<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: Show 040 &#8211; An Interview with Bob Blakley</title>
	<atom:link href="http://www.cigital.com/silverbullet/show-040/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.cigital.com/silverbullet/show-040/</link>
	<description>In-depth conversations with leading security gurus, hosted by Gary McGraw, sponsored by IEEE Security &#38; Privacy Magazine.</description>
	<lastBuildDate>Thu, 28 Jan 2010 16:25:18 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: gem</title>
		<link>http://www.cigital.com/silverbullet/show-040/comment-page-1/#comment-40144</link>
		<dc:creator>gem</dc:creator>
		<pubDate>Wed, 22 Jul 2009 15:06:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-40144</guid>
		<description>death to smileys.

sorry for the technical difficulties on this one.  we&#039;re usually better and we will be again.

gem</description>
		<content:encoded><![CDATA[<p>death to smileys.</p>
<p>sorry for the technical difficulties on this one.  we&#8217;re usually better and we will be again.</p>
<p>gem</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: rmacmich</title>
		<link>http://www.cigital.com/silverbullet/show-040/comment-page-1/#comment-40143</link>
		<dc:creator>rmacmich</dc:creator>
		<pubDate>Wed, 22 Jul 2009 15:03:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-40143</guid>
		<description>Von -- This one was a particularly difficult one to level out due to a lot of background noise (and, therefore, the use of noise reduction) and level inconsistencies.  Sorry it was a tough listen for you -- hopefully past and future episodes aren&#039;t so jarring.  :)


... Ryan</description>
		<content:encoded><![CDATA[<p>Von &#8212; This one was a particularly difficult one to level out due to a lot of background noise (and, therefore, the use of noise reduction) and level inconsistencies.  Sorry it was a tough listen for you &#8212; hopefully past and future episodes aren&#8217;t so jarring.  <img src='http://www.cigital.com/silverbullet/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>&#8230; Ryan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Von</title>
		<link>http://www.cigital.com/silverbullet/show-040/comment-page-1/#comment-40142</link>
		<dc:creator>Von</dc:creator>
		<pubDate>Wed, 22 Jul 2009 14:57:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-40142</guid>
		<description>Technical gripe on the podcast audio: I found the difference in volume between Gary and Bob so great that I was constantly having to adjust my volume in my car to understand Bob but not get blasted away by Gary.

Don&#039;t mean to just complain though. Really enjoy the podcasts and the mix of technical and non-technical questions.</description>
		<content:encoded><![CDATA[<p>Technical gripe on the podcast audio: I found the difference in volume between Gary and Bob so great that I was constantly having to adjust my volume in my car to understand Bob but not get blasted away by Gary.</p>
<p>Don&#8217;t mean to just complain though. Really enjoy the podcasts and the mix of technical and non-technical questions.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Gunnar</title>
		<link>http://www.cigital.com/silverbullet/show-040/comment-page-1/#comment-40049</link>
		<dc:creator>Gunnar</dc:creator>
		<pubDate>Fri, 17 Jul 2009 19:46:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.cigital.com/silverbullet/?p=51#comment-40049</guid>
		<description>Great interview. 

Bob pointed out his main gripe with Java&#039;s security model which is how it treats fine grained authorization. It requires defining all of the policy up front, very difficult or impossible to do in real world. And it lacks layers of indirections that we can use to resolve when we don&#039;t know a priori the full subject + object + session policies (i.e. most of the time). Bob opines that XACML and Claims may help resolve this, and I agree (if nothing else it represents our best current hope), but they didn&#039;t drill down on this 

Bob or Gary - anything to add here?</description>
		<content:encoded><![CDATA[<p>Great interview. </p>
<p>Bob pointed out his main gripe with Java&#8217;s security model which is how it treats fine grained authorization. It requires defining all of the policy up front, very difficult or impossible to do in real world. And it lacks layers of indirections that we can use to resolve when we don&#8217;t know a priori the full subject + object + session policies (i.e. most of the time). Bob opines that XACML and Claims may help resolve this, and I agree (if nothing else it represents our best current hope), but they didn&#8217;t drill down on this </p>
<p>Bob or Gary &#8211; anything to add here?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
