<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;DUMDQn48eip7ImA9WxBSEUs.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187</id><updated>2009-12-18T12:17:53.072-08:00</updated><title>Vikas Jain's Web Services Security (ws-security) Blog</title><subtitle type="html">A blog of SOA and web services security technology I'm working on ...</subtitle><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://ws-security.blogspot.com/" /><link rel="hub" href="http://pubsubhubbub.appspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>78</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/ws-securityblog" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com" /><entry gd:etag="W/&quot;DUQBRH87eip7ImA9WxBSEUs.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-6752215377202111636</id><published>2009-12-18T12:15:00.001-08:00</published><updated>2009-12-18T12:15:55.102-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-18T12:15:55.102-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="innovation" /><category scheme="http://www.blogger.com/atom/ns#" term="security" /><title>Gartner's John Pescatore on 2010 Security Threats and Trends</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;See what Gartner's John Pescatore has to say about emerging security threats and trends in 2010.&lt;br/&gt;&lt;blockquote&gt;There are two very new challenges. What we're seeing happening right now is certainly the threats have changed, but also business processes and the demands put on the IT organization and the information security organization are changing at the same time. At the same time that threats are getting more targeted, the &lt;b&gt;business, even government agencies, are demanding that users be allowed to use home PC's, their own smart phones, iPhones and the like, being allowed to work from home, being allowed to use social networks, use consumer grade things like Google apps and Skype and the like&lt;/b&gt;. &lt;br/&gt;So at the same time that the threats are getting more focused, &lt;b&gt;IT is being forced to relinquish some control over the hardware and software and services that users use to get the business done and touch privacy related information and critical business processes&lt;/b&gt;. So dealing with those two challenges simultaneously, we're targeted deeper threats and having to give up some levels of control. That, I believe, is the major challenge facing security programs today.&lt;br/&gt;&lt;br/&gt;I think 2010 into 2011 will be the start where we start to see vulnerabilities found in all these &lt;b&gt;virtualization and Smart Grid technologies&lt;/b&gt; &lt;b&gt;and other forms of wireless&lt;/b&gt;, and inevitability new technologies new vulnerabilities, and the attackers leap on those very, very quickly. So I think that is probably some of the new things we will see. &lt;br/&gt;&lt;/blockquote&gt;For more details visit full article at &lt;a href='http://www.bankinfosecurity.com/articles.php?art_id=1926&amp;amp;pg=4' target='_blank'&gt;http://www.bankinfosecurity.com/articles.php?art_id=1926&amp;amp;pg=4&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=c763edea-27c1-86ed-8ba2-d4cf4e12aa38' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-6752215377202111636?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/JJdClfIawU6tnKcBA-1RQpiYuSE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/JJdClfIawU6tnKcBA-1RQpiYuSE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/JJdClfIawU6tnKcBA-1RQpiYuSE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/JJdClfIawU6tnKcBA-1RQpiYuSE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=3jTt_t9hxw0:30E_FNBOVK0:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=3jTt_t9hxw0:30E_FNBOVK0:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=3jTt_t9hxw0:30E_FNBOVK0:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=3jTt_t9hxw0:30E_FNBOVK0:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/6752215377202111636/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=6752215377202111636" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/6752215377202111636?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/6752215377202111636?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/3jTt_t9hxw0/gartner-john-pescatore-on-2010-security.html" title="Gartner&amp;#39;s John Pescatore on 2010 Security Threats and Trends" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/12/gartner-john-pescatore-on-2010-security.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Ck8EQ3g8fyp7ImA9WxBTE00.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-7777346707887922378</id><published>2009-12-08T11:26:00.000-08:00</published><updated>2009-12-08T11:33:22.677-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-12-08T11:33:22.677-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="cloud" /><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><title>Tutorial: Creating Oracle prebundled machine images for the cloud</title><content type="html">Here's an &lt;a href="http://www.oracle.com/technology/pub/articles/nair-paas.html?msgid=8356539&amp;amp;eid=3947700996&amp;amp;lid=1"&gt;excellent tutorial&lt;/a&gt; by Kiran C. Nair on how to create a custom VM image prebundled with Oracle Weblogic Server 11g and Oracle Database XE, and utilities to run at user-defined runlevels. The created images are not restricted to AWS but are fully compatible with any cloud that uses Xen as the hypervisor layer (for example, Eucalyptus Open Cloud).&lt;br /&gt;&lt;br /&gt;The prebundled applications and utilities may be customized according to user preferences or demands.&lt;br /&gt;&lt;br /&gt;Kiran C. Nair specializes in JEE, client-server architecture, and performance lifecycle analysis at SETLabs, the research wing of Infosys Technologies Ltd.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-7777346707887922378?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/3wjOFzr5JWhJ8gOa5tRHeIFmP3Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3wjOFzr5JWhJ8gOa5tRHeIFmP3Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/3wjOFzr5JWhJ8gOa5tRHeIFmP3Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3wjOFzr5JWhJ8gOa5tRHeIFmP3Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Z49RG3SiVfw:eBLbdxL8hYs:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Z49RG3SiVfw:eBLbdxL8hYs:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Z49RG3SiVfw:eBLbdxL8hYs:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Z49RG3SiVfw:eBLbdxL8hYs:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/7777346707887922378/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=7777346707887922378" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7777346707887922378?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7777346707887922378?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/Z49RG3SiVfw/tutorial-creating-oracle-prebundled.html" title="Tutorial: Creating Oracle prebundled machine images for the cloud" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/12/tutorial-creating-oracle-prebundled.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkAGQXo6fip7ImA9WxNUGUo.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-2344505412237833848</id><published>2009-11-11T14:32:00.000-08:00</published><updated>2009-11-11T14:32:00.416-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-11-11T14:32:00.416-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="cloud" /><category scheme="http://www.blogger.com/atom/ns#" term="news" /><category scheme="http://www.blogger.com/atom/ns#" term="innovation" /><title>Cloud Services Broker announcement from Vordel</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;a href='http://www.vordel.com/' target='_blank'&gt;Vordel&lt;/a&gt; announced "&lt;b&gt;Cloud Service Broker&lt;/b&gt;" at their annual &lt;a href='http://www.vordel.com/vordelworld/agenda.html' target='_blank'&gt;VordelWorld user conference&lt;/a&gt; last week, in an attempt to bring trust and reliability to Cloud Computing. One of the major concerns customers have in adopting cloud computing is security. Hope this will solve some of those concerns bridging the gap between internal SOA apps and Cloud services, leading to broader adoption of Cloud Computing.&lt;br/&gt;&lt;br/&gt;See &lt;a href='http://www.reuters.com/article/pressRelease/idUS130253+05-Nov-2009+BW20091105' title='blocked::http://www.reuters.com/article/pressRelease/idUS130253+05-Nov-2009+BW20091105'&gt;http://www.reuters.com/article/pressRelease/idUS130253+05-Nov-2009+BW20091105&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=68d65e4a-0649-82ee-bb9b-755d41db7f2a' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-2344505412237833848?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/sJGR51at2KXCfYUZ0-S6fYOXdu4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/sJGR51at2KXCfYUZ0-S6fYOXdu4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/sJGR51at2KXCfYUZ0-S6fYOXdu4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/sJGR51at2KXCfYUZ0-S6fYOXdu4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=F-LGvnP6qKg:SoVUq8SiHEQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=F-LGvnP6qKg:SoVUq8SiHEQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=F-LGvnP6qKg:SoVUq8SiHEQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=F-LGvnP6qKg:SoVUq8SiHEQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/2344505412237833848/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=2344505412237833848" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2344505412237833848?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2344505412237833848?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/F-LGvnP6qKg/cloud-services-broker-announcement-from.html" title="Cloud Services Broker announcement from Vordel" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/11/cloud-services-broker-announcement-from.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEAGSHgycCp7ImA9WxNUGUs.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-8964695318003378876</id><published>2009-11-11T11:04:00.000-08:00</published><updated>2009-11-11T11:12:09.698-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-11-11T11:12:09.698-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="faq" /><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11gR1" /><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><title>Oracle Fusion Middleware 11gR1 PS1 (Patchset 1) released</title><content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;&lt;a href="http://www.oracle.com/technology/software/products/middleware/index.html" target="_blank"&gt;Oracle Fusion Middleware 11gR1 PS1&lt;/a&gt; (Patchset 1) aka 11.1.1.2 was released on Nov 10, 2009, and generally available now.&lt;br /&gt;Many enhancements and bug fixes for OWSM went into this patchset.&lt;br /&gt;Some notable ones are listed below. For a complete set of enhancements visit &lt;a href="http://fmwdocs.us.oracle.com/doclibs/fmw/E10285_01/web.1111/b32511/whatsnew.htm" target="_blank"&gt;product documentation here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;b&gt;What's new in OWSM 11gR1 PS1 (11.1.1.2)?&lt;/b&gt;&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Common Policy Store across multiple Weblogic domains (11gR1 policy store was restricted to be one per domain)&lt;br /&gt;&lt;/li&gt;&lt;li&gt;One policy accepting multiple types of tokens such as username, SAML, X.509 through the policy alternatives feature&lt;/li&gt;&lt;li&gt;Ability to set up different sign/encryption keys for different services instead of all services having to use the common sign/encryption keys set at the domain level - This has been implemented using configuration overrides feature for service policies (11gR1 allowed only client side config overrides)&lt;/li&gt;&lt;li&gt;Ability to configure operation level authorization using Permission based authorization policies&lt;/li&gt;&lt;li&gt;&lt;span class="italic"&gt;Ease of Use features&lt;br /&gt;&lt;/span&gt;&lt;/li&gt;&lt;ul&gt;&lt;li&gt;Publishing service certificate in the WSDL - client policies can directly lookup service certificate from WSDL instead of looking up from client keystore&lt;/li&gt;&lt;li&gt;&lt;span class="italic"&gt;Policy attachment through WLST scripting - useful for creating automation scripts&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class="italic"&gt;Enhanced support for asynchronous services and policies for it&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;li&gt;&lt;span class="italic"&gt;Certifications and Interoperability&lt;/span&gt;&lt;/li&gt;&lt;ul&gt;&lt;li&gt;&lt;span class="italic"&gt;OWSM Interoperability certified against Axis 1.4 and WSS4J 1.58 security stacks&lt;/span&gt;&lt;/li&gt;&lt;li&gt;Documentation on Interoperability with other security stacks moved to a new guide &lt;a href="http://fmwdocs.us.oracle.com/doclibs/fmw/E10285_01/web.1111/e16098/toc.htm" class="olink INTER"&gt;&lt;span class="italic"&gt;Oracle Fusion Middleware Interoperability Guide for Oracle Web Services Manager&lt;/span&gt;&lt;/a&gt;&lt;/li&gt;&lt;li&gt;WS-I BSP compliance&lt;/li&gt;&lt;li&gt;Policies can be stored in Microsoft SQL Server based MDS repository&lt;/li&gt;&lt;/ul&gt;  &lt;/ul&gt;Additionally, for a list of important OWSM &lt;b&gt;bug fixes, known issues and workarounds&lt;/b&gt; associated with 11gR1 PS1 release, please refer to the &lt;b&gt;&lt;a href="http://download.oracle.com/docs/cd/E15523_01/relnotes.1111/e10132/owsm.htm#CACHHDIE" target="_blank"&gt;release notes&lt;/a&gt;&lt;/b&gt;.&lt;br /&gt;&lt;br /&gt;&lt;div class="zemanta-pixie"&gt;&lt;img src="http://img.zemanta.com/pixy.gif?x-id=cd25bea6-5aa3-86ee-a01a-d0b14c4775cd" alt="" class="zemanta-pixie-img" /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-8964695318003378876?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/3-ErR5abOGj5CchHF_iJsSO96Y4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3-ErR5abOGj5CchHF_iJsSO96Y4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/3-ErR5abOGj5CchHF_iJsSO96Y4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/3-ErR5abOGj5CchHF_iJsSO96Y4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mApv1coDBP4:XaEx0Ju5woQ:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mApv1coDBP4:XaEx0Ju5woQ:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mApv1coDBP4:XaEx0Ju5woQ:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mApv1coDBP4:XaEx0Ju5woQ:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/8964695318003378876/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=8964695318003378876" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8964695318003378876?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8964695318003378876?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/mApv1coDBP4/oracle-fusion-middleware-11gr1-ps1.html" title="Oracle Fusion Middleware 11gR1 PS1 (Patchset 1) released" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/11/oracle-fusion-middleware-11gr1-ps1.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUYARXY7fip7ImA9WxNUGUo.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-4560371839815475103</id><published>2009-11-09T17:14:00.001-08:00</published><updated>2009-11-11T14:05:44.806-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-11-11T14:05:44.806-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="howto" /><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11gR1" /><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><title>HowTo - OWSM 11g: Checking health of policy manager application</title><content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;OWSM Policy Manager is the central application that has the task of distributing policies to the OWSM agents (embedded in WLS) for enforcement. For diagnosing problems, it's important to first check if the policy manager application is running okay or not.&lt;br /&gt;&lt;br /&gt;You can check the health of policy manager by invoking&lt;br /&gt;&lt;b&gt;http://&lt;host&gt;&lt;host&gt;:&lt;port&gt;&lt;port&gt;/wsm-pm/validator&lt;/port&gt;&lt;/host&gt;&lt;/b&gt;&lt;br /&gt;It's a protected url, so you need to enter WLS adminstrator username/password.&lt;br /&gt;This should return a list of all the policies and assertion templates similar to below.&lt;br /&gt;&lt;img src="http://lh6.ggpht.com/_zX6fZmiNilg/Svi_gIFh9hI/AAAAAAAAC40/l1nZ0Zb7-bY/%5BUNSET%5D.jpg?imgmax=800" style="max-width: 800px;" /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="zemanta-pixie"&gt;&lt;img src="http://img.zemanta.com/pixy.gif?x-id=4320caf0-fa00-874a-aa1e-5938be6cf6ba" alt="" class="zemanta-pixie-img" /&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-4560371839815475103?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/8VBUz42VnoOxwkJIhrOOid2c3Yc/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8VBUz42VnoOxwkJIhrOOid2c3Yc/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/8VBUz42VnoOxwkJIhrOOid2c3Yc/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8VBUz42VnoOxwkJIhrOOid2c3Yc/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pYlb2WOCz1I:k8XKwBRCQm8:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pYlb2WOCz1I:k8XKwBRCQm8:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pYlb2WOCz1I:k8XKwBRCQm8:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pYlb2WOCz1I:k8XKwBRCQm8:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/4560371839815475103/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=4560371839815475103" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4560371839815475103?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4560371839815475103?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/pYlb2WOCz1I/howto-owsm-11g-checking-health-of.html" title="HowTo - OWSM 11g: Checking health of policy manager application" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/11/howto-owsm-11g-checking-health-of.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEUHQH44cCp7ImA9WxNUEUg.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-4999926284153564479</id><published>2009-11-02T02:03:00.001-08:00</published><updated>2009-11-02T02:03:51.038-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-11-02T02:03:51.038-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><title>Presenting at VordelWorld User Conference</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;a href='http://www.vordel.com/' target='_blank'&gt;Vordel&lt;/a&gt;, and XML Gateway company, is holding it's annual user conference &lt;a href='http://www.vordel.com/vordelworld/agenda.html' target='_blank'&gt;VordelWorld&lt;/a&gt; in Dublin from Nov 4-6, 2009. This year's spotlight is on SOA and cloud governance. There's a nice lineup of presentations including Burton Group's Richard Watson on "Cloud Application Architecture", Amazon Web Services Evangelist Steve Riley on "Fear the cloud no more", and Vordel CTO Mark O'Neill on "Governing Cloud Connections".&lt;br/&gt;&lt;br/&gt;While I can't wait to hear these speakers talk on the hot topic of security and governance in the cloud, I'll be presenting on the topic of "&lt;strong&gt;Role of XML Gateways in Identity Management (IdM) infrastructure"&lt;/strong&gt; and cover briefly on how XML Gateways can help mediate security to the cloud.&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=fa35e754-d556-8dbc-9851-e39f4bff5349' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-4999926284153564479?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/y0zjSEWQkZu4hIbtwx_8JeI2MKo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/y0zjSEWQkZu4hIbtwx_8JeI2MKo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/y0zjSEWQkZu4hIbtwx_8JeI2MKo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/y0zjSEWQkZu4hIbtwx_8JeI2MKo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=V5qjCpMsFyc:6qyJd-kMqdU:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=V5qjCpMsFyc:6qyJd-kMqdU:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=V5qjCpMsFyc:6qyJd-kMqdU:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=V5qjCpMsFyc:6qyJd-kMqdU:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/4999926284153564479/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=4999926284153564479" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4999926284153564479?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4999926284153564479?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/V5qjCpMsFyc/presenting-at-vordelworld-user.html" title="Presenting at VordelWorld User Conference" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/11/presenting-at-vordelworld-user.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUABQn87cSp7ImA9WxNVFkU.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-8054749418766188211</id><published>2009-10-27T15:35:00.000-07:00</published><updated>2009-10-27T15:49:13.109-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-27T15:49:13.109-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="career" /><title>Enhance your career with CareerTiger's help</title><content type="html">My high school friend, Abhijeet Khadilkar, started helping people in these recessionary times through a unique intiative - helping get a job using unconventional methodologies using the latest Web 2.0 tools and tips he provides through his recently launched company CareerTiger (&lt;a href="http://www.careertiger.com/"&gt;www.careertiger.com&lt;/a&gt;).&lt;br /&gt;&lt;br /&gt;Media has already started to notice the contribution he's making.&lt;br /&gt;&lt;ul&gt;&lt;li&gt;San Jose Mercury News ran a &lt;strong&gt;cover page&lt;/strong&gt; story on them&lt;/li&gt;&lt;li&gt;Details magazine mentioned them in their career section &lt;/li&gt;&lt;li&gt;MSN and CareerBuilder featured CareerTiger as one of the premier firms that helps candidates find jobs through unconventional means &lt;/li&gt;&lt;li&gt;One of their candidates was featured on Anderson Cooper show on &lt;strong&gt;CNN&lt;/strong&gt; &lt;/li&gt;&lt;/ul&gt;&lt;p&gt;Abhijeet told that over 90% of people who attend his JobPounce sessions are interviewed in the first 30 days of them attending it. And over 25% of them find a real job in 90 days...numbers that look just ok. But put those in perspective of the current economic climate, and they are stunning.&lt;br /&gt;&lt;br /&gt;They are running a special for a limited time - participants enter the code &lt;strong&gt;'legacy'&lt;/strong&gt; during registration get &lt;strong&gt;60% OFF &lt;/strong&gt;the regular price. These prices are valid for the next 3 sessions only.&lt;br /&gt;&lt;br /&gt;And for those that are not in the SF Bay Area, can attend one of the &lt;strong&gt;virtual sessions&lt;/strong&gt;. More details at &lt;a href="http://www.careertiger.com/jobpounce/"&gt;http://www.careertiger.com/jobpounce/&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-8054749418766188211?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/eOEC7W2Bpr-ELhiu6-g0eRJzMgk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/eOEC7W2Bpr-ELhiu6-g0eRJzMgk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/eOEC7W2Bpr-ELhiu6-g0eRJzMgk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/eOEC7W2Bpr-ELhiu6-g0eRJzMgk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=bR3yYRjBB4s:b25M5vVGJf8:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=bR3yYRjBB4s:b25M5vVGJf8:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=bR3yYRjBB4s:b25M5vVGJf8:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=bR3yYRjBB4s:b25M5vVGJf8:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/8054749418766188211/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=8054749418766188211" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8054749418766188211?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8054749418766188211?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/bR3yYRjBB4s/enhance-your-career-with-careertigers.html" title="Enhance your career with CareerTiger's help" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/enhance-your-career-with-careertigers.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D04HSX88fCp7ImA9WxNVEUo.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-8659952791055915374</id><published>2009-10-21T18:41:00.000-07:00</published><updated>2009-10-21T18:45:38.174-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-21T18:45:38.174-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11gR1" /><category scheme="http://www.blogger.com/atom/ns#" term="youtube" /><title>Introduction to OWSM 11gR1 youtube video</title><content type="html">Get introduced to Oracle Web Services Manager (OWSM) 11gR1 through this youtube video.&lt;br /&gt;&lt;br /&gt;&lt;object height="340" width="560"&gt;&lt;param name="movie" value="http://www.youtube.com/v/47k_4MiigJ0&amp;amp;hl=en&amp;amp;fs=1&amp;amp;"&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;param name="allowscriptaccess" value="always"&gt;&lt;embed src="http://www.youtube.com/v/47k_4MiigJ0&amp;amp;hl=en&amp;amp;fs=1&amp;amp;" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" height="340" width="560"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-8659952791055915374?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/v4DFFLyxKYzbw_kpsbAjHPsA1Is/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/v4DFFLyxKYzbw_kpsbAjHPsA1Is/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/v4DFFLyxKYzbw_kpsbAjHPsA1Is/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/v4DFFLyxKYzbw_kpsbAjHPsA1Is/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=wRwhxMjEsmA:PEqZssUAMhM:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=wRwhxMjEsmA:PEqZssUAMhM:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=wRwhxMjEsmA:PEqZssUAMhM:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=wRwhxMjEsmA:PEqZssUAMhM:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/8659952791055915374/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=8659952791055915374" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8659952791055915374?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8659952791055915374?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/wRwhxMjEsmA/introduction-to-owsm-11gr1-youtube.html" title="Introduction to OWSM 11gR1 youtube video" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/introduction-to-owsm-11gr1-youtube.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0MHR3s6fCp7ImA9WxNVEE8.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-7766517630142718326</id><published>2009-10-19T23:50:00.001-07:00</published><updated>2009-10-19T23:50:36.514-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-19T23:50:36.514-07:00</app:edited><title>F5 BIG-IP integrates with Oracle Access Manager</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;a href='http://www.reuters.com/article/pressRelease/idUS94082+06-Oct-2009+BW20091006'&gt;F5 Announces Plans to Unify Access Management for Web Applications Integrating with Oracle Access Manager | Reuters&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=13445823-c0ad-8526-8845-7f18ba388759' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-7766517630142718326?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/PyvxTpNJqIAk39NYLswHICLkfhk/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/PyvxTpNJqIAk39NYLswHICLkfhk/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/PyvxTpNJqIAk39NYLswHICLkfhk/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/PyvxTpNJqIAk39NYLswHICLkfhk/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=ypT5Cu3HKmM:Ob98P6OiBhU:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=ypT5Cu3HKmM:Ob98P6OiBhU:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=ypT5Cu3HKmM:Ob98P6OiBhU:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=ypT5Cu3HKmM:Ob98P6OiBhU:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/7766517630142718326/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=7766517630142718326" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7766517630142718326?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7766517630142718326?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/ypT5Cu3HKmM/f5-big-ip-integrates-with-oracle-access.html" title="F5 BIG-IP integrates with Oracle Access Manager" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/f5-big-ip-integrates-with-oracle-access.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkUDRHg6fip7ImA9WxNWGUU.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-436783315321514296</id><published>2009-10-19T13:30:00.000-07:00</published><updated>2009-10-19T13:31:15.616-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-19T13:31:15.616-07:00</app:edited><title>Consumer Oriented Service Architecture (COSA)</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;We are all familiar with "Service Oriented Architecture" also called SOA. Few years back it brought agility in IT by reusing legacy code and providing service interfaces to call them in a standard manner. It enabled "&lt;b&gt;reuse&lt;/b&gt;" and "&lt;b&gt;rapid development&lt;/b&gt;" bringing in IT efficiency and cost savings.&lt;br/&gt;Now, it has reached a maturity level, where customers are deploying services in hundreds and not just dozens, and vendors have tools available to manage and secure them.&lt;br/&gt;&lt;br/&gt;While SOA concentrated on how to make the service architecture better, it left out on the consumer focus. The consumer focus becomes especially important when services are exposed to partners. &lt;br/&gt;&lt;br/&gt;So, I decided to capture all requirements related to this area and coined the term &lt;b&gt;Consumer Oriented Service Architecture (COSA)&lt;/b&gt; to represent a new area for innovation.&lt;br/&gt;Here are some of the challenges that I see need solutions&lt;br/&gt;&lt;ol&gt;&lt;li&gt;&lt;b&gt;Consumer identification: &lt;/b&gt;A service consumer is a nebulous word. A consumer could be identified through a user identity(name/attributes, saml attributes), application identity, ip address, location, type of device (such as web, mobile, widget), etc. &lt;ul&gt;&lt;li&gt;Vendors need to come up with a specification to standardize on how consumers are identified in their tools.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;li&gt;&lt;b&gt;WSDL and other description languages: &lt;/b&gt;Today, WSDL describes the service interface only that is used by all consumers invoking it. How can I enhance this description language such that certain operations are available to some consumers, and certain operations are not available to other consumers? &lt;ul&gt;&lt;li&gt;The service description language would need to be enhanced to accommodate it.&lt;br/&gt;&lt;/li&gt;&lt;li&gt;Service registries and repositories would need to be able to understand and manage these new artifacts associated with consumers.&lt;br/&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;li&gt;&lt;b&gt;Contracts: &lt;/b&gt;How can I define and mange contracts between service providers and service consumers, and ensure that they are being complied with? &lt;ul&gt;&lt;li&gt;Service repositories which manage contracts should be able to support it.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;Policies &lt;/b&gt;(security, reliability, etc.): How can I apply security policy differently for Consumer A vs. Consumer B. I may not be trusting Consumer B as much as Consumer A, and would like to apply enhanced security for Consumer B such as using strong authentication or requiring Consumer B to send messages over higher bit encryption algorithms? Or, Consumer B may not be as technology advanced as Consumer A, and I need to allow Consumer B interact with my service using a different token (for authentication) than Consumer A. &lt;ul&gt;&lt;li&gt;This would lead to enhancing WS-Policy, WS-SecurityPolicy and associated standards to bring in consumer focus to them, and vendors supporting it.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;li&gt;&lt;b&gt;Operations &lt;/b&gt;(availability, routing, SLAs): How can I route/process messages coming from Consumer A preferentially over Consumer B? I may have SLAs (such as avg response time, concurrency, etc.) set for Consumer A that are different for Consumer B. How can I manage and enforce these consumer centric SLAs? &lt;ul&gt;&lt;li&gt;Service Management tools need to include consumer identifier in all their metrics and have capability in alarms and rules to act upon this identifier.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;Throttling/Shaping:&lt;/b&gt; How can I throttle or shape requests on a per consumer basis based on the SLAs defined between service provider and consumer? &lt;ul&gt;&lt;li&gt;XML Gateways and service bus (ESB) should be able to perform throttling based on consumer identifier.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;E2E Tracing &lt;/b&gt;(root cause analysis)&lt;b&gt;: &lt;/b&gt;How can I trace messages end-to-end (from consumer to service infrastructure to application to database) coming from a particular consumer of the service? &lt;ul&gt;&lt;li&gt;Application and service infrastructure tools need to include the consumer identifier in all their diagnostic and audit logs.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;Audit and reporting: &lt;/b&gt;How can I run audit reports for a particular consumer-service interaction? Audit records need to include consumer identifier. &lt;ul&gt;&lt;li&gt;Audit and reporting tools need to be enhanced to include consumer identifier as one of the criteria for reports.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;Provisioning: &lt;/b&gt;How can my tools allow provisioning of a new consumer that would invoke my service? How can I use a workflow approval process to provision such a consumer for my service? How can I provision application identitiesand certificates that relate to a particular consumer through a well defined process? &lt;ul&gt;&lt;li&gt;Service provisioning and workflow tools need to include the concept of consumer provisioning (or consumer onboarding).&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;li&gt;&lt;b&gt;Social apps: &lt;/b&gt;How can I enable service-consumer interactions using social apps? How can I notify availability of a new version of the service using Twitter like apps? Or, let consumers share their experience and learning in using the service?&lt;ul&gt;&lt;li&gt; Social tools such as wikis, discussion boards, etc. should be integrated into service infrastructure tools to provide service-consumer interaction.&lt;/li&gt;&lt;/ul&gt;&lt;/li&gt;&lt;br/&gt;&lt;/ol&gt;If your company has similar needs, then pls share your use cases by commenting to this blog entry.&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=dc3e34b9-b69c-834b-89a2-13e02bab762f' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-436783315321514296?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/EnHvk4TXfl6WwuwMMOkiggZ316Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EnHvk4TXfl6WwuwMMOkiggZ316Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/EnHvk4TXfl6WwuwMMOkiggZ316Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EnHvk4TXfl6WwuwMMOkiggZ316Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=G-YDwgL3dhs:6wGNi32CegU:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=G-YDwgL3dhs:6wGNi32CegU:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=G-YDwgL3dhs:6wGNi32CegU:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=G-YDwgL3dhs:6wGNi32CegU:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/436783315321514296/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=436783315321514296" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/436783315321514296?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/436783315321514296?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/G-YDwgL3dhs/consumer-oriented-service-architecture.html" title="Consumer Oriented Service Architecture (COSA)" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/consumer-oriented-service-architecture.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkAMSX86cSp7ImA9WxNWGUU.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-788480458350061536</id><published>2009-10-19T11:12:00.000-07:00</published><updated>2009-10-19T13:39:48.119-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-19T13:39:48.119-07:00</app:edited><title>Web Application Description Language (WADL)</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;p&gt;Sun has submitted "Web Application Description Language" (WADL) spec to  W3C.&lt;br/&gt;It's a desription language analogous to WSDL, but for REST/API  services. It's also supposed to describe relationships between the resources.&lt;br/&gt;See &lt;a title='http://www.w3.org/Submission/wadl/' href='http://www.w3.org/Submission/wadl/'&gt;http://www.w3.org/Submission/wadl/&lt;/a&gt;&lt;/p&gt; &lt;p&gt;&lt;font face='Arial' size='2'&gt;Implementation: There is a current implementation of it as part of  Jersey JAX-RS.&lt;/font&gt;&lt;/p&gt;&lt;p&gt;&lt;font face='Arial' size='2'&gt;An Amazon service in WADL is represented  as&lt;/font&gt;&lt;/p&gt;&lt;pre style='border: 1px dashed rgb(153, 153, 153); padding: 5px; overflow: auto; font-family: Andale Mono,Lucida Console,Monaco,fixed,monospace; color: rgb(0, 0, 0); background-color: rgb(238, 238, 238); font-size: 12px; line-height: 14px; width: 100%;'&gt; 1 &amp;lt;application xmlns="http://wadl.dev.java.net/2009/02" &lt;br /&gt; 2   xmlns:aws="http://webservices.amazon.com/AWSECommerceService/2005-07-26" &lt;br /&gt; 3   xmlns:xsd="http://www.w3.org/2001/XMLSchema" &lt;br /&gt; 4   xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" &lt;br /&gt; 5   xsi:schemaLocation="http://wadl.dev.java.net/2009/02 wadl.xsd"&amp;gt; &lt;br /&gt; 6 &lt;br /&gt; 7   &amp;lt;grammars&amp;gt; &lt;br /&gt; 8     &amp;lt;include href="AWSECommerceService.xsd"/&amp;gt; &lt;br /&gt; 9   &amp;lt;/grammars&amp;gt; &lt;br /&gt;10 &lt;br /&gt;11   &amp;lt;resources base="http://webservices.amazon.com/onca/"&amp;gt; &lt;br /&gt;12     &amp;lt;resource path="xml"&amp;gt; &lt;br /&gt;13       &amp;lt;method href="#ItemSearch"/&amp;gt; &lt;br /&gt;14     &amp;lt;/resource&amp;gt; &lt;br /&gt;15   &amp;lt;/resources&amp;gt; &lt;br /&gt;16 &lt;br /&gt;17   &amp;lt;method name="GET" id="ItemSearch"&amp;gt; &lt;br /&gt;18     &amp;lt;request&amp;gt; &lt;br /&gt;19       &amp;lt;param name="Service" style="query" &lt;br /&gt;20         fixed="AWSECommerceService"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;21       &amp;lt;param name="Version" style="query" fixed="2005-07-26"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;22       &amp;lt;param name="Operation" style="query" fixed="ItemSearch"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;23       &amp;lt;param name="SubscriptionId" style="query" &lt;br /&gt;24          type="xsd:string" required="true"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;25       &amp;lt;param name="SearchIndex" style="query" &lt;br /&gt;26          type="aws:SearchIndexType" required="true"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;27          &amp;lt;option value="Books"/&amp;gt; &lt;br /&gt;28          &amp;lt;option value="DVD"/&amp;gt; &lt;br /&gt;29          &amp;lt;option value="Music"/&amp;gt; &lt;br /&gt;30 &lt;br /&gt;31       &amp;lt;param name="Keywords" style="query" &lt;br /&gt;32         type="aws:KeywordList" required="true"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;33       &amp;lt;param name="ResponseGroup" style="query" &lt;br /&gt;34         type="aws:ResponseGroupType" repeating="true"&amp;gt; &amp;lt;/param&amp;gt; &lt;br /&gt;35          &amp;lt;option value="Small"/&amp;gt; &lt;br /&gt;36          &amp;lt;option value="Medium"/&amp;gt; &lt;br /&gt;37          &amp;lt;option value="Large"/&amp;gt; &lt;br /&gt;38          &amp;lt;option value="Images"/&amp;gt; &lt;br /&gt;39 &lt;br /&gt;40     &amp;lt;/request&amp;gt; &lt;br /&gt;41     &amp;lt;response&amp;gt; &lt;br /&gt;42       &amp;lt;representation mediaType="text/xml" &lt;br /&gt;43         element="aws:ItemSearchResponse"/&amp;gt; &lt;br /&gt;44     &amp;lt;/response&amp;gt; &lt;br /&gt;45   &amp;lt;/method&amp;gt; &lt;br /&gt;46 &amp;lt;/application&amp;gt;&lt;br /&gt;&lt;/pre&gt;&lt;br/&gt;&lt;b&gt;Would like to hear your comments on whether you find this spec useful. Currently, it doesn't have a security profile. What would you like to see defined in such security profile?&lt;/b&gt;&lt;br/&gt;&lt;p/&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=5e117d5a-b757-87d2-8468-888f9f99b6a2' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-788480458350061536?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/fb1G3LFYtAMFS8XRlsxkTsksN9E/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fb1G3LFYtAMFS8XRlsxkTsksN9E/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/fb1G3LFYtAMFS8XRlsxkTsksN9E/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/fb1G3LFYtAMFS8XRlsxkTsksN9E/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mx6QjRnjmO8:a5LeN-Z6aPM:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mx6QjRnjmO8:a5LeN-Z6aPM:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=mx6QjRnjmO8:a5LeN-Z6aPM:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=mx6QjRnjmO8:a5LeN-Z6aPM:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/788480458350061536/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=788480458350061536" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/788480458350061536?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/788480458350061536?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/mx6QjRnjmO8/web-application-description-language.html" title="Web Application Description Language (WADL)" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/web-application-description-language.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEUNRnczeip7ImA9WxNWF04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-5500552983669106271</id><published>2009-10-16T15:31:00.001-07:00</published><updated>2009-10-16T15:31:37.982-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-16T15:31:37.982-07:00</app:edited><title>Why are businesses caring about the Cloud?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;Cloud computing is a buzzword these days. Every customer I meet have some pilot project going on that relates to the cloud. Here are some of the drivers for it's adoption that I see from my perspective.&lt;br/&gt;&lt;br/&gt;&lt;b&gt;Business Drivers:&lt;/b&gt;&lt;br/&gt;&lt;ol&gt;&lt;li&gt;CFOs love it - The "public cloud and managed private clouds" model removes technology capital expenditure (capex) from the company balance sheets. So, CFOs love the pay-as-you-go monthly subscription model that this brings in.&lt;/li&gt;&lt;li&gt;Reduce hardware costs: Even when companies don't want to go the public/managed cloud route yet, by adopting the private clouds, companies want to realize the benefits of eliminating unused computing power.&lt;br/&gt;&lt;/li&gt;&lt;li&gt;Go to market faster - Since, this avoids the long hardware procurement cycles, businesses can bring a solution faster to market.&lt;/li&gt;&lt;li&gt;Brings in new ways of interacting with customers - Cloud is bringing in new application programming models that makes it easy for companies to interact with customers using Web 2.0, mobile, widgets, social networking apps - such as Google App Engine, Google apps. A company wants to &lt;br/&gt;&lt;/li&gt;&lt;/ol&gt;&lt;b&gt;Technical Drivers:&lt;/b&gt;&lt;br/&gt;&lt;ol&gt;&lt;li&gt;Parallel development: Once the company procures the software license, they want to immediately start prototyping and developing the solution (in the cloud). Once, they get hardware for it, they want to move the solution from the cloud into the datacenter for test/stage and finally taking into production.&lt;/li&gt;&lt;li&gt;Scales up and down to meet demand: IT doesn't have to plan for capacity and worry about expenditure on over capacity as cloud offers automatic up and down scaling based on demand.&lt;br/&gt;&lt;/li&gt;&lt;li&gt;Leverage existing functionality provided by hosted solutions: Customers are embedding certain solutions from publicly hosted solutions such as Workday, Salesforce.com into their business processes to reduce the complexity, and get to market faster. &lt;/li&gt;&lt;li&gt;Enables self-service: This model gives full control on how you want to manage and use resources available to you.&lt;br/&gt;&lt;/li&gt;&lt;/ol&gt;If you have inputs into these drivers or have others drivers that's leading to adoption in your company, pls comment to this blog entry.&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=be042b2b-3368-80e7-96b6-90cb4aecc9cb' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-5500552983669106271?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Q016Z0n8XPnf6cqOsm0ESjIP1LQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Q016Z0n8XPnf6cqOsm0ESjIP1LQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Q016Z0n8XPnf6cqOsm0ESjIP1LQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Q016Z0n8XPnf6cqOsm0ESjIP1LQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Qg9qFnobCg0:JrrZXcGPepA:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Qg9qFnobCg0:JrrZXcGPepA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=Qg9qFnobCg0:JrrZXcGPepA:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=Qg9qFnobCg0:JrrZXcGPepA:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/5500552983669106271/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=5500552983669106271" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/5500552983669106271?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/5500552983669106271?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/Qg9qFnobCg0/why-are-businesses-caring-about-cloud.html" title="Why are businesses caring about the Cloud?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/why-are-businesses-caring-about-cloud.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUQDRns9cSp7ImA9WxNXGEo.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-2485209617458797880</id><published>2009-10-06T16:56:00.001-07:00</published><updated>2009-10-06T16:56:17.569-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-10-06T16:56:17.569-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="conference" /><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><title>OWSM presentation and demo pod at Oracle Open World (OOW) 2009 in San Francisco</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;I'll be doing following presentations at this year's &lt;a href='www.oracle.com/openworld/index.html' target='_blank'&gt;Oracle Open World 2009&lt;/a&gt; (OOW)in San Francisco.&lt;br/&gt;&lt;br/&gt;&lt;table border='1' style='text-align: left; width: 100%;'&gt;&lt;tbody&gt;&lt;tr&gt;&lt;td&gt;&lt;span class='nobr'/&gt;&lt;a rel='nofollow' href='http://www.eventreg.com/cc221_new/session_details.jsp?isid=310006&amp;amp;ilocation_id=221-1&amp;amp;ilanguage=english' target='_blank'&gt;S310006&lt;/a&gt;&lt;/td&gt;&lt;td&gt;Leveraging Oracle Web  Services Manager in Oracle Fusion Middleware 11g to Manage Security&lt;/td&gt;&lt;td&gt;Marriott Hotel Golden Gate  B3&lt;/td&gt;&lt;td&gt;Tuesday 10/13/2009 13:00 - 14:00&lt;/td&gt;&lt;/tr&gt;&lt;/tbody&gt;&lt;/table&gt;&lt;br/&gt;Also, visit us at our Demo pod &lt;font size='+0'&gt;&lt;span class='144531821-05102009'&gt;&lt;span class='nobr'&gt;&lt;a rel='nofollow' href='http://www20.cplan.com/cc221_new/demo_details.jsp?idemo_id=2650&amp;amp;ilocation_id=221-1&amp;amp;ilanguage=english' title='http://www20.cplan.com/cc221_new/demo_details.jsp?idemo_id=2650&amp;amp;ilocation_id=221-1&amp;amp;ilanguage=english'&gt;Oracle Fusion Middleware Security&lt;/a&gt;&lt;/span&gt;, Moscone West,  W-111&lt;br/&gt;&lt;br/&gt;Here are some focus on docs that might be helpful in navigating the jungle of presentations/demos.&lt;br/&gt;&lt;/span&gt;&lt;/font&gt;&lt;ul&gt;&lt;li&gt;&lt;span class='410450921-05102009'&gt;&lt;font face='Arial' size='2'&gt;&lt;a href='http://www.oracle.com/ocom/groups/public/documents/webcontent/032924.pdf' target='_blank'&gt;Identity Mgt Focus  On&lt;/a&gt; &lt;a href='http://www.oracle.com/ocom/groups/public/documents/webcontent/032924.pdf' title='http://www.oracle.com/ocom/groups/public/documents/webcontent/032924.pdf'/&gt;&lt;/font&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='410450921-05102009'&gt;&lt;font face='Arial' size='2'&gt;&lt;a href='http://www.oracle.com/us/openworld/034290.pdf' target='_blank'&gt;SOA Focus On&lt;/a&gt; &lt;/font&gt;&lt;/span&gt;&lt;br/&gt;&lt;span class='410450921-05102009'/&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='410450921-05102009'&gt;&lt;font face='Arial' size='2'&gt;&lt;a href='http://www.oracle.com/us/openworld/034620.pdf' target='_blank'&gt;SOA Gov Focus On&lt;/a&gt; &lt;/font&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='410450921-05102009'&gt;&lt;a href='http://www.oracle.com/technologies/linux/docs/linux-virtualization-openworld2009.pdf' target='_blank'&gt;Linux &amp;amp;  Virtualization Focus On&lt;/a&gt; &lt;br/&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;   &lt;div&gt;&lt;span class='410450921-05102009'&gt;&lt;font face='Arial'&gt;&lt;font size='2'&gt;And, all Focus  On &lt;span class='144531821-05102009'&gt;docs can be found here &lt;/span&gt;&lt;/font&gt;&lt;/font&gt;&lt;a href='http://www.oracle.com/us/openworld/030606.htm' title='http://www.oracle.com/us/openworld/030606.htm'&gt;&lt;font face='Arial' size='2' title='http://www.oracle.com/us/openworld/030606.htm'&gt;http://www.oracle.com/us/openworld/030606.htm&lt;/font&gt;&lt;/a&gt;&lt;/span&gt;&lt;/div&gt;  &lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=ef9c2898-ac54-8c46-abcb-0c1a3dc7384c' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-2485209617458797880?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/EwvW1dwLvu8LXeKAowtRaYrVMfg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EwvW1dwLvu8LXeKAowtRaYrVMfg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/EwvW1dwLvu8LXeKAowtRaYrVMfg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EwvW1dwLvu8LXeKAowtRaYrVMfg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=PvSNzLkG4fw:qkzSZ-Mnj08:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=PvSNzLkG4fw:qkzSZ-Mnj08:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=PvSNzLkG4fw:qkzSZ-Mnj08:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=PvSNzLkG4fw:qkzSZ-Mnj08:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/2485209617458797880/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=2485209617458797880" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2485209617458797880?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2485209617458797880?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/PvSNzLkG4fw/owsm-presentation-and-demo-pod-at.html" title="OWSM presentation and demo pod at Oracle Open World (OOW) 2009 in San Francisco" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/10/owsm-presentation-and-demo-pod-at.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkYGRX4ycCp7ImA9WxNXE0k.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-7915361749396699594</id><published>2009-09-30T12:44:00.001-07:00</published><updated>2009-09-30T12:48:44.098-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T12:48:44.098-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="howto" /><category scheme="http://www.blogger.com/atom/ns#" term="faq" /><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11g" /><title>OWSM 11g resources</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;Here are some resources on OWSM 11g that might be useful.&lt;br/&gt;&lt;ul&gt;&lt;li&gt;&lt;a target='_blank' href='http://www.oracle.com/technology/products/webservices_manager/index.html'&gt;OTN site&lt;/a&gt; - contains links to download, documentation, white papers, etc. - worth bookmarking&lt;/li&gt;&lt;li&gt;&lt;a target='_blank' href='http://www.oracle.com/technology/products/webservices_manager/collaterals/owsm-11g-tech_wp.pdf'&gt;OWSM 11g whitepaper&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a target='_blank' href='http://www.oracle.com/products/middleware/identity-management/ecosystem.html'&gt;XML Gateway ecosystem&lt;/a&gt; partners - Intel, Layer7, Sonoa, Vordel (will write another blogpost covering it)&lt;/li&gt;&lt;li&gt;&lt;a target='_blank' href='http://wiki.oracle.com/page/OWSM+11gR1+FAQ'&gt;11g FAQ&lt;/a&gt; on Oracle Wiki - It's on public wiki, and I encourage you to contribute to it. This is in addition to FAQs I post on this blog.&lt;/li&gt;&lt;li&gt;&lt;a target='_blank' href='http://wiki.oracle.com/page/OWSM+Troubleshooting+%26+Tips'&gt;Troubleshooting tips&lt;/a&gt; on Oracle Wiki - It's on public wiki, and I encourage you to contribute to it. &lt;/li&gt;&lt;li&gt;&lt;a href='http://www.youtube.com/user/OracleWebVideo' target='_blank'&gt;Oracle's Youtube channel&lt;/a&gt; - Search "OWSM" in youtube's search box&lt;br/&gt;&lt;/li&gt;&lt;/ul&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=12b37857-bf06-88df-92c2-760449149d85' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-7915361749396699594?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/g37VZxN0YaUoi-7m8sczwIEfFdg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/g37VZxN0YaUoi-7m8sczwIEfFdg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/g37VZxN0YaUoi-7m8sczwIEfFdg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/g37VZxN0YaUoi-7m8sczwIEfFdg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=x5d3QgHeSks:PoTpYbdZlME:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=x5d3QgHeSks:PoTpYbdZlME:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=x5d3QgHeSks:PoTpYbdZlME:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=x5d3QgHeSks:PoTpYbdZlME:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/7915361749396699594/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=7915361749396699594" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7915361749396699594?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7915361749396699594?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/x5d3QgHeSks/owsm-11g-resources.html" title="OWSM 11g resources" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/owsm-11g-resources.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DU4NRX07fyp7ImA9WxNXE04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-4336215063557512670</id><published>2009-09-30T12:12:00.000-07:00</published><updated>2009-09-30T12:13:14.307-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T12:13:14.307-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11g" /><title>OWSM videos on youtube</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;We'll be posting OWSM videos to youtube covering features and benefits as well as How-Tos for some common scenarios.&lt;br/&gt;Take a look at the &lt;a href='http://www.youtube.com/watch?v=47k_4MiigJ0' target='_blank'&gt;first video posted&lt;/a&gt; on Oracle's youtube channel &lt;a href='http://www.youtube.com/user/OracleWebVideo' target='_blank'&gt;OracleWebVideo&lt;/a&gt;. You can also search for "OWSM" directly from youtube.com&lt;br/&gt;&lt;br/&gt;You can provide blog comments on areas you wish us to cover.&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=774059d0-6b88-8eb2-8141-c5b57913bebb' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-4336215063557512670?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/v6kDpTdtYTavvdHe5xhvdhZ5tyw/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/v6kDpTdtYTavvdHe5xhvdhZ5tyw/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/v6kDpTdtYTavvdHe5xhvdhZ5tyw/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/v6kDpTdtYTavvdHe5xhvdhZ5tyw/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=k5dCMo9ROxU:MsyJrB7x97A:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=k5dCMo9ROxU:MsyJrB7x97A:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=k5dCMo9ROxU:MsyJrB7x97A:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=k5dCMo9ROxU:MsyJrB7x97A:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/4336215063557512670/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=4336215063557512670" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4336215063557512670?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4336215063557512670?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/k5dCMo9ROxU/owsm-videos-on-youtube.html" title="OWSM videos on youtube" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/owsm-videos-on-youtube.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEIGQH45cCp7ImA9WxNXE04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-8720497121423530293</id><published>2009-09-30T11:48:00.001-07:00</published><updated>2009-09-30T11:48:41.028-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T11:48:41.028-07:00</app:edited><title>Why does STS WS-Trust spec differ for SAML usage?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;WS-Security SAML token profile lists usage of 3 types of tokens represented using the confirmation-method element.&lt;br/&gt;&lt;ul&gt;&lt;li&gt;bearer&lt;br/&gt;&lt;/li&gt;&lt;li&gt;sender-vouches&lt;/li&gt;&lt;li&gt;holder-of-key (HOK)&lt;/li&gt;&lt;/ul&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;But, WS-Trust RST  template (which is also exposed through WS-SecurityPolicy) lists the following  token types - SAML 11, SAML  20&lt;/font&gt;. &lt;/span&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;It doesn't list any confirmation methods - bearer,  sender-vouches, HOK&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'/&gt;&lt;br/&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;Instead, it lists  key-type with these values&lt;br/&gt;&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;ul&gt;&lt;li&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;Symmetric&lt;/font&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;Public&lt;/font&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;Bearer&lt;/font&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;    &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;To request STS  for SAML 2 bearer token one sets&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;token type =  SAML2&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;key type =  Bearer&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'/&gt; &lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;To request STS for  SAML 2 HOK asymmetric token one sets&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;token type =  SAML2&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;key type =  Public&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'/&gt; &lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;To request STS for  SAML 2 HOK symmetric token one sets&lt;/font&gt;&lt;/span&gt;&lt;/div&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;&lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;token type =  SAML2&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font face='Arial' size='2'&gt;key type =  Symmetric&lt;br/&gt;&lt;br/&gt;&lt;/font&gt;&lt;/span&gt;&lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font&gt;&lt;font&gt;What does one set to get SAML sender-vouches  token? WS-Trust spec doesn't handle it today.&lt;br/&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='525353423-25092009'&gt;&lt;font&gt;&lt;font&gt;Why did the WS-Trust spec authors come up with another  representation mechanism instead of reusing the SAML token profile mechanism of  representing tokens using confirmation-method?&lt;br/&gt;Hope these issues can be fixed in a later version of WS-Trust spec.&lt;br/&gt;&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;&lt;/div&gt;&lt;/div&gt;&lt;/font&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;/font&gt;&lt;/span&gt;&lt;/div&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=2238e888-96a5-8410-b19a-258a190cecb4' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-8720497121423530293?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/6cj87Bh11n64tccAHalKC8UwJvE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6cj87Bh11n64tccAHalKC8UwJvE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/6cj87Bh11n64tccAHalKC8UwJvE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/6cj87Bh11n64tccAHalKC8UwJvE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=4g8xZugbGGI:H8LknSQwJFA:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=4g8xZugbGGI:H8LknSQwJFA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=4g8xZugbGGI:H8LknSQwJFA:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=4g8xZugbGGI:H8LknSQwJFA:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/8720497121423530293/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=8720497121423530293" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8720497121423530293?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/8720497121423530293?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/4g8xZugbGGI/why-does-sts-ws-trust-spec-differ-for.html" title="Why does STS WS-Trust spec differ for SAML usage?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/why-does-sts-ws-trust-spec-differ-for.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D04GSXo5eCp7ImA9WxNXE04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-786220113212341530</id><published>2009-09-30T11:38:00.001-07:00</published><updated>2009-09-30T11:38:48.420-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T11:38:48.420-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="faq" /><category scheme="http://www.blogger.com/atom/ns#" term="owsm 11g" /><title>FAQ - OWSM 11g: Can I deploy OWSM policy manager on a different VLAN?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;OWSM policy manager is a JEE application that is deployed on a Weblogic (WLS) managed server. Some customers who like to segregate deployments of security apps and integration/business apps into different VLANs, can deploy OWSM policy manager on a separate Weblogic server running in security VLAN by following these steps.&lt;br/&gt;&lt;br/&gt;&lt;b&gt;Step 1: &lt;/b&gt;Run RCU to install database schema required for SOA Suite install. This can be running on a server in a database VLAN&lt;br/&gt;&lt;b&gt;Step 2: &lt;/b&gt;Install SOA Suite on a server in security VLAN. This will contain OWSM policy manager running on managed server and EM FMW control running on AdminServer.&lt;br/&gt;&lt;b&gt;Step 3: &lt;/b&gt;Install WLS managed server (using SOA Suite installer) on a server in application VLAN, joining the WLS domain from step 1 install.&lt;br/&gt;&lt;b&gt;Step 4: &lt;/b&gt;Deploy SOA composite apps to the managed server in application VLAN, and start applying OWSM policies to it using EM (or in JDeveloper itself)&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=1729f844-69c5-8de8-85c1-71c94551ebd1' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-786220113212341530?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/NoLDGru1g5ktnmAuf_ck988tZnU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/NoLDGru1g5ktnmAuf_ck988tZnU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/NoLDGru1g5ktnmAuf_ck988tZnU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/NoLDGru1g5ktnmAuf_ck988tZnU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dubnmjcRC1Y:8Vc9iEt44T0:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dubnmjcRC1Y:8Vc9iEt44T0:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dubnmjcRC1Y:8Vc9iEt44T0:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dubnmjcRC1Y:8Vc9iEt44T0:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/786220113212341530/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=786220113212341530" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/786220113212341530?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/786220113212341530?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/dubnmjcRC1Y/faq-owsm-11g-can-i-deploy-owsm-policy.html" title="FAQ - OWSM 11g: Can I deploy OWSM policy manager on a different VLAN?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/faq-owsm-11g-can-i-deploy-owsm-policy.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk4CQ3g6fyp7ImA9WxNXE04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-3791547027477316886</id><published>2009-09-30T11:22:00.001-07:00</published><updated>2009-09-30T11:22:42.617-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T11:22:42.617-07:00</app:edited><title>FAQ - OWSM 11g: What port does OWSM policy manager listen on?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;OWSM 11g policy manager provides an RMI interface for communicating with OWSM agents and Enterprise Manager.&lt;br/&gt;On Weblogic server, it uses the configured RMI port for Weblogic which by default is 7001.&lt;br/&gt;Weblogic multiplexes different protocols (incl. HTTP, RMI, etc.) on the same port.&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=073334bd-b79f-8c59-952f-1ef44eeca70d' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-3791547027477316886?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/UsPtlge_OsnRCj4gfm-jXim1P3M/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UsPtlge_OsnRCj4gfm-jXim1P3M/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/UsPtlge_OsnRCj4gfm-jXim1P3M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UsPtlge_OsnRCj4gfm-jXim1P3M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=hTBPvybEaU4:K50EamwR-2I:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=hTBPvybEaU4:K50EamwR-2I:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=hTBPvybEaU4:K50EamwR-2I:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=hTBPvybEaU4:K50EamwR-2I:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/3791547027477316886/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=3791547027477316886" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/3791547027477316886?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/3791547027477316886?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/hTBPvybEaU4/faq-owsm-11g-what-port-does-owsm-policy.html" title="FAQ - OWSM 11g: What port does OWSM policy manager listen on?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/faq-owsm-11g-what-port-does-owsm-policy.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkAASHYzfyp7ImA9WxNXE04.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-2007627153960890645</id><published>2009-09-30T11:18:00.000-07:00</published><updated>2009-09-30T11:19:09.887-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-30T11:19:09.887-07:00</app:edited><title>FAQ - OWSM 11g: How does OWSM/Oracle SOA work with .NET</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;span class='150305117-30092009'&gt;OWSM works with .NET in 3 areas&lt;br/&gt;&lt;/span&gt;&lt;ul&gt;&lt;li&gt;&lt;span class='150305117-30092009'&gt;OWSM 11g policies are WS-* standards compliant and interoperable on the wire with &lt;a href='http://msdn.microsoft.com/en-us/netframework/aa663324.aspx' target='_blank'&gt;.NET  WCF&lt;/a&gt;.&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='150305117-30092009'&gt;Oracle and Microsoft have tested interoperability at several interop  events. &lt;br/&gt;&lt;/span&gt;&lt;/li&gt;&lt;li&gt;&lt;span class='150305117-30092009'&gt;OWSM supports &lt;a href='http://www.oasis-open.org/committees/download.php/16788/wss-v1.1-spec-os-KerberosTokenProfile.pdf' target='_blank'&gt;WSS 1.1 Kerberos token profile&lt;/a&gt; for both client and service policies to provide identity propagation using kerberos instead of SAML in .NET environments.&lt;br/&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=108d3926-08a8-8f79-a287-0d263143573a' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-2007627153960890645?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/-4mRIDd01gO6Q0xzNmKIrD_HKUY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-4mRIDd01gO6Q0xzNmKIrD_HKUY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/-4mRIDd01gO6Q0xzNmKIrD_HKUY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-4mRIDd01gO6Q0xzNmKIrD_HKUY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pdyczt6BhxQ:mhw2pfNncQ4:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pdyczt6BhxQ:mhw2pfNncQ4:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=pdyczt6BhxQ:mhw2pfNncQ4:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=pdyczt6BhxQ:mhw2pfNncQ4:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/2007627153960890645/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=2007627153960890645" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2007627153960890645?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2007627153960890645?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/pdyczt6BhxQ/faq-owsm-11g-how-does-owsmoracle-soa.html" title="FAQ - OWSM 11g: How does OWSM/Oracle SOA work with .NET" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/faq-owsm-11g-how-does-owsmoracle-soa.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcMQX86eCp7ImA9WxNREEk.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-1337101999859522037</id><published>2009-09-03T22:27:00.000-07:00</published><updated>2009-09-03T22:28:00.110-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-09-03T22:28:00.110-07:00</app:edited><title>FAQ - OWSM 11g: What is local optimization and impact of it on OWSM policies?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;a href='http://www.oracle.com/us/technologies/soa/index.htm' target='_blank'&gt;Oracle SOA Suite&lt;/a&gt; has a feature called local optimization. When it is ON (by default it's ON), a SOA composite invokes another SOA composite within the same Weblogic (WLS) server or cluster of WLS servers bypasses the whole SOAP stack, and makes a direct java call to optimize the invocation.&lt;br/&gt;&lt;br/&gt;&lt;b&gt;What is the impact of local optimization on OWSM policy execution?&lt;/b&gt;&lt;br/&gt;When local optimization is ON, OWSM policies are bypassed and hence aren't executed.&lt;br/&gt;&lt;br/&gt;&lt;b&gt;How do I turn off local optimization?&lt;/b&gt;&lt;br/&gt;In the SOA composite (composite.xml) which invokes another SOA composite, add the following property to the reference calling the service.&lt;br/&gt;&lt;br/&gt;&amp;lt;reference&amp;gt;&lt;br/&gt;   ......&lt;br/&gt;    &amp;lt;property name="oracle.webservices.local.optimization"&amp;gt;false&amp;lt;/property&amp;gt;&lt;br/&gt;&amp;lt;/reference&amp;gt;&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=8588e6a6-274b-89e5-a72c-9330aa987b41' alt='' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-1337101999859522037?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/N-adks-N9XUyS6Hdikp2MTiA8XE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/N-adks-N9XUyS6Hdikp2MTiA8XE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/N-adks-N9XUyS6Hdikp2MTiA8XE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/N-adks-N9XUyS6Hdikp2MTiA8XE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=SolsQycl_a8:ORTuPr8LuwA:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=SolsQycl_a8:ORTuPr8LuwA:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=SolsQycl_a8:ORTuPr8LuwA:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=SolsQycl_a8:ORTuPr8LuwA:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/1337101999859522037/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=1337101999859522037" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/1337101999859522037?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/1337101999859522037?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/SolsQycl_a8/faq-owsm-11g-what-is-local-optimization.html" title="FAQ - OWSM 11g: What is local optimization and impact of it on OWSM policies?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/09/faq-owsm-11g-what-is-local-optimization.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C04NQns6cSp7ImA9WxJVFEU.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-7199034061717675630</id><published>2009-07-01T13:41:00.001-07:00</published><updated>2009-07-01T13:59:53.519-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-07-01T13:59:53.519-07:00</app:edited><title>Oracle Fusion Middleware 11g launched</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;a href='http://www.oracle.com/products/middleware/index.html'&gt;&lt;font face='sans-serif'&gt;Oracle Fusion Middleware &lt;/font&gt;11g&lt;/a&gt; has been launched today. It has been in the making for 3+ years, and is the first release after the completion of integration between Oracle and BEA products into unified suites. Also, see &lt;a href='http://www.oracle.com/technology/pub/columns/kurian_ofm.html'&gt;Q&amp;amp;A with Thomas Kurian&lt;/a&gt;, &lt;a href='http://www.oracle.com/us/corporate/press/index.htm'&gt;Oracle Newsroom&lt;/a&gt;, &lt;a href='http://www.oracle.com/products/middleware/ofmradio-archive.html'&gt;podcasts&lt;/a&gt;, and &lt;a href='http://w.on24.com/r.htm?e=150299&amp;amp;s=1&amp;amp;k=409AAB2E4D0C341FD02DC012B04173EB&amp;amp;userreg=n&amp;amp;partnerref=13' target='_blank'&gt;explore new videos, whitepapers, and more&lt;/a&gt;.&lt;br/&gt;&lt;br/&gt;&lt;big&gt;What's new in OWSM 11g?&lt;/big&gt;&lt;br/&gt;&lt;ul&gt;&lt;li&gt;Unified management and monitoring through Oracle Enterprise Manager.&lt;/li&gt;&lt;li&gt;Built-in agents (no install required)&lt;/li&gt;&lt;li&gt;Policy governance including reusable policies and policy impact analysis&lt;/li&gt;&lt;li&gt;Enhanced WS-* standards support&lt;/li&gt;&lt;li&gt;Interoperability with .NET and other security stacks&lt;br/&gt;&lt;/li&gt;&lt;li&gt;Automatic identity propagation through chain of services&lt;br/&gt;&lt;/li&gt;&lt;li&gt;Common authentication across web services and web applications&lt;br/&gt;&lt;/li&gt;&lt;li&gt;JDeveloper integration for policy attachment at design time&lt;/li&gt;&lt;li&gt;Audit and reporting with built-in correlation of audit logs for a given transaction&lt;br/&gt;&lt;/li&gt;&lt;/ul&gt;For further details, visit &lt;a href='http://www.oracle.com/technology/products/webservices_manager/index.html'&gt;OWSM's page on Oracle Technology Network&lt;/a&gt; (OTN) and download the &lt;a href='http://www.oracle.com/technology/products/webservices_manager/collaterals/owsm-11g-tech_wp.pdf'&gt;11g whitepaper&lt;/a&gt;.&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;&lt;br/&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-7199034061717675630?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/SoI4F9HLYYbEWfpzmCqPsOUZGWA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SoI4F9HLYYbEWfpzmCqPsOUZGWA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/SoI4F9HLYYbEWfpzmCqPsOUZGWA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SoI4F9HLYYbEWfpzmCqPsOUZGWA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=huTeppnWqNQ:1d_TAUe80hw:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=huTeppnWqNQ:1d_TAUe80hw:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=huTeppnWqNQ:1d_TAUe80hw:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=huTeppnWqNQ:1d_TAUe80hw:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/7199034061717675630/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=7199034061717675630" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7199034061717675630?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7199034061717675630?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/huTeppnWqNQ/oracle-fusion-middleware-11g-launched.html" title="Oracle Fusion Middleware 11g launched" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/07/oracle-fusion-middleware-11g-launched.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkcERHw6cSp7ImA9WxJQGEQ.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-2153659421264980873</id><published>2009-06-01T15:05:00.001-07:00</published><updated>2009-06-01T15:06:45.219-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-06-01T15:06:45.219-07:00</app:edited><title>FAQ - OWSM 10.1.3: What are the different types of agents OWSM support?</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;div&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;OWSM supports the following agents as of 10.1.3.4 release&lt;br/&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt; &lt;div&gt;&lt;ul&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;Client and server  agents for Oracle 10gR3 BPEL and Oracle 10gR3 ESB&lt;/span&gt;&lt;/font&gt;. The BPEL and ESB app could be running on OC4J or other supported application servers.&lt;br/&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;Client and server  agents for 10gR3 OC4J application server&lt;/span&gt;&lt;/font&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;&lt;span class='798144420-01062009'/&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;&lt;span class='798144420-01062009'&gt;Client and server agents for AXIS 1.1 and 1.4 on  10gR3 OC4J&lt;/span&gt;&lt;/span&gt;&lt;/font&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'/&gt;&lt;/font&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;Server agents for  Weblogic Server 9.2&lt;/span&gt;&lt;/font&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'/&gt;&lt;/font&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;Server agents for  Websphere 6.1.x&lt;/span&gt;&lt;/font&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'/&gt;&lt;/font&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='798144420-01062009'&gt;Server agents for  JBoss 4.0.5&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;&lt;br/&gt;&lt;/div&gt;     &lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=55dedfa2-9fed-8e98-bc7e-3e3a50aa59a0' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-2153659421264980873?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/elSFiGUF98rJ6UTfMl39L-vdNoI/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/elSFiGUF98rJ6UTfMl39L-vdNoI/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/elSFiGUF98rJ6UTfMl39L-vdNoI/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/elSFiGUF98rJ6UTfMl39L-vdNoI/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=On2t0Q34ItE:ZRxKU-mCNXo:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=On2t0Q34ItE:ZRxKU-mCNXo:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=On2t0Q34ItE:ZRxKU-mCNXo:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=On2t0Q34ItE:ZRxKU-mCNXo:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/2153659421264980873/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=2153659421264980873" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2153659421264980873?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/2153659421264980873?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/On2t0Q34ItE/faq-owsm-1013-what-are-different-types.html" title="FAQ - OWSM 10.1.3: What are the different types of agents OWSM support?" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/06/faq-owsm-1013-what-are-different-types.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CU8BSX04eip7ImA9WxJQGEg.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-4115413506009662927</id><published>2009-06-01T03:45:00.001-07:00</published><updated>2009-06-01T03:57:38.332-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2009-06-01T03:57:38.332-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="innovation" /><title>Google Wave: Going to change the way we would communicate and collaborate</title><content type="html">&lt;div xmlns='http://www.w3.org/1999/xhtml'&gt;&lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;Google Wave made me so excited that I couldn't stop sharing my thoughts on it. It's good in a way that it has prompted me to come out of hibernation and start blogging again.&lt;br/&gt;&lt;br/&gt;Last week during the  Google I/O conference, Google unveiled developer preview of it's new  collaboration tool "&lt;strong&gt;Wave&lt;/strong&gt;" that in my view is going to change  the way we communicate. &lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt; &lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;It's built by the  same &lt;font face='Times New Roman' size='3'&gt;Rasmussen &lt;/font&gt;brothers who built the  famous Google Maps.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;Check out the recorded demo  on youtube here &lt;a title='blocked::http://wave.google.com/' href='http://wave.google.com/'&gt;&lt;font face='Times New Roman' size='3'&gt;http://wave.google.com/&lt;/font&gt;&lt;/a&gt;. Wave runs entirely in a browser, is based on HTML 5 and a new  protocol &lt;a title='blocked::http://www.waveprotocol.org/' href='http://www.waveprotocol.org/'&gt;&lt;font face='Times New Roman' size='3'&gt;http://www.waveprotocol.org/&lt;/font&gt;&lt;/a&gt;.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;Wave will be  interacting with email, IM, blogs, wikis, social networking sites, Document  sharing and revisions, all under a single Wave interface. Wikis which we find  tremendously useful will become thing of the past.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt; &lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;I found 3 features  delivering the "Wow factor"&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;- Sharing is as easy as drag and drop.&lt;br/&gt;- Other person sees  as you type eliminating wait and watch.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;- Playback of change  history&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt; &lt;/div&gt; &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;Also, see &lt;a href='http://www.techcrunch.com/2009/05/28/google-wave-drips-with-ambition-can-it-fulfill-googles-grand-web-vision/'&gt;techcruch  article&lt;/a&gt; covering it.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt; &lt;div&gt; &lt;/div&gt; &lt;div&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='106112909-01062009'&gt;&lt;strong&gt;What are  other notable announcements from the conference?&lt;/strong&gt;&lt;/span&gt;&lt;/font&gt;&lt;/div&gt; &lt;div&gt;&lt;ul&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='106112909-01062009'&gt;AppEngine for Java -  Platform to write webapps in Java that runs on &lt;font face='Times New Roman' size='3'&gt;Google's scalable infrastructure. Google is providing it's own servlet  container, datastore and service interfaces. Authentication will be provided using OAUTH&lt;span class='074301410-01062009'&gt;&lt;font face='Arial' size='2'&gt; , Google's &lt;font face='Times New Roman' size='3'&gt;authentication mechanism&lt;/font&gt;&lt;/font&gt;&lt;/span&gt;. For  more info &lt;a href='http://code.google.com/appengine/docs/java/overview.html'&gt;http://code.google.com/appengine/docs/java/overview.html&lt;/a&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;li&gt;&lt;font face='Arial' size='2'&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Times New Roman' size='3'&gt;Google Elements - easy way to embed google products into websites&lt;br/&gt;&lt;/font&gt;&lt;/span&gt;&lt;/font&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/div&gt;  &lt;div&gt;&lt;span class='106112909-01062009'&gt;&lt;font face='Arial' size='2'&gt;Complete details on  the conference can be found here &lt;a href='http://code.google.com/events/io/'&gt;http://code.google.com/events/io/&lt;/a&gt;.&lt;/font&gt;&lt;/span&gt;&lt;/div&gt;&lt;br/&gt;&lt;br/&gt;&lt;div class='zemanta-pixie'&gt;&lt;img src='http://img.zemanta.com/pixy.gif?x-id=2e17f220-0b17-8324-8b4a-291dd55cbfe3' class='zemanta-pixie-img'/&gt;&lt;/div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-4115413506009662927?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/sY1AwrKIEPVFOL0mTEs1In84CUo/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/sY1AwrKIEPVFOL0mTEs1In84CUo/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/sY1AwrKIEPVFOL0mTEs1In84CUo/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/sY1AwrKIEPVFOL0mTEs1In84CUo/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=njkOoDXvwp0:H_cS6U93T6w:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=njkOoDXvwp0:H_cS6U93T6w:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=njkOoDXvwp0:H_cS6U93T6w:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=njkOoDXvwp0:H_cS6U93T6w:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/4115413506009662927/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=4115413506009662927" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4115413506009662927?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/4115413506009662927?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/njkOoDXvwp0/google-wave-going-to-change-way-we.html" title="Google Wave: Going to change the way we would communicate and collaborate" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2009/06/google-wave-going-to-change-way-we.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0AFQXg8cSp7ImA9WxRREEg.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-7498655853727220925</id><published>2008-09-21T22:01:00.001-07:00</published><updated>2008-09-21T22:01:50.679-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-09-21T22:01:50.679-07:00</app:edited><title>Support tribal children in India through grant from AMEX</title><content type="html">&lt;div&gt;&lt;br /&gt;American Express is providing $2.5 million in funding to carry out winning projects, based on the total votes they receive in the final round of voting. Winning project gets $1.5 million in funding, with the rest $1 million given to the other top 4 out of 5 projects. &lt;br /&gt;&lt;br /&gt;The Jharkand Tribal Project is an investment in a bright future for generations of tribal people - education for children and adults, caring for the environment and providing employment through organic farming practices, preserving indigenous crafts such handcrafts &amp; weaving and preserving cultural identity and values through holistic education. We aim to strengthen the individual in every community by teaching life skills such as yoga and meditation. &lt;br /&gt;&lt;br /&gt;The fullfilling organization for this project is "Art of Living Foundation".&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;script type="text/javascript" src="http://widgets.clearspring.com/o/489381e14f271d66/48d726bcee542fc9/48938c942d18f608/3e528fb8/widget.js"&gt;&lt;/script&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-7498655853727220925?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/UJ53PYzT394HP_id9UjvilHM22k/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UJ53PYzT394HP_id9UjvilHM22k/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/UJ53PYzT394HP_id9UjvilHM22k/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/UJ53PYzT394HP_id9UjvilHM22k/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=9KVrifVT_Us:W169Vy4vH6E:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=9KVrifVT_Us:W169Vy4vH6E:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=9KVrifVT_Us:W169Vy4vH6E:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=9KVrifVT_Us:W169Vy4vH6E:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/7498655853727220925/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=7498655853727220925" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7498655853727220925?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/7498655853727220925?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/9KVrifVT_Us/support-tribal-children-in-india.html" title="Support tribal children in India through grant from AMEX" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2008/09/support-tribal-children-in-india.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEYMSXczcSp7ImA9WxdbEUk.&quot;"><id>tag:blogger.com,1999:blog-6194775689881201187.post-3182980132669764434</id><published>2008-08-07T13:48:00.001-07:00</published><updated>2008-08-07T13:49:48.989-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2008-08-07T13:49:48.989-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Oracle" /><category scheme="http://www.blogger.com/atom/ns#" term="weblogic" /><title>Oracle WebLogic Server 10g Release 3 released</title><content type="html">&lt;div xmlns="http://www.w3.org/1999/xhtml"&gt;After BEA's acquisition by Oracle, the first release of Weblogic server now known as "Oracle Weblogic Server" has been released as Oracle Weblogic Server 10.3. More information including download link is &lt;a href="http://www.oracle.com/technology/products/weblogic/index.html?rssid=rss_otn_news"&gt;available here&lt;/a&gt;.&lt;br /&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/6194775689881201187-3182980132669764434?l=ws-security.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/qH2BVfhTjlvBaSolnbKgACvfBew/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/qH2BVfhTjlvBaSolnbKgACvfBew/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/qH2BVfhTjlvBaSolnbKgACvfBew/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/qH2BVfhTjlvBaSolnbKgACvfBew/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="feedflare"&gt;
&lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:yIl2AUoC8zA"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=yIl2AUoC8zA" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:V_sGLiPBpWU"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dYsHH-DiS68:5s9-r_kF32U:V_sGLiPBpWU" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:dnMXMwOfBR0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=dnMXMwOfBR0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:F7zBnMyn0Lo"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dYsHH-DiS68:5s9-r_kF32U:F7zBnMyn0Lo" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:l6gmwiTKsz0"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?d=l6gmwiTKsz0" border="0"&gt;&lt;/img&gt;&lt;/a&gt; &lt;a href="http://feeds.feedburner.com/~ff/ws-securityblog?a=dYsHH-DiS68:5s9-r_kF32U:gIN9vFwOqvQ"&gt;&lt;img src="http://feeds.feedburner.com/~ff/ws-securityblog?i=dYsHH-DiS68:5s9-r_kF32U:gIN9vFwOqvQ" border="0"&gt;&lt;/img&gt;&lt;/a&gt;
&lt;/div&gt;</content><link rel="replies" type="application/atom+xml" href="http://ws-security.blogspot.com/feeds/3182980132669764434/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="https://www.blogger.com/comment.g?blogID=6194775689881201187&amp;postID=3182980132669764434" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/3182980132669764434?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/6194775689881201187/posts/default/3182980132669764434?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/ws-securityblog/~3/dYsHH-DiS68/oracle-weblogic-server-10g-release-3_07.html" title="Oracle WebLogic Server 10g Release 3 released" /><author><name>Vikas Jain</name><uri>http://www.blogger.com/profile/14997600174472354351</uri><email>noreply@blogger.com</email><gd:extendedProperty name="OpenSocialUserId" value="11402510326173111316" /></author><thr:total xmlns:thr="http://purl.org/syndication/thread/1.0">0</thr:total><feedburner:origLink>http://ws-security.blogspot.com/2008/08/oracle-weblogic-server-10g-release-3_07.html</feedburner:origLink></entry></feed>
