<?xml version="1.0"?>
<!-- RSS generated by Radio UserLand v8.2.1 on Tue, 08 Apr 2008 18:34:35 GMT -->
<rss version="2.0">
	<channel>
		<title>Mark O&apos;Neill&apos;s Radio Weblog</title>
		<link>http://radio.weblogs.com/0111797/</link>
		<description></description>
		<copyright>Copyright 2008 Mark O&apos;Neill</copyright>
		<lastBuildDate>Tue, 08 Apr 2008 18:34:35 GMT</lastBuildDate>
		<docs>http://backend.userland.com/rss</docs>
		<generator>Radio UserLand v8.2.1</generator>
		<managingEditor>mark@vordel.com</managingEditor>
		<webMaster>mark@vordel.com</webMaster>
		<category domain="http://rpc.weblogs.com/shortChanges.xml">rssUpdates</category> 
		<skipHours>
			<hour>0</hour>
			<hour>1</hour>
			<hour>2</hour>
			<hour>3</hour>
			<hour>4</hour>
			<hour>5</hour>
			<hour>6</hour>
			<hour>18</hour>
			</skipHours>
		<cloud domain="radio.xmlstoragesystem.com" port="80" path="/RPC2" registerProcedure="xmlStorageSystem.rssPleaseNotify" protocol="xml-rpc"/>
		<ttl>60</ttl>
		<item>
			<title>Blogging RSA 2: Craig Mundie from Microsoft namechecks SecPal</title>
			<link>http://radio.weblogs.com/0111797/2008/04/08.html#a116</link>
			<description>&lt;P&gt;A couple of years ago i spoke alongside Andy Gordon and Cedric Fournet from Microsoft Research (Cambridge, UK) at a conference in France. At that time, they were working on validation of WS-Policy policies, detecting logical&amp;nbsp;faults and inconsistencies,&amp;nbsp;but they were also looking at mechanisms to express authorization and RBAC information in general.&lt;/P&gt;
&lt;P&gt;It is good to see their work mentioned this morning by Craig Mundie in his RSA Conference Keynote. He mentioned in a framework called SecPAL&amp;nbsp;&amp;nbsp;&amp;nbsp; ( read: &lt;A href=&quot;http://research.microsoft.com/~moritzb/docs/beckerfournetgordon_authorizationlanguage.pdf&quot;&gt;&lt;a href=&quot;http://research.microsoft.com/~moritzb/docs/beckerfournetgordon_authorizationlanguage.pdf&quot;&gt;http://research.microsoft.com/~moritzb/docs/beckerfournetgordon_authorizationlanguage.pdf&lt;/a&gt;&lt;/A&gt;&amp;nbsp;).&lt;/P&gt;
&lt;P&gt;I have some questions about SecPAL though. It overlaps with XACML, but it is designed in a more &quot;natural language&quot; way than XACML (anyone who has read XACML will know what i mean about that). But, nobody in their right mind would&amp;nbsp;create or edit policies by manually editing XACML.&amp;nbsp;XACML import and export (and policy import and export in general) is important in large networks. Policy silos are just as bad as identity silos. It would be possible to map from SecPAL to XACML, i can see, but right now nothing does that (right?). That is a gap right now.&lt;/P&gt;
&lt;P&gt;One great thing about SecPAL is that it is built on top of research into developing policies which are logical and useful. Policy languages often give you &quot;enough rope to hang yourself&quot;, and they have thought about this in advance. That&apos;s all good. But i remain worried about the overlap with XACML.&amp;nbsp;Maybe it was telling that teh example used by Craig Mundie,&amp;nbsp;doctor access to healthcare,&amp;nbsp;was very similar to&amp;nbsp;the example used in the XACML Specification.&lt;/P&gt;
&lt;P&gt;Looking forward to seeing where Microsoft goes with SecPAL.&amp;nbsp;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2008/04/08.html#a116</guid>
			<pubDate>Tue, 08 Apr 2008 18:34:35 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=116&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2008%2F04%2F08.html%23a116</comments>
			</item>
		<item>
			<title>Blogging RSA: The &quot;Identity Router&quot; - a neat concept</title>
			<link>http://radio.weblogs.com/0111797/2008/04/08.html#a115</link>
			<description>&lt;P&gt;Identity Management is plagued by analogies which are not quite correct, resulting in tremendous confusion. For example, a digital certificate is a little bit like a passport, but not quite...&amp;nbsp; &lt;/P&gt;
&lt;P&gt;Once in a while, though, a good analogy crops up. One such example was used by Andre Durand yesterday, the &quot;Identity Router&quot;. This phrase neatly gets across the ability to join identity information from two domains together. &quot;Identity Bridge&quot; might also apply.&lt;/P&gt;
&lt;P&gt;XML Gateways are natural &quot;identity routers&quot;. They can take one token, used in one domain, and map it to a token used in a differnet domain. It is best to use standards for to achieve this. Key standards here include SAML (to encapsulate the identity information sent between domains) and WS-Trust (to exchange one form of security token to another).&lt;/P&gt;
&lt;P&gt;In the Vordel XML Gateway we provide the building blocks to do this mapping, to create &quot;identity routing&quot; nodes. In the example below, the Gateway is using a policy which makes use of WS-Trust to convert from a WS-Security UsernameToken (used in one domain) to a SAML token (which can be sent across the network to another domain). At the other domain, a local XML Gateway can use the SAML token to map the user to their local identity there. The beauty of using the standards is that customers are not locked into proprietary methods of doing this mapping. &lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;IMG src=&quot;http://radio.weblogs.com/0111797/images/Studio.jpg&quot;&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2008/04/08.html#a115</guid>
			<pubDate>Tue, 08 Apr 2008 18:19:21 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=115&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2008%2F04%2F08.html%23a115</comments>
			</item>
		<item>
			<title>Speaking on Banking Web Services at RSA Conference this week </title>
			<link>http://radio.weblogs.com/0111797/2008/04/06.html#a114</link>
			<description>&lt;P&gt;I&apos;m speaking on Tuesday at the RSA Conference in San Francisco, the details are below.&lt;/P&gt;
&lt;P&gt;It&apos;s nice to see the little star in the catalog beside my name means &quot;Top Rated Speaker&quot; :-)&lt;/P&gt;
&lt;P&gt;Full catalog is here: &lt;A href=&quot;https://cm.rsaconference.com/US08/catalog/controller/catalog&quot;&gt;&lt;a href=&quot;https://cm.rsaconference.com/US08/catalog/controller/catalog&quot;&gt;https://cm.rsaconference.com/US08/catalog/controller/catalog&lt;/a&gt;&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;If anyone out there is going to be at RSA, let me know since I have tickets to a drinks reception after my talk which I can give out.&lt;/P&gt;
&lt;P&gt;-------------------------------------------&lt;/P&gt;
&lt;P&gt;
&lt;TABLE class=listTable id=resultsTable cellSpacing=0 cellPadding=0 border=0&gt;
&lt;TBODY&gt;
&lt;TR class=odd&gt;
&lt;TD&gt;HT2-107 &lt;/TD&gt;
&lt;TD&gt;&lt;FONT color=#3366cc&gt;Case Notes from a Vulnerability Assessment of a Bank&apos;s Web Services&lt;/FONT&gt;&lt;/TD&gt;
&lt;TD&gt;Intermediate Technical &lt;/TD&gt;
&lt;TD&gt;Track Session&lt;/TD&gt;
&lt;TD&gt;Tuesday, April 08 04:10 PM&lt;/TD&gt;
&lt;TD&gt;
&lt;DIV class=fontSpeakerName&gt;&lt;SPAN class=fontNoWrap&gt;&lt;A href=&quot;javascript:openWin(&apos;speakers/speaker.jsp?key=2565&amp;amp;SESSION_ID=1779&apos;)&quot;&gt;&lt;FONT color=#3366cc&gt;Mark&amp;nbsp;O&apos;Neill&lt;/FONT&gt;&lt;/A&gt;&amp;nbsp; &lt;/SPAN&gt;&lt;/DIV&gt;
&lt;DIV class=fontSpeakerDetail&gt;CTO, &lt;/DIV&gt;
&lt;DIV class=fontSpeakerDetail&gt;Vordel&lt;/DIV&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2008/04/06.html#a114</guid>
			<pubDate>Sun, 06 Apr 2008 20:47:17 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=114&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2008%2F04%2F06.html%23a114</comments>
			</item>
		<item>
			<title>&quot;What slow aspects of XML do you speed up?&quot;</title>
			<link>http://radio.weblogs.com/0111797/2008/02/18.html#a113</link>
			<description>&lt;P&gt;At a meeting near Washington recently I was asked &quot;What slow aspects of XML do you speed up?&quot;. The answer is in our &lt;A href=&quot;http://www.vordel.com/scripts/downloadA.pl?downloadfile=XML_Performance_Offload.pdf&quot;&gt;XML Offload White Paper&lt;/A&gt;&amp;nbsp;. I&apos;d encourage everyone to check it out.&lt;/P&gt;
&lt;P&gt;As well as offloading XML validation, XML Signature, and XML transformation, we also provide &quot;XML Enrichment&quot; on the network. What is &quot;XML Enrichement&quot;? It is the name given to the practice of looking up contextual information which is then embedded into the XML message. For example, one of our mobile telecoms customers uses our &lt;A href=&quot;http://www.vordel.com/products/vx_gateway/&quot;&gt;XML Gateways&lt;/A&gt; to look up subscriber information in databases and directories and then to insert it into XML messages on the fly on the network. Then, the task of looking up this information is offloaded from the application server. It is another example of XML Offload. &lt;/P&gt;&lt;IMG src=&quot;http://radio.weblogs.com/0111797/images/Offload.jpg&quot;&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2008/02/18.html#a113</guid>
			<pubDate>Mon, 18 Feb 2008 18:17:56 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=113&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2008%2F02%2F18.html%23a113</comments>
			</item>
		<item>
			<title>Network Computing - CA Gets a Gateway to SOA </title>
			<link>http://radio.weblogs.com/0111797/2007/11/20.html#a112</link>
			<description>&lt;P&gt;It&apos;s official - read all about it at NWC blog:&lt;/P&gt;
&lt;P&gt;&lt;A href=&quot;http://www.networkcomputing.com/blog/dailyblog/archives/2007/11/vordel_gives_ca.html&quot;&gt;&lt;a href=&quot;http://www.networkcomputing.com/blog/dailyblog/archives/2007/11/vordel_gives_ca.html&quot;&gt;http://www.networkcomputing.com/blog/dailyblog/archives/2007/11/vordel_gives_ca.html&lt;/a&gt;&lt;/A&gt;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/20.html#a112</guid>
			<pubDate>Tue, 20 Nov 2007 18:42:43 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=112&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F20.html%23a112</comments>
			</item>
		<item>
			<title>Skating, scarves, and snow - Winter in Boston</title>
			<link>http://radio.weblogs.com/0111797/2007/11/20.html#a111</link>
			<description>&lt;P&gt;&amp;nbsp;&lt;IMG src=&quot;http://radio.weblogs.com/0111797/images/winter.jpg&quot;&gt;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/20.html#a111</guid>
			<pubDate>Tue, 20 Nov 2007 18:41:09 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=111&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F20.html%23a111</comments>
			</item>
		<item>
			<title>Securent and Cisco</title>
			<link>http://radio.weblogs.com/0111797/2007/11/19.html#a110</link>
			<description>&lt;P&gt;When Cisco acquired Securent, the first question of course was &quot;after Securant and Securent, who owns Securint.com?&quot; Well, that is a joke, sort of [if you&apos;re wondering, LexisNexis owns Securint.com].&lt;/P&gt;But, hey, there are five vowels and the other two variations are available:&lt;BR&gt;&lt;IMG src=&quot;http://radio.weblogs.com/0111797/images/securent.jpg&quot;&gt; 
&lt;P&gt;[BTW - ever thought about phoning up the Register.com &quot;Web Services Consultant&quot; and asking &quot;Where do you stand on SOAP and REST?&quot;]&lt;/P&gt;
&lt;P&gt;But the second question was &quot;If Cisco owns both Securent and Reactivity, i.e. both the PEP and the PDP, will they not be tempted to forget about standards and connect the two in a proprietary way?&quot;. i.e.&amp;nbsp;At the moment, any XML Gateway can act as a PEP for Securent (Vordel, Datapower, Layer 7, or the Cisco ACE Gateway as they call the Reactivity product now). Would they be tempted to add some functionality which would make the Reactivity product &quot;more equal than others&quot; when it comes to talking to Securent.&lt;/P&gt;
&lt;P&gt;The answer seems to be &quot;No&quot;, &lt;A href=&quot;http://www.aniltj.com/blog/2007/11/02/CiscoAndSecurent.aspx&quot;&gt;as reported by Anil John&lt;/A&gt;&amp;nbsp;and &lt;A href=&quot;http://identityblog.burtongroup.com/bgidps/2007/11/on-ciscos-agree.html&quot;&gt;Phil Schacter.&lt;/A&gt; Cisco apparently are not putting the Reactivity and Securent products into the same business group.&lt;/P&gt;
&lt;P&gt;SAML, XACML, PEPs and PDPs are subjects close to Vordel&apos;s heart. I explain &lt;A href=&quot;http://radio.weblogs.com/0111797/2007/01/22.html&quot;&gt;here about part of how we provide his XACML and SAML support&lt;/A&gt;. We&apos;ve support them for a long time and we have one of the earliest live XACML PEP/PDP implementations live up in Canada, and it&apos;s been in production for over 2 years now. All of the IAM vendors support SAML and XACML to some degree. It will be interesting to see how the Securent acquisition plays out for Cisco.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/19.html#a110</guid>
			<pubDate>Mon, 19 Nov 2007 23:36:00 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=110&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F19.html%23a110</comments>
			</item>
		<item>
			<title>Drizzly Dublin or Drizzly Boston</title>
			<link>http://radio.weblogs.com/0111797/2007/11/19.html#a109</link>
			<description>&lt;P&gt;I missed &lt;A href=&quot;http://blog.jonudell.net/2007/11/19/drizzly-dublin/&quot;&gt;Jon Udell who visited our Dublin office today&lt;/A&gt;. I was at home in drizzly Boston instead, having swapped one drizzly place for another.&lt;/P&gt;
&lt;P&gt;Jon chatted with our VP Engineering about SOAP vs REST (where better than&amp;nbsp;Ireland&amp;nbsp;for&amp;nbsp;a discussion&amp;nbsp;about&amp;nbsp;religious wars, don&apos;t get us started on Emacs vs vi).&lt;/P&gt;
&lt;P&gt;Dave pointed out that within the enterprise, especially in Message Queue environments, SOAP and WS-* are very much alive. After all, they are transport neutral. But, if you want to maximize your client reach, REST is the way to go.&lt;/P&gt;
&lt;P&gt;Vendors have to be neutral like Switzerland (or, um, &lt;A href=&quot;http://www.amazon.com/That-Neutral-Island-Cultural-History/dp/0674026829&quot;&gt;Ireland&lt;/A&gt;) in this matter. With our XML Gateways you can support SOAP and REST with the same Web Services, and apply the same policy umbrella to both: &lt;A href=&quot;http://radio.weblogs.com/0111797/2007/10/05.html&quot;&gt;&lt;a href=&quot;http://radio.weblogs.com/0111797/2007/10/05.html&quot;&gt;http://radio.weblogs.com/0111797/2007/10/05.html&lt;/a&gt;&lt;/A&gt;.&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/19.html#a109</guid>
			<pubDate>Mon, 19 Nov 2007 22:54:42 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=109&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F19.html%23a109</comments>
			</item>
		<item>
			<title>OWASP San Jose</title>
			<link>http://radio.weblogs.com/0111797/2007/11/19.html#a108</link>
			<description>&lt;P&gt;Last week I was at the &lt;A href=&quot;http://www.owasp.org/index.php/7th_OWASP_AppSec_Conference_-_San_Jose_2007/Agenda&quot;&gt;OWASP Conference at San Jose in Ebay&lt;/A&gt;. Because of an IBM cancellation, I ended up giving two presentations - the one I was scheduled for, and a presentation in the IBM Datapower timeslot. For the second slot, I talked about 8 of our customer case studies and the problems which our products addressed for these customers. I find that it&apos;s a lot more useful to talk about concrete things like this, rather than &quot;here is&amp;nbsp;a vulnerabilty which may or may not apply to Web Services&quot;. In the case studies, you can see how we provided real benefit by offloading XML heavy lifting off application servers, and providing centralized policy-based control of SOA, from edge to endpoint.&lt;/P&gt;
&lt;P&gt;The conference itself was really great. Apart from a trip to Oracle OpenWorld, I was there for two days and saw some great talks. The highlight for me was Sami Kamkar - what a great talk about&amp;nbsp;his experience&amp;nbsp;writing the MySpace Sami worm&amp;nbsp;and suffering the consequences. Hilarious (the first person to access his adjusted profile was the girlfriend of a friend: &quot;She was totally checking me out!&quot;) and informative (step-by-step walkthrough of the code) at the same time.&lt;/P&gt;
&lt;P&gt;My two presentations should be up on the OWASP site anytime soon.&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/19.html#a108</guid>
			<pubDate>Mon, 19 Nov 2007 22:42:51 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=108&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F19.html%23a108</comments>
			</item>
		<item>
			<title>CA&apos;s new Identity and Access Management (IAM) suite</title>
			<link>http://radio.weblogs.com/0111797/2007/11/19.html#a107</link>
			<description>&lt;P dir=ltr&gt;CA&apos;s new Identity and Access Management suite is particularly strong, although I guess I am biased :-) [see below].&lt;/P&gt;
&lt;P dir=ltr&gt;By combining an XML Gateway with SiteMinder, a directory, and mainframe security, it really is a full stack. Integration&amp;nbsp;is provided on a plate to the customer, rather than leaving the customer to think &quot;how do i get all these security pieces to work together&quot;.&lt;/P&gt;
&lt;BLOCKQUOTE dir=ltr style=&quot;MARGIN-RIGHT: 0px&quot;&gt;
&lt;P&gt;Included in the first wave of releases will be CA SiteMinder, the single-sign on product for web access; SOA Security Manager, the successor to CA&apos;s TransactionMinder; SOA Security gateway appliance, which is OEM&apos;ed from Vordel; CA Directory; plus a batch of mainframe security products.&lt;BR&gt;&lt;A href=&quot;http://www.computerbusinessreview.com/article_news.asp?guid=8FBCA9C5-D605-4E3D-9DF9-021EB6282299&quot;&gt;&lt;a href=&quot;http://www.computerbusinessreview.com/article_news.asp?guid=8FBCA9C5-D605-4E3D-9DF9-021EB6282299&quot;&gt;http://www.computerbusinessreview.com/article_news.asp?guid=8FBCA9C5-D605-4E3D-9DF9-021EB6282299&lt;/a&gt;&lt;/A&gt;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/11/19.html#a107</guid>
			<pubDate>Mon, 19 Nov 2007 22:31:15 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=107&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F11%2F19.html%23a107</comments>
			</item>
		<item>
			<title>SOA Plumbing delivering power and water usage info</title>
			<link>http://radio.weblogs.com/0111797/2007/10/23.html#a106</link>
			<description>&lt;P&gt;Joanne Cummings has an interesting story in Network World today about an electricity utility in &lt;A href=&quot;http://www.networkworld.com/supp/2007/ndc6/102207-pnnl-ibm-soa-case-study.html&quot;&gt;the US Pacific Northwest which is using SOA&lt;/A&gt;. &lt;/P&gt;
&lt;P&gt;The story reminded me of another user of SOA in the utility space: EPAL in Portugal. EPAL is the Portugese state water board. They use SOA to provide customer-facing information about water usage, and they use XML networking infrastructure and an event-driven model.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Utilities are widespread users of &lt;A href=&quot;http://weblog.infoworld.com/realworldsoa/&quot;&gt;Real World SOA&lt;/A&gt; , though the goal here is not competitive advantage: The intriguing thing about the two case studies is that the goal in both cases is to &lt;EM&gt;cause their customers to use less of their products.&lt;/EM&gt; By providing real-time insight into their rates and usage, they can do this (the customer thinks &quot;it costs *that* much????&quot;). &lt;/P&gt;
&lt;P&gt;There is no comparable EPAL case study online, but here is a &lt;A href=&quot;http://findarticles.com/p/articles/mi_m0EIN/is_2004_April_27/ai_n5999962&quot;&gt;snippit from one of our press releases&lt;/A&gt;: &lt;/P&gt;
&lt;BLOCKQUOTE dir=ltr style=&quot;MARGIN-RIGHT: 0px&quot;&gt;
&lt;P&gt;Empresa Portuguesa de Aguas Livres (EPAL), the largest water supplier in Portugal, selected Vordel to provide security for its XML-based online services. &quot;We are delighted with the way that VordelSecure is able to communicate with all the systems we currently have running,&quot; said Dr. Luis Novaes dos Reis, CIO at EPAL. &quot;It can handle existing security methods, talk to the legacy systems, as well as run in tandem with the new application servers. VordelSecure was also fast to implement, and, because of its ability to leverage the existing architecture and reduce security maintenance costs, will deliver significant savings to EPAL.&quot;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/10/23.html#a106</guid>
			<pubDate>Tue, 23 Oct 2007 20:49:36 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=106&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F10%2F23.html%23a106</comments>
			</item>
		<item>
			<title>What is Web 2.0, anyway?</title>
			<link>http://radio.weblogs.com/0111797/2007/10/22.html#a104</link>
			<description>&lt;P&gt;This &lt;A href=&quot;http://www.johnbreslin.com/blog/2007/10/19/enriching-the-internet-experience-conference-yesterday/&quot;&gt;presentation by John Breslin of DERI and boards.ie&lt;/A&gt;&amp;nbsp;is the best explanation of the social networking aspects of Web 2.0 as I have seen anywhere.&lt;/P&gt;
&lt;P&gt;John builds the argument that connections between people are not &lt;EM&gt;just about the connections &lt;/EM&gt;(&quot;Hey, I have 100 LinkedIn connections&quot;) but they are about connections &lt;EM&gt;around objects&lt;/EM&gt;. In this respect, Wired&apos;s already widely-criticised story on &quot;&lt;A href=&quot;http://www.wired.com/techbiz/people/magazine/15-09/st_socialnetworks&quot;&gt;The Six Lamest Social Networks&lt;/A&gt;&quot; actually has it backwards: by organizing networks centrifugally&amp;nbsp;&lt;EM&gt;around objects&lt;/EM&gt;, Social Networking sites have meaning, even when they do not have 200 milllion users and even when they are centered around minority interests (like Thomas Kinkade paintings!). The point is that they are centered on objects which are in common.&lt;/P&gt;
&lt;P&gt;Normally I gag on any presentation which includes the Semantic Web, usually preceeded by words like &quot;ontology&quot; (I agree with &lt;A href=&quot;http://seanmcgrath.blogspot.com/2005_06_12_seanmcgrath_archive.html#111857163533183939&quot;&gt;Sean McGrath&apos;s sentiments&lt;/A&gt;: &quot;I&apos;ll cheer from the rooftops if anything great comes out of this gargantuan effort around the Semantic Web but gee, I&apos;m just not at all convinced that this stuff is going anywhere fast.&quot;). But this one is different. The presentation builds to make the case that the way in which they objects are defined for Social Networks can use Semantic Web elements, such as the widely-cited &quot;Friend of a Friend&quot;.&lt;/P&gt;
&lt;P&gt;Anyway, this presentation is highly recommended. &lt;A href=&quot;http://www.johnbreslin.com/blog/2007/10/19/enriching-the-internet-experience-conference-yesterday/&quot;&gt;View it for yourself&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
			<guid>http://radio.weblogs.com/0111797/2007/10/22.html#a104</guid>
			<pubDate>Mon, 22 Oct 2007 21:50:21 GMT</pubDate>
			<comments>http://radiocomments.userland.com/comments?u=111797&amp;amp;p=104&amp;amp;link=http%3A%2F%2Fradio.weblogs.com%2F0111797%2F2007%2F10%2F22.html%23a104</comments>
			</item>
		</channel>
	</rss>
