<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-7623656</id><updated>2011-12-14T21:52:23.330-05:00</updated><category term='openid'/><category term='liberty'/><category term='magnetic'/><category term='identity'/><category term='saml'/><category term='beverage tea'/><category term='weird'/><category term='privacy'/><category term='sip'/><category term='china'/><category term='cold fusion'/><category term='tray table'/><category term='google'/><title type='text'>Identity for All - On bits and bytes</title><subtitle type='html'>Adventures in [Pseudony|Vernony|Anony]Mous Digital Identity, Security, the DNS, and all things (I find) whacky ...

Identity matters.  Enterprises need it, applications need it.  It's infrastructure.  Identity4all is my platform for particapation in the 'Identity Conversation'</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>42</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-7623656.post-1669966370517713464</id><published>2008-05-20T21:09:00.000-05:00</published><updated>2008-05-20T21:11:21.030-05:00</updated><title type='text'>FBI indictments raise hope</title><content type='html'>&lt;blockquote&gt;May 19, 2008  BUCHAREST, ROMANIA – Thirty-eight individuals with ties to international organized crime have been charged in two separate indictments involving computer and credit card fraud schemes, Deputy Attorney General Mark R. Filip, Romanian Prosecutor General Laura Codruţa K övesi, U.S. Attorney for the Central District of California Thomas P. O’Brien and Acting U.S. Attorney for the District of Connecticut Nora R. Dannehy announced today.  The Deputy Attorney General made the announcement with the Romanian Prosecutor General to highlight the extensive and continued cooperation between the two countries in addressing these types of international crimes.  The announcement comes less than one month after U.S. Attorney General Michael B. Mukasey announced the Department’s new Law Enforcement Strategy to Combat International Organized Crime.&lt;/blockquote&gt;The FBI, following up on an &lt;a href="http://www.fbi.gov/pressrel/pressrel08/ioc042308.htm"&gt;announcement last month&lt;/a&gt;, has moved into an aggressive mode in &lt;a href="http://newhaven.fbi.gov/dojpressrel/2008/nh051908.htm"&gt;prosecution&lt;/a&gt; for computer crimes.  This indictment includes 33 individuals on 65 counts in Los Angeles, and 7 individuals in Washington, DC involving phishing scams.  It also includes search warrants being issued in Romanian.&lt;br /&gt;&lt;br /&gt;The locations of the operations included: the United States, Canada, Pakistan, Portugal and Romania.&lt;br /&gt;&lt;br /&gt;The phishing scams were mainly target as messages from Citibank, Capital One, JPMorgan Chase &amp;#38; Co., Comerica Bank, Wells Fargo &amp;#38; Co., eBay and PayPal.  All very common subjects for such attacks.&lt;br /&gt;&lt;br /&gt;The role of identity here is unequivocal, and much work remains to be done both on existing protocol strata, including email and SIP, as well as emerging identity protocols, such as &lt;a href="https://www.projectliberty.org/liberty/specifications__1"&gt;Liberty Alliance&lt;/a&gt;, &lt;a href="http://openid.net/developers/specs/"&gt;openID&lt;/a&gt;, and &lt;a href="http://oauth.net/core/1.0/"&gt;Oauth&lt;/a&gt; (to name but a few).&lt;br /&gt;&lt;br /&gt;As these new protocols mature, and their use broadens, they will form the basis for new attack surfaces for such criminal behaviors.  The Liberty Alliance has been focusing some of it's talents directly in this space in the form of the &lt;a href="https://www.projectliberty.org/liberty/strategic_initiatives/id_theft"&gt;Identity-Theft Special Interest group&lt;/a&gt;, and began working on this topic as far back as &lt;a href="https://www.projectliberty.org/liberty/news_events/press_releases/liberty_alliance_white_paper_outlines_federated_identity_s_ability_to_reduce_identity_theft" title="https://www.projectliberty.org/liberty/news_events/press_releases/liberty_alliance_white_paper_outlines_federated_identity_s_ability_to_reduce_identity_theft"&gt;2004&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Oddly, this topic, which has some momentum at earlier IIW events, was not touched as a primary topic at the &lt;a href="http://iiw.idcommons.net/index.php/Iiw2008a"&gt;most recent session&lt;/a&gt;. As an industry, we need to think about reversing this trend.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/id theft" rel="tag"&gt;id theft&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-1669966370517713464?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/1669966370517713464/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=1669966370517713464&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/1669966370517713464'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/1669966370517713464'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2008/05/fbi-indictments-raise-hope.html' title='FBI indictments raise hope'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-6635961757726394472</id><published>2007-05-11T20:42:00.000-05:00</published><updated>2007-05-11T21:03:44.747-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='cold fusion'/><category scheme='http://www.blogger.com/atom/ns#' term='saml'/><category scheme='http://www.blogger.com/atom/ns#' term='identity'/><title type='text'>Know SAML cold</title><content type='html'>I came across &lt;a href="http://www.philduba.com/index.cfm/2006/12/29/SAML-and-ColdFusion-Part-1"&gt;this series&lt;/a&gt; tonight while traipsing through  Technorati  SAML searches.  &lt;a href="http://www.identitymeme.org/"&gt;JeffH&lt;/a&gt;, however, &lt;a href="http://www.philduba.com/index.cfm/2006/12/29/SAML-and-ColdFusion-Part-1#comments"&gt;got there before me&lt;/a&gt;.&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2006/12/29/SAML-and-ColdFusion-Part-1"&gt;SAML and ColdFusion - Part 1&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (December 29, 2006)&lt;/span&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2007/2/9/SAML-and-ColdFusion-Part-2"&gt;SAML and ColdFusion - Part 2&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (February 9, 2007)&lt;/span&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2007/4/16/SAML-and-ColdFusion-Part-3-XML-Digital-Signatures"&gt;SAML and ColdFusion Part 3 : XML Digital Signatures&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (April 16, 2007)&lt;/span&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2007/4/26/SAML-and-ColdFusion-Part-4-Setting-Up-the-Library"&gt;SAML and ColdFusion Part 4 : Setting Up the Library&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (April 26, 2007)&lt;/span&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2007/5/1/SAML-and-ColdFusion-Part-5-Signing-a-Document"&gt;SAML and ColdFusion Part 5 : Signing a Document&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (May 1, 2007)&lt;/span&gt;&lt;br /&gt;&lt;a style="font-family: arial;" href="http://www.philduba.com/index.cfm/2007/5/10/SAML-and-ColdFusion-Part-6-Validating-an-Assertion"&gt;SAML and ColdFusion Part 6 : Validating an Assertion&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (May 10, 2007)&lt;/span&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;Nicely done!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-6635961757726394472?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/6635961757726394472/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=6635961757726394472&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/6635961757726394472'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/6635961757726394472'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/05/know-saml-cold.html' title='Know SAML cold'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-2127618302471420211</id><published>2007-05-11T08:28:00.000-05:00</published><updated>2007-05-11T08:42:41.771-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='google'/><category scheme='http://www.blogger.com/atom/ns#' term='china'/><category scheme='http://www.blogger.com/atom/ns#' term='privacy'/><title type='text'>Privacy and the Almighty Dollar</title><content type='html'>Apparently Google feels that operations in China are &lt;a href="http://www.pcworld.com/article/id,131745-pg,1/article.html"&gt;more important&lt;/a&gt; than user privacy... still.  In a shareholder vote held yesterday, they voted against a proposal which outlined the following:&lt;br /&gt;&lt;blockquote&gt;&lt;ol&gt;&lt;li&gt;Data that can identify individual users should not be hosted in Internet-restricting countries, where political speech can be treated as a crime by the legal system.&lt;/li&gt;&lt;li&gt;The company will not engage in pro-active censorship.&lt;/li&gt;&lt;li&gt;The company will use all legal means to resist demands for censorship. The company will only comply with such demands if required to do so through legally binding procedures.&lt;/li&gt;&lt;li&gt;Users will be clearly informed when the company has acceded to legally binding government requests to filter or otherwise censor content that the user is trying to access.&lt;/li&gt;&lt;li&gt;Users should be informed about the company's data retention practices, and the ways in which their data is shared with third parties. &lt;/li&gt;&lt;li&gt;The company will document all cases where legally binding censorship requests have been complied with, and that information will be publicly available.&lt;/li&gt;&lt;/ol&gt;&lt;/blockquote&gt;While much coverage on this issue has focused on the censorship issues while operating (for example) in China, ignored were the stipulations about disclosure to third parties and data retention practices.&lt;br /&gt;&lt;br /&gt;The shareholders were advised by Google Sr Executives that this measure should be voted down, as it would prohibit their operations in China.  While I understand this point of view, at some point, conscionable corporations are going to have to face data protection, disclosure, and retention issues head on.  Perhaps a more well informed shareholder base will be required to force such practices on public companies.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;1 point for the dollar, 0 for privacy.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-2127618302471420211?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/2127618302471420211/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=2127618302471420211&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/2127618302471420211'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/2127618302471420211'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/05/privacy-and-alimighty-dollar.html' title='Privacy and the Almighty Dollar'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-2754549297196449823</id><published>2007-04-30T20:38:00.000-05:00</published><updated>2007-04-30T21:57:24.327-05:00</updated><title type='text'>PII's Journey - Chapter 1</title><content type='html'>From the “What do two identity architects chat about while waiting for the plane to board” department.&lt;br /&gt;&lt;br /&gt;Companies large and small gather personally identifiable information all the time (never mind that they rarely really need to, other than to fulfill their ill-conceived belief it will  make my experience better or their wallets thicker). The data they  get (lies, generally, unless it's important business) might be sent over &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_0"&gt;TLS&lt;/span&gt; and the like, and may be covered by one or more privacy policies conveniently referenced far-far-away from the 'Submit' button... but there is never any mention what really happens to that data, after it's collected. Follow &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_1"&gt;PII&lt;/span&gt; on it's epic journey through networks, servers and tapes in '&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_2"&gt;PII's&lt;/span&gt; Journey - an EPIC tale'.&lt;br /&gt;&lt;br /&gt;It's a sad sad story....&lt;br /&gt;&lt;br /&gt;Once upon a time, somewhere in one of the happier nooks of the &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_3"&gt;internet&lt;/span&gt;, there was a little bit of data, named &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_4"&gt;PII&lt;/span&gt;, just leaving it's owners computer, destined for important tasks at www.example.com.  It was carefully sent, nice and snug under the covers of it's good friend &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_5"&gt;TLS&lt;/span&gt;, and informed by some pleasing P3P policies, whereby it was assured no harm would befall it upon arrival at it's destination.&lt;br /&gt;&lt;br /&gt;Feeling emboldened by anticipated loving care, it speed into the warm embrace of www.example.com's host, which was clearly identified by the &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_6"&gt;DNS&lt;/span&gt; and the subject of a certificate upon which it's &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_7"&gt;TLS&lt;/span&gt; road was paved (where said &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_8"&gt;cooboration&lt;/span&gt; was of course carried out with the greatest of care).&lt;br /&gt;&lt;br /&gt;Little &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_9"&gt;PII&lt;/span&gt;, arriving in it's new home, is passed most respectfully to &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_10"&gt;WWW's&lt;/span&gt; close friend and helper, apps.example.com, who generally assists in matters more complex than simple HTTP. &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_11"&gt;PII&lt;/span&gt; looks backward, somewhat forlornly, at it's companion and confidant P3P and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_12"&gt;TLS&lt;/span&gt;, who accompanied him on the begin of his epic quest to conduct some important business.&lt;br /&gt;&lt;br /&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_13"&gt;PII&lt;/span&gt; arrives at apps (well it thinks that's her name, anyway), and is quickly swished through memory and swapped about a bit in  apps file system, while apps performs what &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_14"&gt;PII&lt;/span&gt; is certain is most difficult and arduous work. Variables and arrays and other structures serve as short stopping places. &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_15"&gt;PII&lt;/span&gt; sees all sorts of other, unfamiliar and unrelated data too. Some seemed to be in classes, and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_16"&gt;PII&lt;/span&gt; wondered what instruction they were getting, and if they too were there for the same purpose.&lt;br /&gt;&lt;br /&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_17"&gt;PII&lt;/span&gt;  doesn't mind so much the jostling and bumping about, knowing that it's mission is vital.  At last, after what seemed like thousands of milliseconds, it is instructed to rest, with some other &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_18"&gt;PII&lt;/span&gt;, at database.example.com... well, apps told &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_19"&gt;PII&lt;/span&gt; that was his name...  he arrived at a somewhat &lt;span class="blsp-spelling-corrected" id="SPELLING_ERROR_20"&gt;anonymous&lt;/span&gt;-looking dotted quad. Poor &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_21"&gt;PII&lt;/span&gt;, not knowing what to do, and wishing to go home after recent mishandling, finds a row to rest in, and closes it's weary eyes.&lt;br /&gt;&lt;br /&gt;&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_22"&gt;PII&lt;/span&gt; dreams of the good times it spent with &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_23"&gt;TLS&lt;/span&gt; and P3P, all the frolicking about, obediently following the directions of &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_24"&gt;BGP&lt;/span&gt; and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_25"&gt;IP&lt;/span&gt;. It fondly remembers the comforting covenants of Jurisdiction and Purpose... of Recipient and Remedy.  As the dream grows somewhat dark in nature, a shadow of database is seen in the distance, and &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_26"&gt;PII&lt;/span&gt; sees itself moving slowly towards it, completely detached from Purpose and Reason, and with no special protections for its' journey.  After fading into the distant ether, &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_27"&gt;PII&lt;/span&gt; can no longer see itself, and hope's it's copy can remember all the promises made when it first began it's epic voyage.&lt;br /&gt;&lt;br /&gt;Stayed tuned, for the continuing (&lt;span class="blsp-spelling-error" id="SPELLING_ERROR_28"&gt;mis&lt;/span&gt;)adventures of &lt;span class="blsp-spelling-error" id="SPELLING_ERROR_29"&gt;PII&lt;/span&gt;...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-2754549297196449823?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/2754549297196449823/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=2754549297196449823&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/2754549297196449823'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/2754549297196449823'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/04/piis-journey-chapter-1.html' title='PII&apos;s Journey - Chapter 1'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-3283272417920512224</id><published>2007-04-29T08:01:00.000-05:00</published><updated>2007-04-29T08:43:49.929-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='tray table'/><category scheme='http://www.blogger.com/atom/ns#' term='weird'/><category scheme='http://www.blogger.com/atom/ns#' term='magnetic'/><title type='text'>Bewitched flatware</title><content type='html'>George &lt;a href="http://practicalid.blogspot.com/2007/04/knife-real-knife-magnetized.html"&gt;reported&lt;/a&gt; last week the magentic qualities of his flatware.  And were it not for the photograph, none of us would have beleived him.&lt;br /&gt;&lt;br /&gt;I can now report a second sighting of the unusual phenomena.  I, unfortunately, did not have the camera handy, as I was held captive by the &lt;a href="http://traytable.blogspot.com/index.html"&gt;tray table&lt;/a&gt;, and the flight attendant (4/28 UA951 crew .. if your out there, wonderful job, by the way) whisked away the knife before I could capture the event in silicon (does anyone capture events on 'film' anymore?).&lt;br /&gt;&lt;br /&gt;The flatware must have been stored outside the airplane during departure, as it's surface temperature was low enough to bond skin to metal.&lt;br /&gt;&lt;br /&gt;Discussions ensued in Brussels, at the &lt;a href="http://ios.windley.com/wiki/IOSBrussels"&gt;IOS confence&lt;/a&gt; as to the cause of the magnetic charge, but no consensus could be reached.  But it is strangely coincident with the &lt;a href="http://conorcahill.blogspot.com/2007/04/knife-real-knife-like-metal-kind.html"&gt;re-emergence of metal knifes&lt;/a&gt; on flights.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://traytable.blogspot.com/index.html"&gt;&lt;span style="font-weight: bold;"&gt;&lt;/span&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-3283272417920512224?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/3283272417920512224/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=3283272417920512224&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/3283272417920512224'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/3283272417920512224'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/04/bewitched-flatware.html' title='Bewitched flatware'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-4559289022700057322</id><published>2007-04-27T13:45:00.000-05:00</published><updated>2007-04-27T14:57:06.682-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='openid'/><category scheme='http://www.blogger.com/atom/ns#' term='sip'/><category scheme='http://www.blogger.com/atom/ns#' term='saml'/><category scheme='http://www.blogger.com/atom/ns#' term='liberty'/><title type='text'>Trusting SIP</title><content type='html'>My &lt;a href="http://identitymeme.org/"&gt;good friend and colleague&lt;/a&gt; with others have for over a year now been working on a trait-based authorization specification for SIP known to some as '&lt;a href="http://identitymeme.org/archives/2006/03/11/sip-saml-profile-and-binding-internet-draft-published/"&gt;SIP-SAML&lt;/a&gt;' .  This fulfills the requirements outlined in  &lt;a href="http://www.ietf.org/internet-drafts/draft-ietf-sipping-trait-authz-02.txt"&gt;“Trait-based Authorization Requirements for the Session Initiation Protocol (SIP)”&lt;/a&gt;, which specifies bindings and profiles for attribute statements (and assertions) from SAML artifacts. This then informs SIP intermediaries with the necessary material to make policy decisions about handling SIP signals (and the subsequent messages), among other use cases.&lt;br /&gt;&lt;br /&gt;I've &lt;a href="http://netmesh.info/jernst/Comments/openid-voip.html?version=200704161006"&gt;recently discovered&lt;/a&gt; that some have considered applying openID in a (slightly) similar manner for SIP mentioned &lt;a href="http://www.extremevoip.com/article/OpenID+and+VoIP/204651_1.aspx"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;As the above reference articulates, improvements are required to the base openID architecture to accomplish this.  Perhaps a token transformation via &lt;a href="https://www.projectliberty.org/liberty/content/download/871/6189/file/liberty-idwsf-authn-svc-v2.0.pdf"&gt;Liberty Alliance Authentication Service&lt;/a&gt; (pdf)  accomplishes this objective.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-4559289022700057322?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/4559289022700057322/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=4559289022700057322&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/4559289022700057322'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/4559289022700057322'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/04/trusting-sip.html' title='Trusting SIP'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-8107449934866085528</id><published>2007-04-26T14:14:00.000-05:00</published><updated>2007-05-01T22:03:36.625-05:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='beverage tea'/><title type='text'>The swiss beverage empire</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_0lqEvrLonDw/RjD7ddOnu5I/AAAAAAAAAAY/KhJwFVC9LT8/s1600-h/Photo_042407_001.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://3.bp.blogspot.com/_0lqEvrLonDw/RjD7ddOnu5I/AAAAAAAAAAY/KhJwFVC9LT8/s320/Photo_042407_001.jpg" alt="" id="BLOGGER_PHOTO_ID_5057818865017797522" border="0" /&gt;&lt;/a&gt;I'm here in Brussels for the &lt;a href="https://www.projectliberty.org/"&gt;Liberty Alliance&lt;/a&gt; Members meeting and Identity &lt;a href="https://www.projectliberty.org/news_events/events/identity_open_space_co_produced_by_liberty_alliance_and_iiw"&gt;OpenSpace&lt;/a&gt; event, and they have been making certain we maintain our appetites by supplying &lt;a href="http://www.24dash.com/content/news/viewNews.php?navID=7&amp;amp;newsID=7321"&gt;cannabis in liquid form&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;These need to be in the states. Both are quite good. It's a shame that the notion of a cannabis-based beverage &lt;a href="http://drugnewsvault.blogspot.com/2006/07/eat-to-live-cannabis-tea-for-two.html"&gt;would never fly in the US&lt;/a&gt;.&lt;br /&gt;...&lt;br /&gt;I think i need a snack now.&lt;br /&gt;&lt;br /&gt;(Finally found the vendors &lt;a href="http://www.c-ice.co.za/"&gt;website&lt;/a&gt;)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-8107449934866085528?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/8107449934866085528/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=8107449934866085528&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/8107449934866085528'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/8107449934866085528'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2007/04/these-need-to-be-in-states.html' title='The swiss beverage empire'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_0lqEvrLonDw/RjD7ddOnu5I/AAAAAAAAAAY/KhJwFVC9LT8/s72-c/Photo_042407_001.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-114960253958819354</id><published>2006-06-06T08:54:00.000-05:00</published><updated>2006-06-06T10:10:27.723-05:00</updated><title type='text'>Open Space Logo Mashup</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/lap-iiw.0.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer; width: 242px; height: 121px;" src="http://photos1.blogger.com/blogger/3596/478/320/lap-iiw.0.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;I've just registered for the upcomming &lt;a href="http://ios.windley.com/wiki/IOSVan"&gt;Identity Open Space&lt;/a&gt; in Vancouver.  A co-production of the Liberty Alliance and the good folks over at &lt;a href="http://www.kaliyasblogs.net/unconference/"&gt;unconference&lt;/a&gt; and &lt;a href="http://iiw.windley.com/wiki/Workshop2006"&gt;IIW&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;I couldn't resist mixing the logos.&lt;br /&gt;&lt;br /&gt;Hope to see you there.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-114960253958819354?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/114960253958819354/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=114960253958819354&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114960253958819354'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114960253958819354'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/06/open-space-logo-mashup.html' title='Open Space Logo Mashup'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-114459119779614734</id><published>2006-03-14T16:56:00.000-05:00</published><updated>2007-02-04T07:01:29.713-05:00</updated><title type='text'>Liberty Adoption Announced</title><content type='html'>[Lost in my draft bin]&lt;br /&gt;&lt;br /&gt;&lt;a href="https://www.projectliberty.org/index.php"&gt;Liberty Alliance&lt;/a&gt; &lt;a href="https://www.projectliberty.org/press/details.php?item_id=168"&gt;announced&lt;/a&gt; new adoption information.  It's a pretty impressive list and forecast for 2006.&lt;br /&gt;&lt;br /&gt;Some Notable numbers in summary:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;120 million citizen identities in the global e-government sector including deployments in Austria, France, Finland, Norway, the Middle East, Spain and the United States;&lt;/li&gt;&lt;li&gt;585 million identities and devices in the mobile and telecommunications sector with vendors and carriers around the world implementing Liberty Federation and Liberty Web Services for identity-based consumer and enterprise applications;&lt;/li&gt;&lt;li&gt;72 million online service provider users able to leverage Liberty identity specifications for conducting e-commerce and accessing and managing a variety of entertainment and social applications;&lt;/li&gt;&lt;li&gt;20 million Liberty enabled identities in the technology and enterprise sectors with organizations managing B2B, B2E and B2C services based on Liberty Federation and Liberty Web Services.&lt;/li&gt;&lt;/ul&gt;What's more, there are inumberable deployments that are not announced, for various reasons.  I think that is a pretty impressive adoption curve, given that ID-FF 1.2 is only a couple of years old.&lt;br /&gt;&lt;br /&gt;Congrats to the Liberty folks for:&lt;br /&gt;- make this happen&lt;br /&gt;- finding all this deployment data&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/Federated_Identity" rel="tag"&gt;Federated_Identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/identity20" rel="tag"&gt;identity20&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/Liberty_Alliance" rel="tag"&gt;Liberty_Alliance&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-114459119779614734?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/114459119779614734/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=114459119779614734&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114459119779614734'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114459119779614734'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/03/liberty-adoption-announced.html' title='Liberty Adoption Announced'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-114234418619256935</id><published>2006-03-14T08:48:00.001-05:00</published><updated>2006-03-14T08:52:28.570-05:00</updated><title type='text'>Infrequent Visits</title><content type='html'>I checked into a hotel last night in Phoenix, Arizona, and was greeted by a rather amusing placard.&lt;br /&gt;&lt;br /&gt;On the placard, which provided instructions on how to begin an internet session (non WiFi tho... sheesh), it suggested that if you were having trouble connecting, and to ensure you are not viewing a cached page, &lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&amp;#8220;Go to a public website (not an intranet), such as www.msn.com, that you do not normally visit.&amp;#8221;&lt;/blockquote&gt;Is msn.com in that much difficulty, or is this service provider not a fan of Microsoft... perhaps we'll never know.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-114234418619256935?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/114234418619256935/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=114234418619256935&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114234418619256935'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114234418619256935'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/03/infrequent-visits_14.html' title='Infrequent Visits'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-114226070781889627</id><published>2006-03-13T09:37:00.000-05:00</published><updated>2006-03-13T09:45:35.423-05:00</updated><title type='text'>Google - Panoptically speaking</title><content type='html'>&lt;a href="http://www.idcorner.org/"&gt;Stefan Brands&lt;/a&gt; has some interesting material covering &lt;a href="http://www.idcorner.org/?p=97"&gt;panoptical systems&lt;/a&gt; (tho imprecisely labels &lt;a href="https://www.projectliberty.org/resources/specifications.php"&gt;Liberty Specification&lt;/a&gt; with this moniker). The system I fear the most, is the inevitable Google Authentication service, which &lt;a href="http://www.windley.com/"&gt;Phil Windley&lt;/a&gt; reminded me of with &lt;a href="http://www.windley.com/archives/2006/02/using_googles_u.shtml"&gt;his post on the XMPP&lt;/a&gt; underbelly of GTalk.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/Picture%203.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://photos1.blogger.com/blogger/3596/478/320/Picture%203.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;If ever there was ever an enterprise who had the brainpower, software power, and the marketing where-with-all to aggregate all my online activities, process that, and sell as a service to others, Google is that enterprise.&lt;br /&gt;&lt;br /&gt;They've not made any announcements, that I am aware of, but Phil is correct in saying that XMPP is underneath, and thus so is authentication services.  trouble is, among other things, it looks a little too Passport-ish for my taste, and so you won't see me using it.&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align: right; font-size: 10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/Liberty_Alliance" rel="tag"&gt;Liberty_Alliance&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/Privacy" rel="tag"&gt;Privacy&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-114226070781889627?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/114226070781889627/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=114226070781889627&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114226070781889627'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114226070781889627'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/03/google-panoptically-speaking.html' title='Google - Panoptically speaking'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-114200233215874374</id><published>2006-03-07T11:10:00.000-05:00</published><updated>2006-03-10T09:54:18.303-05:00</updated><title type='text'>Identity Face(s|ts)</title><content type='html'>I've been working recently on some new attempts at understanding what exactly is the best way to model Identity Attributes, and &lt;em&gt;who&lt;/em&gt; should or can state them about a user (Alice from here on out).  What I've concluded is that anyone can assert attributes about Alice (truthful or not). Sometimes you can find these assertions, and sometimes you cannot.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/attrbox.jpg"&gt;&lt;img style="float:left; margin:0 10px 10px 0;cursor:pointer; cursor:hand;" src="http://photos1.blogger.com/blogger/3596/478/320/attrbox.jpg" border="0" alt="" /&gt;&lt;/a&gt;There are at least two separate layers for attributes: a horizontal and a vertical.  The horizontal layer represents what can be best described as Alice's vCard.  This layer represents attributes which share commonality across almost any application domain, be it social or otherwise. Other tidbits like personal preferences, the type of cell phone she carries, her iTunes playlists, and whatnot can also be lumped in here (tho in some cases, slices of these end up also in the second layer. more on that in a bit).&lt;br /&gt;&lt;br /&gt;The second 'layer' is comprised of vertical pillars of domain specific attributes. Financial, social, business, Alice's Rock Climbing Club, her neighborhood, etc... these carry both attributes asserted by others, as well as Alice's own attribute statements.&lt;br /&gt;&lt;br /&gt;Reputation systems (attributes asserted by others of Alice) tend to focus only in these vertical domains.  Reputation systems cannot effectively function as a horizontal layer, as the perspective of Alice varies from domain to domain. But proximate domains may borrow reputation and other attributes from one another, tempered and weighted by their proximity to one another.&lt;br /&gt;&lt;br /&gt;So the relevance of Alice's attributes is proportionate to the domains &amp;#8220;distance&amp;#8221;, and tempered by the asserting parties reputation in both domains.&lt;br /&gt;&lt;br /&gt;This introduces the notion of the &amp;#8220;over-layer&amp;#8221; domain, where arbitrary aggregations of attributes from nearby domains define a third dimension.  This domain, rather than being just another vertical domain, is my persona to a given community.&lt;br /&gt;&lt;br /&gt;I've been dabbling with a variation to &lt;a href="http://connectid.blogspot.com/"&gt;Paul Madsen&lt;/a&gt;'s &lt;a href="http://connectid.blogspot.com/2005/07/vector-addition-for-identifiers.html"&gt;Vector Addition for Identifiers&lt;/a&gt;, where the vectors are influenced by these sorts of behaviors between and across domains.  Hope to have that RSN ;-)&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/attributes" rel="tag"&gt;attributes&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/reputation" rel="tag"&gt;reputation&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-114200233215874374?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/114200233215874374/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=114200233215874374&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114200233215874374'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/114200233215874374'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/03/identity-facests.html' title='Identity Face(s|ts)'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113944404454759526</id><published>2006-02-08T19:09:00.000-05:00</published><updated>2006-02-08T19:17:07.430-05:00</updated><title type='text'>Que Syrah^4 part 1</title><content type='html'>Lovely. a Blog Ring experiment.&lt;br /&gt;&lt;br /&gt;I spent tonight in a wonderful restaurant with many of my Liberty Alliance cohorts.  A splendid dining experience in food, spirits and company.  "La Sora Lellea".  _VERY_ highly recommended, and a very fine Sicilian Syrah (x 4 bottles).&lt;br /&gt;&lt;br /&gt;Located on the the Tiber river island of Isola Tiberina in  Roma. What a fabulous restaurant.  This, i think, is my attempt as 'doing as the romans' in Rome.  The service and wine were fabulous. Tahs to Hellmut for the recommendation.&lt;br /&gt;&lt;br /&gt;Of course, you have to like ox tail, pig cheeks, and tripe.  but hey... when in Rome...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://connectid.blogspot.com/2006/02/roman-hospitality.html"&gt;next&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/food" rel="tag"&gt;food&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/blogring" rel="tag"&gt;blogring&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113944404454759526?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113944404454759526/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113944404454759526&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113944404454759526'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113944404454759526'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/02/que-syrah4-part-1.html' title='Que Syrah^4 part 1'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113931994319888744</id><published>2006-02-07T08:42:00.000-05:00</published><updated>2006-02-07T19:29:34.710-05:00</updated><title type='text'>Localization Nits</title><content type='html'>NIT:&lt;br /&gt;&lt;br /&gt;HTTP has the ability (and most browsers support, AFAICT) to convey language preferences... and almost every site i go to seems to merrily ignore it.&lt;br /&gt;&lt;br /&gt;NIT:&lt;br /&gt;&lt;br /&gt;Every time I encounter a language selection list, each language is expressed in the native language of the page (not the language being listed).&lt;br /&gt;&lt;hr/&gt;&lt;br /&gt;Case in point. I'm in Rome this week, and &lt;a href="http://www.google.it/"&gt;Google&lt;/a&gt; (as my homepage) comes up in Italian.  Why?  Cause they 'sense' that my IP address is in Italy, so hey, i must really want the Italian Google page (nifty feature, but not helpful, generally, except maybe for them, as a traffic management and performance solution).  But google.it does not mean i want italian, right?&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/Picture%201.png"&gt;&lt;img style="margin: 0pt 10px 10px 0pt; float: left; cursor: pointer;" src="http://photos1.blogger.com/blogger/3596/478/200/Picture%201.jpg" alt="" border="0" /&gt;&lt;/a&gt; So then i go stumbling around on their links, i find the language preferences, and all the languages are in italian.  Not very helpful.  Since 'english' in Italian  is 'Inglese', it makes for fixing this in the preferences page. FWIW, for future reference, the url for language selection is http://www.google.it/preferences?hl=it ... so change the hl=it bit to hl=en, and walla!&lt;br /&gt;&lt;br /&gt;These sorts of usability issues are hard for some.  We all could do a better job in localization, not just Google.&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/Language" rel="tag"&gt;Language&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/usability" rel="tag"&gt;usability&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113931994319888744?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113931994319888744/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113931994319888744&amp;isPopup=true' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113931994319888744'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113931994319888744'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/02/localization-nits.html' title='Localization Nits'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113900128370120812</id><published>2006-02-03T16:14:00.000-05:00</published><updated>2007-02-19T11:46:20.163-05:00</updated><title type='text'>From the Ironic Names Committee</title><content type='html'>An article on &lt;a href="http://www.cnn.com/2006/US/02/02/dumped.animals/index.html"&gt;Hundreds of Dead Pets found in woods&lt;/a&gt;, I couldn't help but chuckle at the spokesmans name:&lt;br /&gt;&lt;blockquote&gt;The U.S. Forest Service is also taking part in the investigation. Woody Lipps, a spokesman for the agency, said one of the dumping sites was in George Washington National Forest and the perpetrators could face stiff fines.&lt;br /&gt;&lt;br /&gt;"Dumping debris on federal property is a federal misdemeanor, but the attorney's office could decide this was hazardous material and if that's the case, the fines and jail time increase dramatically," Lipps said.&lt;/blockquote&gt;What a great name.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113900128370120812?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113900128370120812/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113900128370120812&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113900128370120812'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113900128370120812'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/02/from-ironic-names-committee.html' title='From the Ironic Names Committee'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113807873981977106</id><published>2006-01-23T23:57:00.000-05:00</published><updated>2006-02-17T12:25:46.373-05:00</updated><title type='text'>Sxip in ... or not</title><content type='html'>&lt;a href="http://connectid.blogspot.com/"&gt;Paul Madsen's&lt;/a&gt; post on Sxore got my to waltz on over and read up on what it's up to.  What i found was not quite as expected... From 'An Identity 2.0 Company' anyway).&lt;br /&gt;&lt;br /&gt;It stared with the irony that &lt;a href="http://www.sxore.com/"&gt;Sxore&lt;/a&gt;, from the people that brought you &lt;a href="http://sxip.com/"&gt;Sxip&lt;/a&gt;, and &lt;a href="http://identity20.com/"&gt;Identity2.0&lt;/a&gt;, and purveyors of all things good in decentralized identity systems and designs (a Good Thing), ask that you '&lt;a href="http://www.sxore.com/copy/faq/#how_account"&gt;create and account&lt;/a&gt;' with them, and '&lt;a href="http://www.sxore.com/copy/faq/#where_account_stored"&gt;store your account information in the Sxore system&lt;/a&gt;'?&lt;br /&gt;&lt;br /&gt;Sigh. I thought the days of federation were nearing.  I hope I am mistaken, and if i enroll, they ask me to federate to my Homesite (at least) or my &lt;a href="http://openid.net/"&gt;openID&lt;/a&gt;, &lt;a href="http://lid.netmesh.org/"&gt;LID&lt;/a&gt; (or better, &lt;a href="http://yadis.org/"&gt;YADIS&lt;/a&gt;). But the &lt;a href="http://www.sxore.com/copy/faq/"&gt;FAQ&lt;/a&gt; leaves my less than optimistic.&lt;br /&gt;&lt;br /&gt;Better by far... I could federate with the Sxore service to my Identity Provider via &lt;a href="http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=security"&gt;SAML2&lt;/a&gt;, point to my &lt;a href="https://www.projectliberty.org/resources/specifications.php#box2"&gt;Liberty People Service&lt;/a&gt; for a more seamless experience, for folks i already know, to  comment on my blog (which i moderate for the very reason Sxip created Sxore).&lt;br /&gt;&lt;br /&gt;I _would_ like to be able to have a reputation system which maps back to &lt;em&gt;this&lt;/em&gt; blog (not that it has much of a readership), not the Sxore identity.&lt;br /&gt;&lt;br /&gt;Further reading of the Sxore FAQ shows a few more flys in the Identity Ointment:&lt;br /&gt;&lt;blockquote&gt;Since each sxore account can only be associated with a single blog, you might want to have a sxore account for each of your blogs. However, each sxore account requires a unique email address; you must use a different address for each of your sxore accounts.&lt;/blockquote&gt;... so i get to make a plethora of identities, each requiring a unique email address ???&lt;br /&gt;&lt;blockquote&gt;Comments and tags are stored on the sxore comment server, but are displayed on the blog. In a future version of sxore, we intend to provide an API that will allow blog sites to extract their comments and tags from the sxore comment server.&lt;/blockquote&gt;... so the comment thread is the property of who, exactly??  Although they have something with RSS feeds of the comments.  something not all Weblog software have.&lt;br /&gt;&lt;blockquote&gt;Can I automatically approve or delete comments from certain people?&lt;br /&gt;+ Yes. When you moderate comments, use the Approve and Whitelist button to automatically approve future comments from the comment author. (The comments are still displayed in your inbox so that you get comment notifications and can post comment responses.) Similarly, use Delete and Blacklist to automatically delete future comments from the comment author.&lt;/blockquote&gt;... this is the perfect use case for the Liberty People Service (and using federated identifiers, eliminating the need for a Sxore account!).&lt;br /&gt;&lt;br /&gt;So I urge Sxip and Sxore to become self-interoperable.  It's hard enough to get interoperability across multiple specifications and vendors, but at least support your own identity protocols!&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/Federated_Identity" rel="tag"&gt;Federated_Identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/identity20" rel="tag"&gt;identity20&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/Liberty_Alliance" rel="tag"&gt;Liberty_Alliance&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/SAML" rel="tag"&gt;SAML&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113807873981977106?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113807873981977106/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113807873981977106&amp;isPopup=true' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113807873981977106'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113807873981977106'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/01/blog-post.html' title='Sxip in ... or not'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113761321502182480</id><published>2006-01-18T14:40:00.000-05:00</published><updated>2006-01-18T19:58:07.860-05:00</updated><title type='text'>Tag, You're It</title><content type='html'>&lt;div&gt;&lt;a href="http://www.cnn.com/"&gt;CNN&lt;/a&gt; posted a &lt;a href="http://www.cnn.com/rssclick/2006/TECH/ptech/01/09/chip.implants.reut/index.html?section=cnn_tech"&gt;story recently&lt;/a&gt; on using RFID technology which has been used for years in dogs (and i suppose other critters) for identification, and applying this to people. It reports:&lt;/div&gt;&lt;blockquote&gt;&lt;em&gt;With a wave of his hand, Amal Graafstra, a 29-year-old entrepreneur based in Vancouver, Canada, opens his front door. With another, he logs onto his computer.&lt;/em&gt;&lt;/blockquote&gt;&lt;div&gt;It's always nice to find more shortcuts in life (how many times have we locked ourselves out of our car?), but the trouble with these sorts of technologies, is they neglect to consider the potential for nefarious uses.&lt;br /&gt;&lt;br /&gt;The US Govt &lt;a href="http://www.wired.com/news/privacy/0,1848,65412,00.html"&gt;explored&lt;/a&gt; RFID enabled passports (and promptly got rebuked for &lt;a href="http://www.epic.org/privacy/us-visit/foia/mockpoe_res.pdf"&gt;flaws&lt;/a&gt; [PDF]), yet another example of applying the technology, but neglecting the concequences.&lt;br /&gt;&lt;br /&gt;Even if the tag carries nothing more than some unique identifier, it's that identifier that introduces the privacy invasion. Picture Walmart putting tag readers on all the store shelves, and observe how one looks at and handles which products. Over time, they can amass significant knowledge of ones shopping behaviour.&lt;/div&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/Privacy" rel="tag"&gt;Privacy&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/RFID" rel="tag"&gt;RFID&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113761321502182480?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113761321502182480/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113761321502182480&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113761321502182480'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113761321502182480'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/01/tag-youre-it.html' title='Tag, You&apos;re It'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113648212532541349</id><published>2006-01-05T12:26:00.000-05:00</published><updated>2006-01-05T12:28:45.446-05:00</updated><title type='text'>an 'eye' for SSO</title><content type='html'>&lt;a href="http://connectid.blogspot.com/"&gt;Paul Madsen&lt;/a&gt; over at connectID &lt;a href="http://connectid.blogspot.com/2005/12/isso-authentication-context.html"&gt;comments&lt;/a&gt; on the i-Names i-SSO specification:&lt;br /&gt;&lt;a href="http://connectid.blogspot.com/2005/12/isso-authentication-context.html"&gt;&lt;br /&gt;&lt;/a&gt;&lt;p style="text-indent:20pt;"&gt;Looking at the i-names SSO (ISSO) spec being defined at XDI.org, they account for some minimum password strengths by which users MUST authenticate to their i-Broker (within the XDI.org community)&lt;/p&gt;&lt;p style="text-indent:20pt;"&gt;&lt;span style="font-family:Arial;color:#282690;font-size:10pt;"&gt;To help prevent dictionary attacks, XDI.ORG MUST specify a minimum password strength required of all ISSO accounts in the XDI.ORG network.&lt;/span&gt;&lt;span style="font-family:Arial;color:#282690;font-size:10pt;"&gt;&lt;strong&gt;&lt;br /&gt;&lt;/strong&gt;&lt;/span&gt;&lt;/p&gt;&lt;p style="text-indent:20pt;"&gt;As they use SAML 2.0 as the protocol by which the Website requests an authentication and by which the i-Broker responds, it seems strange that they don't refer to SAML 2.0's Authentication Context as the mechanism for defining such minimum authentication requirements.&lt;/p&gt;In fact, the next revision to this draft (which i am penning as we speak) does, in fact do that.  It will also define a couple new profiles, and two new authN contexts (enhancements really, not new).&lt;br /&gt;&lt;br /&gt;&lt;p style="text-indent:15pt;"&gt;&amp;#8226; XRI-based services discovery profile which allows for the determination of an Authentication Authority based on an iName (XRI)&lt;br /&gt;&amp;#8226; Slight variant on Web Browser SSO Profile (adding requirements for the new contexts)&lt;br /&gt;&amp;#8226; contexts which add some defenses against phishing&lt;/p&gt;Stay tuned here or over at &lt;a href="http://xdi.org/"&gt;XDI.org&lt;/a&gt;, where the specs formally live for the next release.&lt;br /&gt;&lt;br /&gt;&lt;!-- technorati tags start --&gt;&lt;p style="text-align:right;font-size:10px;"&gt;Technorati Tags: &lt;a href="http://www.technorati.com/tag/identity" rel="tag"&gt;identity&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/iSSO" rel="tag"&gt;iSSO&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/SAML" rel="tag"&gt;SAML&lt;/a&gt;, &lt;a href="http://www.technorati.com/tag/XRI" rel="tag"&gt;XRI&lt;/a&gt;&lt;/p&gt;&lt;!-- technorati tags end --&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113648212532541349?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113648212532541349/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113648212532541349&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113648212532541349'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113648212532541349'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2006/01/eye-for-sso.html' title='an &apos;eye&apos; for SSO'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113272146512292747</id><published>2005-11-22T23:37:00.000-05:00</published><updated>2005-12-15T07:39:49.090-05:00</updated><title type='text'>A whole lot of identities</title><content type='html'>I've been catching up on my blog role, finally... and found a dirth of postings regarding &lt;a href="http://www.networkworld.com/news/2005/111705-microsoft-identity.html"&gt;Microsoft's recent smiting of SAML&lt;/a&gt; which quotes:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;Microsoft will soon start shipping "a whole lot" of servers that use WS-Federation protocols, and those client computers will be compatible, Schmidt said.&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Wow. so, "a whole lot of computers".  Good. I fell better now ;-)  Really, I have no qualms about supporting WS-Trust and InfoCard.  In fact, there is no reason SAML tokens could not be used within the InfoCard architecture, as near as I can tell... we'll see what pops out of the OASIS WS-SX Technical Committee at OASIS.  Before that, who knows, really.&lt;br /&gt;&lt;br /&gt;I had high hopes that Microsoft would support SAML in at least the InfoCard architecture, and &lt;a href="http://www.identityblog.com/"&gt;Kim&lt;/a&gt; was one who had given me confidence in that aspiration. But he's &lt;a href="http://www.identityblog.com/2005/11/05.html#a365"&gt;blogged recently&lt;/a&gt;:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;I have been tireless in arguing the need to support new token formats essential to such [identity meta] systems - rejecting the prevelant bugaboo that we should limit all future technology to SAML and then congratulate ourselves on how clever we are. Isn't that OK too?&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Well, yes it's OK.  Of course, I'm not sure who's actually saying that SAML should just be adopted by everyone, and we can all go home.  Perhaps IT Executives who are waiting for the dust to settle a bit over WS-Fed vs SAML are eager to at least see some effort at convergence... but it seems that is less likely to happen, given this recent sentiment.&lt;br /&gt;&lt;br /&gt;But I would say that SAML enjoys broad support and adoption.  Tens ... maybe even hundreds... of millions of users are serviced by SAML-based protocols today.  I think that is a "whole lot of identities", which is just (if not more) demonstrable of success and broad adoption, than "soon shipping"... "a whole lot of computers".&lt;br /&gt;&lt;br /&gt;Tags: &lt;a href="http://www.technorati.com/tag/Identity" rel="tag"&gt;Identity&lt;/a&gt; | &lt;a href="http://www.technorati.com/tag/SAML" rel="tag"&gt;SAML&lt;/a&gt; | &lt;a href="http://technorati.com/tag/Digital+Identity" rel="tag"&gt;Digital Idenitity&lt;/a&gt; | &lt;a href="http://technorati.com/tag/WS-Trust" rel="tag"&gt;WS-Trust&lt;/a&gt; | &lt;a href="http://technorati.com/tag/infocard" rel="tag"&gt;Info Card&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113272146512292747?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113272146512292747/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113272146512292747&amp;isPopup=true' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113272146512292747'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113272146512292747'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/11/whole-lot-of-identities.html' title='A whole lot of identities'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113142245557130577</id><published>2005-11-07T23:00:00.000-05:00</published><updated>2005-11-07T23:29:15.006-05:00</updated><title type='text'>Eclipsing Identity</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/identity_topo_w_drm.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://photos1.blogger.com/blogger/3596/478/200/identity_topo_w_drm.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Ben Hyde &lt;a href="http://enthusiasm.cozy.org/archives/2005/11/what-do-i-need-line-for-when-i-have-color/"&gt;suggested&lt;/a&gt; some potential revisions to my Identity Topology, necessitating a v1.1 of my &lt;a href="http://identity4all.blogspot.com/2005/11/topology-of-identity-standards.html"&gt;Identity Specs Topology&lt;/a&gt;. Well, I'm not quite ready for v1.1 just yet (as the lawyers have not finished convening on v1.0 IPR issues yet). But... I thought I would share one draft diagram I had, which included DRM, using the shadow technique he recommended.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113142245557130577?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113142245557130577/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113142245557130577&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113142245557130577'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113142245557130577'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/11/eclipsing-identity.html' title='Eclipsing Identity'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-113115867519209827</id><published>2005-11-04T21:30:00.000-05:00</published><updated>2005-11-16T12:03:24.856-05:00</updated><title type='text'>The topology of Identity Standards</title><content type='html'>&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://photos1.blogger.com/blogger/3596/478/1600/identity-standards-landscape.0.jpg"&gt;&lt;img style="margin: 0pt 0pt 10px 10px; float: right; cursor: pointer;" src="http://photos1.blogger.com/blogger/3596/478/320/identity-standards-landscape.0.jpg" alt="" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I've seen many times, a plee for some kind of 'map', allowing a developer or other interested party, a means to navigate the exploding space of identity-oriented protocols/specifications (esp Federation Protocols).  I started a diagram some time ago with every imaginable specification I could dream of. Suffice to say, it was large, and illedgable, even for the composer.&lt;br /&gt;&lt;br /&gt;I promptly ditched that , and opted for this diagram, which drops many (very relavant) bodies of work, but captures the present trend of specifications relating to this space.  It includes directional relationships and venues (mostly standards bodies) where the evolution of the specification is being nurtured.&lt;br /&gt;&lt;br /&gt;If you read this blog, and notice the ommition of something you feel is relavant, feel free to contact me/comment here, and i'll try to update it.&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-113115867519209827?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/113115867519209827/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=113115867519209827&amp;isPopup=true' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113115867519209827'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/113115867519209827'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/11/topology-of-identity-standards.html' title='The topology of Identity Standards'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-112776232774434244</id><published>2005-09-26T14:18:00.000-05:00</published><updated>2005-11-04T14:55:25.340-05:00</updated><title type='text'>pseudo-science has an identity crisis</title><content type='html'>&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family:arial;"&gt;I have a little shrine in the lab where i work entitled 'Zenful moments in the lab', where quippy and astonishing events and articles get memorialized on one of the racks.&lt;/span&gt;&lt;p style="font-family: arial;"&gt;&lt;br /&gt;The first member, was an article (which appears to have never made the leap to the web), in which a scientist at the Brisbane College of Zoological studies concludes that duck's do not quack, they make a sound more like 'ah ah'!  And if that is not quite enough research, they went on to conclude:&lt;br /&gt;&lt;/p&gt;&lt;ul style="font-family: arial;"&gt;&lt;br /&gt;&lt;li&gt;Cows say 'eh-muh'&lt;br /&gt;&lt;/li&gt;&lt;li&gt;dogs say 'eh-ruh'&lt;br /&gt;&lt;/li&gt;&lt;li&gt;but amazingly enough, cats do in fact make the sound 'meow'&lt;/li&gt;&lt;/ul&gt; &lt;span style="font-family:arial;"&gt;Now, by itself, this would not have allowed this article to get such an honorable placement in our shrine, but the kicker was that this research was funded, to the tune of $290 million (australian) by the Australian parliment.&lt;/span&gt;  &lt;span style="font-family:arial;"&gt;The second inductee was a website &lt;/span&gt;&lt;a style="font-family: arial;" href="http://www.summum.us/summum.shtml"&gt;promoting contenporary mumification&lt;/a&gt;&lt;span style="font-family:arial;"&gt; to &lt;/span&gt;&lt;a style="font-family: arial;" href="http://summum.kids.us/"&gt;kids&lt;/a&gt;&lt;span style="font-family:arial;"&gt;.  Wow.  the particularly disturbing &lt;/span&gt;&lt;a style="font-family: arial;" href="http://summum.kids.us/images/jpg/mummysisters.jpg"&gt;image&lt;/a&gt;&lt;span style="font-family:arial;"&gt; of kids interviewing dad the mummy in the livingroom! Or the bear which comes with removable organs and wrappings.&lt;/span&gt;  &lt;span style="font-family:arial;"&gt;&lt;br /&gt;&lt;br /&gt;Most recently, a series of articles have been popping about revolving around the teaching of creationism in the public school system.  What first caught my attention was a washington post article: &lt;/span&gt;&lt;a style="font-family: arial;" href="http://www.washingtonpost.com/wp-dyn/content/article/2005/09/24/AR2005092401262.html"&gt;In Evolution Debate, Creationists Are Breaking New Ground&lt;/a&gt;&lt;span style="font-family:arial;"&gt; in which is covered the soon to be openned &lt;/span&gt;&lt;a style="font-family: arial;" href="http://www.answersingenesis.org/museum/"&gt;Creation Museum&lt;/a&gt;&lt;span style="font-family:arial;"&gt;. "'We're placing this one in the hall that explains the post-Flood world,' explains the guide. 'When dinosaurs lived with man.' .. again... WOW!  Of course, they are up to date with technology.  they even have their own &lt;/span&gt;&lt;a style="font-family: arial;" href="http://info.answersingenesis.org/museum/"&gt;blog.&lt;/a&gt;&lt;span style="font-family:arial;"&gt; &lt;/span&gt;   &lt;span style="font-family:arial;"&gt; &lt;br /&gt;&lt;br /&gt;It seems, in the lobby they have a &lt;/span&gt;&lt;a style="font-family: arial;" href="http://www.answersingenesis.org/museum/walkthrough/displaypic.asp?PhotoID=10"&gt;mural&lt;/a&gt;&lt;span style="font-family:arial;"&gt; captioned by their website: &lt;/span&gt;&lt;span style="font-family:arial;"&gt;"Imagine soaring cypress trees, the sounds of waterfalls&lt;/span&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://www.answersingenesis.org/museum/walkthrough/images/Front-Entrance.jpg"&gt;&lt;img style="cursor: pointer; width: 200px;" src="http://www.answersingenesis.org/museum/walkthrough/images/Front-Entrance.jpg" alt="" align="right" border="0" /&gt;&lt;/a&gt;&lt;span style="font-family:arial;"&gt; and children playing with dinosaurs!  What other surprises await?"  well, what a lovely mental image that has.  especially the one the probably didn't paint of the famished &lt;/span&gt;&lt;a style="font-family: arial;" href="http://www.google.com/search?svnum=10&amp;hl=en&amp;amp;amp;amp;amp;amp;amp;amp;lr=&amp;client=flock&amp;amp;rls=FlockInc.:en-US:unofficial&amp;q=velociraptor%20eating%20children&amp;amp;btnG=Search&amp;sa=N&amp;amp;tab=iw"&gt;velociraptor eating the children&lt;/a&gt;&lt;span style="font-family:arial;"&gt; (Is it me, or is it astonishing that google locates greater than 27,000 pages for this search).&lt;/span&gt;   &lt;span style="font-family:arial;"&gt;&lt;br /&gt;&lt;br /&gt;The fact that there is such a title as 'Creationist Paleontologist' is kinda like saying there are chefs at McDonalds.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-112776232774434244?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/112776232774434244/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=112776232774434244&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/112776232774434244'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/112776232774434244'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/09/pseudo-science-has-identity-crisis.html' title='pseudo-science has an identity crisis'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111530314270221613</id><published>2005-05-05T09:25:00.000-05:00</published><updated>2005-05-05T10:01:42.140-05:00</updated><title type='text'>Wither Circles of Trust ... Again ...</title><content type='html'>&lt;a href="http://www.networkworld.com/"&gt;Network World&lt;/a&gt;'s &lt;a href="http://www.vquill.com/"&gt;Dave Kearns&lt;/a&gt; has written several articles on this subject, most recently &lt;a href="http://www.networkworld.com/newsletters/dir/2005/0418id1.html"&gt;Where is Liberty Alliance's consumer-oriented Circle of Trust?&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;We were supposed to have had an announcement of a major, consumer-oriented Circle of Trust by the end of 2004. I'm still waiting.&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;and another which came in the daily Network World Email newsletter (not yet in archive).&lt;br /&gt;&lt;br /&gt;I agree completely that these specifications are not for the faint of heart (which is why most of the Fortune 1000 leave this to the &lt;a href="https://www.projectliberty.org/activities/conformant_products.php#IDWSF"&gt;vendors to build&lt;/a&gt;).  One aspect most vendors cannot solve for them is the legal agreements required for the formation of 'Circles of Trust' (There are some vendors which DO provide services in this space).  This is precisely why the Alliance is turning some of it's pens towards non-technical advice and analysis of these challenges.  The most recent being &lt;a href="http://www.projectliberty.org/specs/Circles_of_Trust_Legal_Framework_White_Paper_322200522576.pdf"&gt;"Circles of Trust: The Implications of EU Data Protection and Privacy Law for Establishing a Legal Framework for Identity Federation"&lt;/a&gt;, which Dave references in his article.&lt;br /&gt;&lt;br /&gt;As for the apparent lack of Consumer facing deployments?  Well, I can assure you they are there.  Not in vast numbers, granted.  The motivations for the deployments to date are (to the best of my knowledge) strategic in nature; part of the infrastructure.  Deployments that are firmly committed to open, Identity Oriented Architectures will embed Liberty specifications INTO the networks and services they offer.  Consumers may never be aware that Liberty protocols are under the hood of the services they use.  Rather, they will experience ease of use and privacy-protecting interactions when service providers request authentication and attributes about them.&lt;br /&gt;&lt;br /&gt;Liberty has focused it's brand primarily on the vendor and customer communities through it's conformance programs. These are the adopters, where-as consumers and employees are the beneficiaries.&lt;br /&gt;&lt;br /&gt;Tags: &lt;a href="http://www.technorati.com/tag/Identity" rel="tag"&gt;Identity&lt;/a&gt; | &lt;a href="http://www.technorati.com/tag/Privacy" rel="tag"&gt;Privacy&lt;/a&gt; | &lt;a href="http://technorati.com/tag/Liberty+Alliance" rel="tag"&gt;Liberty Alliance&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111530314270221613?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111530314270221613/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111530314270221613&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111530314270221613'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111530314270221613'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/05/wither-circles-of-trust-again.html' title='Wither Circles of Trust ... Again ...'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111516352701824740</id><published>2005-05-03T18:38:00.000-05:00</published><updated>2005-05-03T18:45:09.933-05:00</updated><title type='text'>Diagrams of Identity</title><content type='html'>The Technorati &lt;a href="http://technorati.com/tag/identity"&gt;Identity tag&lt;/a&gt; lead me squarely &lt;a href="http://www.flickr.com/photo_zoom.gne?id=11357650&amp;amp;size=o"&gt;here&lt;/a&gt; at &lt;a href="http://www.flickr.com/people/choconancy/"&gt;Nancy White&lt;/a&gt;'s photo blog w/flickr.&lt;br /&gt;&lt;br /&gt;Since I tend to think pictorally, just like this (and have a growing collection of mind-maps myself), I thought I'd blog this one up the stack a bit (and a mental bookmark).&lt;br /&gt;&lt;br /&gt;What this map really demonstrates is the true relativity of Identity.  Given some completely &lt;a href="http://www.rfidnews.org/library/2005/04/28/colorado-hospital-uses-prox-cards-single-signon-and-sonar-to-secure-patient-records-and-meet-hipaa/"&gt;different context&lt;/a&gt;, the map shows compliance, strong authentication, and patient privacy.&lt;br /&gt;&lt;br /&gt;So Nancy, the next time you make this great diagram centered on Identity, push the edges a bit, and lets see how diverse these perspectives really are! I'd bet some would recoil and others rejoice!  I cannot help but wonder if Identity Perspectives will ever allow &lt;a href="http://identitycommons.net/"&gt;Identity Commons&lt;/a&gt;?&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111516352701824740?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111516352701824740/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111516352701824740&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111516352701824740'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111516352701824740'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/05/diagrams-of-identity.html' title='Diagrams of Identity'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111482901975455998</id><published>2005-04-29T21:43:00.000-05:00</published><updated>2005-04-29T21:43:39.753-05:00</updated><title type='text'>Immeasurable Steps for Quantum crypto</title><content type='html'>&lt;a href="http://www.theregister.co.uk/"&gt;The Register&lt;/a&gt; &lt;a href="http://www.theregister.co.uk/2005/04/28/quantum_crypto/"&gt;reports&lt;/a&gt; that while there are a few Quantum Crypto vendors shipping goods today, recent developments show that this technology is rapidly emerging, and has the properties of being deployable.&lt;br /&gt;&lt;br /&gt;Cost and requirements for dedicated pair-wise fiber links between parties (up to a few dozen kilometers) will impeed broad deployments in areas other than (perhaps) financial services, telecoms industry and the media.  This will change, and there are claims for the development of other key distribution transports, which will bolster the adoption curve, and mitigate the distance problem.&lt;br /&gt;&lt;br /&gt;With keen interest, I read that &lt;a href="http://www.toshiba-europe.com/research/"&gt;Toshiba Research Europe&lt;/a&gt; has applied Quantum crypto for protecting streaming video... With new encryption keys for every frame, theft on-the-wire will become exceedingly impractical, too costly relative to the value of the pilfered content.&lt;br /&gt;&lt;br /&gt;I watch this with continued admiration of the research community... &lt;br /&gt;&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111482901975455998?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111482901975455998/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111482901975455998&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111482901975455998'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111482901975455998'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/04/immeasurable-steps-for-quantum-crypto.html' title='Immeasurable Steps for Quantum crypto'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111439904900466643</id><published>2005-04-24T22:17:00.000-05:00</published><updated>2005-04-24T22:22:17.436-05:00</updated><title type='text'>Where are the customers</title><content type='html'>&lt;a href="http://www.identitywoman.net/"&gt;Identity Woman&lt;/a&gt; asks &lt;a href="http://identitywoman.kaliyasblogs.net/archives/2005/04/where_are_the_c.htm"&gt;"Where are the customers"&lt;/a&gt;...  well, i can say for certain that there have been circles of trust formed in 2004, some quite large.  having &lt;a href="http://magazine.digitalidworld.com/Jun04/Page42.pdf"&gt;been there&lt;/a&gt;, i can say this stuff does not come easily.  And it's not the technology.  &lt;a href="http://www.identityblog.com/"&gt;Marc&lt;/a&gt; recently wrote about this &lt;a href="http://www.identityblog.com/2005/04/20.html#a204"&gt;here &lt;/a&gt; saying &lt;quote&gt;&lt;blockquote&gt;&lt;span style="font-style: italic;"&gt;The legal complexities of this style of federation are significant, and they must all be considered.&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-style: italic;"&gt;&lt;/span&gt;&lt;/quote&gt; Absolutely, and the bigger the radius, the greater the degree of complexity (and the number of lawyers... there's a joke in there somewhere...).&lt;br /&gt;&lt;br /&gt;So while perhaps &lt;a href="http://www.pcworld.com/news/article/0,aid,114166,00.asp"&gt;AOL's circle&lt;/a&gt; and a few others that have formed are not awe inspiring (yet). I think given that these standards are not yet even three years young, they've gone a long way fast. But look at the &lt;a href="http://projectliberty.org/press/details.php?item_id=78"&gt;commercial software support&lt;/a&gt;. So, pulling out my old (dusty) IT Architect calculator with integrated time sink-hole estimator:&lt;br /&gt;&lt;blockquote&gt;[Spec release] + [CoTs development]*2 +&lt;br /&gt;([Corp Sponsorship]^2 + [IT planning] + [IT development] +&lt;br /&gt;[marketing something-or-other]/[very small number less than 1] + [role-out])*2&lt;br /&gt;= [something north of 3 years]&lt;/blockquote&gt;So perhaps the early movers have done so... i'd venture 2005 we'll see some more interesting Circles take shape.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111439904900466643?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111439904900466643/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111439904900466643&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111439904900466643'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111439904900466643'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/04/where-are-customers.html' title='Where are the customers'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111408952329524156</id><published>2005-04-21T08:18:00.000-05:00</published><updated>2005-05-03T18:18:00.140-05:00</updated><title type='text'>Reflecions for "The Identity Corner » Liberty Alliance on data protection and privacy"</title><content type='html'>I recently completed reading &lt;a href="http://www.idcorner.org/index.php?p=95"&gt;Stefan Brands post&lt;/a&gt; reviewing Liberty's &lt;a href="http://www.projectliberty.org/specs/Circles_of_Trust_Legal_Framework_White_Paper_322200522576.pdf"&gt;“Circles of Trust: The Implications of EU Data Protection and Privacy Law for Establishing a Legal Framework for Identity Federation“&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;First, I'm thankful for the review. External commentary is extremely valuable, as those of us working on these problems in standards bodies crave new input. I think some clarifications, however, are required for proper analysis of the &lt;a href="http://www.projectliberty.org/resources/specifications.php"&gt;Liberty Specification&lt;/a&gt; suite. This review results in two recommendations:&lt;br /&gt;&lt;blockquote&gt;&lt;br /&gt;&lt;span style="font-style: italic;"&gt;&lt;ul&gt;&lt;li&gt;User-centric data flows for directing (properly authenticated and protected) identity and attribute assertions through the data subjects themselves in a manner that gives each data subject fine-grained selective disclosure capability over identity and attribute assertions made about him or her, and &lt;/li&gt;     &lt;li&gt;Genuine privacy-preserving authentication technologies – as opposed to the current smoke-and-mirrors “pseudonyms” of Liberty Alliance, which are not pseudonyms at all but centrally assigned aliases.&lt;/li&gt; &lt;/ul&gt;&lt;/span&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;The primary error in this analysis (and thus the resulting recommendations) is some presumption of the locations/ownership of the architectural elements:&lt;br /&gt;+ Service Providers [SP] (who rely on assertions from a trusted party),&lt;br /&gt;+ Identity Providers [IDP] (who may or may not be an 'anchor' of trust in the network),&lt;br /&gt;+ Attribute Authorities [AA] (who may be trusted by the principal for managing their data 'at-rest' and 'in-motion')&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;These entities in fact can (and do) express themselves into networks in many ways. While it is true that in one form, the IDP and AP may be operated by institutional bodies (corporations, governments, public trusts, etc...), it is equally true that a principal can control these functions themselves, on their own terms, with their own policies, even on their own hosts. In addition, it is likely that a single principal will have many attribute authorities, even for a single service type, creating distributed data-web's. Implimentations may choose from many deployment paradigms.&lt;br /&gt;&lt;br /&gt;This satisfies the first recommendation, and can be implemented using current versions of the Liberty Alliance Specifications suite ID-WSF 1.x in conjunction with &lt;a href="http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=security#samlv20"&gt;SAML v2.0&lt;/a&gt; (as a footnote, the panoptic discussion is more properly placed with the &lt;a href="http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=security"&gt;OASIS SSTC&lt;/a&gt;, rather than Liberty).&lt;br /&gt;&lt;br /&gt;Of course, there are negative privacy consequences when everything (authentication and attribute assertions) are sourced from a single point. Most notably, triangulation of the subject of these assertions due to single points of origin.&lt;br /&gt;&lt;br /&gt;Further, user control of some attributes will be inappropriate. Attributes which are assigned to a principal such as credit cards (card issuing bank is the authority), identification numbers (governments assign drivers license numbers), and health care records (which are create and maintained by health care providers). Relying parties of such assertions a better served by assertions from the assignment authority, rather than some measure of confidence that the principal is stating fact.&lt;br /&gt;&lt;br /&gt;To the topic of pseudonym manufacture, thus, clearly given a deployment described above, where the principal themselves may choose to operate their own authentication service (perhaps populated with security tokens obtained from elsewhere or locally). This would then satisfy the second observation.&lt;br /&gt;&lt;br /&gt;I'm greatful for you pointing these things out, as it underscores just how composable the framework has become. The wonderful thing about open standards... everyone can read, review, comment, implement and deploy upon them, and are encouraged to do so.&lt;br /&gt;&lt;br /&gt;&lt;code&gt;&lt;a href="http://technorati.com/tag/identity" rel="tag"&gt;&lt;/code&gt;Technorati Identity tag&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111408952329524156?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111408952329524156/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111408952329524156&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111408952329524156'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111408952329524156'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/04/reflecions-for-identity-corner-liberty.html' title='Reflecions for &quot;The Identity Corner » Liberty Alliance on data protection and privacy&quot;'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111359672549258060</id><published>2005-04-15T15:25:00.000-05:00</published><updated>2005-04-15T15:25:25.493-05:00</updated><title type='text'>YaGoohoo!gle</title><content type='html'>&lt;a href="http://www.researchbuzz.org/"&gt;Research Buzz&lt;/a&gt; alerted me to &lt;a href="http://yagoohoogle.com/"&gt;YaGoohoo!gle&lt;/a&gt; from &lt;a href="http://www.researchbuzz.org/compare_yahoo_and_google_results_.shtml"&gt;this&lt;/a&gt; article.  A wonderful play on two search engines... side-by-side (frames) comparison for search results.  Just for kicks, i &lt;a href="http://yagoohoogle.com/search.php?q=identity4all"&gt;yagoohoogled for my own blog&lt;/a&gt;.  rather disapointing results, i must say.  but at least there were no ads purchased for that string.&lt;br /&gt;&lt;br /&gt;But this does motivate me to write something that actually intermixes their results into one single page.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111359672549258060?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111359672549258060/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111359672549258060&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111359672549258060'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111359672549258060'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/04/yagoohoogle.html' title='YaGoohoo!gle'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-111301510307809235</id><published>2005-04-08T21:51:00.000-05:00</published><updated>2005-12-27T10:36:03.143-05:00</updated><title type='text'>Datamonitor - Gemplus and NEC win e-Passport bid - News</title><content type='html'>So &lt;a href="http://www.datamonitor.com/~71ed9683da2f43f29b25afc6d9b68352~/industries/news/article/?pid=26746C89-8B7E-42FF-A2C3-7EFADA077A1A&amp;amp;type=NewsWire"&gt;Datamonitor - Gemplus and NEC win e-Passport bid - News&lt;/a&gt; reveals some interesting emerging identity systems activities in nation-states.  The U.S. Government has been working this angle for &lt;a href="http://news.com.com/2100-1017-943924.html"&gt;quite some time&lt;/a&gt;, and most recently at the &lt;a href="http://www.oasis-open.org/news/oasis_news_02_16_05.php"&gt;RSA conference&lt;/a&gt; this winter.&lt;br /&gt;&lt;br /&gt;I can only hope that this activity continues.  There is a lot at stake for many, not the least of which are the citizens of many contries contemplating the authentication and authorization problems mixed into this quagmire of Identity.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-111301510307809235?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/111301510307809235/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=111301510307809235&amp;isPopup=true' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111301510307809235'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/111301510307809235'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/04/datamonitor-gemplus-and-nec-win-e.html' title='Datamonitor - Gemplus and NEC win e-Passport bid - News'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110977409906437453</id><published>2005-03-02T09:34:00.000-05:00</published><updated>2005-03-02T09:34:59.063-05:00</updated><title type='text'>Sun Community Programs launches</title><content type='html'>So, i just joined the &lt;a href="http://sun.alwayson-network.com/"&gt;Sun Community Programs * keiretsu Home&lt;/a&gt;.  Motivated, i think, by  &lt;a href="http://blogs.sun.com/jonathan"&gt;Jonathan Schwartz&lt;/a&gt;'s blog.  he likes to blog, and many Sun employees are encouraged to do so as well on the &lt;a href="http://blogs.sun.com/"&gt;employee blog&lt;/a&gt;.  I don't get to this often enuf, but i've noticed that this seems a common malady, when you post things with a bit more relavance than letting the readers know what i had for dinner last night ;-).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110977409906437453?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110977409906437453/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110977409906437453&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110977409906437453'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110977409906437453'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/03/sun-community-programs-launches.html' title='Sun Community Programs launches'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110960751544267065</id><published>2005-02-28T11:18:00.000-05:00</published><updated>2005-03-12T18:16:50.310-05:00</updated><title type='text'>eBay - FleetCenter items in Experiences Finder</title><content type='html'>OK... i've seen all sort sof odd things, and still personally find the purchase of naming rights of sports stadiums a silly thing, but&lt;br /&gt;&lt;a href="http://attr-search.ebay.com/FleetCenter_Experiences__W0QQa10ZQ2d10QQa6ZQ2d24QQa9ZQ2d24QQalistZa6Q2ca9Q2ca10Q2ca3801QQcatrefZC3QQcoactionZcompareQQcoentrypageZsearchQQcombineZNQQcopagenumZ1QQcurcatZtrueQQfclZ3QQfromZR2QQfsooZ2QQfsopZ2QQftrtZ1QQftrvZ1QQgcsZ2QQpf_queryZFleetCenterQQpfidZ2QQpfmodeZ1QQsacatZ16071QQsadisZ200QQsbrftogZ1QQsofocusZpf"&gt; auctioning single-day naming rights on eBay&lt;/a&gt;?  It never ceses to amaze me what i find on eBay!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110960751544267065?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110960751544267065/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110960751544267065&amp;isPopup=true' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110960751544267065'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110960751544267065'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/02/ebay-fleetcenter-items-in-experiences.html' title='eBay - FleetCenter items in Experiences Finder'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110857006201493691</id><published>2005-02-16T11:07:00.000-05:00</published><updated>2005-02-16T11:07:42.013-05:00</updated><title type='text'>ICANN Auctions?</title><content type='html'>So, when &lt;a href="http://www.icannwatch.org/article.pl?sid=05/01/21/2330229"&gt; | VeriSign auctions pending delete domains&lt;/a&gt;. can i buy this at eBay?  It seems i already &lt;a href="http://search.ebay.com/domain-name"&gt;can&lt;/a&gt;!  let the market decide to do this, not ICANN.&lt;br /&gt;&lt;br /&gt;It assonishes me that there is so many attempts in inflating the revenue's of domain names.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110857006201493691?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110857006201493691/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110857006201493691&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110857006201493691'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110857006201493691'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/02/icann-auctions.html' title='ICANN Auctions?'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110856975491343151</id><published>2005-02-16T11:02:00.000-05:00</published><updated>2005-02-16T11:02:34.913-05:00</updated><title type='text'>When is a CA not a CA</title><content type='html'>&lt;a href="http://www.icannwatch.org/article.pl?sid=05/02/03/0147246"&gt;ICANNWatch | VeriSign and Conflicts of Interest&lt;/a&gt; ICANN Wathch posting about Ian Grigg's grips re:Verisign and .net tld vs. NetDiscovery (CALEA compliance service).  So, when they need to snoop they act as a bad ca, and when they don't, they act as a 'good' CA (well, maybe not).&lt;br /&gt;&lt;br /&gt;This reminds me of the early days of SSL, when VRSN ruled supreme, and there was little confirmation of identity (CSR == Whois).  Lame.... still.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110856975491343151?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110856975491343151/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110856975491343151&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110856975491343151'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110856975491343151'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2005/02/when-is-ca-not-ca.html' title='When is a CA not a CA'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110305599828481853</id><published>2004-12-14T15:26:00.000-05:00</published><updated>2004-12-14T15:26:38.283-05:00</updated><title type='text'>Science &amp; Technology at Scientific American.com: Complete Chicken Genome Sequenced</title><content type='html'>&lt;a href="http://www.sciam.com/article.cfm?chanID=sa003&amp;amp;articleID=00076D85-79FE-11B7-B9FE83414B7F0000"&gt;Science &amp; Technology at Scientific American.com: Complete Chicken Genome Sequenced&lt;/a&gt; really scares me.  I can only imagine what they will find in the decoded genome.  perhaps more sobering is the fact that humans share 60 percent of chicken genes.  Ick.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110305599828481853?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110305599828481853/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110305599828481853&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110305599828481853'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110305599828481853'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/12/science-technology-at-scientific.html' title='Science &amp; Technology at Scientific American.com: Complete Chicken Genome Sequenced'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110299820891617666</id><published>2004-12-13T23:23:00.000-05:00</published><updated>2004-12-13T23:23:28.916-05:00</updated><title type='text'>[Sipping] Technical reports on Skype protocol analysis and SIP in peer-to-peer mode</title><content type='html'>The IETF Sipping mailing list posting &lt;a href="http://www1.ietf.org/mail-archive/web/sipping/current/msg07297.html"&gt;[Sipping] Technical reports on Skype protocol analysis and SIP in peer-to-peer mode&lt;/a&gt; producing two very interesting studies on SIP and especially &lt;a href="http://www.cs.columbia.edu/~library/TR-repository/reports/reports-2004/cucs-039-04.pdf"&gt;this&lt;/a&gt; publication which decomposes as much of the Skype protocol that can be inferred from the unencrypted bits of the messages.  Amazing what &lt;a href="http://www.ethereal.com/"&gt;Ethereal&lt;/a&gt; will allow glimpses of!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110299820891617666?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110299820891617666/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110299820891617666&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110299820891617666'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110299820891617666'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/12/sipping-technical-reports-on-skype.html' title='[Sipping] Technical reports on Skype protocol analysis and SIP in peer-to-peer mode'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-110027406116628788</id><published>2004-11-12T10:41:00.000-05:00</published><updated>2004-11-12T10:41:01.166-05:00</updated><title type='text'>Old buddy</title><content type='html'>So i finally tracked down my old classmate &lt;a href="http://www.colorado.edu/English/facpages/holsinge.html"&gt;English Faculty: Bruce Holsinger&lt;/a&gt;.  Need to drop him a note, and get together.  Cool that he ended up a prof.  Seems fitting, he was always a great student, and had the knack of a teacher, even in the 80's.&lt;br /&gt;&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-110027406116628788?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/110027406116628788/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=110027406116628788&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110027406116628788'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/110027406116628788'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/11/old-buddy.html' title='Old buddy'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-109093332240543160</id><published>2004-07-27T08:02:00.000-05:00</published><updated>2004-07-27T08:02:02.406-05:00</updated><title type='text'>IBM To Offer Single Sign On To Orange Customers using liberty</title><content type='html'>So, &lt;br /&gt;&lt;a href="http://www.internetweek.com/allStories/showArticle.jhtml?articleID=25600328"&gt;this&lt;/a&gt;: article makes the broad statement: "The IBM software used complies with the Liberty 1.1 Web Services specifications", which are words i am gratefull for, but thought i would never hear, given IBM's work with the WS-* stack.  Will wonders never cease!&lt;br /&gt;&lt;br /&gt;Of course, i am pleased to see it, and perhaps belies earlier adoption and convergence than i first believed.&lt;br /&gt;&lt;br /&gt;Only time will truely tell.&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-109093332240543160?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/109093332240543160/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=109093332240543160&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/109093332240543160'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/109093332240543160'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/ibm-to-offer-single-sign-on-to-orange.html' title='IBM To Offer Single Sign On To Orange Customers using liberty'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-109000378156521815</id><published>2004-07-16T13:49:00.000-05:00</published><updated>2004-07-16T13:49:41.566-05:00</updated><title type='text'>Matrix ping pong</title><content type='html'>So a co-worker pointed me to &lt;a href="http://www.thegudolboy.com/videos/videos.htm"&gt;this&lt;/a&gt; page of videos, and i fully enjoyed the &lt;a href="http://www.thegudolboy.com/videos/Matrix-pingpong.wmv"&gt;Matrix PingPong&lt;/a&gt;, which appears to be doen for an asian equivelent of the Gong Show.  I have to say, it's one of the best spoofs on the matrix filmography i've seen.&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-109000378156521815?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/109000378156521815/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=109000378156521815&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/109000378156521815'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/109000378156521815'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/matrix-ping-pong.html' title='Matrix ping pong'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-108989880569847677</id><published>2004-07-15T08:40:00.000-05:00</published><updated>2004-07-15T08:40:05.696-05:00</updated><title type='text'>PBL: Bits over Amps</title><content type='html'>&lt;a href="http://www.cbsnews.com/stories/2004/07/14/scitech/pcanswer/main629747.shtml"&gt;CBS writes&lt;/a&gt; about PBL... or Broadband over Powerlines.  So my gadget list is gunno have to grow.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-108989880569847677?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/108989880569847677/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=108989880569847677&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108989880569847677'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108989880569847677'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/pbl-bits-over-amps.html' title='PBL: Bits over Amps'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-108989692100866897</id><published>2004-07-15T08:08:00.000-05:00</published><updated>2004-07-15T08:08:41.006-05:00</updated><title type='text'>man.... Steven Hawking may be wrong</title><content type='html'>&lt;a href="http://www.newscientist.com/news/news.jsp?id=ns99996151"&gt;New Scientist&lt;/a&gt; reports that Hawking will shortly present that he has resolved the paradox between Quantum physics and the Hawking Radiation.&lt;br /&gt;&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-108989692100866897?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/108989692100866897/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=108989692100866897&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108989692100866897'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108989692100866897'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/man-steven-hawking-may-be-wrong.html' title='man.... Steven Hawking may be wrong'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-108981282863167484</id><published>2004-07-14T08:47:00.000-05:00</published><updated>2004-07-14T16:54:36.363-05:00</updated><title type='text'>National Barbie Day is comming soon</title><content type='html'>&lt;a href="http://www.freeculture.org/blog/?p=47"&gt;FreeCulture.org: an international student movement&lt;/a&gt; remindes my that &lt;a href="http://www.barbieinablender.org"&gt;this event&lt;/a&gt; celebrating the court ruling in favor of photographer Tom Forsythe, who's &lt;a href="http://creativefreedomdefense.org/page1.htm"&gt;images&lt;/a&gt; Mattel claims were violations of it's IP...  hehehe.  Art wins again!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-108981282863167484?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/108981282863167484/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=108981282863167484&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108981282863167484'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108981282863167484'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/national-barbie-day-is-comming-soon.html' title='National Barbie Day is comming soon'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-7623656.post-108975368149212185</id><published>2004-07-13T16:21:00.000-05:00</published><updated>2004-07-13T16:21:21.493-05:00</updated><title type='text'>This is truely cool</title><content type='html'>&lt;a href="http://www.nextbigthing.org/archive/episode.html?07092004"&gt;The Next Big Thing: Do-It-Yourself: Show #445 (July 09, 2004)&lt;/a&gt;: "build a rollercoaster in the backyard"... who'd a thunk.  and they are right... it really takes guts to ride it yourself after you build it.&lt;br /&gt;&lt;br /&gt;Now, since my 5 year old daughter (who is as big a coaster fan as i am), i'm compelled to make one myself.... or not.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/7623656-108975368149212185?l=identity4all.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://identity4all.blogspot.com/feeds/108975368149212185/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=7623656&amp;postID=108975368149212185&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108975368149212185'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/7623656/posts/default/108975368149212185'/><link rel='alternate' type='text/html' href='http://identity4all.blogspot.com/2004/07/this-is-truely-cool.html' title='This is truely cool'/><author><name>=peterd</name><uri>http://www.blogger.com/profile/08392660294565959947</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
