Blogging RSA 2: Craig Mundie from Microsoft namechecks SecPal- April 8, 2008 A couple of years ago i spoke alongside Andy Gordon and Cedric Fournet from Microsoft Research (Cambridge, UK) at a conference in France. At that time, they were working on validation of WS-Policy policies, detecting logical faults and inconsistencies, but they were also looking at mechanisms to express authorization and RBAC information in general. It is good to see their work mentioned this morning by Craig Mundie in his RSA Conference Keynote. He mentioned in a framework called...http://radio.weblogs.com/0111797/2008/04/08.html#a116 Blogging RSA: The "Identity Router" - a neat concept- April 8, 2008 Identity Management is plagued by analogies which are not quite correct, resulting in tremendous confusion. For example, a digital certificate is a little bit like a passport, but not quite... Once in a while, though, a good analogy crops up. One such example was used by Andre Durand yesterday, the "Identity Router". This phrase neatly gets across the ability to join identity information from two domains together. "Identity Bridge" might also apply. XML Gateways are natural "identity...http://radio.weblogs.com/0111797/2008/04/08.html#a115 Speaking on Banking Web Services at RSA Conference this week- April 6, 2008 I'm speaking on Tuesday at the RSA Conference in San Francisco, the details are below. It's nice to see the little star in the catalog beside my name means "Top Rated Speaker" :-) Full catalog is here: https:cm.rsaconference.comUS08catalogcontrollercatalog If anyone out there is going to be at RSA, let me know since I have tickets to a drinks reception after my talk which I can give out. ------------------------------------------- HT2-107 Case Notes from a Vulnerability Assessment of a...http://radio.weblogs.com/0111797/2008/04/06.html#a114 |