<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: Show 040 &#8211; An Interview with Bob Blakley</title>
	<atom:link href="http://www.cigital.com/silver-bullet/show-040/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.cigital.com/silver-bullet/show-040/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=show-040</link>
	<description>Cigital CTO Gary McGraw discusses software security with security gurus.</description>
	<lastBuildDate>Mon, 31 Oct 2011 00:04:20 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: Gregorio Anes</title>
		<link>http://www.cigital.com/silver-bullet/show-040/#comment-108</link>
		<dc:creator>Gregorio Anes</dc:creator>
		<pubDate>Thu, 10 Feb 2011 03:58:25 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-108</guid>
		<description>Great goods from you, man. I&#039;ve bear in mind your stuff prior to and you are just extremely fantastic. I actually like what you&#039;ve got here, really like what you&#039;re stating and the way wherein you assert it. You are making it entertaining and you still take care of to keep it wise. I cant wait to learn much more from you. That is really a wonderful website.- Elegant London Escorts, 65-67 Brewer Street, Floor: 2, London W1F 9UP. Phone: 020 3011 2941</description>
		<content:encoded><![CDATA[<p>Great goods from you, man. I&#8217;ve bear in mind your stuff prior to and you are just extremely fantastic. I actually like what you&#8217;ve got here, really like what you&#8217;re stating and the way wherein you assert it. You are making it entertaining and you still take care of to keep it wise. I cant wait to learn much more from you. That is really a wonderful website.- Elegant London Escorts, 65-67 Brewer Street, Floor: 2, London W1F 9UP. Phone: 020 3011 2941</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: gem</title>
		<link>http://www.cigital.com/silver-bullet/show-040/#comment-107</link>
		<dc:creator>gem</dc:creator>
		<pubDate>Wed, 22 Jul 2009 15:06:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-107</guid>
		<description>death to smileys.

sorry for the technical difficulties on this one.  we&#039;re usually better and we will be again.

gem</description>
		<content:encoded><![CDATA[<p>death to smileys.</p>
<p>sorry for the technical difficulties on this one.  we&#8217;re usually better and we will be again.</p>
<p>gem</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rmacmich</title>
		<link>http://www.cigital.com/silver-bullet/show-040/#comment-106</link>
		<dc:creator>rmacmich</dc:creator>
		<pubDate>Wed, 22 Jul 2009 15:03:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-106</guid>
		<description>Von -- This one was a particularly difficult one to level out due to a lot of background noise (and, therefore, the use of noise reduction) and level inconsistencies.  Sorry it was a tough listen for you -- hopefully past and future episodes aren&#039;t so jarring.  :)


... Ryan</description>
		<content:encoded><![CDATA[<p>Von &#8212; This one was a particularly difficult one to level out due to a lot of background noise (and, therefore, the use of noise reduction) and level inconsistencies.  Sorry it was a tough listen for you &#8212; hopefully past and future episodes aren&#8217;t so jarring.  <img src='http://www.cigital.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>&#8230; Ryan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Von</title>
		<link>http://www.cigital.com/silver-bullet/show-040/#comment-105</link>
		<dc:creator>Von</dc:creator>
		<pubDate>Wed, 22 Jul 2009 14:57:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-105</guid>
		<description>Technical gripe on the podcast audio: I found the difference in volume between Gary and Bob so great that I was constantly having to adjust my volume in my car to understand Bob but not get blasted away by Gary.

Don&#039;t mean to just complain though. Really enjoy the podcasts and the mix of technical and non-technical questions.</description>
		<content:encoded><![CDATA[<p>Technical gripe on the podcast audio: I found the difference in volume between Gary and Bob so great that I was constantly having to adjust my volume in my car to understand Bob but not get blasted away by Gary.</p>
<p>Don&#8217;t mean to just complain though. Really enjoy the podcasts and the mix of technical and non-technical questions.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gunnar</title>
		<link>http://www.cigital.com/silver-bullet/show-040/#comment-104</link>
		<dc:creator>Gunnar</dc:creator>
		<pubDate>Fri, 17 Jul 2009 19:46:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-104</guid>
		<description>Great interview. 

Bob pointed out his main gripe with Java&#039;s security model which is how it treats fine grained authorization. It requires defining all of the policy up front, very difficult or impossible to do in real world. And it lacks layers of indirections that we can use to resolve when we don&#039;t know a priori the full subject + object + session policies (i.e. most of the time). Bob opines that XACML and Claims may help resolve this, and I agree (if nothing else it represents our best current hope), but they didn&#039;t drill down on this 

Bob or Gary - anything to add here?</description>
		<content:encoded><![CDATA[<p>Great interview. </p>
<p>Bob pointed out his main gripe with Java&#8217;s security model which is how it treats fine grained authorization. It requires defining all of the policy up front, very difficult or impossible to do in real world. And it lacks layers of indirections that we can use to resolve when we don&#8217;t know a priori the full subject + object + session policies (i.e. most of the time). Bob opines that XACML and Claims may help resolve this, and I agree (if nothing else it represents our best current hope), but they didn&#8217;t drill down on this </p>
<p>Bob or Gary &#8211; anything to add here?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

