Welcome to MSDN Blogs Sign in | Join | Help

Browse by Tags

All Tags » Wild Ideas   (RSS)

Claims propagation: Kirchhoff or maxflow?

In the last week or so Paul Madsen made at least a couple of posts with strong visual components: one that resumed my old 2005 post on a notation for message crypto, the other on Feynman diagrams . Nice! Paul, when I am in that mood I find especially

Voting for the Italian government election via mail

It's that time again. Few months ago the Italian government fell, and as a good citizen I am called to the right-duty of casting my vote for electing the new one. There's a little detail, though: while in the past that meant taking a short walk through

The Tao of Authentication (Part III - last)

(continues from Part I and Part II ) Finally we've lined up all the elements we need for understanding how we can get rid of the 1-2-3 tyranny, and deal with our business requirements directly instead of relying on an old model that forces us to perform

The Tao of Authentication (Part II)

(continues from Part I ) You can consider this post and the fine grained analysis we made in Part I as a down payment for grasping the implications we'll see in Part III, which I plan to post in few hours (almost done). I was planning to have just 2 parts,

The Tao of Authentication (Part I)

From time to time it's healthy to challenge the assumptions, and look at (allegedly) familiar things with new eyes. Few weeks ago I had to do just that with the idea of authentication : I wanted to shake a bit an audience of architects, and make them

Understanding Windows CardSpace on the front page of Channel9

[ edit: apologies if this shows in your aggregator twice. I am testing the AmazonConnect feed ] Last week Caleb and I have been surprised in my office by Charles "Carlo" Torre and his camera. The result is an impromptu interview about CardSpace , which

Modeling Reality (II)

Ah, the beauty of models. A good model can capture the essence of a system, a phenomenon, anything: it allows you to easily manipulate things, make predictions, transport the knowledge you already have of a domain to a new one. It's just great, and as

The video "WS-Trust - Under the hood" is back online

It turns out that the channel9 video on ws-trust was down for (quite?) some time. I am pretty surprised by the number of people that is still checking out that clip! Now it works again, provided that you view it by clicking the download button (which,

I smuggled a neologism... or did I?

Back in October 2005, few weeks after I moved to the US, I wrote a blog post in which I introduced the idea of a collective name for the federated resources accessible to a company. One of the names I proposed was federnet . At the time I made a quick
Posted by vibro | 1 Comments

Waiting for a physical copy...

...here there's the best approximation I found (short of a printout, of course, but that would be cheating:-) ). My wife just got a Sony ebook reader ; once we discovered it reads SD cards, we wanted to test it with a prerelease PDF of the book . Looks
Posted by vibro | 1 Comments
Filed under: , ,

Year's end blabbering: Omnidirectional Identities

On the Paris-Seattle flight, coming back after 2 weeks spent stuffing myself with all sorts of food with the excuse "after all, you can't find this in USA" :) Before hurling myself back in the vortex of daily work, and celebrate the end of the year with

The Authorization Continuum

On a flight from Rome to Warsaw: apparently the droning noise of the plane (or what's left of it after this ) inspires me, and now I finally have the means of pulling out live writer from a pocket and start writing. This time I'd like to explore with

The Tao of Claims

[updated] In short: I describe why claims are important for every developer and architect (not just the security expert), and I provide some heuristics for helping everybody to reason about claim based systems. I don't think we did an exceptionally good

Credentials vs. Identity; Authentication vs.... what?

[ EDIT: added some sketch ] In short: I briefly discuss some differences between the password based authentication model and the token based one; then I propose that we lack a proper term for describing some of the transactions enabled by cardspace and

Drug-Resistant Tuberculosis, Federation and Fresh Tokens

This morning I was reading Newsweek (before you get any ideas: I subscribed to BOTH Newsweek and Time) and the interesting account they made about the history of a person. Much is being written on the subject, just browse your favourite news website for
More Posts Next page »
 
Page view tracker