Apparently, only very tech savvy users – geeks like you and me  – seem to widely adopt and use OpenID. I, personally was attracted to Clavid, a Swiss IDP who combines OpenID with the one thing missing everywhere else: Strong Authentication! Most of you know that this is sort of my pet topic here at KCP and so I was really amazed to see them offer Yubikeys, Avionics’ Internet Passport and even SwissID Government issued certificates as a means of strong authentication – making Clavid an early representative of the prospering “Authentication as a Service” market segment. Not prospering enough, I guess, as I did not see the Clavid guys buying fast cars and castles at Lake Geneva’s´ shores…&lt;br&gt;&#xD;
Anyway, the concept of letting us – the users/consumers/customers – decide on who gets access to which detail of my life and (digital) identity remains an unsolved issue. Be it the tedious task of filling out forms after forms to get your kid into day-care or getting new insurance for your car – you have to share information about yourself and your loved ones and wonder: do they REALLY need that info? And if so: why do they ask me the same questions over and over again?&lt;br&gt;&#xD;
Wouldn´t it be nice if more of these form-fields could be “auto-filled”, depending on your choice of what to disclose and what not? Wouldn´t it be great to have one common place to securely store all the insurance information, account information and whatnot? Just like putting your valuables in a bank deposit box (or your high-security safe in your secret lair downstairs, depending if you are a super villain or not)? You could even “compartmentalize” your life into stuff belonging to work/career (like digital versions of all your certifications and endorsements), your personal leisure activities (like memberships in sportsclub and your fishing license, Open Water Diver certificate), your kids info (school district, Headmaster contacts, the football team coach) and the list continues.&lt;br&gt;&#xD;
I recently tried to gather my families´ core identity data, such as passport and ID card numbers, SSN, healthcare ID, tax ID etc. and it took me full Sunday. Last week I did it all over again, as I misplaced the sheet of paper I used – pretty old school, don´t you think?&lt;br&gt;&#xD;
But all personal stupidity aside: wouldn´t it be great to use that “digital vault” full of your own personal data to actually ERASE all the personal detail that are stored at the gazillion of companies and organizations you interact with day to day? Why must I put my CC info and full address with “your airline of choice”, if I could use their services “pseudonymously” and only allowing access to those details “on demand” while I actually book a flight? Currently, if I lose my CC or it expires the internet economy burdens me with changing my CC info in each of the gazillion pages I do business with. Why?&lt;br&gt;&#xD;
I am looking forward to a (hopefully very near) future, where I can actually manage my data in one place and have those who need access to it authorized on a configurable basis. Sure, my employer should have continuous access to my bank account information! But if I am leaving – how can I make them erase that info on file today?&lt;br&gt;&#xD;
Look put for some colnew announcements and blogs on KCP on this – my colleagues will provide more info as it becomes “freely available” &lt;img alt=":-)" class="wp-smiley" src="http://blogs.kuppingercole.com/rohr/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; &lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/lYHrvv7cGEU" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lYHrvv7cGEU:1k6nhbjxBsE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lYHrvv7cGEU:1k6nhbjxBsE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=lYHrvv7cGEU:1k6nhbjxBsE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=lYHrvv7cGEU:1k6nhbjxBsE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/lYHrvv7cGEU" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/rohr/2012/01/27/personal-data-vault-putting-your-data-in-your-hands/</feedburner:origLink></entry>

  <entry>
    <id>http://blogs.kuppingercole.com/cole/2012/01/27/stopping-a-clapper-over-wikileaks/</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/fiIKhagbEFM/" rel="alternate" type="text/html" />
    <title>Kuppinger Cole: Stopping a Clapper Over WikiLeaks</title>
    
    <updated>2012-01-27T09:24:01Z</updated>
    <source>
      <id>http://www.kuppingercole.com</id>
      <author>
        <name>Kuppinger Cole</name>
      </author>
      <link href="http://www.kuppingercole.com" rel="alternate" type="text/html" />
      <link href="http://feeds.feedburner.com/kuppingercole" rel="self" type="application/rss+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>Kuppinger Cole</subtitle>
      <title>Kuppinger Cole</title>
      <updated>2012-02-02T21:03:43Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;In &lt;a href="http://blogs.kuppingercole.com/cole"&gt;Tim Cole&lt;/a&gt; &lt;br&gt;&lt;br&gt;&lt;p&gt;The U.S. government announced &lt;a href="http://www.cbsnews.com/8301-201_162-57366806/intel-chief-5-years-to-implement-leak-guards/"&gt;plans &lt;/a&gt;to put in place within the next five years measures designed to make it impossible to pass on sensitive information to the likes of WikiLeaks. They hope to accomplish this by “tagging” information so it can be tracked in case someone shares it with outsiders.&lt;/p&gt;&#xD;
&lt;p&gt;The idea of creating “information-rich information” is obviously the right way to go in addressing privacy and security concerns in the Digital Age. It is possible, technically at least, to attach rules to individual pieces of information, such as who is allowed to do what with it and what happens if someone who isn’t authorized tries to access them or pass them on illegally. In fact, that is the whole idea of “information-centric IT security, a buzzword that is gaining popularity among Digital Identity Management experts and privacy advocates.&lt;/p&gt;&#xD;
&lt;p&gt;But by publically announcing their aim of stopping another WikiLeaks-style exposure of classified information just shows that the Official Mind has yet to grasp the real implications of the Digital Revolution. “Information wants to be free” was originally a clarion call by Internet activists who believed that transparency should be the hallmarks of an open society. In fact, the real motto is best encompassed in what I once dubbed “Cameron’s Law”, after Microsoft’s “identity guru” Kim Cameron, who once postulated that “sensitive information will be leaked”.&lt;/p&gt;&#xD;
&lt;p&gt;Yes, we all need to do all we can to protect privacy and guard crucial bits of information. But we should also be prepared for the worst. IT Security can create a false sense of confidence in our own defense mechanisms. At least as important as plugging holes in the dyke is to prepare oneself for the moment when the levees break and the floodwaters start to rise. Maybe “Remember New Orleans” would be a good slogan for security professionals to hang on their walls.&lt;/p&gt;&#xD;
&lt;p&gt;I found it particularly poignant to read the name of the official in charge of U.S. government efforts to create the Totally Secure System: &lt;a href="http://topics.nytimes.com/top/reference/timestopics/people/c/james_r_clapper_jr/index.html?scp=1&amp;amp;sq=Jim%20Clapper&amp;amp;st=cse"&gt;Jim Clapper&lt;/a&gt;, the Director of National Intelligence, the mention of whom bring irresistibly to mind the old nautical expression about “clapping a stopper” over something, meaning to block something effectively. “Clapper” is actually the word for a safety valve – and as any engineer will tell you, the function of a valve is to let something out before the pressure reaches dangerous levels and pieces of stuff start flying around.&lt;/p&gt;&#xD;
&lt;p&gt;Of course, controlling the release of data so that only authorized individuals are able to see and use them is in fact what Identity Management is all about – or should be.&lt;/p&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/kuppingercole/~4/fiIKhagbEFM" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fiIKhagbEFM:Urtq3fvz3uI:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fiIKhagbEFM:Urtq3fvz3uI:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=fiIKhagbEFM:Urtq3fvz3uI:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=fiIKhagbEFM:Urtq3fvz3uI:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/fiIKhagbEFM" height="1" width="1"/&gt;</content><feedburner:origLink>http://blogs.kuppingercole.com/cole/2012/01/27/stopping-a-clapper-over-wikileaks/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.windley.com/archives/2012/01/podcatchers_for_smartphones.shtml</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/mmgIGrvMV7Y/podcatchers_for_smartphones.shtml" rel="alternate" type="application/xhtml+xml" />
    <title xml:lang="en">Phil Windley - Kynetx: Podcatchers for Smartphones</title>
    <summary xml:lang="en" type="html">Grab Downcast and plug in the IT Conversations feed URL and enjoy great tech talks from the longest running podcast on the planet...no matter where you're at.</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;a href="http://www.flickr.com/photos/windley/6769089287/in/photostream"&gt;&#xD;
&lt;img align="right" alt="IT Conversations Logo" border="0" hspace="3" src="http://farm8.staticflickr.com/7159/6769089287_6d65e67230_m.jpg" style="margin-top: 10px;" title="IT Conversations Logo" vspace="0" width="150px"&gt;&lt;/img&gt;&#xD;
&lt;/a&gt;&#xD;
          &#xD;
&lt;p&gt;&#xD;
As you might guess, given that I'm Executive Producer of &lt;a href="http://itc.conversationsnetwork.org/"&gt;IT Conversations&lt;/a&gt;, I like listening to podcasts. I'm also an iPhone user. Not to put too fine a point on it: iTunes &lt;em&gt;sucks rocks&lt;/em&gt; for listening to podcasts. The problem is mostly that iTunes has a crappy interface for subscribing to and managing podcasts. It also downloads only one episode per day, with no way to change the defaults.  Moreover it will stop downloading podcasts that you haven't listened to for a while and you have to remember to go in an start it up. I started feeling like I had to "take care of iTunes" like it was a recalcitrant pet or something. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
For some reason, it never really occurred to me to download an app for listening to podcasts, although I've downloaded several single purpose ones (like the This American Life app). Then Paul Figgiani introduced me to &lt;a href="http://itunes.apple.com/us/app/downcast/id393858566?mt=8&amp;amp;ign-mpt=uo%3D4"&gt;Downcast&lt;/a&gt;. I'm in love. I no longer have to fight iTunes and all my favorites are right there waiting for me to listen to them when I go for a walk or drive to work. The interface is good, with plenty of controls for skipping forward and back or adjusting the playback speed. I also like the built-in "share" features although I wish they allowed me to customize the default text for the share. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;&#xD;
Unfortunately, Downcast isn't available on Android. I have an Android tablet (Galaxy Tab) that I've used Google Listen on. It's a functional podcatcher, albeit a little bare-boned compared to Downcast: no speed or skipping controls and no built-in sharing. &#xD;
&lt;/p&gt;&#xD;
&#xD;
&#xD;
&lt;p&gt;&#xD;
So, go grab Downcast, plug in the &lt;a href="http://feeds.conversationsnetwork.org/channel/itc"&gt;IT Conversations feed URL&lt;/a&gt; and enjoy great tech talks from the longest running podcast on the planet...no matter where you're at. &#xD;
&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mmgIGrvMV7Y:J2ibIvz8L-Y:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mmgIGrvMV7Y:J2ibIvz8L-Y:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=mmgIGrvMV7Y:J2ibIvz8L-Y:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=mmgIGrvMV7Y:J2ibIvz8L-Y:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/mmgIGrvMV7Y" height="1" width="1"/&gt;</content>
    <updated>2012-01-27T04:29:05Z</updated>
    <published>2012-01-27T04:20:24Z</published>
    <category term="itconversations, podcasting, rss, iphone, android," />
    <source>
      <id>http://www.windley.com/</id>
      <icon>http://www.windley.com/favicon.ico</icon>
      <logo>http://www.niallkennedy.com/alive.gif</logo>
      <author>
        <name>windley</name>
        <email>phil@windley.org</email>
        <uri>http://www.windley.com</uri>
      </author>
      <link href="http://www.windley.com/" rel="alternate" type="application/xhtml+xml" />
      <link href="http://www.windley.com/atom.xml" rel="self" type="application/atom+xml" />
      <rights xml:lang="en">Creative Commons Attribution 2.5</rights>
      <subtitle xml:lang="en">Organizations Get the IT They Deserve</subtitle>
      <title xml:lang="en">Phil Windley's Technometria</title>
      <updated>2012-02-04T00:58:01Z</updated>
    </source>
  <feedburner:origLink>http://www.windley.com/archives/2012/01/podcatchers_for_smartphones.shtml</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.idcommons.org/?p=640</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/-1HlHQcmdj8/" rel="alternate" type="text/html" />
    <link href="http://www.idcommons.org/registration-now-open-for-2012-nistnstic-idtrust-workshop/#comments" rel="replies" type="text/html" />
    <link href="http://www.idcommons.org/registration-now-open-for-2012-nistnstic-idtrust-workshop/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Identity Commons: Registration Now Open for 2012 NIST/NSTIC IDtrust Workshop</title>
    
    <updated>2012-01-26T21:06:54Z</updated>
    <published>2012-01-26T21:06:54Z</published>
    <category scheme="http://www.idcommons.org" term="Uncategorized" />
    <author>
      <name>jayunger</name>
    </author>
    <source>
      <id>http://www.idcommons.org/feed/atom/</id>
      <link href="http://www.idcommons.org" rel="alternate" type="text/html" />
      <link href="http://www.idcommons.org/feed/atom/" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Creating a place for collaboration for those working on the identity (for people) layer of the network.</subtitle>
      <title xml:lang="en">Identity Commons</title>
      <updated>2012-02-02T00:28:43Z</updated>
    </source>
  <content type="html" xml:lang="en">March 13-14, 2012 at NIST in Gaithersburg, Maryland.
This promises to be an important event for the digitial identity community and perhaps a milestone in progress on the National Strategy for Trusted Identities in Cyberspace (NSTIC).
Don't Miss Out – Online Registration is NOW Open  Click here for further details&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-1HlHQcmdj8:mM0YSeuNmXQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-1HlHQcmdj8:mM0YSeuNmXQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=-1HlHQcmdj8:mM0YSeuNmXQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=-1HlHQcmdj8:mM0YSeuNmXQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/-1HlHQcmdj8" height="1" width="1"/&gt;</content><feedburner:origLink>http://www.idcommons.org/registration-now-open-for-2012-nistnstic-idtrust-workshop/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://upon2020.com/?p=879</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/yIvoVWQV-X4/" rel="alternate" type="text/html" />
    <title>Johannes Ernst - NetMesh: What I Expect From Customer Support</title>
    
    <updated>2012-01-26T20:59:16Z</updated>
    <category term="Big Picture" />
    <category term="Personal" />
    <category term="customer support" />
    <category term="skype" />
    <category term="support" />
    <author>
      <name>Johannes Ernst</name>
    </author>
    <source>
      <id>http://upon2020.com</id>
      <link href="http://upon2020.com/feed/" rel="self" type="application/atom+xml" />
      <link href="http://upon2020.com" rel="alternate" type="text/html" />
      <subtitle>The Next Decade In Technology: Musings by Johannes Ernst</subtitle>
      <title>Upon 2020</title>
      <updated>2012-01-26T21:05:26Z</updated>
    </source>
  <content type="html">1. I expect you hear what I’m saying (or typing), and not ignore the essence of it. Example: If I say “I want to cancel my account”, you cannot respond: “I understand you are having trouble with your account.” That’s not what I said. 2. I expect that you respond in a timely manner. Example: [...]&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yIvoVWQV-X4:QX4CaQBOJRY:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yIvoVWQV-X4:QX4CaQBOJRY:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=yIvoVWQV-X4:QX4CaQBOJRY:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=yIvoVWQV-X4:QX4CaQBOJRY:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/yIvoVWQV-X4" height="1" width="1"/&gt;</content><feedburner:origLink>http://upon2020.com/2012/01/what-i-expect-from-customer-support/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=what-i-expect-from-customer-support</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-4450154254120336229.post-5119641092337229654</id>
    <link href="http://futureidentity.blogspot.com/feeds/5119641092337229654/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://futureidentity.blogspot.com/2011/05/eu-cookie-regulations-and-consent.html#comment-form" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/5119641092337229654" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default/5119641092337229654" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/xQJ9hlb8Sl4/eu-cookie-regulations-and-consent.html" rel="alternate" type="text/html" />
    <title>Robin Wilton - Future Identity: EU cookie regulations and consent</title>
    <content type="html">As you are probably aware, a revision to the EU's e-Privacy Directive was recently transposed into UK law as the Privacy and Electronic Communications Regulations 2011, or PECR. PECR means that, as of May 26th 2011, UK websites are required to obtain users' informed consent before tracking their online behaviour through means such as cookies.&lt;br&gt;&lt;br&gt;Well-meaning though this legislation may be, there are a number of practical issues with its implementation. As it has never been my intent to invade, subvert or otherwise compromise your privacy, this post is a brief indication of some of those issues, and the possible impact on you as a visitor to this blog.&lt;br&gt;&lt;br&gt;First, jurisdiction: is this a UK site? Well, I'm located in the UK, and it's my blog, so I'm going to behave as though it is and assume that PECR 2011 applies to it and to me. However, as Blogger belongs to Google, and Google are notoriously reticent about revealing the location of their data-centres, I have no idea where this blog is actually hosted. I suspect a lot of individuals, small/medium enterprises and organisations are in the same position: wherever they are, their websites may or may not be hosted in the UK, and that may give rise to some question as to whether or not PECR can be enforced.&lt;br&gt;&lt;br&gt;Second, enforcement. The UK ICO has, allegedly, been 'pressured'  by the UK government not to enforce PECR, at least for a year while companies figure out what to do about the law. On the one hand, I have little sympathy with this: EU legislation moves at a pretty normal pace for law-making, and PECR has been inching its way down the legislative alimentary canal for many months now. Its emergence should not have come as a surprise to anyone.... but let's not take that analogy any further. On the other hand, there's no doubt that the mechanisms for doing a good privacy-respecting job of gathering user consent are sadly lacking. Of course, as the only viable candidate for deploying such mechanisms is the browser, and as the dominant browsers on the planet are all developed outside the EU, that shouldn't come as a surprise either. On the third hand (as Zaphod could have said) why in Zarquon's name didn't Viviane Reding and her merry band of legislators think of that when they were designing the amendment?&lt;br&gt;&lt;br&gt;Third, practicality. I do use a couple of counters to track visits to the blog: as you can see, there's a ClustrMaps graphic on the page, and though you can't see it, Statcounter is also enabled. For those two tools, I can give you the following assurance: I never use them for anything other than an occasional look at how site traffic is trending over time. I sometimes look at the per-country breakdown of visits, and if I'm getting persistent spam comments I may look at the IP address of a specific visitor. However, I never use the tracking details for any other purpose, and never knowingly disclose them to any other entity. I don't use Adwords or Affiliate Network, nor is it my intent to do so.&lt;br&gt;&lt;br&gt;However... it is entirely possible that Blogger, as the host of the blog, gathers statistics about both my use of it and your visits to it. Over that, I have no control. Again, I suspect that many, many individuals, organisations and small/medium businesses are in the same position - and as 'cloud' computing continues to grow, that situation will grow with it.&lt;br&gt;&lt;br&gt;That leaves me with two problems:&lt;br&gt;&lt;br&gt;1 - if you don't like the relatively minor use of cookies I do make on this site, and/or don't trust my promise not to abuse the data collected, I'm afraid I don't have any practical way of gathering your consent (or withdrawal of it). Nor do I have a way of turning cookies off for you while still somehow keeping an eye on site usage. By all means block or delete my cookies at your end, if you have the means to do so; I won't be offended (in fact, I won't even know), and as far as I am aware, it won't affect your ability to browse the site.&lt;br&gt;&lt;br&gt;2 - if you don't like the idea that my hosts (either for this blog, or for my website, for instance) may also be setting cookies, I can sympathise, but there's very little I can do about that. Nor do I think there's any reasonable expectation that they will ask for your consent via my blog. If you have a problem with that, please leave a comment, and then we can both stare at it and wonder what to do next...&lt;br&gt;&lt;br&gt;So, what can we expect from the PECR 2011 amendment?&lt;br&gt;&lt;br&gt;Will it immediately change the way in which companies track your online behaviour? No.&lt;br&gt;&lt;br&gt;Will it change the way browsers handle cookies and consent? Possibly, over time.&lt;br&gt;&lt;br&gt;Will it advance the debate over online privacy: I sincerely hope so, even if it's only through increased discussion, as opposed to immediate improvement.&lt;br&gt;&lt;br&gt;Will it resolve the tension between technologists who see the law as an inconvenient obstacle to commercial progress, and legislators who don't understand the technology but want to be seen to be doing something? No. That, regrettably, is something we're stuck with for the foreseeable future. Welcome to Aldous Huxley's world.&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/4450154254120336229-5119641092337229654?l=futureidentity.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xQJ9hlb8Sl4:tXpvTm7D0kg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xQJ9hlb8Sl4:tXpvTm7D0kg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=xQJ9hlb8Sl4:tXpvTm7D0kg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=xQJ9hlb8Sl4:tXpvTm7D0kg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/xQJ9hlb8Sl4" height="1" width="1"/&gt;</content>
    <updated>2012-01-26T14:57:01Z</updated>
    <published>2011-05-31T10:05:00Z</published>
    <author>
      <name>Robin Wilton</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/04346208043850215328</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-4450154254120336229</id>
      <category term="liberty" />
      <category term="encore" />
      <category term="PII" />
      <category term="anonymity" />
      <category term="Liberty Alliance pseudonymity personas" />
      <category term="identity" />
      <category term="security" />
      <category term="federation" />
      <category term="igf" />
      <category term="privacy" />
      <category term="data" />
      <category term="crypto" />
      <category term="ICO" />
      <category term="rfid" />
      <category term="identifiers" />
      <author>
        <name>Robin Wilton</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/04346208043850215328</uri>
      </author>
      <link href="http://futureidentity.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default" rel="self" type="application/atom+xml" />
      <link href="http://futureidentity.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <link href="http://www.blogger.com/feeds/4450154254120336229/posts/default?start-index=26&amp;max-results=25" rel="next" type="application/atom+xml" />
      <subtitle>Thoughts about [stuff that isn't my professional area of research] and its effect on our daily lives. 
May contain traces of nuts. 
Do not trample the rocky habitat.</subtitle>
      <title>Racingsnake - Robin Wilton's Esoterica</title>
      <updated>2012-01-27T19:17:29Z</updated>
    </source>
  <feedburner:origLink>http://futureidentity.blogspot.com/2011/05/eu-cookie-regulations-and-consent.html</feedburner:origLink></entry>

  <entry>
    <id>tag:blogger.com,1999:blog-12447072.post-9127982102001193567</id>
    <link href="http://connectid.blogspot.com/feeds/9127982102001193567/comments/default" rel="replies" type="application/atom+xml" />
    <link href="http://www.blogger.com/comment.g?blogID=12447072&amp;postID=9127982102001193567" rel="replies" type="text/html" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9127982102001193567?v=2" rel="edit" type="application/atom+xml" />
    <link href="http://www.blogger.com/feeds/12447072/posts/default/9127982102001193567?v=2" rel="self" type="application/atom+xml" />
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/qvhfE0xDAJE/new-line-of-greeting-cards-byod-mdm.html" rel="alternate" type="text/html" />
    <title>Paul Madsen: New line of greeting cards #byod #mdm</title>
    <content type="html">&lt;div class="posterous_autopost"&gt;&lt;div class="p_embed p_image_embed"&gt; &lt;img alt="Screen_shot_2012-01-26_at_6" height="458" src="http://getfile6.posterous.com/getfile/files.posterous.com/paulmadsen/OeUsNp8I2KdNDY41B1sNfFTdKfYGCR4fkc1nz9ks8qUldxQQR4Nh6JWWHuT2/Screen_shot_2012-01-26_at_6.19.png" width="466"&gt;&lt;/img&gt; &lt;/div&gt; &lt;p style="font-size: 10px;"&gt;  &lt;a href="http://posterous.com"&gt;Posted via email&lt;/a&gt;   from &lt;a href="http://paulmadsen.posterous.com/new-line-of-greeting-cards-byod-mdm"&gt;Pre(posterous)&lt;/a&gt;  &lt;/p&gt;  &lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img alt="" height="1" src="https://blogger.googleusercontent.com/tracker/12447072-9127982102001193567?l=connectid.blogspot.com" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;img height="1" src="http://feeds.feedburner.com/~r/blogspot/gMwy/~4/qvhfE0xDAJE" width="1"&gt;&lt;/img&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qvhfE0xDAJE:4oC3SKjCKs0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qvhfE0xDAJE:4oC3SKjCKs0:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=qvhfE0xDAJE:4oC3SKjCKs0:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=qvhfE0xDAJE:4oC3SKjCKs0:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/qvhfE0xDAJE" height="1" width="1"/&gt;</content>
    <updated>2012-01-26T11:21:03Z</updated>
    <published>2012-01-26T11:21:00Z</published>
    <author>
      <name>Paul Madsen</name>
      <email>noreply@blogger.com</email>
      <uri>http://www.blogger.com/profile/08489111023182783403</uri>
    </author>
    <source>
      <id>tag:blogger.com,1999:blog-12447072</id>
      <category term="Liberty Alliance" />
      <category term="federated authorization" />
      <category term="threads" />
      <category term="identity" />
      <category term="tribute" />
      <category term="history" />
      <category term="tidbits" />
      <category term="privacy" />
      <category term="Grid" />
      <category term="Sirius radio" />
      <category term="phish" />
      <category term="NBC Identity" />
      <category term="XRI" />
      <category term="health" />
      <category term="Google" />
      <category term="SAML" />
      <category term="security privacy" />
      <category term="OpenID" />
      <author>
        <name>Paul Madsen</name>
        <email>noreply@blogger.com</email>
        <uri>http://www.blogger.com/profile/08489111023182783403</uri>
      </author>
      <link href="http://connectid.blogspot.com/feeds/posts/default" rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" />
      <link href="http://connectid.blogspot.com/" rel="alternate" type="text/html" />
      <link href="http://www.blogger.com/feeds/12447072/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" rel="next" type="application/atom+xml" />
      <link href="http://feeds.feedburner.com/blogspot/gMwy" rel="self" type="application/atom+xml" />
      <link href="http://pubsubhubbub.appspot.com/" rel="hub" type="text/html" />
      <subtitle>When you don't have anything nice to say, well then perhaps its time consider a career as an analyst.</subtitle>
      <title>ConnectID</title>
      <updated>2012-01-29T20:57:26Z</updated>
    </source>
  <feedburner:origLink>http://connectid.blogspot.com/2012/01/new-line-of-greeting-cards-byod-mdm.html</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://equalsdrummond.name/?p=829</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/HNM8mE3AQi4/" rel="alternate" type="text/html" />
    <link href="http://equalsdrummond.name/2012/01/25/the-fundamental-flaw-in-sopa-and-pippa/#comments" rel="replies" type="text/html" />
    <link href="http://equalsdrummond.name/2012/01/25/the-fundamental-flaw-in-sopa-and-pippa/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Drummond Reed - Cordance: The Fundamental Flaw in SOPA and PIPPA</title>
    <summary type="html" xml:lang="en">After all the raging debate about SOPA (Stop Online Piracy Act) and PIPA (Protect IP Act), the fundamental flaw in both is captured succinctly in this public letter to Senator Orrin Hatch from Phil Windley, Kynetx CTO and author of The … &lt;a href="http://equalsdrummond.name/2012/01/25/the-fundamental-flaw-in-sopa-and-pippa/"&gt;Continue reading &lt;span class="meta-nav"&gt;→&lt;/span&gt;&lt;/a&gt;&lt;img alt="" border="0" height="1" src="http://stats.wordpress.com/b.gif?host=equalsdrummond.name&amp;amp;blog=22080181&amp;amp;post=829&amp;amp;subd=equalsdrummond&amp;amp;ref=&amp;amp;feed=1" width="1"&gt;&lt;/img&gt;</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;After all the raging debate about SOPA (Stop Online Piracy Act) and PIPA (Protect IP Act), the fundamental flaw in both is captured succinctly in &lt;a href="http://www.windley.com/archives/2012/01/my_letter_to_senator_hatch_in_opposition_to_pipa.shtml"&gt;this public letter to Senator Orrin Hatch from Phil Windley&lt;/a&gt;, &lt;a href="http://www.kynetx.com"&gt;Kynetx&lt;/a&gt; CTO and author of &lt;a href="http://www.amazon.com/exec/obidos/ASIN/1133686680/superpatterns-20"&gt;The Live Web&lt;/a&gt;, on his &lt;a href="http://www.windley.com/"&gt;Technometria&lt;/a&gt; blog.&lt;/p&gt;&#xD;
&lt;p&gt;Thanks for summarizing the problem so nicely, Phil. And a tip ‘o the hat too to &lt;a href="http://en.wikipedia.org/wiki/Cory_Doctorow"&gt;Cory Doctorow&lt;/a&gt;, whose &lt;a href="http://itc.conversationsnetwork.org/shows/detail5151.html"&gt;talk on the subject&lt;/a&gt; Phil credits as well.&lt;/p&gt;&#xD;
&lt;p&gt;Incidentally, Phil’s point that we don’t need new laws governing technology, we need to enforce existing laws about harmful behaviour, explains why &lt;a href="http://connect.me/"&gt;Connect.Me&lt;/a&gt; created the &lt;a href="http://openidentityexchange.org/trust-frameworks/respect-trust-framework"&gt;Respect Trust Framework&lt;/a&gt;. It is the legal fabric of a “purposeful network” where the incentives are so strong not to violate the trust of others that we will not have the kinds of rights violations that SOPA and PIPA are trying, misguidedly, to address.&lt;/p&gt;&#xD;
&lt;br&gt;  &lt;a href="http://feeds.wordpress.com/1.0/gocomments/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godelicious/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gofacebook/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gotwitter/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gostumble/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godigg/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/goreddit/equalsdrummond.wordpress.com/829/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/equalsdrummond.wordpress.com/829/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;img alt="" border="0" height="1" src="http://stats.wordpress.com/b.gif?host=equalsdrummond.name&amp;amp;blog=22080181&amp;amp;post=829&amp;amp;subd=equalsdrummond&amp;amp;ref=&amp;amp;feed=1" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HNM8mE3AQi4:MkzcpGaPfVg:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HNM8mE3AQi4:MkzcpGaPfVg:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=HNM8mE3AQi4:MkzcpGaPfVg:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=HNM8mE3AQi4:MkzcpGaPfVg:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/HNM8mE3AQi4" height="1" width="1"/&gt;</content>
    <updated>2012-01-26T04:44:06Z</updated>
    <published>2012-01-26T04:44:06Z</published>
    <category scheme="http://equalsdrummond.name" term="Digital rights" />
    <category scheme="http://equalsdrummond.name" term="Personal Data Ecosystem" />
    <category scheme="http://equalsdrummond.name" term="Privacy" />
    <category scheme="http://equalsdrummond.name" term="Respect Trust Framework" />
    <author>
      <name>Drummond Reed</name>
      <uri>http://equalsdrummond.wordpress.com</uri>
    </author>
    <source>
      <id>http://equalsdrummond.name/feed/atom/</id>
      <link href="http://equalsdrummond.name" rel="alternate" type="text/html" />
      <link href="http://equalsdrummond.name/feed/atom/" rel="self" type="application/atom+xml" />
      <link href="http://equalsdrummond.name/osd.xml" rel="search" type="application/opensearchdescription+xml" />
      <link href="http://wordpress.com/opensearch.xml" rel="search" type="application/opensearchdescription+xml" />
      <link href="http://equalsdrummond.name/?pushpress=hub" rel="hub" type="text/html" />
      <subtitle xml:lang="en">It's all about naming...</subtitle>
      <title xml:lang="en">Equals Drummond</title>
      <updated>2012-01-31T21:33:16Z</updated>
    </source>
  <feedburner:origLink>http://equalsdrummond.name/2012/01/25/the-fundamental-flaw-in-sopa-and-pippa/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://equalsdrummond.name/?p=818</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/QcMb4sFd2EE/" rel="alternate" type="text/html" />
    <link href="http://equalsdrummond.name/2011/12/31/att-are-you-reading-your-own-emails/#comments" rel="replies" type="text/html" />
    <link href="http://equalsdrummond.name/2011/12/31/att-are-you-reading-your-own-emails/feed/atom/" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Drummond Reed - Cordance: AT&amp;T Are You Reading Your Own Emails???</title>
    <summary type="html" xml:lang="en">When I upgraded to the iPhone 4S the day after Christmas (it was really an Apple Christmas in my household this year), I made the difficult decision to stick with AT&amp;amp;T. My experience with routinely dropped calls has been just as … &lt;a href="http://equalsdrummond.name/2011/12/31/att-are-you-reading-your-own-emails/"&gt;Continue reading &lt;span class="meta-nav"&gt;→&lt;/span&gt;&lt;/a&gt;&lt;img alt="" border="0" height="1" src="http://stats.wordpress.com/b.gif?host=equalsdrummond.name&amp;amp;blog=22080181&amp;amp;post=818&amp;amp;subd=equalsdrummond&amp;amp;ref=&amp;amp;feed=1" width="1"&gt;&lt;/img&gt;</summary>
    <content type="html" xml:lang="en">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;&lt;a href="http://equalsdrummond.files.wordpress.com/2011/12/att-logo.jpg"&gt;&lt;img alt="" class="alignleft size-full wp-image-821" src="http://equalsdrummond.files.wordpress.com/2011/12/att-logo.jpg?w=640" title="att-logo"&gt;&lt;/img&gt;&lt;/a&gt;When I upgraded to the iPhone 4S the day after Christmas (it was really an Apple Christmas in my household this year), I made the difficult decision to stick with AT&amp;amp;T.&lt;/p&gt;&#xD;
&lt;p&gt;My experience with routinely dropped calls has been just as bad as anyone else’s, so ever since Verizon got the iPhone I was convinced I’d switch when I upgraded (the rest of my family has been on Verizon for years).&lt;/p&gt;&#xD;
&lt;p&gt;But in the end, my grandfathered data plan plus the convenience of being able to use voice and data at the same time plus the investment AT&amp;amp;T is making in 4G made me decide to stick it out another 2 years.&lt;/p&gt;&#xD;
&lt;p&gt;So I really, really wanted to believe AT&amp;amp;T is at last getting its act together.&lt;/p&gt;&#xD;
&lt;p&gt;And then I receive this post-sale email from AT&amp;amp;T with the subject line &lt;em&gt;Let’s Talk about your new iPhone&lt;/em&gt;. In the body they offered links to a host of helpful tools:&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://equalsdrummond.files.wordpress.com/2011/12/att-screen-shot-1-2011-12-29.png"&gt;&lt;img alt="" class="aligncenter size-full wp-image-819" src="http://equalsdrummond.files.wordpress.com/2011/12/att-screen-shot-1-2011-12-29.png?w=640" title="att-screen-shot-1-2011-12-29"&gt;&lt;/img&gt;&lt;/a&gt;Thinking it would be wise to watch a tutorial (just to see if there’s anything else I should know about my new 4S that my 16-year-old son — or the wonderful Siri — hasn’t already showed me), I clicked the first link.&lt;/p&gt;&#xD;
&lt;p&gt;The result was not the iPhone tutorial I expected, but a generic web page titled &lt;em&gt;Cell Phone and Interactive Device Tutorials&lt;/em&gt;. I think to myself, “That’s dumb – why not just link directly to the iPhone tutorial like the link said?” But what the hell, maybe AT&amp;amp;T’s websites are so poorly designed that they didn’t allow internal linking. So I dutifully clicked the Manufacturer drop down to choose Apple, and…&lt;/p&gt;&#xD;
&lt;p&gt;&lt;a href="http://equalsdrummond.files.wordpress.com/2011/12/att-screen-shot-2-2011-12-29.png"&gt;&lt;img alt="" class="aligncenter size-full wp-image-820" src="http://equalsdrummond.files.wordpress.com/2011/12/att-screen-shot-2-2011-12-29.png?w=640" title="att-screen-shot-2-2011-12-29"&gt;&lt;/img&gt;&lt;/a&gt;…WTF??? NO APPLE!!!!!!!&lt;/p&gt;&#xD;
&lt;p&gt;Poof. There went the tiny puff of faith I had left in the AT&amp;amp;T turnaround.&lt;/p&gt;&#xD;
&lt;p&gt;I mean, COME ON, AT&amp;amp;T, DO YOU HONESTLY EMPLOY NO PROOFREADERS FOR AN EMAIL YOU SEND TO ALL NEW IPHONE CUSTOMERS WITH A LINK TO AN IPHONE TUTORIAL THAT DOESN’T EXIST???&lt;/p&gt;&#xD;
&lt;p&gt;Please tell me what happened here. I invite anyone from AT&amp;amp;T to reply as a comment to this post so I and anyone else reading this will have some clue what’s going on with you.&lt;/p&gt;&#xD;
&lt;p&gt;Sincerely,&lt;/p&gt;&#xD;
&lt;p&gt;– A Customer Who Really Wants to Believe He Didn’t Just Throw Away 2 More Years of Service&lt;/p&gt;&#xD;
&lt;br&gt;  &lt;a href="http://feeds.wordpress.com/1.0/gocomments/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godelicious/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gofacebook/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gotwitter/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/gostumble/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/godigg/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.wordpress.com/1.0/goreddit/equalsdrummond.wordpress.com/818/" rel="nofollow"&gt;&lt;img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/equalsdrummond.wordpress.com/818/"&gt;&lt;/img&gt;&lt;/a&gt; &lt;img alt="" border="0" height="1" src="http://stats.wordpress.com/b.gif?host=equalsdrummond.name&amp;amp;blog=22080181&amp;amp;post=818&amp;amp;subd=equalsdrummond&amp;amp;ref=&amp;amp;feed=1" width="1"&gt;&lt;/img&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QcMb4sFd2EE:GKZ-Mm5ykaE:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QcMb4sFd2EE:GKZ-Mm5ykaE:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=QcMb4sFd2EE:GKZ-Mm5ykaE:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=QcMb4sFd2EE:GKZ-Mm5ykaE:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/QcMb4sFd2EE" height="1" width="1"/&gt;</content>
    <updated>2012-01-26T03:16:54Z</updated>
    <published>2011-12-31T08:26:47Z</published>
    <category scheme="http://equalsdrummond.name" term="Customer Service" />
    <category scheme="http://equalsdrummond.name" term="Social CRM" />
    <category scheme="http://equalsdrummond.name" term="ATT" />
    <category scheme="http://equalsdrummond.name" term="iPhone" />
    <author>
      <name>Drummond Reed</name>
      <uri>http://equalsdrummond.wordpress.com</uri>
    </author>
    <source>
      <id>http://equalsdrummond.name/feed/atom/</id>
      <link href="http://equalsdrummond.name" rel="alternate" type="text/html" />
      <link href="http://equalsdrummond.name/feed/atom/" rel="self" type="application/atom+xml" />
      <link href="http://equalsdrummond.name/osd.xml" rel="search" type="application/opensearchdescription+xml" />
      <link href="http://wordpress.com/opensearch.xml" rel="search" type="application/opensearchdescription+xml" />
      <link href="http://equalsdrummond.name/?pushpress=hub" rel="hub" type="text/html" />
      <subtitle xml:lang="en">It's all about naming...</subtitle>
      <title xml:lang="en">Equals Drummond</title>
      <updated>2012-01-31T21:33:16Z</updated>
    </source>
  <feedburner:origLink>http://equalsdrummond.name/2011/12/31/att-are-you-reading-your-own-emails/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.identitywoman.net/?p=2828</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/ZF6NKSD1kPA/the-new-google-is-creepier-then-ever" rel="alternate" type="text/html" />
    <link href="http://www.identitywoman.net/the-new-google-is-creepier-then-ever#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed#comments" rel="replies" type="text/html" />
    <link href="http://www.identitywoman.net/the-new-google-is-creepier-then-ever/feed/atom" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Kaliya Hamlin - Identity Woman: The new Google is Creepier then ever.</title>
    <summary xml:lang="en" type="html">The Washington Post has an article today that talks about what google is doing as of today: Google’s no-opt-out privacy changes and the end of the anonymous Internet Google announced Tuesday its plans to integrate data from all its services with your profile for logged-in Google+ users. She makes this assertion in the early part [...]</summary>
    <content type="html" xml:lang="en">&lt;p&gt;The Washington Post has an article today that talks about what google is doing as of today:&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.washingtonpost.com/blogs/compost/post/googles-no-opt-out-privacy-changes-and-the-end-of-the-anonymous-internet/2012/01/25/gIQAtZuUQQ_blog.html"&gt;Google’s no-opt-out privacy changes and the end of the anonymous Internet&lt;/a&gt;&lt;/p&gt;&lt;blockquote&gt;&lt;p&gt;&lt;em&gt;Google announced Tuesday its plans to integrate data from all its services with your profile for logged-in Google+ users.&lt;/em&gt;&lt;/p&gt;&lt;/blockquote&gt;&lt;p&gt;She makes this assertion in the early part of the article.&lt;/p&gt;&lt;blockquote&gt;&lt;p&gt;The Internet, nowadays, is overwhelmingly dominated by fora in which you hang out as your actual self. Facebook. Twitter. And now, Google.&lt;/p&gt;&lt;/blockquote&gt;&lt;div&gt; While I understand her assertion that the net is "dominated" by these fora. There are two assumptions one is that the people in those places are being 'Their actual selves" when the research shows that people are being thoughtful and careful about how they present in different places and what aspects of themselves they share where (see danah boyd's research about young people and networked publics).  I think in one way she is right the people like her - who went to college and have mainstream white collar jobs are on these fora with their real names but most people who actually do interesting hobbies or have religious lives that they don't share publically or across all contexts of their lives either are not sharing about these on those fora or they are keeping them contextually separate using different names and handles.&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;This weekend at She's Geeky I am going to ask a lot of questions of the women coming about how they do manage their identities and what they want and need out of digital systems to feel safe using them.&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;blockquote&gt;&lt;div&gt;Tie actions online to our real identities, and suddenly online activity has real-world consequences.&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;/blockquote&gt;&lt;div&gt;This is very true and unless we build tools that give people both persona management and context management we are going to be creating a really creepy world.  See my TEDx Talk on &lt;a href="http://www.tedxbrussels.eu/2011/speakers/kaliya_hamlin.html"&gt;Participatory Totalitarianism. &lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZF6NKSD1kPA:4oWbhKGoZ2w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZF6NKSD1kPA:4oWbhKGoZ2w:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=ZF6NKSD1kPA:4oWbhKGoZ2w:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=ZF6NKSD1kPA:4oWbhKGoZ2w:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/ZF6NKSD1kPA" height="1" width="1"/&gt;</content>
    <updated>2012-01-26T02:54:23Z</updated>
    <published>2012-01-26T02:54:23Z</published>
    <category scheme="http://www.identitywoman.net" term="Uncategorized" />
    <author>
      <name>Kaliya Hamlin, Identity Woman</name>
      <uri>http://www.identitywoman.net</uri>
    </author>
    <source>
      <id>http://www.identitywoman.net/feed/atom</id>
      <link href="http://www.identitywoman.net" rel="alternate" type="text/html" />
      <link href="http://www.identitywoman.net/feed/atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Saving the World With User-Centric Identity</subtitle>
      <title xml:lang="en">Identity Woman</title>
      <updated>2012-01-26T02:54:23Z</updated>
    </source>
  <feedburner:origLink>http://www.identitywoman.net/the-new-google-is-creepier-then-ever#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</feedburner:origLink></entry>

  <entry xml:lang="en-us">
    <id>https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/1/25/This-Week-in-Identity--Another-group-of-purpose-maximizers</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/BxsEIShCm8s/This-Week-in-Identity--Another-group-of-purpose-maximizers" rel="alternate" type="text/html" />
    <title>Ping Talk - Ping Identity: This Week in Identity - Another group of purpose maximizers</title>
    
    <updated>2012-01-26T01:39:24Z</updated>
    <category term="This Week in Identity" />
    <source>
      <id>https://www.pingidentity.com/blogs/pingtalk/index.cfm</id>
      <category scheme="http://www.itunes.com/" term="Technology" />
      <category scheme="http://www.itunes.com/" term="Podcasting" />
      <category scheme="http://www.itunes.com/" term="Tech News" />
      <author>
        <name>Ping Talk - Ping Identity</name>
        <email>pingtalkblog@pingidentity.com</email>
      </author>
      <link href="https://www.pingidentity.com/blogs/pingtalk/index.cfm" rel="alternate" type="text/html" />
      <link href="http://www.pingidentity.com/blogs/pingtalk/rss.cfm?mode=full" rel="self" type="application/rss+xml" />
      <title>Ping Talk Blog</title>
      <updated>2012-02-05T20:26:16Z</updated>
    </source>
  <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;div&gt;At Ping Identity, our culture and values are everything.  Our good friend, Nishant Kaushik, relates that the same is true at Identropy.  He explains their drive to maximize purpose.  Also, check out the great video about one of his favorite books, Drive, by Daniel Pink.    &#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;&lt;a href="http://www.identropy.com/blog/bid/80719/We-Are-Purpose-Maximizers"&gt;Nishant Kaushik: We Are Purpose Maximizers!&lt;/a&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
There were several other items of interest to the identity community (click more for the list and links):  &lt;a href="https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/1/25/This-Week-in-Identity--Another-group-of-purpose-maximizers"&gt;[More]&lt;/a&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BxsEIShCm8s:X6ib4ukcy5s:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BxsEIShCm8s:X6ib4ukcy5s:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=BxsEIShCm8s:X6ib4ukcy5s:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=BxsEIShCm8s:X6ib4ukcy5s:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/BxsEIShCm8s" height="1" width="1"/&gt;</content><feedburner:origLink>https://www.pingidentity.com/blogs/pingtalk/index.cfm/2012/1/25/This-Week-in-Identity--Another-group-of-purpose-maximizers</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.identitywoman.net/?p=2504</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/aE_KKFZ0D8U/getting-started-with-identity" rel="alternate" type="text/html" />
    <link href="http://www.identitywoman.net/getting-started-with-identity#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed#comments" rel="replies" type="text/html" />
    <link href="http://www.identitywoman.net/getting-started-with-identity/feed/atom" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Kaliya Hamlin - Identity Woman: Getting Started with Identity</title>
    <summary xml:lang="en" type="html">Welcome to the Identity Woman Blog. Here are some links to help you get started on understanding identity on the internet: My Personal Saga with Google in the [psuedo]NymWars to use the name I choose on their service - annotation of all my posts. National! Identity! Cyberspace! Why we shouldn't freak about NSTIC on my [...]</summary>
    <content type="html" xml:lang="en">&lt;p&gt;Welcome to the Identity Woman Blog. Here are some links to help you get started on understanding identity on the internet:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;My Personal Saga with Google in the [psuedo]NymWars to use the name I choose on their service - &lt;a href="http://www.identitywoman.net/the-nymwars-what-it-means-summary-of-my-posts-todate#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;annotation of all my posts&lt;/a&gt;.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.fastcompany.com/1715659/national-identity-cyberspace-why-we-shouldnt-freak-out-about-nstic" target="_blank"&gt;National! Identity! Cyberspace! Why we shouldn't freak about NSTIC&lt;/a&gt; on my Fast Company blog.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.fastcompany.com/blog/kaliya-hamlin/identity-matters/why-identity-matters-0" target="_blank"&gt;Government Experimenting with Identity Technologies&lt;/a&gt; on my Fast Company blog.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;My speech at the &lt;a href="http://www.identitywoman.net/personal-data-ecosystem-talk-at-digital-privacy-forum-jan-20th-2011-in-nyc#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" target="_blank"&gt;Digital Privacy Forum in January 2011&lt;/a&gt; articulating a vision that goes beyond "Do-Not-Track" vs. Business as Usual, creating a new ecosystem where people collect their own data.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;The National Strategy for Trusted Identities in Cyberspace asked industry leaders to share their ideas on how the Identity Ecosystem should be governed and managed. &lt;strong&gt;&lt;a href="http://www.identitywoman.net/nstic-response-by-identity-woman#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" target="_blank"&gt; I wrote a response&lt;/a&gt; that covers much of the history of the user-centric community along with a vision of how to grow consensus.&lt;/strong&gt;&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.nstic.us/education.html" target="_blank"&gt;Core User-Centric Identity Concepts Videos on the NSTIC.US Education Page&lt;/a&gt; (be sure to scroll down), including Identity, Authentication (AuthN), Authorization (AuthZ), Verification, Enrollment, etc.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;Organizations and Events I share leadership in:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.internetidentityworkshop.com"&gt;Internet Identity Workshop&lt;/a&gt; #14 May 1-3 in Mountain View, CA. This conference has focused on User-Centric Identity since 2005.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.personaldataecosystem.org"&gt;Personal Data Ecosystem Consortium&lt;/a&gt; So far there are 16 startups focused on developing the new business opportunities for people collecting and getting value from their own data. We contributed to the &lt;a href="http://www.weforum.org/issues/rethinking-personal-data"&gt;World Economic Forum Rethinking Personal Data Project&lt;/a&gt; report &lt;a href="http://www.weforum.org/news/report-highlights-personal-data-new-economic-asset-class"&gt;Personal Data: The Emergence of a New Asset Class&lt;/a&gt;.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.idcommons.net"&gt;Identity Commons&lt;/a&gt; keeps all the organizations and groups working on user-centric identity linked together.&lt;/li&gt;&lt;/ul&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.identitywoman.net/starting-on-the-oasis-idtrust-member-steering-committee#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" target="_blank"&gt;OASIS ID Trust Steering Committee &lt;/a&gt;representing Planetwork and people.&lt;/li&gt;&lt;/ul&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=aE_KKFZ0D8U:wUBk_8v0qB8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=aE_KKFZ0D8U:wUBk_8v0qB8:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=aE_KKFZ0D8U:wUBk_8v0qB8:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=aE_KKFZ0D8U:wUBk_8v0qB8:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/aE_KKFZ0D8U" height="1" width="1"/&gt;</content>
    <updated>2012-01-25T21:13:20Z</updated>
    <published>2011-09-18T20:07:09Z</published>
    <category scheme="http://www.identitywoman.net" term="What is Identity?" />
    <author>
      <name>Kaliya Hamlin, Identity Woman</name>
      <uri>http://www.identitywoman.net</uri>
    </author>
    <source>
      <id>http://www.identitywoman.net/feed/atom</id>
      <link href="http://www.identitywoman.net" rel="alternate" type="text/html" />
      <link href="http://www.identitywoman.net/feed/atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Saving the World With User-Centric Identity</subtitle>
      <title xml:lang="en">Identity Woman</title>
      <updated>2012-01-26T02:54:23Z</updated>
    </source>
  <feedburner:origLink>http://www.identitywoman.net/getting-started-with-identity#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.identitywoman.net/?p=2686</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/pSiBKqlPaS0/the-nymwars-what-it-means-summary-of-my-posts-todate" rel="alternate" type="text/html" />
    <link href="http://www.identitywoman.net/the-nymwars-what-it-means-summary-of-my-posts-todate#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed#comments" rel="replies" type="text/html" />
    <link href="http://www.identitywoman.net/the-nymwars-what-it-means-summary-of-my-posts-todate/feed/atom" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Kaliya Hamlin - Identity Woman: The Nymwars and what they mean: summary of my posts to date.</title>
    <summary xml:lang="en" type="html">UpDATE: Google relented a bit, however I am still waiting to see if my name of choice was approved. You can read about the process I had to go through here. The New Google Names Process ----------------- For those of you coming from the Mercury News story on the NymWars exploding... I STILL have my [...]</summary>
    <content type="html" xml:lang="en">&lt;p&gt;UpDATE: Google relented a bit, however I am still waiting to see if my name of choice was approved. You can read about the process I had to go through here. &lt;a href="http://www.identitywoman.net/the-new-google-names-process#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;The New Google Names Process&lt;/a&gt;&lt;/p&gt;&lt;p&gt;-----------------&lt;/p&gt;&lt;p&gt;For those of you coming from the &lt;a href="http://www.mercurynews.com/business/ci_19352047"&gt;Mercury News story on the NymWars exploding&lt;/a&gt;...&lt;/p&gt;&lt;p&gt;I STILL have my Google+ profile suspended for using a  [  .  ] as my last name.  Prior to that I had "Identity Woman" as my last name and prior to that... before I ever got a G+ profile and since I started using Gmail and Google Profiles I had a   [  *   ]as my last name. [see the complete list of posts about this whole saga below]&lt;/p&gt;&lt;p&gt;&lt;strong&gt;It is my right to choose my own name online and how I express it.  Names and identities are socially constructed AND contextual... and without the freedom to choose our own names, and the freedom to have different names (and identifiers) across different contexts we will end up with a social reality that I don't want to live in: Participatory Totalitarianism.&lt;/strong&gt;&lt;/p&gt;&lt;p&gt;&lt;span id="more-2686"&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;The last names that I have had during my life are Young, and currently Hamlin (my soon-to-be ex-husband's last name). I plan to have a last name of my own, different from either of those, within the next few years.  I do not choose to "promote" this last name as the HEADLINE of my profile in Google - that is a representation of my professional self online.  Yes, people walk up to me IRL (In Real Life) and say "Yeah! You're Identity Woman, aren't you" - yep &lt;img alt=":)" class="wp-smiley" src="http://www.identitywoman.net/wp-includes/images/smilies/icon_smile.gif"&gt;&lt;/img&gt; .  It is, believe it or not, a "common" name for me as the G+ "requirements" call for. Just like it is common for BotGirl Questi to be called that when she is in that persona online. Botgirl has the &lt;a href="http://www.scoop.it/t/plusgate"&gt;best collection of articles on the web about #nymwars&lt;/a&gt;  and amazing art protesting what happened to her and all of us who have been suspended &lt;a href="https://botgirl.jux.com/"&gt;- comic book covers, songs re-written with new lyrics, impassioned monologs&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;In the digital world "identifiers" are totally linkable across contexts - that is, different communities and contexts that would never meet In Real Life cross online with common identifiers. So if you don't have the freedom to choose which identifiers (name, e-mail address, phone number, physical address,) you don't have the freedom to keep identifiers in different contexts separate, and if you can't keep them separate, that means they are linkable.  Without that freedom, you can't explore or be a part of niche communities of interest that are not mainstream or not appropriate for some other context you also belong to. Here are some examples:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;the gambler at church,&lt;/li&gt;&lt;li&gt;the "crazy" ferret lady at work&lt;/li&gt;&lt;li&gt;the gardening gun lover&lt;/li&gt;&lt;li&gt;being part of a minority sexual community&lt;/li&gt;&lt;li&gt;proactive environmental activist working at a logging company&lt;/li&gt;&lt;li&gt;being a Buddhist in a part of the country where everyone goes to church on Sunday and doesn't talk about religion because they would be ostracized  OR the other way around being a very devout christian in a part of the country where when they do inter-religious services they include everyone except christianity...and you just would rather your faith not be "public"&lt;/li&gt;&lt;li&gt;going out in the woods every few weekends dressed up like knights and ladies, while being in the Army Reserve on other ones.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;This freedom to have multiple personas for multiple contexts, just like the right to vote for our government in a secret ballot box, is essential for a free society. If we do not fight for and maintain these rights, we will end up with &lt;strong&gt;Participatory Totalitarianism.&lt;/strong&gt;&lt;/p&gt;&lt;h2&gt;&lt;a href="http://www.identitywoman.net/googlereal-name-identity-woman#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" rel="bookmark" title="Permanent Link to Google+ and my &amp;quot;real&amp;quot; name: Yes, I'm Identity Woman"&gt;Google+ and my "real" name: Yes, I'm Identity Woman&lt;/a&gt;  My first post on Google+ surprise to find my profile suspended.... I think this will all be over very soon.&lt;/h2&gt;&lt;h2&gt;&lt;a href="http://www.identitywoman.net/nymwars-irl-on-googles-lawns#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;Nymwars: IRL on Google Lawns&lt;/a&gt;. My idea to "occupy" the lawn of Google with a colourful range of folks who want the right to choose their names.  I wrote this after I figured out a week into this that it wasn't going to end, and they hadn't just made a mistake.&lt;/h2&gt;&lt;p&gt;&lt;em&gt;danah boyd writes a very good post on &lt;a href="http://www.zephoria.org/thoughts/archives/2011/08/05/design-social-norms.html"&gt;How to design for social norms (and avoid angry mobs)&lt;/a&gt; all about the nymwars and what is/was going on. &lt;/em&gt;&lt;/p&gt;&lt;p&gt;August 8th &lt;a href="http://www.identitywoman.net/identity-woman-google-suspension-update#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" style="font-size: 20px; font-weight: bold;"&gt;Google Suspension Update&lt;/a&gt; - they now think I should wait for business accounts.&lt;/p&gt;&lt;p&gt;August 27th &lt;a href="http://www.identitywoman.net/lets-try-going-with-the-mononym-for-google#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" rel="bookmark" style="font-size: 20px; font-weight: bold;" title="Permanent Link to Lets try going with the Mononym for Google+"&gt;Let's try going with the Mononym for Google+&lt;/a&gt;&lt;/p&gt;&lt;p&gt;August 28th  &lt;a href="http://www.identitywoman.net/google-says-your-name-is-toby-not-kunta-kinte#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" rel="bookmark" style="font-size: 20px; font-weight: bold;" title="Permanent Link to Google+ says your name is &amp;quot;Toby&amp;quot; NOT &amp;quot;Kunta Kinte&amp;quot;"&gt;Google+ says your name is "Toby" NOT "Kunta Kinte"&lt;/a&gt;&lt;/p&gt;&lt;h2&gt;This post was written after watching Tim O'Reilly talk to Bradley Horowitz the manager for social at Google. In it, Tim calls users asking for the right to choose their own name self-righteous and strident.  I make a link to a classic American story, Roots, where Kunta Kinte, a man stolen from his village in Africa, taken to the United States, and sold into slavery refuses to take the name his slaveowner gives him, Toby - he is whipped until he accepts this name.  I asked Tim and Brad if Kunta Kinte was self righteous for standing up for his own name... Tim said no, but that is a self-righteous question to ask.... well, that was on Twitter and a very interesting conversation followed with several tweeters, that resulted in Tim framing what was happening as a lynch mob against Google.... you can see that in this post.&lt;/h2&gt;&lt;p&gt;August 29th - &lt;a href="http://www.identitywoman.net/is-google-is-being-lynched-by-out-spoken-users-upset-by-real-names-policy#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" rel="bookmark" style="font-size: 20px; font-weight: bold;" title="Permanent Link to Is Google+ is being lynched by out-spoken users upset by real names policy?"&gt;Is Google+ is being lynched by out-spoken users upset by real names policy?&lt;/a&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;Please also &lt;a href="https://plus.google.com/113460946096069722041/posts/TcvXfnwcdDk"&gt;check out this post about "Tone and Silencing"&lt;/a&gt; to understand what the underlying dynamics are in this conversation and speaking up to the powers that be.&lt;/p&gt;&lt;p&gt;&lt;em&gt;"Bonus suppression" Google runs YouTube and they took the clip of the movie scene down for "inappropriate nudity or sexual" - it has neither, it just made a dramatic point and made them look bad. In the clip Kunta Kinte is facing the camera with part of his chest showing being whipped from behind by a white man who is working for the slaveowner until he breaks. After repeating his name is Kunta Kinte when asked what his name is, he finally says... it is Toby. &lt;/em&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;August 30sh - &lt;a href="http://www.identitywoman.net/1-month-anniversary-of-goggle-gag#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" style="font-size: 20px; font-weight: bold;"&gt;One Month of the Gag by Google.&lt;/a&gt;&lt;/p&gt;&lt;p&gt;September 5th - &lt;a href="http://www.identitywoman.net/mononym-officially-not-accepted-im-kaliya-google-get-a-clue#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" style="font-size: 20px; font-weight: bold;"&gt;Mononym officially not accepted. I am Kaliya - Google, Get a clue&lt;/a&gt;.&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;Posted Sept 9th.&lt;/p&gt;&lt;h2&gt;&lt;a href="http://www.identitywoman.net/potential-future-google-zon#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed" rel="bookmark" title="Permanent Link to Potential Future: Google-Zon"&gt;Potential Future: Google-Zon&lt;/a&gt;&lt;/h2&gt;&lt;div&gt;&lt;p&gt;With the nymwars unfolding (Nym = Pseudonym , Anonymous and other varities on this theme) this video of the Google-Zon story in the year 2014 seems more prescient then ever.&lt;/p&gt;&lt;p&gt;EPIC in this video stands for the Electronic Personalized Information Construct&lt;/p&gt;&lt;p&gt;&lt;a href="http://idorosen.com/mirrors/robinsloan.com/epic/" target="_blank"&gt;Please watch the video on the original site; the way it was done is amazing. &lt;/a&gt;&lt;/p&gt;&lt;p&gt;The computer writes a new story for every user (sound like the&lt;a href="http://www.thefilterbubble.com/" target="_blank"&gt; Filter Bubble&lt;/a&gt;?) everyone contributes and in exchange gets a cut of the revenue...&lt;/p&gt;&lt;/div&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;Relevant background&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/who-is-harmed-by-a-%E2%80%9Creal-names%E2%80%9D-policy#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;Who is Harmed by Real Names Policies&lt;/a&gt; developed by the Geek Feminism Community... prophetically I included in the response I gave to the Notice of Inquiry about governance of the Identity Ecosystem as outlined in the National Strategy for Trusted Identities in Cyberspace that I wrote, before I myself was affected.&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pSiBKqlPaS0:6_Pg2nsPrP4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pSiBKqlPaS0:6_Pg2nsPrP4:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=pSiBKqlPaS0:6_Pg2nsPrP4:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=pSiBKqlPaS0:6_Pg2nsPrP4:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/pSiBKqlPaS0" height="1" width="1"/&gt;</content>
    <updated>2012-01-25T21:11:03Z</updated>
    <published>2011-11-17T21:39:08Z</published>
    <category scheme="http://www.identitywoman.net" term="Uncategorized" />
    <author>
      <name>Kaliya Hamlin, Identity Woman</name>
      <uri>http://www.identitywoman.net</uri>
    </author>
    <source>
      <id>http://www.identitywoman.net/feed/atom</id>
      <link href="http://www.identitywoman.net" rel="alternate" type="text/html" />
      <link href="http://www.identitywoman.net/feed/atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Saving the World With User-Centric Identity</subtitle>
      <title xml:lang="en">Identity Woman</title>
      <updated>2012-01-26T02:54:23Z</updated>
    </source>
  <feedburner:origLink>http://www.identitywoman.net/the-nymwars-what-it-means-summary-of-my-posts-todate#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://www.identitywoman.net/?p=2812</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/9QXIODKXE8k/the-new-google-names-process" rel="alternate" type="text/html" />
    <link href="http://www.identitywoman.net/the-new-google-names-process#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed#comments" rel="replies" type="text/html" />
    <link href="http://www.identitywoman.net/the-new-google-names-process/feed/atom" rel="replies" type="application/atom+xml" />
    <title xml:lang="en">Kaliya Hamlin - Identity Woman: The new Google+ Names process</title>
    <summary xml:lang="en" type="html">Today people were tweeting/writing about the new google+ names policies. Well. I just went through it and it involves many screens and an appeal into the Kafkaesqe googleplex that takes up to 3 days before they approve your name request.  I think they should to this to EVERY user cause how do I know your [...]</summary>
    <content type="html" xml:lang="en">&lt;p&gt;Today people were tweeting/writing about the new google+ names policies. Well. I just went through it and it involves many screens and an appeal into the Kafkaesqe googleplex that takes up to 3 days before they approve your name request.  I think they should to this to EVERY user cause how do I know your name "is" David Smith...it just doesn't trigger their dictionaries prompting inquiry into the legitimacy of your name...Ok but I digress...lets see how this works.&lt;/p&gt;&lt;p&gt;First you are discouraged from changing your name and limited to the frequency you can do so. You have to click "change name" to do anything.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/ChangeYourName.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone size-full wp-image-2813" height="281" src="http://www.identitywoman.net/wp-content/uploads/2012/01/ChangeYourName.png" title="ChangeYourName" width="524"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;span id="more-2812"&gt;&lt;/span&gt;&lt;/p&gt;&lt;p&gt;Then my Name doesn't meet their Names Policy (at least they dropped the name violation language).&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/namefail.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone  wp-image-2814" height="216" src="http://www.identitywoman.net/wp-content/uploads/2012/01/namefail.png" title="namefail" width="565"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;I clicked on the "Click here" to submit an appeal&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/MoreAreYouSure.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone  wp-image-2816" height="323" src="http://www.identitywoman.net/wp-content/uploads/2012/01/MoreAreYouSure.png" title="MoreAreYouSure" width="527"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;More are you sure....&lt;/p&gt;&lt;p&gt;Really sure you know what your name is....&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/NamesOnGoogle.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone size-full wp-image-2817" height="624" src="http://www.identitywoman.net/wp-content/uploads/2012/01/NamesOnGoogle.png" title="NamesOnGoogle" width="527"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Now you can fill out the form....&lt;/p&gt;&lt;p&gt;I put my e-mail address as Kaliya@identitywoman.net (yes I have that one).&lt;/p&gt;&lt;p&gt;I linked to my blog, twitter and a Read Write Web news article that refrences me that way.&lt;/p&gt;&lt;p&gt;For extra documents I uploaded the Laws of Identity that lists me in the opening paragraph amongst all my professional colleagues as "Identity Woman Kaliya." You know if you having your name listed in the thankyous of the Laws of Identity as your profile name on google - I don't know what will qualify.&lt;/p&gt;&lt;p&gt;&lt;em&gt;Andrew Nash the head of Identity at Google is friends with a bunch of us in case you need to know the context Googlers - googling the laws to confirm my/their legitimacy.&lt;/em&gt;&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/NameReview.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone size-full wp-image-2818" height="684" src="http://www.identitywoman.net/wp-content/uploads/2012/01/NameReview.png" title="NameReview" width="521"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;Then you get this lovely confirmation....&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/AppealSubmitted.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone size-full wp-image-2819" height="205" src="http://www.identitywoman.net/wp-content/uploads/2012/01/AppealSubmitted.png" title="AppealSubmitted" width="523"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;We shall see...&lt;/p&gt;&lt;p&gt;UPDATE:&lt;/p&gt;&lt;p&gt;Not hearing anything at the e-mail address I submitted to them as my e-mail address. I re-appealed. And of course had to do extra cognitive work to not  hit the very attractive blue "cancel" button along the way.  This then appeared inside my profile page.&lt;/p&gt;&lt;p&gt;&lt;a href="http://www.identitywoman.net/wp-content/uploads/2012/01/UnderReview.png#utm_source=feed&amp;amp;utm_medium=feed&amp;amp;utm_campaign=feed"&gt;&lt;img alt="" class="alignnone size-full wp-image-2822" height="216" src="http://www.identitywoman.net/wp-content/uploads/2012/01/UnderReview.png" title="UnderReview" width="733"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;So we shall see....&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9QXIODKXE8k:SO6e1_RemhQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9QXIODKXE8k:SO6e1_RemhQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9QXIODKXE8k:SO6e1_RemhQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=9QXIODKXE8k:SO6e1_RemhQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/9QXIODKXE8k" height="1" width="1"/&gt;</content>
    <updated>2012-01-25T18:27:41Z</updated>
    <published>2012-01-24T05:11:10Z</published>
    <category scheme="http://www.identitywoman.net" term="Uncategorized" />
    <author>
      <name>Kaliya Hamlin, Identity Woman</name>
      <uri>http://www.identitywoman.net</uri>
    </author>
    <source>
      <id>http://www.identitywoman.net/feed/atom</id>
      <link href="http://www.identitywoman.net" rel="alternate" type="text/html" />
      <link href="http://www.identitywoman.net/feed/atom" rel="self" type="application/atom+xml" />
      <subtitle xml:lang="en">Saving the World With User-Centric Identity</subtitle>
      <title xml:lang="en">Identity Woman</title>
      <updated>2012-01-26T02:54:23Z</updated>
    </source>
  <feedburner:origLink>http://www.identitywoman.net/the-new-google-names-process#utm_source=feed&amp;utm_medium=feed&amp;utm_campaign=feed</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://blogs.gartner.com/robin-wilton/?p=168</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/3vzOcFScp9Q/" rel="alternate" type="text/html" />
    <title>Robin Wilton - Gartner: Interesting times…</title>
    <summary type="html">Well, it may have been a quiet week in Lake Wobegon, but in the privacy and policy domain it has been quite the opposite. Wikipedia and a number of other sites went dark in protest against SOPA/PIPA; the Feds took down the MegaUpload file-sharing site, alleging violation of piracy laws; Anonymous retaliated by taking down [...]</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;Well, it may have been a quiet week in Lake Wobegon, but in the privacy and policy domain it has been quite the opposite. Wikipedia and a number of other sites went dark in &lt;a href="http://blogs.gartner.com/robin-wilton/feed/www.bbc.co.uk/news/technology-16590585"&gt;protest against SOPA/PIPA&lt;/a&gt;; the Feds &lt;a href="http://www.bbc.co.uk/news/technology-16642369"&gt;took down&lt;/a&gt; the MegaUpload file-sharing site, alleging violation of piracy laws; Anonymous retaliated by &lt;a href="https://www.infoworld.com/t/cyber-crime/megaupload-rises-again-anonymous-knocks-out-sopa-supporters-sites-184605"&gt;taking down&lt;/a&gt; a slew of SOPA supporters; and the European Commission has just announced its &lt;a href="http://ec.europa.eu/justice/data-protection/document/review2012/com_2012_11_en.pdf"&gt;new, pan-European Data Protection Regulation&lt;/a&gt; (link to PDF version).&lt;/p&gt;&#xD;
&lt;p&gt;But let’s not talk about that… let’s talk about the 4th Amendment. For those on the right hand side of the Atlantic, the 4th Amendment is the part of the US Constitution which establishes the individual’s “right to be secure from all unreasonable searches, and seizures of his person, his houses, his papers, and all his possessions”. Like any constitutional law, it has been subject to a great deal of interpretation in the 221 years since it was ratified, not least as the law tries to keep pace with new ways of “searching” and “seizing”.&lt;/p&gt;&#xD;
&lt;p&gt;The 4th Amendment is often considered to be the closest thing US citizens have to a privacy right, and it generally establishes the need for any violation of that right to be backed up by a judicial warrant. Of the current Supreme Court, Justice  Antonin Scalia is the one who most commonly dissents from this view, holding that the “reasonableness” test can be satisfied without a warrant. However, in a judgement this week Justice Scalia joined with his peers in finding unanimously in favour of the need for a warrant.&lt;/p&gt;&#xD;
&lt;p&gt;The case at issue was &lt;a href="http://www.scotusblog.com/case-files/cases/united-states-v-jones/"&gt;US vs. Jones&lt;/a&gt;, and the Supreme Court ruled that US law enforcement authorities had violated Mr Jones’ 4th Amendment rights by fixing a GPS tracker to his wife’s car, and using it to track his movements. Mr Jones was, at that time, suspected of being involved in drug dealing.&lt;/p&gt;&#xD;
&lt;p&gt;The judges ruled that, in attaching the device to Jones’ car, the police had physically intruded into “a constitutionally protected area”, and that this ran counter to a legitimate expectation of privacy in that respect. Justice Sotomayor and Justice Alito both drew attention to the issues of keeping 4th Amendment protections in step with rapid technological change – not least, the fact that so many of our personal actions are tracked by commercial websites and hand-held devices.&lt;/p&gt;&#xD;
&lt;p&gt;The court held back from ruling on what other means of surveillance might violate the 4th Amendment rights, though it is clearly something they thought about in their review of prior case law. As a result, the two aspects I mentioned above (physical intrusion, and expectation of privacy) are very likely to be the basis of future decisions, if it should come to questions of whether, say, traffic camera data can be used to track a suspected criminal. There would be a strong argument that the installation and operation of traffic cameras does not involve intrusion into a constitutionally protected area, and that it does not infringe on an expectation of privacy.&lt;/p&gt;&#xD;
&lt;p&gt;Whether that will extend into the online domain of web tracking remains to be seen.&lt;/p&gt;&#xD;
&lt;p&gt;So much for the 4th Amendment… I’ll see your 4th and raise you one: in a quite &lt;a href="http://www.denverpost.com/breakingnews/ci_19815241"&gt;separate case&lt;/a&gt;, a judge in Denver ruled that an individual could not claim 5th Amendment protection from a law enforcement request to decrypt data on her laptop. (The 5th Amendment is the one establishing, among other things, an individual’s right to refuse to give information which might incriminate them).&lt;/p&gt;&#xD;
&lt;p&gt;In this instance, the suspect declined to decrypt the contents of her hard drive on the grounds that it might incriminate her. The judge held that, even if the police did not know the specific contents of a specific document, the fact of its existence was a foregone conclusion, and that therefore the 5th Amendment did not apply.&lt;/p&gt;&#xD;
&lt;p&gt;I have to admit, I don’t quite follow that chain of reasoning, but like I say,the law is having a job keeping pace with technological change.  It has been an interesting week, then… and I dont see the pace of change slowing down any time soon.&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3vzOcFScp9Q:OE1qutXAdXs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3vzOcFScp9Q:OE1qutXAdXs:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=3vzOcFScp9Q:OE1qutXAdXs:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=3vzOcFScp9Q:OE1qutXAdXs:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/3vzOcFScp9Q" height="1" width="1"/&gt;</content>
    <updated>2012-01-25T18:03:06Z</updated>
    <category term="Uncategorized" />
    <author>
      <name>Robin Wilton</name>
    </author>
    <source>
      <id>http://blogs.gartner.com/robin-wilton</id>
      <link href="http://blogs.gartner.com/robin-wilton/feed/" rel="self" type="application/atom+xml" />
      <link href="http://blogs.gartner.com/robin-wilton" rel="alternate" type="text/html" />
      <subtitle>A Member of The Gartner Blog Network</subtitle>
      <title>Robin Wilton</title>
      <updated>2012-01-27T15:34:14Z</updated>
    </source>
  <feedburner:origLink>http://blogs.gartner.com/robin-wilton/2012/01/25/interesting-times/</feedburner:origLink></entry>

  <entry xml:lang="en">
    <id>http://rnd.feide.no/?p=2411</id>
    <link href="http://feedproxy.google.com/~r/PlanetIdentity/~3/9tuxSTg3RBI/" rel="alternate" type="text/html" />
    <title>Andreas Åkre Solberg - Feide/UNINETT: Identity Federations Status Report – January 2012</title>
    <summary type="html">GÉANT Identity Federations currently have a lot of ongoing activities. Here is a summary of what we are working on, and the current status. Federation Lab › Test Federation Goal: allow new SPs and IdPs to easily connect to a … &lt;a href="https://rnd.feide.no/2012/01/25/identity-federations-status-report-january-2012/"&gt;Continue reading &lt;span class="meta-nav"&gt;→&lt;/span&gt;&lt;/a&gt;</summary>
    <content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;p&gt;GÉANT Identity Federations currently have a lot of ongoing activities. Here is a summary of what we are working on, and the current status.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Federation Lab › Test Federation&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;Goal:&lt;/p&gt;&#xD;
&#xD;
&lt;blockquote&gt;&#xD;
  &lt;p&gt;allow new SPs and IdPs to easily connect to a set of available entities that are available with no contract neccessary. Self-maintained.&lt;/p&gt;&#xD;
&lt;/blockquote&gt;&#xD;
&#xD;
&lt;p&gt;Activity expected to be done April 2012.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Miro: Nothing to update.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Federation Lab › Monitoring and statistics&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;Miro: As I promised we’ve done preparations for using f-ticks with SSP in production in our federation. I’ll be able to report on that next month.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Federation Lab › SAMLtracer&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;A significant patch reveiced from Mark Dubrovnic. Some of the patches incorporated, some left. Including UI updates, and support for import export.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Some planned features: Notifications of SAML artifacts, support for IdP Discovery protocol.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Federation Lab › OpenID Connect&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;We’re making progress. In Februrary we’ll be able to connect the front-end test run UI with the backend test tool, and present to visible results.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;There is an interop event in San Fransisco, then a new OpenID Connect meeting in Paris next to IETF. Roland is attending to IETF + Kantara meeting. Andreas might as well. We will have some demo available before that.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;The backend test tool is able to produce test results for the initial simple test cases, it is tested against several OpenID Connect Provider implementations.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;We’re planning on preparing test fascility for OAuth 2.0 in addition to OpenID Connect. That tool might be very useful for the VOOT work.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;RedIRIS will perform an implementation of OpenID Connect that will be coordinated with the test fascility. RedIRIS already have experience and a library for Oauth 2.0, and will make use of that. They will also make an simpleSAMLphp module to make it very easy for enabling OpenID Connect support in an existing IdP or SP running SSP.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;VOOT&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;Leif: Setup &lt;a href="http://openvoot.org"&gt;http://openvoot.org&lt;/a&gt; and prepared a drafted IETF templated spec.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Foodle: no updates.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;UNINETT has implemented OAuth 2.0, and tested against Leifs implementation. Some problems, but we made it work. OAuth 2.0 support will be integrated into Foodle, this spring.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;SurfNet: Ready to exchange OAuth keys with Foodle, is ready to also consume groups from Foodle as a client. Will implement OAuth 2.0 in second half of 2012.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Renater: Has already completed sympa VOOT OAuth 1.0 based implementation. OAuth 1.0 based implementation is made publicly available. Prepared to test against Foodle and SurfNet. Working on OAuth 2.0. Exepcted to be ready March 2012.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;SAML2int&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;The SAML2int profile is being transferred to &lt;em&gt;Kantara Initiative: Federation Interoperability WG&lt;/em&gt;.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Scot is will apply some minimal changes contribued by Ian Young.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Federated Provisioning&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;Mads Freek have been hired by Wayf to work on – mostly – Stinus.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Stinus is the ‘Federated provisioning and de-­provisioning’ project originally proposed by WAYF, SURFnet &amp;amp; JANET as per the enclosed pdf.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;A description – one month old – of the architecture is available here: &lt;a href="http://code.google.com/p/stinus/wiki/StinusOverview?show=content"&gt;http://code.google.com/p/stinus/wiki/StinusOverview?show=content&lt;/a&gt;&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;I expect to have a pre-poc up an running in week 6 and expect to update the description to reflect some recent changes – mostly the use of Gearman both inside &lt;em&gt;core&lt;/em&gt; and as the protocol between Stinus components.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Working prototype within 2 weeks.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Wayf will ensure comatibility with connectors used from the Sun provisioning Framework, that also used in Netherlands. Wayf and SurfNet is in dialogue.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Remco has already done some work on Federated Provisioning, will also do much work in the year to come, but it will be funded by another project. Remco will share a deliverable related to the work on the mailinglist.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;DiscoJuice&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;No updates.&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Moonshot&lt;/h2&gt;&#xD;
&#xD;
&lt;p&gt;Technology is settling down, more mature, and spec.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Most activity on supporting customers on piloting activities.&lt;/p&gt;&#xD;
&#xD;
&lt;p&gt;Piloting activities around these areas:&lt;/p&gt;&#xD;
&#xD;
&lt;ol&gt;&#xD;
&lt;li&gt;Classic e-Science fascilities. SSH access, visitors with physical access to console.&lt;/li&gt;&#xD;
&lt;li&gt;UK National Grid Services.&lt;/li&gt;&#xD;
&lt;li&gt;Cancer Research UK: for microsoft exchange, file sharing, etc. Large organization, divded into 5 institutes. &lt;/li&gt;&#xD;
&lt;li&gt;UK National Health Services. Interested in starting piloting.&lt;/li&gt;&#xD;
&lt;/ol&gt;&#xD;
&#xD;
&lt;p&gt;Likely initial most important use case: federated login to regular desktops (between different, unrelated MS Active Directory domains), not just applications&lt;/p&gt;&#xD;
&#xD;
&lt;h2&gt;Other topics&lt;/h2&gt;&#xD;
&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Hot topic: GEANT 3+&lt;/li&gt;&#xD;
&lt;li&gt;Convention in Madrid for activity leaders, 27th February.&#xD;
&#xD;
&lt;ul&gt;&#xD;
&lt;li&gt;Trained on methodology for GN3+ methodology.&lt;/li&gt;&#xD;
&lt;/ul&gt;&lt;/li&gt;&#xD;
&lt;/ul&gt;&#xD;
&#xD;
&lt;p&gt;&lt;a href="https://foodl.org/foodle/Identity-Federations-Status-VC-Feb-march-4f1fc"&gt;Next meeting in the beginning of March&lt;/a&gt;&lt;/p&gt;&lt;/div&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9tuxSTg3RBI:TiT-0qdTdiQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9tuxSTg3RBI:TiT-0qdTdiQ:7Q72WNTAKBA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?d=7Q72WNTAKBA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/PlanetIdentity?a=9tuxSTg3RBI:TiT-0qdTdiQ:I2FUP0JpNAM"&gt;&lt;img src="http://feeds.feedburner.com/~ff/PlanetIdentity?i=9tuxSTg3RBI:TiT-0qdTdiQ:I2FUP0JpNAM" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;&lt;img src="http://feeds.feedburner.com/~r/PlanetIdentity/~4/9tuxSTg3RBI" height="1" width="1"/&gt;</content>
    <updated>2012-01-25T09:55:23Z</updated>
    <category term="Federation Lab" />
    <category term="Foodle" />
    <category term="Id-Fed Meeting Minutes" />
    <category term="IdP Discovery" />
    <category term="OAuth" />
    <category term="OpenID Connect" />
    <category term="SAML Interoperability" />
    <category term="SimpleSAMLphp" />
    <category term="Statistics and Monitoring" />
    <category term="VOOT" />
    <author>
      <name>Andreas Solberg</name>
    </author>
    <source>
      <id>https://rnd.feide.no</id>
      <link href="http://rnd.feide.no/feed/" rel="self" type="application/atom+xml" />
      <link href="https://rnd.feide.no" rel="alternate" type="text/html" />
      <subtitle>Identity Stuff at UNINETT.</subtitle>
      <title>Feide RnD</title>
      <updated>2012-01-25T10:04:07Z</updated>
    </source>
  <feedburner:origLink>https://rnd.feide.no/2012/01/25/identity-federations-status-report-january-2012/</feedburner:origLink></entry>
</feed>

