<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4248169236248672533</id><updated>2011-11-28T01:45:54.565+01:00</updated><category term='Bitlocker'/><category term='SCM'/><category term='mySQL'/><category term='WIF'/><category term='Community Day 2011'/><category term='Outlook 2010'/><category term='ADFS'/><category term='Security'/><category term='Kerberos'/><category term='ILM'/><category term='SAML'/><category term='Google'/><category term='MIIS'/><category term='Windows Phone'/><category term='poking fun at Apple'/><category term='Community Day 2010'/><category term='Compliance'/><category term='1Pad'/><category term='ACS'/><category term='XACML'/><category term='U-Prove'/><category term='FIM'/><category term='Privacy'/><category term='MDOP'/><category term='winsec'/><category term='Forefront'/><category term='iPad'/><category term='Azure Appfabric'/><category term='AD'/><category term='Federation'/><category term='GMail'/><category term='Cloud'/><category term='TMG'/><category term='Windows 7'/><title type='text'>be-Id</title><subtitle type='html'>Identity, from Belgium</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>46</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6670712099530868117</id><published>2011-10-05T14:42:00.001+02:00</published><updated>2011-10-05T14:47:04.734+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SAML'/><category scheme='http://www.blogger.com/atom/ns#' term='XACML'/><category scheme='http://www.blogger.com/atom/ns#' term='Federation'/><title type='text'>XACML, or, why SAML is not sufficient</title><content type='html'>For many, the title of this post may come as a surprise, because after all, SAML is used in many cases for authorization decisions in applications. But, if you are looking a bit closer at what is really going here, you will see that SAML won't give you authorization: at best it will give you the necessary elements such that you (or better said, your application) can make a decision for yourself: all that SAML will give you is a bunch of claims, which are not much more than attributes of a person that are being passed to the application after which the application is still doing the heavy lifting all by itself.&lt;br /&gt;&lt;br /&gt;I personally think that XACML very nicely fills in that void. To quote &lt;a href="http://en.wikipedia.org/wiki/XACML"&gt;wikipedia&lt;/a&gt;: &lt;em&gt;(XACML) is a declarative &lt;/em&gt;&lt;a href="http://en.wikipedia.org/wiki/Access_control" title="Access control"&gt;&lt;span style="color: #0645ad;"&gt;&lt;em&gt;access control&lt;/em&gt;&lt;/span&gt;&lt;/a&gt;&lt;em&gt; policy language implemented in &lt;/em&gt;&lt;a href="http://en.wikipedia.org/wiki/XML" title="XML"&gt;&lt;span style="color: #0645ad;"&gt;&lt;em&gt;XML&lt;/em&gt;&lt;/span&gt;&lt;/a&gt;&lt;em&gt; and a processing model, describing how to interpret the policies.&lt;/em&gt; Obviously, SAML won't give you this. If you would compare the two, I think it would be fair to say that SAML is much like hardwiring authorization into your application, which is very much what you would like to avoid when you want to decouple your application from authorization. I will agree that SAML is the perfect way to externalize authentication, not so much authorization.&lt;br /&gt;&lt;br /&gt;If you want to have a high-level introduction to XACML, my friend &lt;a href="http://www.linkedin.com/pub/felix-gaehtgens/0/a6/58b"&gt;Felix Gaethgens&lt;/a&gt; of &lt;a href="http://www.axiomatics.com/"&gt;Axiomatics&lt;/a&gt; is presenting tomorrow at &lt;a href="http://www.kuppingercole.com/"&gt;Kuppinger Cole&lt;/a&gt; on this very subject (register &lt;a href="http://kpgr.co/49"&gt;here&lt;/a&gt;). For all the details on XACML, &lt;a href="http://www.oasis-open.org/committees/tc_home.php?wg_abbrev=xacml"&gt;OASIS&lt;/a&gt; is the source.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6670712099530868117?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6670712099530868117/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/10/xacml-or-why-saml-is-not-sufficient.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6670712099530868117'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6670712099530868117'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/10/xacml-or-why-saml-is-not-sufficient.html' title='XACML, or, why SAML is not sufficient'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-7145940489731308065</id><published>2011-10-01T16:45:00.000+02:00</published><updated>2011-10-01T16:45:12.296+02:00</updated><title type='text'>Re-awarded Microsoft MVP for Forefront Identity Manager</title><content type='html'>I'm proud to anounce that I have just received my confirmation e-mail: for the 4th year I am a Microsoft MVP for Microsoft Forefront Identity Manager 2010:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span&gt;&lt;/span&gt;  &lt;div class="MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;&lt;img id="_x0000_i1025" src="http://adminframework.mvpaward.com/images/mvplogo.jpg" /&gt;&lt;/span&gt;&lt;/div&gt;&lt;div&gt; &amp;nbsp;&lt;/div&gt;&lt;div&gt; Dear Paul Loonen,&lt;/div&gt;&lt;div&gt; &amp;nbsp;&lt;/div&gt;&lt;div&gt; Congratulations! We are pleased to present you with the 2011 Microsoft® MVP Award! This award is given to exceptional technical community leaders who actively share their high quality, real world expertise with others. We appreciate your outstanding contributions in Forefront Identity Manager technical communities during the past year.&lt;/div&gt;&lt;div&gt; &amp;nbsp;&lt;/div&gt;&lt;div&gt; Also in this email: &lt;o:p&gt;&lt;/o:p&gt;&lt;/div&gt;&lt;ul type="disc"&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list .5in;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;About      your MVP Award Gift&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list .5in;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;How to      claim your award benefits&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list .5in;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;Your MVP      Identification Number&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;li class="MsoNormal" style="margin: 0in 0in 0pt; mso-list: l0 level1 lfo1; mso-margin-bottom-alt: auto; mso-margin-top-alt: auto; tab-stops: list .5in;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;MVP      Award Program Code of Conduct&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/li&gt;&lt;/ul&gt;&lt;div class="MsoNormal" style="margin: 0in 0in 12pt;"&gt;&lt;span style="font-family: &amp;quot;Calibri&amp;quot;,&amp;quot;sans-serif&amp;quot;; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;;"&gt;The Microsoft MVP Award provides us the unique opportunity to celebrate and honor your significant contributions and say "Thank you for your technical leadership."&lt;/span&gt;&lt;/div&gt;&lt;div&gt; &amp;nbsp;&lt;/div&gt;&lt;div&gt; Toby Richards&lt;/div&gt;&lt;div&gt; General Manager &lt;/div&gt;&lt;div&gt; Community &amp;amp; Online Support&lt;/div&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;&lt;/blockquote&gt;&lt;br /&gt;I want to acknowledge here the many people that have supported me: my family members, the MVP team and the DPE team over at Microsoft, my fellow MVPs, the winsec.be members, the Belgian IT-Pro community, my Avanade colleagues and I guess a couple more people that I am probably forgetting. Without all of these people, this would not have been possible.&lt;br /&gt;&lt;br /&gt;One last thing: let's go for it one more year!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-7145940489731308065?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/7145940489731308065/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/10/re-awarded-microsoft-mvp-for-forefront.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7145940489731308065'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7145940489731308065'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/10/re-awarded-microsoft-mvp-for-forefront.html' title='Re-awarded Microsoft MVP for Forefront Identity Manager'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-2293629259291240786</id><published>2011-09-30T11:16:00.002+02:00</published><updated>2011-09-30T11:32:08.950+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='WIF'/><category scheme='http://www.blogger.com/atom/ns#' term='ADFS'/><category scheme='http://www.blogger.com/atom/ns#' term='ACS'/><category scheme='http://www.blogger.com/atom/ns#' term='Azure Appfabric'/><title type='text'>Usergroup collaboration - winsec.be and AZUG meet to discuss Identity-enabled apps in the Cloud</title><content type='html'>Yesterday evening, I had the pleasure to be presenting together with &lt;a href="http://about.me/maarten.balliauw"&gt;Maarten Balliauw&lt;/a&gt; of &lt;a href="http://www.azug.be/"&gt;AZUG&lt;/a&gt;, the Belgian User Group on Windows Azure,&amp;nbsp;on how to identity-enable cloud applications. Of course, a large chunck of this was discussing Active Directory Federation Services (AD FS) and the Azure Appfabric Access Control Service (ACS).&lt;br /&gt;&lt;br /&gt;The presentation can be accessed here:&lt;br /&gt;&lt;iframe frameborder="0" height="327" scrolling="no" src="http://r.office.microsoft.com/r/rlidPowerPointEmbed?p1=1&amp;amp;p2=1&amp;amp;p3=SD619C818AA3B8495E!1438&amp;amp;p4=&amp;amp;kip=1" width="402"&gt;&lt;/iframe&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Conclusion was of course that it is quite easy to build identity-enabled apps with the building blocks that Microsoft is offering us: ADFSv2, ACS and WIF. We did show how easy it is to build a scalable identity infrastructure and the steps needed to make applications integrate these building blocks and all this based on well-known industry standards.&lt;br /&gt;&lt;br /&gt;Of course, a big thanks to &lt;a href="http://www.ordina.be/"&gt;Ordina&lt;/a&gt; to sponsor this event, enabling us to share the message!&lt;br /&gt;&lt;br /&gt;BTW, winsec's next event (on October 27) will be around Forefront Identity Manager and reporting. More information on the &lt;a href="http://winsec.be/"&gt;winsec.be&lt;/a&gt; website. Registration for the event via &lt;a href="http://fim2010reporting.eventbrite.com/?ref=ebtn"&gt;this link&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-2293629259291240786?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/2293629259291240786/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/09/usergroup-collaboration-winsecbe-and.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2293629259291240786'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2293629259291240786'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/09/usergroup-collaboration-winsecbe-and.html' title='Usergroup collaboration - winsec.be and AZUG meet to discuss Identity-enabled apps in the Cloud'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6562279833550060034</id><published>2011-08-02T11:53:00.000+02:00</published><updated>2011-08-02T11:53:20.462+02:00</updated><title type='text'>Learning Resources - "Dive into the Summer" campaign</title><content type='html'>&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://bit.ly/sumitprovirt1tnug"&gt;&lt;img border="0" src="http://2.bp.blogspot.com/-w8k0e__xF8Q/TjfIqRsEIyI/AAAAAAAAACU/Orq4ZeGvFYw/s1600/570x120_Technet_EN.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;With the nice weather these days in Belgium, you may want to look into&amp;nbsp;some new learning resources available from Microsoft. These are part of the latest "Dive into the Summer" campaign launched a couple of weeks ago:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Virtualization&lt;/li&gt;&lt;li&gt;Desktop Deployment&lt;/li&gt;&lt;li&gt;Best of Techdays (Belgium) 2011&lt;/li&gt;&lt;/ul&gt;All of this goodness is available &lt;a href="http://bit.ly/sumitprovirt1tnug"&gt;here.&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6562279833550060034?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6562279833550060034/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/08/learning-resources-dive-into-summer.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6562279833550060034'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6562279833550060034'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/08/learning-resources-dive-into-summer.html' title='Learning Resources - &quot;Dive into the Summer&quot; campaign'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/-w8k0e__xF8Q/TjfIqRsEIyI/AAAAAAAAACU/Orq4ZeGvFYw/s72-c/570x120_Technet_EN.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-8847281637575989209</id><published>2011-08-01T15:59:00.001+02:00</published><updated>2011-08-01T16:01:10.571+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='GMail'/><category scheme='http://www.blogger.com/atom/ns#' term='Google'/><category scheme='http://www.blogger.com/atom/ns#' term='Privacy'/><title type='text'>Google, Privacy and GMail Man</title><content type='html'>&lt;div class="separator" style="clear: both; text-align: left;"&gt;In an internal video, which now is also viewable via youtube, Microsoft is showing what is wrong with Google's popular GMail Cloud mail solution:&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;object class="BLOGGER-youtube-video" classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=6,0,40,0" data-thumbnail-src="http://1.gvt0.com/vi/yXqrTfOWx60/0.jpg" height="266" width="320"&gt;&lt;param name="movie" value="http://www.youtube.com/v/yXqrTfOWx60&amp;fs=1&amp;source=uds" /&gt;&lt;param name="bgcolor" value="#FFFFFF" /&gt;&lt;embed width="320" height="266"  src="http://www.youtube.com/v/yXqrTfOWx60&amp;fs=1&amp;source=uds" type="application/x-shockwave-flash"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;br /&gt;In short, if you value your privacy, you wouldn't use the service, as GMail is in fact analyzing the content of your mail in order to show advertisements. Which is something&amp;nbsp;the competing Microsoft Office365 offering does not do. While Google's adds are contextual, Microsoft's aren't.&lt;br /&gt;&lt;br /&gt;Windows IT Pro's Paul Thurrott presents a nice analysis &lt;a href="http://www.windowsitpro.com/article/paul-thurrotts-wininfo/microsofts-gmail-man-spoof-140037"&gt;here&lt;/a&gt;. I couldn't agree more, also with his suggestion to turn the video into a public add.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-8847281637575989209?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/8847281637575989209/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/08/google-and-privacy.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8847281637575989209'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8847281637575989209'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/08/google-and-privacy.html' title='Google, Privacy and GMail Man'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6091817640747799972</id><published>2011-06-24T18:20:00.000+02:00</published><updated>2011-06-24T18:20:14.872+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Community Day 2011'/><title type='text'>Community Day 2011 was good again</title><content type='html'>As each year, &lt;a href="http://www.communityday.be/"&gt;Community Day&lt;/a&gt; was excellent. Great presentations, good interaction, and, last but not least, great food (@Gil: this year's food was a winner!). A worthy 5th aniversary edition. I'm really proud to be a part of this.&lt;br /&gt;&lt;br /&gt;This year, I had the honour to present twice, as announced in a previous blog post. Until everything is posted on the Community Day website, you can access them from these links:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="https://skydrive.live.com/redir.aspx?cid=619C818AA3B8495E&amp;amp;resid=619C818AA3B8495E%211194&amp;amp;page=view"&gt;Protecting your Infrastructure using Forefront Endpoint Protection 2010&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="https://skydrive.live.com/?cid=619c818aa3b8495e&amp;amp;sc=documents#"&gt;Securing the Cloud&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;I hope to see everyone again next year, at an even better Community Day 2012.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6091817640747799972?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6091817640747799972/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/06/community-day-2011-was-good-again.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6091817640747799972'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6091817640747799972'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/06/community-day-2011-was-good-again.html' title='Community Day 2011 was good again'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-4276252669575172515</id><published>2011-06-20T23:09:00.000+02:00</published><updated>2011-06-20T23:09:58.937+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Community Day 2011'/><title type='text'>Next up: Community Day Belgium 2011</title><content type='html'>As slowly is becoming a tradition, I will be speaking at the Belgian edition of Community Day 2011 on June 23rd, an action packed day full of presentations hosted by the Belgian Microsoft&amp;nbsp;User Groups.&lt;br /&gt;&lt;br /&gt;This year, I'm going to be presenting two sessions:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Protecting Your Infrastructure using Microsoft Forefront Endpoint Protection 2010&lt;/li&gt;&lt;li&gt;Securing your Cloud&lt;/li&gt;&lt;/ul&gt;Presentations will be available here after the show and via the Community Day Website.&lt;br /&gt;&lt;br /&gt;Registrations, agenda and the like are at the &lt;a href="http://www.communityday.be/"&gt;Community Day Website&lt;/a&gt;. Oh, and by the way, you can win your ticket to Microsoft Build event, hosted coming September in Anaheim, CA.&lt;br /&gt;&lt;br /&gt;See you there!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-4276252669575172515?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/4276252669575172515/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/06/next-up-community-day-belgium-2011.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4276252669575172515'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4276252669575172515'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/06/next-up-community-day-belgium-2011.html' title='Next up: Community Day Belgium 2011'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-4376682889795202483</id><published>2011-06-09T14:58:00.006+02:00</published><updated>2011-06-09T15:07:32.068+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='TMG'/><category scheme='http://www.blogger.com/atom/ns#' term='Forefront'/><title type='text'>End of the road for Forefront Threat Management Gateway?</title><content type='html'>&lt;span style="font-family: inherit;"&gt;I happened to get access to &lt;span style="mso-ansi-language: EN-US; mso-bidi-language: AR-SA; mso-fareast-font-family: &amp;quot;Times New Roman&amp;quot;; mso-fareast-language: EN-US;"&gt;&lt;a href="http://www.websense.com/assets/reports/report-gartner-magic-quadrant-for-security-web-gateway-2011-en.pdf?cmpid=EmailGartnerBirdsBeneluxJun11&amp;amp;wsid=0032000000jZPUOAA4&amp;amp;linkid=DownloadTheReport"&gt;Gartner’s Magic Quadrant for Secure Web Gateway&lt;/a&gt; courtesy of Websense. Obviously, I was interested to know how my favourite company located in Redmond, WA was doing with their TMG offering. Big was my surprise to notice that Microsoft is not represented anymore in this Magic quadrant. The reason comes a little bit later in the report, where we can read:&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;span style="font-family: inherit;"&gt;"&lt;em&gt;Microsoft has informed Gartner that it does not plan to ship another full version release of its SWG product, the Forefront Threat Management Gateway (TMG). The product is effectively in sustaining mode, with Microsoft continuing to ship Service Pack (SP) updates; the next one, SP2, is planned for 3Q11. Microsoft will also continue to support TMG for the standard support life cycle - five years of mainstream support and five years of extended support. ...&lt;/em&gt; "&lt;/span&gt;&lt;/blockquote&gt;&lt;span style="font-family: inherit;"&gt;Obviously, this some bit of bad news. Not only is TMG a decent product that fits the bill for many Microsoft customers, but also one has to wonder what Microsoft's (edge) security strategy is and how it is going to evolve. I guess we'll have wait for Microsoft to come out with a public statement until which time we can only guess ...&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: inherit;"&gt;&lt;br /&gt;&lt;/span&gt;&lt;span style="font-family: inherit;"&gt;BTW, if you can't access the Gartner report via the link I have provided above, &lt;/span&gt;&lt;a href="http://www.gartner.com/DisplayDocument?doc_cd=212739&amp;amp;ref=g_sitelink"&gt;&lt;span style="font-family: inherit;"&gt;this link&lt;/span&gt;&lt;/a&gt;&lt;span style="font-family: inherit;"&gt; should work.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-4376682889795202483?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/4376682889795202483/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/06/end-of-road-for-forefront-threat.html#comment-form' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4376682889795202483'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4376682889795202483'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/06/end-of-road-for-forefront-threat.html' title='End of the road for Forefront Threat Management Gateway?'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1863128413960665011</id><published>2011-03-31T17:12:00.000+02:00</published><updated>2011-03-31T17:12:09.606+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Phone'/><title type='text'>Are you desperate to get NoDo on your Windows Phone 7 device?</title><content type='html'>Well, the wait is over! I can confirm that the "hack" published at&lt;a href="http://www.neowin.net/news/easy-work-around-delivers-nodo-update-to-wp7-devices"&gt; neowin.net&lt;/a&gt; works perfectly for me. As I'm writing this, my phone is being updated ...&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-6gw_snHCEw4/TZSZthYmJ8I/AAAAAAAAACQ/QfTUYCMIu9g/s1600/3-31-2011+5-03-36+PM.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="234" src="http://1.bp.blogspot.com/-6gw_snHCEw4/TZSZthYmJ8I/AAAAAAAAACQ/QfTUYCMIu9g/s320/3-31-2011+5-03-36+PM.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;br /&gt;To re-iterate the steps:&lt;br /&gt;&lt;ol&gt;&lt;li&gt;Start Zune&lt;/li&gt;&lt;li&gt;  Turn off Data connection and Wifi on the Phone&lt;/li&gt;&lt;li&gt;  Connect the Phone with the PC (USB)&lt;/li&gt;&lt;li&gt;  Start the update search in Zune&lt;/li&gt;&lt;li&gt;  About 3 seconds later, disconnect your PC from the internet (Turn WLAN off / unplug your network cable).&lt;/li&gt;&lt;li&gt;  Zune finds NoDo-Update. Press OK.&lt;/li&gt;&lt;li&gt;  Connect to the internet again and install the update.&lt;/li&gt;&lt;/ol&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1863128413960665011?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1863128413960665011/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/03/are-you-desperate-to-get-nodo-on-your.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1863128413960665011'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1863128413960665011'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/03/are-you-desperate-to-get-nodo-on-your.html' title='Are you desperate to get NoDo on your Windows Phone 7 device?'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/-6gw_snHCEw4/TZSZthYmJ8I/AAAAAAAAACQ/QfTUYCMIu9g/s72-c/3-31-2011+5-03-36+PM.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-8500113787124015250</id><published>2011-03-13T17:43:00.000+01:00</published><updated>2011-03-13T17:43:00.444+01:00</updated><title type='text'>Security Compliance Manager (SCM) v2 CTP available</title><content type='html'>For those SCM fans out there, exciting news: Microsoft just released a CTP of SCMv2. The most important new feature is the ability to import a GPO backup and associate that imported GPO against a product. Another new feature is the ability to use an existing installation of SQL Server (2005 or later) instead of the SQL Express version that was forced until now.&lt;br /&gt;&lt;br /&gt;While the current CTP is not yet feature complete, Microsoft expects a feature complete version for a April/May beta release.&lt;br /&gt;&lt;br /&gt;You access the CTP by registering &lt;a href="https://connect.microsoft.com/site715/InvitationUse.aspx?ProgramID=2663&amp;amp;InvitationID=SCM2-QCDB-CWPV"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-8500113787124015250?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/8500113787124015250/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/03/security-compliance-manager-scm-v2-ctp.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8500113787124015250'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8500113787124015250'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/03/security-compliance-manager-scm-v2-ctp.html' title='Security Compliance Manager (SCM) v2 CTP available'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1806086936672020835</id><published>2011-03-07T18:17:00.001+01:00</published><updated>2011-03-08T10:06:23.368+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='AD'/><category scheme='http://www.blogger.com/atom/ns#' term='ADFS'/><category scheme='http://www.blogger.com/atom/ns#' term='Azure Appfabric'/><category scheme='http://www.blogger.com/atom/ns#' term='Federation'/><title type='text'>SSO from your Enterprise AD to a Windows Azure application</title><content type='html'>Following up on my TechNet Live session of last month. Just discovered a nice whitepaper by Vittorio Bertocci and David Mowers that contains step-by-step instructions for using WIF, Azure and ADFSv2 for applications that are deployed both on premises and in the cloud. You can find the downloadable version &lt;a href="http://www.microsoft.com/downloads/en/details.aspx?FamilyID=1296e52c-d869-4f73-a112-8a37314a1632"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;If you are interested in more AD FS 2.0 step-by-step instructions, you can find this &lt;a href="http://technet.microsoft.com/en-gb/library/adfs2-step-by-step-guides(WS.10).aspx?"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1806086936672020835?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1806086936672020835/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/03/sso-from-your-enterprise-ad-to-windows.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1806086936672020835'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1806086936672020835'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/03/sso-from-your-enterprise-ad-to-windows.html' title='SSO from your Enterprise AD to a Windows Azure application'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-3294273382761790731</id><published>2011-02-28T21:20:00.000+01:00</published><updated>2011-02-28T21:20:35.579+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Cloud'/><category scheme='http://www.blogger.com/atom/ns#' term='ADFS'/><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><category scheme='http://www.blogger.com/atom/ns#' term='Azure Appfabric'/><category scheme='http://www.blogger.com/atom/ns#' term='Federation'/><title type='text'>Taking your Identity to the Cloud - presentation available now</title><content type='html'>As promised previously, I would make my presentation talking about taking your Identity to the Cloud available.&lt;br /&gt;&lt;br /&gt;So, here it is:&lt;br /&gt;&lt;br /&gt;&lt;iframe src="http://r.office.microsoft.com/r/rlidPowerPointEmbed?p1=1&amp;p2=1&amp;p3=SD619C818AA3B8495E!1070&amp;p4=" width="402" height="327" frameborder="0" scrolling="no"&gt;&lt;/iframe&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-3294273382761790731?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/3294273382761790731/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/02/taking-your-identity-to-cloud.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3294273382761790731'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3294273382761790731'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/02/taking-your-identity-to-cloud.html' title='Taking your Identity to the Cloud - presentation available now'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1574110143756388702</id><published>2011-02-20T22:18:00.000+01:00</published><updated>2011-02-20T22:18:15.186+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Cloud'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance'/><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>Identity Management in the Cloud</title><content type='html'>&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://1.bp.blogspot.com/-JGjxseK5G9k/TWGEEpiRItI/AAAAAAAAACE/E1Hd1kJTKXg/s1600/26e21e63-484e-44a6-9345-d807ecbc28f3.jpg" imageanchor="1" style="clear: left; cssfloat: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="106" j6="true" src="http://1.bp.blogspot.com/-JGjxseK5G9k/TWGEEpiRItI/AAAAAAAAACE/E1Hd1kJTKXg/s320/26e21e63-484e-44a6-9345-d807ecbc28f3.jpg" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;Next Thursday (on February 24th to be precise), I'll be presenting for TechNet Live in Belgium&amp;nbsp;how to extend your Enterprise Identity to the Cloud (register &lt;a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032473840&amp;amp;EventCategory=2&amp;amp;culture=nl-BE&amp;amp;CountryCode=BE"&gt;here&lt;/a&gt; for the Dutch language session and &lt;a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032477087&amp;amp;EventCategory=2&amp;amp;culture=fr-BE&amp;amp;CountryCode=BE"&gt;here&lt;/a&gt; for French language session), focussing on what Microsoft has to offer. Topics include Active Directory, Windows Azure ACS and Forefront Identity Manager 2010.&lt;br /&gt;&lt;br /&gt;To get your copy of the presentation, please check back here after Thursday!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1574110143756388702?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1574110143756388702/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/02/identity-management-in-cloud.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1574110143756388702'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1574110143756388702'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/02/identity-management-in-cloud.html' title='Identity Management in the Cloud'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://1.bp.blogspot.com/-JGjxseK5G9k/TWGEEpiRItI/AAAAAAAAACE/E1Hd1kJTKXg/s72-c/26e21e63-484e-44a6-9345-d807ecbc28f3.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-4774819042754209581</id><published>2011-02-18T12:16:00.002+01:00</published><updated>2011-02-18T12:18:39.461+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='U-Prove'/><title type='text'>Microsoft U-Prove Community Technology Preview R2</title><content type='html'>&lt;span style="font-family: inherit;"&gt;I'm really very excited about this one - when I'm thinking about it, the perfect Valentine present. It had been a while since the first Community Preview of U-Prove, available via Microsoft's &lt;/span&gt;&lt;a href="https://connect.microsoft.com/site1188"&gt;&lt;span style="font-family: inherit;"&gt;connect website&lt;/span&gt;&lt;/a&gt;&lt;span style="font-family: inherit;"&gt;. As you will remember, U-Prove is an &lt;span style="font-family: &amp;quot;Verdana&amp;quot;, &amp;quot;sans-serif&amp;quot;; line-height: 115%;"&gt;advanced cryptographic technology that, combined with existing standards-based identity solutions, overcomes this long-standing dilemma between identity assurance and privacy. This unlocks a broad range of scenarios that have historically been out of the reach of both the private and public sectors - cases where both verified identity information and privacy are required. &lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;span style="font-family: &amp;quot;Verdana&amp;quot;, &amp;quot;sans-serif&amp;quot;; line-height: 115%;"&gt;&lt;br /&gt;&lt;span style="font-family: inherit;"&gt;At the core of this technology are the so-called U-Prove Agents. These agents are intermediaries between websites and allows users to share their personal information in a way that helps protect their privacy. U-Prove Agents exist explicitly to represent the users’ interests in choosing to share (or not to share) their personal information with sites on the Internet.&lt;/span&gt;&lt;/span&gt;&lt;br /&gt;&lt;div class="x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;br /&gt;&lt;span style="font-family: &amp;quot;Verdana&amp;quot;, &amp;quot;sans-serif&amp;quot;; line-height: 115%;"&gt;&lt;span style="font-family: inherit;"&gt;Specifically, the Agent provides a mechanism to separate the &lt;em&gt;retrieval&lt;/em&gt; of identity information from trusted organizations from the &lt;em&gt;release&lt;/em&gt; of this information to destination sites. The underlying mechanisms help prevent the issuing organizations from tracking where or when this information is used, and to help prevent different destination sites from trivially linking users’ actions together.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;span style="font-family: &amp;quot;Verdana&amp;quot;, &amp;quot;sans-serif&amp;quot;; line-height: 115%;"&gt;&lt;span style="font-family: inherit;"&gt;The Agent is composed of a cloud-hosted service and optional client components.&amp;nbsp; The cloud-hosted Agent can be used with all major browsers on Windows, MacOS, and several smartphones.&amp;nbsp; The first optional client component is a Silverlight component which enables local storage of U-Prove tokens and enhances the privacy and security for the user.&amp;nbsp; The second optional component is an IE plugin that looks for a U-Prove Agent object tag in the RP page and manages the launch of the Agent to ensure the user‘s choice of agent, if one was made, is respected.&amp;nbsp; A second variation of the IE plugin that provides access to a smartcard for the purposes of two factor token binding is also available.&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;&lt;div class="x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_x_MsoNormal" style="margin: 0in 0in 0pt;"&gt;&lt;br /&gt;&lt;/div&gt;For the R2 CTP, available via the link mentioned above, Microsoft delivers a new documentation set, WIF Extensions that allow .NET developers to build applications that support the U-Prove token and protocols and a RP Toolkit, which contains a set of templates for Visual Studio for developing claims-aware ASP.NET applications with U-Prove capabilities.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-4774819042754209581?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/4774819042754209581/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/02/microsoft-u-prove-community-technology.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4774819042754209581'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4774819042754209581'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/02/microsoft-u-prove-community-technology.html' title='Microsoft U-Prove Community Technology Preview R2'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6299131011007769119</id><published>2011-02-17T22:45:00.002+01:00</published><updated>2011-02-17T22:47:25.988+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MDOP'/><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Bitlocker'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows 7'/><title type='text'>Bitlocker Administration and Monitoring solution coming to MDOP</title><content type='html'>&lt;span style="font-family: inherit;"&gt;Just stumbled over this one: Microsoft just announced MBAM, or, Microsoft Bitlocker Administration and Monitoring, which will be part of the Microsoft Desktop Optimisation Pack (MDOP). MBAM promises to be an enterprise solution for Bitlocker provisioning, monitoring and key recovery, a solution that is dearly needed to help enterprises securing their increasingly mobile workers.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Microsoft promises a beta version will be available in March 2011.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-family: inherit;"&gt;More information to be found &lt;/span&gt;&lt;a href="http://go.microsoft.com/fwlink/?linkid=208999"&gt;&lt;span style="font-family: inherit;"&gt;here&lt;/span&gt;&lt;/a&gt;&lt;span style="font-family: inherit;"&gt;.&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6299131011007769119?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6299131011007769119/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/02/bitlocker-administration-and-monitoring.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6299131011007769119'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6299131011007769119'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/02/bitlocker-administration-and-monitoring.html' title='Bitlocker Administration and Monitoring solution coming to MDOP'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6067825720442499700</id><published>2011-02-01T14:01:00.000+01:00</published><updated>2011-02-01T14:01:53.064+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SCM'/><title type='text'>Getting started with the Security Compliance Manager (SCM)</title><content type='html'>The SCM has always been one of my favourite tools. If you have been hesitant to get started with it, you can turn to &lt;a href="http://social.technet.microsoft.com/wiki/contents/articles/microsoft-security-compliance-manager-scm-getting-started.aspx"&gt;this excellent guide&lt;/a&gt;, that gives you all the details on how to implement this wonderful tool in an easily digestable way.&lt;br /&gt;&lt;br /&gt;Go harden your infrastructures!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6067825720442499700?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6067825720442499700/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2011/02/getting-started-with-security.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6067825720442499700'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6067825720442499700'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2011/02/getting-started-with-security.html' title='Getting started with the Security Compliance Manager (SCM)'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1112965238438335655</id><published>2010-11-12T11:21:00.001+01:00</published><updated>2010-11-12T11:43:22.401+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance'/><title type='text'>Security Compliance Manager Setting Packs for Windows 7 and Internet Explorer 8 released.</title><content type='html'>A common problem with the Security Compliance Manager (SCM)&amp;nbsp;baselines released by Microsoft is that not all settings that you could implement using Group Policy are available in the baselines. You would be able to solve that if you could add settings to existing baselines, or, if you could create your own baselines. Alas!&lt;br /&gt;&lt;br /&gt;While not a complete solution, Microsoft has released so-called "setting packs"&amp;nbsp;that at least allow you to partially overcome this problem.&amp;nbsp;The setting packs include the basic information required by the SCM tool to define custom baselines that you can use to create GPO backups, DCM configuration packs, and SCAP content. While you still cannot create baselines for products for which no setting pack is released, at least you can build your own baseline via the setting packs that Microsoft makes available.&lt;br /&gt;&lt;br /&gt;For now, setting packs are released for Windows Server 2008 R2, Windows 7, Office 2010&amp;nbsp;and for Internet Explorer 8. The setting packs for Windows 7 and IE8 are new releases. Let's hope Microsoft soon releases setting packs for the other Products for which baselines are available.&lt;br /&gt;&lt;br /&gt;Security Compliance Manager is available at &lt;a href="http://www.microsoft.com/scm"&gt;http://www.microsoft.com/scm&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1112965238438335655?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1112965238438335655/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/11/security-compliance-manager-setting.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1112965238438335655'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1112965238438335655'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/11/security-compliance-manager-setting.html' title='Security Compliance Manager Setting Packs for Windows 7 and Internet Explorer 8 released.'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-7352449416817025707</id><published>2010-08-06T14:01:00.000+02:00</published><updated>2010-08-06T14:01:13.522+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>FIM 2010 SDK Available for download</title><content type='html'>Microsoft have just made available the FIM 2010 SDK documentation available for download as a separate .CHM files. You can find the download &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=9bb2ce6c-1a72-4897-8d7f-5d5c8974c9c5&amp;amp;displayLang=en"&gt;here&lt;/a&gt;. Three separate files are made available:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;ForefrontIdentityManager2010SDK_FIMCertMgmt.chm&lt;/li&gt;&lt;li&gt;ForefrontIdentityManager2010SDK_FIMService.chm&lt;/li&gt;&lt;li&gt;ForefrontIdentityManager2010SDK_FIMSyncService.chm&lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;The documentation provided is the same as the documentation you would find on &lt;a href="http://msdn.microsoft.com/en-us/library/ee652263.aspx"&gt;MSDN&lt;/a&gt;, but is of course nice when you are working in your little lab that has no internet connectivity when you need it ...&lt;br /&gt;&lt;br /&gt;As a sidenote - this means that you would be able to generate the CHM files yourself: there is a small tool available on Codeplex, called "Package This", that does exactly this. More info on PackageThis is available &lt;a href="http://packagethis.codeplex.com/"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-7352449416817025707?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/7352449416817025707/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/08/fim-2010-sdk-available-for-download.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7352449416817025707'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7352449416817025707'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/08/fim-2010-sdk-available-for-download.html' title='FIM 2010 SDK Available for download'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6110824692164031147</id><published>2010-07-30T18:48:00.000+02:00</published><updated>2010-07-30T18:48:17.557+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance'/><title type='text'>Updated Security Baseline for Windows Server 2008 R2, Setting Pack for Security Compliance Manager</title><content type='html'>As already mentioned in my &lt;a href="http://be-id.blogspot.com/2010/07/security-baseline-for-windows-server.html"&gt;previous post&lt;/a&gt;, Microsoft released a security baseline for Windows Server 2008 R2.&lt;br /&gt;&lt;br /&gt;We are not even 2 weeks later and already do we find a new beta of this package. This was announced today. New in this beta is&amp;nbsp;that it&amp;nbsp;now includes a setting pack.&lt;br /&gt;&lt;br /&gt;This is what Microsoft has to tell about this "setting pack":&lt;br /&gt;&lt;blockquote&gt;&lt;em&gt;Since the release of the Security Compliance Manager (SCM) tool, one of the most frequent requests has been to add all of the available Group Policy settings to the Microsoft security baselines so that you can access them in the SCM tool. While our baselines include hundreds of settings, there are hundreds of additional settings available in Group Policy. In response to this request, the team created setting packs. The setting packs include the basic information required by the SCM tool to define custom baselines that you can use to create GPO backups, DCM configuration packs, and SCAP content. You can learn more about setting packs on the program description page.&lt;/em&gt; &lt;/blockquote&gt;Microsoft also announced that it is working on the following baselines and setting packs that would be shipped soon after the Windows Server 2008 R2 baseline ships:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Exchange 2007 &lt;/li&gt;&lt;li&gt;Office 2010 with a setting pack &lt;/li&gt;&lt;li&gt;SQL Server 2008 and 2008 R2 &lt;/li&gt;&lt;li&gt;Setting packs for Windows 7 and Internet Explorer 8 &lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;&lt;div&gt;As mentioned in my previous post, more information and information on how to participate in the beta can be found on &lt;a href="https://connect.microsoft.com/"&gt;Microsoft's connect website&lt;/a&gt;.&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6110824692164031147?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6110824692164031147/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/07/updated-security-baseline-for-windows.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6110824692164031147'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6110824692164031147'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/07/updated-security-baseline-for-windows.html' title='Updated Security Baseline for Windows Server 2008 R2, Setting Pack for Security Compliance Manager'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-243452232916798769</id><published>2010-07-15T10:30:00.000+02:00</published><updated>2010-07-15T10:30:50.919+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance'/><category scheme='http://www.blogger.com/atom/ns#' term='Community Day 2010'/><title type='text'>Security Baseline for Windows Server 2008 R2</title><content type='html'>If you followed my talk at &lt;a href="http://www.communityday.be/"&gt;Community Day 2010&lt;/a&gt; ("&lt;a href="http://www.communityday.be/cd/ppt/winsec%20-%20The%20ABC%20of%20SharePoint%20Security.pdf"&gt;The ABC of SharePoint Security&lt;/a&gt;"), you will remember that one of the elements I mentioned for securing your SharePoint server was the implementation of the Microsoft Security Compliance Manager Toolkit (SCM). You'll find more information about the SCM &lt;a href="http://www.microsoft.com/securitycompliance"&gt;here&lt;/a&gt;. Of course, when you are working with the latest and greatest (Server 2008 R2, SharePoint 2010), some crucial elements are still missing. Microsoft is now filling in one of the gaps by releasing a beta of the Security Baseline for Windows Server 2008 R2, which is now available via Microsoft's &lt;a href="https://connect.microsoft.com/"&gt;connect&lt;/a&gt; web-site. If you are not yet a member of the relevant beta program, you can simply sign up &lt;a href="https://connect.microsoft.com/InvitationUse.aspx?ProgramID=5758&amp;amp;InvitationID=SOL-D2BR-VFJ2&amp;amp;SiteID=715"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-243452232916798769?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/243452232916798769/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/07/security-baseline-for-windows-server.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/243452232916798769'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/243452232916798769'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/07/security-baseline-for-windows-server.html' title='Security Baseline for Windows Server 2008 R2'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-5688668615849253029</id><published>2010-06-30T15:11:00.002+02:00</published><updated>2010-06-30T17:03:39.485+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Outlook 2010'/><title type='text'>My favourite Outlook 2010 feature</title><content type='html'>Maybe this also happens (or happened?) to you: Outlook 2010 becoming unresponsive with the only way to get it going again is to kill the process and restart it.&lt;br /&gt;&lt;br /&gt;In my case this was apparently caused by some Outlook OST/PSTcorruption that, in the end, is easy to fix: Outlook 2010 contains a nifty utility called SCANPST. You find this tool in the Outlook14 folder contained in your Microsoft Office folder.&amp;nbsp;When called to the rescue, as it's name gives away, it will scan your PST or OST file and fix any problems in the file. You might need multiple passes to get rid&amp;nbsp;of all corruption, but, in the end, I got my Outlook back and I am once again a happy camper!&lt;br /&gt;&lt;br /&gt;With this problem fixed, I can start looking for my next favourite Outlook 2010 feature :-)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-5688668615849253029?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/5688668615849253029/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/06/my-favourite-outlook-2010-feature.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5688668615849253029'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5688668615849253029'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/06/my-favourite-outlook-2010-feature.html' title='My favourite Outlook 2010 feature'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-171624880725899423</id><published>2010-06-30T10:06:00.000+02:00</published><updated>2010-06-30T10:06:28.453+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>Solution Accelerator for FIM 2010 deployment available</title><content type='html'>Microsoft has established a long tradition in delivering guidance for the deployment of all kinds of infrastructure building blocks. The latest such building block is the &lt;a href="http://go.microsoft.com/fwlink/?LinkId=189609"&gt;FIM 2010 Infrastructure Planning and Design Guide&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;This guide describes the process of planning a Forefront Identity Manager&amp;nbsp;infrastructure.&amp;nbsp;It addresses the following fundamental decisions and tasks:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;&lt;ul&gt;&lt;li&gt;Defining the project scope by identifying which FIM features will be needed and the connected data sources and user population in scope.&lt;/li&gt;&lt;li&gt;Mapping the features and scope into the FIM server roles that will be required.&lt;/li&gt;&lt;li&gt;Designing the infrastructure for the FIM Synchronization Service, FIM Service, and Certificate Management.&lt;/li&gt;&lt;li&gt;Designing the placement and fault tolerance of the supporting SQL Server databases.&lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;Following the instructions in this guide will result in a design that is sized, configured, and appropriately placed to deliver the stated business benefits, while also considering the performance, capacity, and fault tolerance of the system.&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;This guide addresses the scenarios most likely to be encountered by someone designing a FIM infrastructure. Customers should consider having their architecture reviewed by Microsoft Customer Service and Support prior to implementation as that organization is best able to comment on the supportability of a particular design.&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;Other Infrastructure Planning and Design Guides can be found &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=AD3921FB-8224-4681-9064-075FDF042B0C&amp;amp;displaylang=en"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-171624880725899423?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/171624880725899423/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/06/solution-accelerator-for-fim-2010.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/171624880725899423'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/171624880725899423'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/06/solution-accelerator-for-fim-2010.html' title='Solution Accelerator for FIM 2010 deployment available'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-2682260609405068296</id><published>2010-06-21T10:09:00.000+02:00</published><updated>2010-06-21T10:09:39.624+02:00</updated><title type='text'>Upcoming Forefront solutions webcasts</title><content type='html'>There are some great opportunities coming up the next couple of days to learn about Forefront solutions:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;TechNet Simulcast: Forefront Virtual Event &lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032454002&amp;amp;Culture=en-US"&gt;https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032454002&amp;amp;Culture=en-US&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Register for the Forefront Virtual event on June 23rd and 24th to hear from the product team, ask questions and see great technical demos on FEP, FIM, TMG, UAG, FPSP, FPE, FOPE, and ADRMS + Exchange. &lt;br /&gt;&lt;br /&gt;Deployment Webcasts&lt;br /&gt;&lt;br /&gt;6/28/2010 11:00:00 AM -Deploying a Microsoft Identity and Access Management Solution (Level 300)&lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453697&amp;amp;Culture=en-US"&gt;https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453697&amp;amp;Culture=en-US&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;6/30/2010 8:00AM Best Practices for Deploying a Microsoft Secure Collaboration Solution (Level 300)&lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453700&amp;amp;Culture=en-US"&gt;https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453700&amp;amp;Culture=en-US&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;6/22/2010 12:00PM Using a Microsoft Information Protection Solution with RSA Data Loss Prevention &lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453692&amp;amp;Culture=en-US"&gt;https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453692&amp;amp;Culture=en-US&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;6/22/2010 9:00:00 AM - TechNet Webcast: Deployment Best Practices for Information Protection &lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453503&amp;amp;Culture=en-US"&gt;https://msevents.microsoft.com/CUI/EventDetail.aspx?EventID=1032453503&amp;amp;Culture=en-US&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;6/16/2010 10:00:00 AM - Enabling Secure Messaging – FOPE Deployment Best Practices &lt;br /&gt;&lt;a href="https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032450259&amp;amp;EventCategory=4&amp;amp;culture=en-US&amp;amp;CountryCode=US"&gt;https://msevents.microsoft.com/CUI/WebCastEventDetails.aspx?EventID=1032450259&amp;amp;EventCategory=4&amp;amp;culture=en-US&amp;amp;CountryCode=US&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-2682260609405068296?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/2682260609405068296/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/06/upcoming-forefront-solutions-webcasts.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2682260609405068296'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2682260609405068296'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/06/upcoming-forefront-solutions-webcasts.html' title='Upcoming Forefront solutions webcasts'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-5202357994068999220</id><published>2010-06-08T23:27:00.000+02:00</published><updated>2010-06-08T23:27:35.364+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MIIS'/><category scheme='http://www.blogger.com/atom/ns#' term='ILM'/><title type='text'>ILM Knowlege Bit Collection and ILM Experts Corner</title><content type='html'>Today the &lt;a href="http://social.technet.microsoft.com/Forums/en-US/identitylifecyclemanager/thread/58a98b02-e7c0-457a-9872-ea2b2ca5a7d4"&gt;ILM Knowledge Bit Collection&lt;/a&gt; (which I own) and the &lt;a href="http://social.technet.microsoft.com/Forums/en-US/identitylifecyclemanager/thread/a4cbe268-b725-4ed4-bbed-c1462b299aea"&gt;ILM Experts Corner&lt;/a&gt; (which is owned by fellow MVP Peter Geelen) went life on the ILM TechNet forum. The purpose of the Knowledge Bit collection is to collect all possible pieces of wisdom that people have gathered over the years while developing ILM solutions and make everybody's lives easier along the way. The ILM Experts Corner is a forum for discussion with ILM SME's.&lt;br /&gt;&lt;br /&gt;Of course, contributions to both are requested. So, if you still have some pieces of MIIS, IIFP or ILM wisdom lying about, please contribute! When you contribute, please drop me a line such that I can add your contribution to the catalog page!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-5202357994068999220?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/5202357994068999220/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/06/ilm-knowlege-bit-collection-and-ilm.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5202357994068999220'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5202357994068999220'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/06/ilm-knowlege-bit-collection-and-ilm.html' title='ILM Knowlege Bit Collection and ILM Experts Corner'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1908273333393905494</id><published>2010-05-20T22:37:00.001+02:00</published><updated>2010-05-20T22:37:44.582+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='ADFS'/><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>Microsoft Business Ready Security - Lab and Demo environment available!</title><content type='html'>For those wanting to play with all of Microsoft's security solutions, Microsoft has released a new demo playground. You can find the download &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=726f943e-d107-4b4d-a86e-dfb605e30ce5&amp;amp;displaylang=en"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Included are Virtual Machines (available only for Hyper-V, of course) and labs for&lt;br /&gt;&lt;ul&gt;&lt;li&gt;FIM 2010&lt;/li&gt;&lt;li&gt;AD FS&lt;/li&gt;&lt;li&gt;AD RMS&lt;/li&gt;&lt;li&gt;UAG&lt;/li&gt;&lt;li&gt;TMG&lt;/li&gt;&lt;li&gt;Direct Access&lt;/li&gt;&lt;li&gt;Forefront Protection for Exchange&lt;/li&gt;&lt;/ul&gt;What a shame the cold winter nights are over ...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1908273333393905494?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1908273333393905494/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/05/microsoft-business-ready-security.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1908273333393905494'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1908273333393905494'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/05/microsoft-business-ready-security.html' title='Microsoft Business Ready Security - Lab and Demo environment available!'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6912200620572482663</id><published>2010-05-11T10:40:00.000+02:00</published><updated>2010-05-11T10:40:56.099+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='winsec'/><category scheme='http://www.blogger.com/atom/ns#' term='Community Day 2010'/><title type='text'>Registration for Community Day 2010 is open!</title><content type='html'>Register yourself for this free event at the Community Day &lt;a href="http://www.communityday.be/cd/tabid/58/Default.aspx"&gt;website&lt;/a&gt;. The agenda for the event is now also available on the website. See you all there!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6912200620572482663?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6912200620572482663/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/05/registration-for-community-day-2010-is.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6912200620572482663'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6912200620572482663'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/05/registration-for-community-day-2010-is.html' title='Registration for Community Day 2010 is open!'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-970902513268913719</id><published>2010-05-07T22:05:00.001+02:00</published><updated>2010-05-08T00:41:36.228+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='winsec'/><category scheme='http://www.blogger.com/atom/ns#' term='Community Day 2010'/><title type='text'>Belgian Community Day 2010 announced</title><content type='html'>Community Day is back with the Fourth Edition of this annual community event on Microsoft technologies!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_jV3Gdj--nA0/S-SW-1oB8DI/AAAAAAAAABU/NoAGTeuRU1Q/s1600/blogblinglarge.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="80" src="http://3.bp.blogspot.com/_jV3Gdj--nA0/S-SW-1oB8DI/AAAAAAAAABU/NoAGTeuRU1Q/s400/blogblinglarge.png" tt="true" width="400" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;Fourteen Microsoft User Groups combine their efforts to organize this unique networking and knowledge sharing event. With so many new releases from Microsoft, the theme of Community Day 2010 is of course 2010: a new wave of products and technologies. This means that most sessions will be looking at Visual Studio 2010, Silverlight 4, Office 2010, SharePoint 2010, SQL Server 2008 R2, OCSR2...&lt;br /&gt;&lt;br /&gt;Microsoft Community Day will take place on Thursday &lt;strong&gt;24th June 2010&lt;/strong&gt; in Utopolis, Mechelen, where we will bring together over 300 IT Pro’s and developers. Save the date!&lt;br /&gt;&lt;br /&gt;More information is available at &lt;a href="http://www.communityday.be/"&gt;http://www.communityday.be/&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Of course, &lt;a href="http://www.winsec.be/"&gt;winsec.be&lt;/a&gt; will be present. I will be presenting one of the many Microsoft SharePoint sessions: "&lt;em&gt;The ABC of SharePoint security&lt;/em&gt;" which is of course suiting for winsec!&lt;br /&gt;&lt;br /&gt;This is the abstract for my session: &lt;br /&gt;&lt;blockquote&gt;&lt;em&gt;SharePoint is hot in the market. This fact will also get the attention of the bad guys! Therefore, it is wise to think seriously about securing your SharePoint infrastructure. This session takes you through all the steps you need to take to arrive at a SharePoint configuration that can withstand the bad guys and then goes one step further …&lt;/em&gt;&lt;/blockquote&gt;Sorry everyone, this year no FIM 2010 session at Community Day. However, I promise to make up for this by presenting a number of TechNet live events to be announced in the coming weeks. Stay tuned!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-970902513268913719?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/970902513268913719/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/05/belgian-community-day-2010-announced.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/970902513268913719'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/970902513268913719'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/05/belgian-community-day-2010-announced.html' title='Belgian Community Day 2010 announced'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_jV3Gdj--nA0/S-SW-1oB8DI/AAAAAAAAABU/NoAGTeuRU1Q/s72-c/blogblinglarge.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-7798278836759224806</id><published>2010-05-06T22:50:00.001+02:00</published><updated>2010-05-06T22:52:59.516+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='poking fun at Apple'/><title type='text'>Ellen loves her iPhone</title><content type='html'>This one is hilarious. American comedian Ellen Degeneres created her parody of an iPhone 3GS commercial:&lt;br /&gt;&lt;br /&gt;&lt;object height="385" width="640"&gt;&lt;param name="movie" value="http://www.youtube.com/v/CTMC_yjhYww&amp;color1=0xb1b1b1&amp;color2=0xd0d0d0&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1"&gt;&lt;/param&gt;&lt;param name="allowFullScreen" value="true"&gt;&lt;/param&gt;&lt;param name="allowScriptAccess" value="always"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/CTMC_yjhYww&amp;color1=0xb1b1b1&amp;color2=0xd0d0d0&amp;hl=en_US&amp;feature=player_embedded&amp;fs=1" type="application/x-shockwave-flash" allowfullscreen="true" allowScriptAccess="always" width="640" height="385"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;br /&gt;&lt;br /&gt;I just wonder when Steve J orders YouTube to remove this video...&lt;br /&gt;&lt;br /&gt;BTW. Can't wait to get my Windows Phone 7 Series phone. A nice PowerPoint and video can be found &lt;a href="http://www.microsoft.com/belux/techdays/2010/videos.aspx"&gt;here&lt;/a&gt;. Just search for Charlie Kindel when you're there.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-7798278836759224806?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/7798278836759224806/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/05/ellen-loves-her-iphone.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7798278836759224806'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7798278836759224806'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/05/ellen-loves-her-iphone.html' title='Ellen loves her iPhone'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-8845086582929554271</id><published>2010-05-03T21:57:00.001+02:00</published><updated>2010-05-03T21:59:49.933+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='iPad'/><category scheme='http://www.blogger.com/atom/ns#' term='poking fun at Apple'/><title type='text'>We are so open we won't support Flash</title><content type='html'>Apple is surpassing Microsoft in at least one way. Many people have touted Microsoft as being &lt;em&gt;the Dark Side, &lt;/em&gt;but Apple is proving right now it is better at this and is even darker!&amp;nbsp;Of course, I cannot be accused of being an Apple fan, though I will admit they build some great pieces of hardware. The point I want to make? Just have a look at &lt;a href="http://www.apple.com/hotnews/thoughts-on-flash/"&gt;this&lt;/a&gt; on Apple's website and conclude for yourself. The question remains: why is Apple and it's supreme commander picking on Adobe and Flash? No doubt, to be continued...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-8845086582929554271?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/8845086582929554271/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/05/we-are-so-open-we-wont-support-flash.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8845086582929554271'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/8845086582929554271'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/05/we-are-so-open-we-wont-support-flash.html' title='We are so open we won&apos;t support Flash'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6663088173047070692</id><published>2010-04-26T22:52:00.000+02:00</published><updated>2010-04-26T22:52:27.749+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Kerberos'/><title type='text'>Everything you ever wanted to know about Kerberos ...</title><content type='html'>... can be found &lt;a href="http://www.cmf.nrl.navy.mil/CCS/people/kenh/kerberos-faq.html"&gt;here&lt;/a&gt;. Mainly as a note-to-self, but of course everyone can profit from this superb reference.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6663088173047070692?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6663088173047070692/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/04/everything-you-ever-wanted-to-know.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6663088173047070692'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6663088173047070692'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/04/everything-you-ever-wanted-to-know.html' title='Everything you ever wanted to know about Kerberos ...'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-5451486169540154516</id><published>2010-04-12T16:25:00.000+02:00</published><updated>2010-04-12T16:25:54.678+02:00</updated><title type='text'>The importance of user-friendly technology</title><content type='html'>In his &lt;a href="http://www.networkworld.com/newsletters/dir/2010/041210id1.html?source=NWWNLE_nlt_security_identity_2010-04-12"&gt;newsletter&lt;/a&gt;, Dave Kearns repeated his old mantra "&lt;em&gt;the technology is easy, it's the people that's hard.&lt;/em&gt;" where technology stands for SSO, Self-Service Password Management, Multi-Factor Authn and whole lot of other technologies in the Identity realm.&lt;br /&gt;&lt;br /&gt;I would go one further on this one. I think it is not so much the people that are hard (some people may be of course&amp;nbsp;;-) ). I would much rather say, "&lt;em&gt;the technology is easy, mostly people are easy as well, most of the time technology is badly explained to people.&lt;/em&gt;" Or even, us in IT seldom listen properly what people want. Which is usually a simple solution that most people could grasp in a couple of minutes and understand why they would want to use them and not the complex solutions most of us in IT come up with.&lt;br /&gt;&lt;br /&gt;I couldn't agree more with those in the industry that go for simple solutions that people simply want to use!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-5451486169540154516?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/5451486169540154516/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/04/importance-of-user-friendly-technology.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5451486169540154516'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/5451486169540154516'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/04/importance-of-user-friendly-technology.html' title='The importance of user-friendly technology'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-3536202372189271777</id><published>2010-04-08T10:48:00.000+02:00</published><updated>2010-04-08T10:48:31.727+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Security'/><category scheme='http://www.blogger.com/atom/ns#' term='Compliance'/><title type='text'>Microsoft releases Security Compliance Manager</title><content type='html'>Micrsoft released the Security Compliance Manager solution accelerator to the web. You can find the download &lt;a href="http://go.microsoft.com/fwlink/?LinkId=182512"&gt;here&lt;/a&gt;. More information is available &lt;a href="http://go.microsoft.com/fwlink/?LinkId=113940"&gt;here&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The Security Compliance Manager will help you accelerate knowledge to merge best practices, customize once to centralize decision making, and export to multiple formats to enable monitoring, verification, and compliance. The tool is designed to help accelerate your organization’s ability to efficiently manage the security and compliance process for the most widely used Microsoft technologies.&lt;br /&gt;&lt;br /&gt;This end-to-end Solution Accelerator will help you plan, deploy, operate, and manage your security baselines for Windows® client and server operating systems, and Microsoft applications. Access the complete database of Microsoft recommended security settings, customize your baselines, and then choose from multiple formats—including Desired Configuration Management (DCM) packs, Security Content Automation Protocol (SCAP), XLS, or Group Policy objects (GPOs)—to export the baselines to your environment to automate the security baseline compliance verification process.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-3536202372189271777?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/3536202372189271777/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/04/microsoft-releases-security-compliance.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3536202372189271777'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3536202372189271777'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/04/microsoft-releases-security-compliance.html' title='Microsoft releases Security Compliance Manager'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6040106560059194891</id><published>2010-04-01T21:52:00.003+02:00</published><updated>2010-04-01T21:58:58.072+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='iPad'/><category scheme='http://www.blogger.com/atom/ns#' term='1Pad'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='poking fun at Apple'/><title type='text'>Microsoft Belgium's Luc Van De Velde announces the Microsoft 1Pad at Techdays 2010 Belgium</title><content type='html'>In a surprise move, Microsoft Belgium's Luc Van De Velde announced the "Microsoft 1Pad" slate computer during the Belgian edition of the &lt;a href="http://www.microsoft.com/belux/techdays/2010/"&gt;Microsoft Techdays 2010&lt;/a&gt;. And no, this is not an April fool's day joke: the keynote took place yesterday!&lt;br /&gt;&lt;br /&gt;You can view yourself the video captured at the event. If you are the impatient type, you can fast forward to 3'30":&lt;br /&gt;&lt;br /&gt;&lt;object data="data:application/x-silverlight-2," height="240" type="application/x-silverlight-2" width="320"&gt; &lt;param name="source" value="http://edge.technet.com/App_Themes/default/vp09_06_22.xap" /&gt;&lt;param name="initParams" value="m=http://ecn.channel9.msdn.com/o9/edge/6/7/9/0/2/TDKeynoteITPRO_2MB_edge.wmv,autostart=false,autohide=true,showembed=true, thumbnail=http://edge.technet.com/App_Themes/default/vp09_06_22.xap, postid=19418" /&gt;&lt;param name="background" value="#00FFFFFF" /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkID=124807" style="text-decoration: none;"&gt; &lt;img src="http://go.microsoft.com/fwlink/?LinkId=108181" alt="Get Microsoft Silverlight" style="border-style: none"/&gt; &lt;/a&gt; &lt;/object&gt;&lt;br /&gt;&lt;br /&gt;What&amp;nbsp;Luc is showing is an old 2003 Compaq TC1100 running Windows 7, running all of it's applications rather well, including the Google Kindle application, video and the like. Thanks again for showing once more that what Apple is doing, is not really very innovative: they are 7 years behind the competition ...&lt;br /&gt;&lt;br /&gt;BTW, if you are looking for the 2003&amp;nbsp;CNET review of the device Luc is talking about, you can find it &lt;a href="http://reviews.cnet.com/tablets/hp-compaq-tablet-pc/1707-3126_7-30573412.html"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6040106560059194891?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6040106560059194891/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/04/microsoft-belgiums-luc-van-de-velde.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6040106560059194891'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6040106560059194891'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/04/microsoft-belgiums-luc-van-de-velde.html' title='Microsoft Belgium&apos;s Luc Van De Velde announces the Microsoft 1Pad at Techdays 2010 Belgium'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-679899981277509949</id><published>2010-03-30T22:06:00.003+02:00</published><updated>2010-03-30T22:09:54.434+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Privacy'/><title type='text'>How unique is Your browser?</title><content type='html'>Theory says that if you have enough data points, anything can uniquely be identified. This theory has in the past been applied to marketing and advertising, resulting obviously in&amp;nbsp;alarming privacy issues.&lt;br /&gt;&lt;br /&gt;Turns it, the same kind of game can be played with your browser. There is a nice little experiment being ran at the "Electronic Frontier Foundation" or EFF, called "&lt;a href="https://panopticlick.eff.org/"&gt;Panopticlick&lt;/a&gt;" that aims to show how unique - and trackable - &amp;nbsp;your browser is. Go ahead! Click the link and check for yourself.&lt;br /&gt;&lt;br /&gt;This is what I got when I tested my browser: out of 770,962 browsers tested so far, these are some of the characteristics of mine:&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_jV3Gdj--nA0/S7JWzD2pzgI/AAAAAAAAABM/lqc4thEjxCs/s1600/panopticlick.JPG" imageanchor="1" style="clear: left; cssfloat: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="203" nt="true" src="http://2.bp.blogspot.com/_jV3Gdj--nA0/S7JWzD2pzgI/AAAAAAAAABM/lqc4thEjxCs/s640/panopticlick.JPG" width="640" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;This was after running the test twice on the same computer: I couldn't believe that the User Agent on my laptop was so unique that noone had ever had the same value. Sure, enough, after I ran the test a second time, the value was devided by two. Next test will be after I build my machine twice using Microsoft's Deployment Toolkit 2010 (which is great BTW) - am I still going to have uniquely identifiable browsers after that?&lt;br /&gt;&lt;br /&gt;If you ask me: frightening stuff, especially considering that all of that can (and is) collected anonymously. Imagine what the authorities could do once they start matching browser fingerprints and people!&lt;br /&gt;&lt;br /&gt;So far for being anonymous on the net!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-679899981277509949?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/679899981277509949/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/how-unique-is-your-browser.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/679899981277509949'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/679899981277509949'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/how-unique-is-your-browser.html' title='How unique is Your browser?'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_jV3Gdj--nA0/S7JWzD2pzgI/AAAAAAAAABM/lqc4thEjxCs/s72-c/panopticlick.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-2054986911340284441</id><published>2010-03-22T23:19:00.001+01:00</published><updated>2010-03-23T09:20:23.070+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='ADFS'/><title type='text'>ADFS for Dummies</title><content type='html'>If you want to learn about Active Directory Federation Services, head over to &lt;a href="http://blog.fpweb.net/federated-identity-and-microsoft-adfs-illustrated/"&gt;Aaron Lademann's SharePoint blog&lt;/a&gt;, who has a really nice explanation of how all of this works.&lt;br /&gt;&lt;br /&gt;Less for dummies is "Claims-based Identity and Access Control Guide" , posted over at &lt;a href="http://blogs.southworks.net/mwoloski/2010/03/05/claims-based-identity-and-access-control-guide-rtm/"&gt;Matias Woloski's blog&lt;/a&gt;. You'll find pointers to the book and the code samples (on MSDN). &lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://3.bp.blogspot.com/_jV3Gdj--nA0/S6h5bC8Ag9I/AAAAAAAAABE/gciYxyiBkrw/s1600-h/image.png" imageanchor="1" style="clear: left; cssfloat: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="200" src="http://3.bp.blogspot.com/_jV3Gdj--nA0/S6h5bC8Ag9I/AAAAAAAAABE/gciYxyiBkrw/s200/image.png" vt="true" width="163" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-2054986911340284441?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/2054986911340284441/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/adfs-for-dummies.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2054986911340284441'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2054986911340284441'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/adfs-for-dummies.html' title='ADFS for Dummies'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_jV3Gdj--nA0/S6h5bC8Ag9I/AAAAAAAAABE/gciYxyiBkrw/s72-c/image.png' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6061556921777293772</id><published>2010-03-20T12:51:00.001+01:00</published><updated>2010-03-24T22:10:58.888+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>Forefront Identity Manager presentation at Infosecurity.be</title><content type='html'>For those in security in Belgium that would be interested in hearing about Forefront Identity Manager 2010, I will be presenting during &lt;a href="http://www.infosecurity.be/nl-NL/Bezoeker.aspx"&gt;Infosecurity&lt;/a&gt; on March 25th. You'll find me at Microsoft's booth.&lt;br /&gt;&lt;br /&gt;The presentation can be downloaded &lt;a href="http://cid-619c818aa3b8495e.skydrive.live.com/self.aspx/Public/Infosecurity%20-%20Introducing%20FIM2010.pdf"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6061556921777293772?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6061556921777293772/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/forefront-identity-manager-presentation.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6061556921777293772'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6061556921777293772'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/forefront-identity-manager-presentation.html' title='Forefront Identity Manager presentation at Infosecurity.be'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-2182310342060064098</id><published>2010-03-20T12:46:00.000+01:00</published><updated>2010-03-20T12:46:48.992+01:00</updated><title type='text'>Kim Cameron to receive Honorary Doctor of Civil Law</title><content type='html'>Anyone who does anything in Identity knows Kim Cameron. For many, Kim is (one of)&amp;nbsp;the founding father(s) of what is today known as &lt;a href="http://www.microsoft.com/forefront/identitymanager/en/us/default.aspx"&gt;Forefront Identity Manager 2010&lt;/a&gt;. Even more important are Kim's &lt;a href="http://msdn.microsoft.com/en-us/library/ms996456.aspx"&gt;seven laws of Identity&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;In &lt;a href="http://www.sectorprivate.com/2010/03/kim-cameronchief-architect-of-identity.html"&gt;this&lt;/a&gt; post, I spotted the following:&lt;br /&gt;&lt;blockquote&gt;The University of King's College is pleased to announce that will be Kim Cameron distinguished with an Honorary Doctor of Civil Law at its Encaenia Ceremonies on Thursday, May 20, 2010 at the Cathedral Church of All Saints in Halifax.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Kim Cameron is Chief Architect of Identity in the Identity and Security division at Microsoft and is widely considered a leader on identity issues. He has won numerous awards for his work including Digital Identity World's Innovation Award and was named as one of Network World's 50 Most Powerful People in Networking, both in 2005. Cameron graduated from King's with a bachelor's degree in physics and math at age 19. He developed his hacking skills while working on a master's degree of physics at King's and Dalhousie and moved on to study philosophy in Paris. In 1970 he started a doctorate thesis in computing and social phenomena at the Université de Montréal but was lured away by an equally fervent passion for music. By the mid-70s, he had joined the band Limbo Springs as lead guitarist, and the band eventually became the house act at Toronto's legendary Cheetah Club. While in Toronto, Cameron developed an interest in the microcomputer and was soon running the academic computing centre at George Brown. Along with a colleague he pioneered a meta-directory called Zoomit that they sold to Microsoft in 1999. In 2003 he went public with a technology he developed called InfoCard, which lets users control their identity information and is now a cornerstone of Microsoft's identity strategy. Cameron will be receiving an Honorary Doctor of Civil Law.&lt;/blockquote&gt;I would say, well deserved Kim!&lt;br /&gt;&lt;br /&gt;BTW, don't go looking up Kim Cameron on wikipedia - you'll find an entirely different Kim Cameron there ... the above description could serve as a nice start for creating that entry!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-2182310342060064098?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/2182310342060064098/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/kim-cameron-to-receive-honorary-doctor.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2182310342060064098'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2182310342060064098'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/kim-cameron-to-receive-honorary-doctor.html' title='Kim Cameron to receive Honorary Doctor of Civil Law'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-3143364210373890767</id><published>2010-03-20T12:33:00.000+01:00</published><updated>2010-03-20T12:33:47.056+01:00</updated><title type='text'>U-Prove CTP available</title><content type='html'>Just spotted this on the "Geneva" team blog:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;U-Prove is an innovative cryptographic technology that enables the issuance of claims in a manner that provides multi-party security: issuing organizations, users, and relying parties can protect themselves not just against outsider attacks but also against attacks originating from each other. At the same time, the U-Prove technology enables any desired degree of privacy (including authenticated anonymity and pseudonymity) without contravening multi-party security.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Given these user-centric aspects, it comes as no surprise that we have integrated the technology into the identity metasystem, and in particular, using information cards. Users can now obtain information cards protected by U-Prove and present them 1) with higher privacy guarantees, and 2) without online connectivity to the identity provider when interacting with relying parties. The U-Prove technology helps realize the vision set forth by the &lt;a href="http://www.identityblog.com/?p=354"&gt;laws of identity&lt;/a&gt;.&lt;/blockquote&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://4.bp.blogspot.com/_jV3Gdj--nA0/S6SxaBtxKNI/AAAAAAAAAA8/pq-JLlsJMgs/s1600-h/uprove.jpg" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/_jV3Gdj--nA0/S6SxaBtxKNI/AAAAAAAAAA8/pq-JLlsJMgs/s320/uprove.jpg" vt="true" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;To encourage experimentation and gather feedback on the technology, the following software components are made available as part of the U-Prove CTP&lt;br /&gt;&lt;ul&gt;&lt;li&gt;Windows Identity Foundation Extension (U-Prove CTP): an extension to WIF that provides the ability to build a custom Security Token Service (STS) for U-Prove token issuance (for identity providers), and the ability to verify U-Prove token presentations (for relying parties).&lt;/li&gt;&lt;li&gt;Active Directory Federation Services 2.0 (U-Prove CTP): a U-Prove enabled version of AD FS 2.0 that has the ability to issue an information card that supports U-Prove; and that can act both as a U-Prove identity provider (IP-STS) and a relying party (RP-STS).&lt;/li&gt;&lt;li&gt;Windows CardSpace 2.0 (U-Prove CTP): a U-Prove enabled version of Windows CardSpace 2.0 that has the ability to obtain, store, and present U-Prove tokens associated with an information card.&lt;/li&gt;&lt;/ul&gt;&lt;br /&gt;Try it out, and let us know what you think!&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;The U-Prove team&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;Downloads &amp;amp; Links&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&amp;nbsp;&lt;/div&gt;Get the U-Prove CTP: &lt;a href="http://www.microsoft.com/uprove"&gt;http://www.microsoft.com/uprove&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Watch the U-Prove videos:&lt;br /&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://channel9.msdn.com/shows/Identity/Announcing-Microsofts-U-Prove-Community-Technical-Preview-CTP/"&gt;Announcing Microsoft’s U-Prove Community Technical Preview (CTP)&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://channel9.msdn.com/shows/Identity/U-Prove-CTP-A-Developers-Perspective/"&gt;U-Prove CTP: A Developer’s Perspective&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://channel9.msdn.com/shows/Identity/Deep-Dive-into-U-Prove-Cryptographic-Protocols/"&gt;Deep Dive into U-Prove Cryptographic Protocols&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;a href="http://edge.technet.com/Media/Learn-what-Microsofts-U-Prove-release-is-all-about/"&gt;Learn what Microsoft’s U-Prove release is all about&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-3143364210373890767?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/3143364210373890767/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/u-prove-ctp-available.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3143364210373890767'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3143364210373890767'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/u-prove-ctp-available.html' title='U-Prove CTP available'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://4.bp.blogspot.com/_jV3Gdj--nA0/S6SxaBtxKNI/AAAAAAAAAA8/pq-JLlsJMgs/s72-c/uprove.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6698225444253269186</id><published>2010-03-12T22:14:00.000+01:00</published><updated>2010-03-12T22:14:04.847+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='winsec'/><title type='text'>Recording available for the first IT-Pro Chalk-Talk</title><content type='html'>As mentioned before in &lt;a href="http://be-id.blogspot.com/2010/02/first-it-pro-chalk-talk-in-belgium.html"&gt;this post&lt;/a&gt;, winsec.be, IT-Talks and pro-Exchange held their first IT-Pro Chalk-Talk in Belgium. The recording of this can now be watched here:&lt;br /&gt;&lt;br /&gt;&lt;object data="data:application/x-silverlight-2," height="240" type="application/x-silverlight-2" width="320"&gt; &lt;param name="source" value="http://edge.technet.com/App_Themes/default/vp09_06_22.xap" /&gt;&lt;param name="initParams" value="m=http://ecn.channel9.msdn.com/o9/edge/8/6/3/9/1/itprochalktalkbelux_2MB_edge.wmv,autostart=false,autohide=true,showembed=true, thumbnail=http://ecn.channel9.msdn.com/o9/edge/8/6/3/9/1/itprochalktalkbelux_320_edge.png, postid=19368" /&gt;&lt;param name="background" value="#00FFFFFF" /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkID=124807" style="text-decoration: none;"&gt; &lt;img src="http://go.microsoft.com/fwlink/?LinkId=108181" alt="Get Microsoft Silverlight" style="border-style: none"/&gt; &lt;/a&gt; &lt;/object&gt;&lt;br /&gt;&lt;br /&gt;Warning: the audio is in Dutch.&lt;br /&gt;&lt;br /&gt;Enjoy!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6698225444253269186?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6698225444253269186/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/recording-available-for-first-it-pro.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6698225444253269186'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6698225444253269186'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/recording-available-for-first-it-pro.html' title='Recording available for the first IT-Pro Chalk-Talk'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-1032896050831680172</id><published>2010-03-09T23:06:00.000+01:00</published><updated>2010-03-09T23:06:39.220+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MIIS'/><category scheme='http://www.blogger.com/atom/ns#' term='ILM'/><category scheme='http://www.blogger.com/atom/ns#' term='mySQL'/><title type='text'>mySQL Extensible MA for MIIS/ILM</title><content type='html'>This is a recurring request on &lt;a href="http://social.technet.microsoft.com/Forums/en-US/identitylifecyclemanager/threads"&gt;Microsoft's ILM forum&lt;/a&gt;. So, I put a link to the &lt;a href="http://cid-619c818aa3b8495e.skydrive.live.com/self.aspx/mySQL%20XMA%20Bits/MySqlXMA.zip"&gt;source&lt;/a&gt; here such that folks can get to it without needing to ask. To make everything work, don’t forget to download the SQL.NET Connector from &lt;a href="http://dev.mysql.com/doc/refman/5.0/en/connector-net.html"&gt;http://dev.mysql.com/doc/refman/5.0/en/connector-net.html&lt;/a&gt; as well. Oh, and if you came here through the ILM forum, mark that post as helpful to bump it up the list.&lt;br /&gt;&lt;br /&gt;All this of course with thanks to the original author (whoever you may be - if you stumble on this, please leave a comment such that I can credit you properly!)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-1032896050831680172?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/1032896050831680172/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/mysql-extensible-ma-for-miisilm.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1032896050831680172'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/1032896050831680172'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/mysql-extensible-ma-for-miisilm.html' title='mySQL Extensible MA for MIIS/ILM'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-2095920036939855922</id><published>2010-03-08T22:55:00.003+01:00</published><updated>2010-03-08T23:32:02.768+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Kerberos'/><category scheme='http://www.blogger.com/atom/ns#' term='AD'/><title type='text'>Recovering from a Kerberos Token Bloat Attack</title><content type='html'>Last week, as announced in &lt;a href="http://be-id.blogspot.com/2010/02/first-it-pro-chalk-talk-in-belgium.html"&gt;this post&lt;/a&gt;, we had our first IT Pro Chalk-Talk session, organized by the Pro-Exchange, IT-Talks and winsec.be Microsoft community groups.&lt;br /&gt;&lt;br /&gt;One of the questions asked was arround token sizes. You know, how large a token can become, how many groups can be accomodated in a Kerberos Ticket and the registry key required to set the maximum token size.&amp;nbsp;All this is fairly well documented on Microsoft's TechNet website.&lt;br /&gt;&lt;br /&gt;Also relatively well-known is the &lt;em&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=4A303FA5-CF20-43FB-9483-0F0B0DAE265C&amp;amp;displaylang=en"&gt;tokensz&lt;/a&gt;&lt;/em&gt; utility that can be used to troubleshoot Kerberos token size related problems.&lt;br /&gt;&lt;br /&gt;Less known is what is called a "Token Bloat Attack". A Token Bloat Attack is a kind of Denial of Service attack against your Active Directory Service. This&amp;nbsp;happens when all users (including the default Administrator) are members of more groups than the Kerberos ticket can accomodate (which is 1015, give or take a few depending on e.g. the FQDN of your Windows domain). When a user is a member of more than this number of groups, the Active Directory will refuse to let him log on because not all group memberships can be evaluated, including membership that would deny access to certain resources.&lt;br /&gt;&lt;br /&gt;When this happens, the question arizes how to recover from this situation. One might think that restoring the AD from backup would work. However this is usually not the case: usually, extra groups were created to execute the attack. After a restore (and after AD replication), these groups would still be present and users would still be members of these groups. &lt;br /&gt;&lt;br /&gt;So, how to recover if you can't restore AD? Fortunately, Microsoft left a simple way to recover: you simply need to restart a DC in the domain using the &lt;em&gt;Safe Boot&lt;/em&gt; option (not the &lt;em&gt;Directory Services Restore Mode&lt;/em&gt;!). In Safe Mode, AD is loaded and the default Administrator can log on (even if the account is member of too many groups or when the account is disabled)! Of course, after logging on, the Administrator can remove the offending groups in the regular way (using Active Directory Users &amp;amp; Computers or any other way), and life is well ...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-2095920036939855922?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/2095920036939855922/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/recovering-from-kerberos-token-bloat.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2095920036939855922'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/2095920036939855922'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/recovering-from-kerberos-token-bloat.html' title='Recovering from a Kerberos Token Bloat Attack'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-3656054327629069955</id><published>2010-03-02T10:55:00.003+01:00</published><updated>2010-03-26T22:35:29.932+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>Forefront Identity Manager 2010 released!</title><content type='html'>Today, Microsoft released FIM2010! In a press release that can be found &lt;a href="http://www.microsoft.com/presspass/press/2010/mar10/03-02RSA2010PR.mspx?rss_fdn=Press%20Releases"&gt;here&lt;/a&gt;, Microsoft outlines progress toward a safer, more trusted Internet. The evaluation download can be found &lt;a href="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;amp;FamilyID=22731a2a-5b0f-4c6b-846a-e53588117981"&gt;here&lt;/a&gt;,&amp;nbsp;while TAP and RDP customers can download a full version from Microsoft's connect website. The release was officialy announced today&amp;nbsp;during the keynote that was delivered by Scott Charney at the &lt;a href="http://www.rsaconference.com/2010/usa/index.htm"&gt;RSA Conference&lt;/a&gt;.&amp;nbsp;This effectively ends a period of many delays and frustration over these delays. I'm happy that we finally can move on and start implementing this promising product at our customers!&lt;br /&gt;&lt;br /&gt;During the same keynote, Scott Charney also shared details about Microsoft's U-Prove technology, which it acquired from Credentica back in 2008:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;&lt;em&gt;U-Prove is an innovative cryptographic technology that enables the issuance and presentation of cryptographically protected claims in a manner that provides multi-party security: issuing organizations, users, and relying parties can protect themselves not just against outsider attacks but also against attacks originating from each other. At the same time, the U-Prove technology enables any desired degree of privacy (including authenticated anonymity and pseudonymity) without contravening multi-party security. These user-centric aspects make the U-Prove technology ideally suited to create the digital equivalent of paper-based credentials and the plastic cards in one's wallet.&lt;/em&gt;&lt;/blockquote&gt;&lt;br /&gt;&amp;nbsp;Further details and related downloads&amp;nbsp;can be found &lt;a href="https://connect.microsoft.com/content/content.aspx?contentid=12505&amp;amp;siteid=642"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-3656054327629069955?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/3656054327629069955/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/03/forefront-identity-manager-2010.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3656054327629069955'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/3656054327629069955'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/03/forefront-identity-manager-2010.html' title='Forefront Identity Manager 2010 released!'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-6011787637494352010</id><published>2010-02-25T20:03:00.001+01:00</published><updated>2010-02-25T20:13:40.744+01:00</updated><title type='text'>Putting missing kids on your 404 page</title><content type='html'>Every now and then, you stumble upon a great idea. &lt;a href="http://tech.bluesmoon.info/2010/02/missing-kids-on-your-404-page.html"&gt;This post&lt;/a&gt; on "the other side of the moon" did that for me - why didn't I think of this! Simply put, the author suggests leveraging your 404 pages to find back missing kids. While the code presented works in the US and Canada and is geared towards Apache, it should not be too hard to make it work anywhere in the world for all kinds of web platforms...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-6011787637494352010?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/6011787637494352010/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/02/putting-missing-kids-on-your-404-page.html#comment-form' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6011787637494352010'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/6011787637494352010'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/02/putting-missing-kids-on-your-404-page.html' title='Putting missing kids on your 404 page'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-4278232044224479125</id><published>2010-02-23T21:38:00.001+01:00</published><updated>2010-03-08T22:56:36.153+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='FIM'/><title type='text'>ILM MVP Brian Komar publishes free eBook on FIM 2010 Certificate Management</title><content type='html'>Just discovered &lt;a href="http://iss.thalesgroup.com/en/l/program/FIM-eBook.aspx"&gt;this free title&lt;/a&gt; by fellow MVP Brian Komar. From the cover:&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;a href="http://2.bp.blogspot.com/_jV3Gdj--nA0/S4Q8vmLNBoI/AAAAAAAAAA0/iw1HxikAwB4/s1600-h/Komar%2520Thumbnail.jpg" imageanchor="1" style="clear: left; cssfloat: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" ct="true" src="http://2.bp.blogspot.com/_jV3Gdj--nA0/S4Q8vmLNBoI/AAAAAAAAAA0/iw1HxikAwB4/s320/Komar%2520Thumbnail.jpg" /&gt;&lt;/a&gt;&lt;/div&gt;&lt;blockquote&gt;&lt;em&gt;This technical book for information security professionals gives an introduction to Microsoft Forefront Identity Manager 2010 (FIM) and how to protect a FIM 2010 Certificate Management Server (CM) with Thales hardware security modules (HSMs).&lt;/em&gt;&lt;/blockquote&gt;&lt;div&gt;Highly recommended!&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-4278232044224479125?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/4278232044224479125/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/02/ilm-mvp-brian-komar-publishes-free.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4278232044224479125'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4278232044224479125'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/02/ilm-mvp-brian-komar-publishes-free.html' title='ILM MVP Brian Komar publishes free eBook on FIM 2010 Certificate Management'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_jV3Gdj--nA0/S4Q8vmLNBoI/AAAAAAAAAA0/iw1HxikAwB4/s72-c/Komar%2520Thumbnail.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-7082085245965828777</id><published>2010-02-23T21:24:00.000+01:00</published><updated>2010-02-23T21:24:11.309+01:00</updated><title type='text'>First IT-Pro Chalk-Talk in Belgium</title><content type='html'>On Thursday March 4th, winsec.be organizes together with the Pro-Exchange and IT-Talks a first "Chalk-Talk" event.&lt;br /&gt;&lt;br /&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;img border="0" ct="true" src="http://2.bp.blogspot.com/_jV3Gdj--nA0/S4Qw6iqReCI/AAAAAAAAAAs/qvSFnfVabis/s320/chalkboard_original%2520with%2520illustrations.jpg" /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: center;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;&lt;br /&gt;&lt;/div&gt;&lt;div class="separator" style="clear: both; text-align: left;"&gt;At this event, a group of Belgian MVP's and experts help analyze the public's IT architecture problems. Solution areas tackled are:&lt;/div&gt;&lt;ul&gt;&lt;li&gt;Exchange Server&lt;/li&gt;&lt;li&gt;Office Communications Server&lt;/li&gt;&lt;li&gt;Active Directory&lt;/li&gt;&lt;li&gt;Security&lt;/li&gt;&lt;li&gt;General networking TCP/IP&lt;/li&gt;&lt;li&gt;Group policies&lt;/li&gt;&lt;/ul&gt;Registration and practical information at &lt;a href="http://itprochalktalk.eventbrite.com/"&gt;http://itprochalktalk.eventbrite.com/&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;div&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-7082085245965828777?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/7082085245965828777/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/02/first-it-pro-chalk-talk-in-belgium.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7082085245965828777'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/7082085245965828777'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/02/first-it-pro-chalk-talk-in-belgium.html' title='First IT-Pro Chalk-Talk in Belgium'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://2.bp.blogspot.com/_jV3Gdj--nA0/S4Qw6iqReCI/AAAAAAAAAAs/qvSFnfVabis/s72-c/chalkboard_original%2520with%2520illustrations.jpg' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4248169236248672533.post-4719447425831329463</id><published>2010-02-22T23:29:00.000+01:00</published><updated>2010-02-22T23:29:20.121+01:00</updated><title type='text'>my First</title><content type='html'>Now isn't that classic. Somebody setting up a blog. This looks mighty empty, doesn't it? So, there comes the inspiration of writing the first post. Now let's make this easy. What will I be writing about? Anyone who knows me, knows also a bit about my passions, which are ... ok, technology mostly, more particularly Identity and Access Management, which is also what earned me my &lt;a href="https://mvp.support.microsoft.com/profile/Paul.Loonen"&gt;MVP&lt;/a&gt; for Microsoft Identity Lifecyle Manager. Most of my ramblings&amp;nbsp;will be about &lt;a href="http://www.microsoft.com/forefront/identitymanager/en/us/default.aspx"&gt;Forefront Identity Manager 2010&lt;/a&gt;, the upcoming Microsoft entry in the IAM market (launched pretty soon now). Other things of course as well. Bits about security, bits about making life easier with technology. Bits about what I do outside technology (pretty boring actually, but, we'll see where this gets me). In any case, enough for a first post...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4248169236248672533-4719447425831329463?l=be-id.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://be-id.blogspot.com/feeds/4719447425831329463/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://be-id.blogspot.com/2010/02/my-first.html#comment-form' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4719447425831329463'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4248169236248672533/posts/default/4719447425831329463'/><link rel='alternate' type='text/html' href='http://be-id.blogspot.com/2010/02/my-first.html' title='my First'/><author><name>Paul Loonen</name><uri>http://www.blogger.com/profile/13481415493307336610</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
