<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-3452197514466596756</id><updated>2012-02-16T04:16:03.864-08:00</updated><title type='text'>SECUREMIDDLEWARE.ORG</title><subtitle type='html'>On this blog we will discuss middleware security, including any type of middleware. 
LOOKING FOR SECUREMIDDLEWARE, THE SECURE CORBA COMPONENTS IMPLEMENTATION? IF SO, PLEASE VISIT WWW.SECUREMIDDLEWARE.COM OR WWW.OBJECTSECURITY.COM</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>6</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-6960478243828139936</id><published>2007-09-06T07:48:00.000-07:00</published><updated>2007-09-06T07:49:25.852-07:00</updated><title type='text'>Gartner Hype Cycle for Information Security 2007</title><content type='html'>Gartner has just released their new Hype Cycle for Information Security 2007, and model driven security is on it. ObjectSecurity's OpenPMF 2.0 (&lt;a href="http://www.openpmf.com/"&gt;www.openpmf.com&lt;/a&gt;) has been identified as aleading product in this emerging area.&lt;br /&gt;&lt;br /&gt;This shows that Gartner believes that model driven security is a critical technology approach to simplify enterprise security.&lt;br /&gt;&lt;br /&gt;We believe that model driven security plays an important role for securing middleware environments, especially where model driven engineering (or MDA) is used (see &lt;a href="http://www.securemda.com/"&gt;www.securemda.com&lt;/a&gt;).&lt;br /&gt;&lt;br /&gt;This blog is a public forum and we are welcoming any views on this.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-6960478243828139936?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/6960478243828139936/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=6960478243828139936' title='41 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6960478243828139936'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6960478243828139936'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/09/gartner-hype-cycle-for-information.html' title='Gartner Hype Cycle for Information Security 2007'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>41</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-3216739815004097107</id><published>2007-07-27T03:53:00.000-07:00</published><updated>2007-07-27T03:54:17.795-07:00</updated><title type='text'>Related blogs</title><content type='html'>There are some related blogs:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.trustedsoa.org/"&gt;www.trustedsoa.org&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.modeldrivensecurity.org/"&gt;www.modeldrivensecurity.org&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-3216739815004097107?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/3216739815004097107/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=3216739815004097107' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/3216739815004097107'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/3216739815004097107'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/07/related-blogs.html' title='Related blogs'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-6755143914143291451</id><published>2007-07-27T03:50:00.001-07:00</published><updated>2007-07-27T03:51:00.632-07:00</updated><title type='text'>ZDnet discussion</title><content type='html'>There is a related discussion about middleware security and central security management at:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://talkback.zdnet.com/5208-12408-0.html?forumID=1&amp;threadID=27594&amp;amp;messageID=674416&amp;start=-9996"&gt;http://talkback.zdnet.com/5208-12408-0.html?forumID=1&amp;amp;threadID=27594&amp;messageID=674416&amp;amp;start=-9996&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-6755143914143291451?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/6755143914143291451/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=6755143914143291451' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6755143914143291451'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6755143914143291451'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/07/zdnet-discussion.html' title='ZDnet discussion'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-6307200277928525175</id><published>2007-07-27T03:33:00.001-07:00</published><updated>2007-07-27T03:48:39.807-07:00</updated><title type='text'>Middleware definition</title><content type='html'>For now, the term will be used for software that resides between an application and the inner workings of the system hosting the application, and that abstracts the complexities of the underlying technology from the application layer. In particular, middleware automatically handles all communications related to invocations between client and target applications, and supports application portability, mechanism flexibility, interoperability, and scalability.&lt;br /&gt;(&lt;a href="http://www.cl.cam.ac.uk/TechReports/UCAM-CL-TR-564.pdf"&gt;http://www.cl.cam.ac.uk/TechReports/UCAM-CL-TR-564.pdf&lt;/a&gt;)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-6307200277928525175?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/6307200277928525175/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=6307200277928525175' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6307200277928525175'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/6307200277928525175'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/07/middleware-definition.html' title='Middleware definition'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-4192624707710820967</id><published>2007-07-27T03:33:00.000-07:00</published><updated>2007-07-27T03:51:38.296-07:00</updated><title type='text'>Middleware security - setting the scene</title><content type='html'>This blog is about the issues, benefits, opportunities etc. of middleware security. We assume for now that middleware is software such as Web services, CORBA/CCM, JavaEE, OSGi and others (please extend the scope of this blog as needed).&lt;br /&gt;&lt;br /&gt;Security for middleware in largeer IT environments is often important because confidential information is sent around between users and applications. The main security issues are (in our opinion):&lt;br /&gt;&lt;br /&gt;&lt;p&gt;1. security mechanisms for message protection, client/target authentication, token transfer etc. (this is the easy bit, see CORBAsec as an example) &lt;/p&gt;&lt;p&gt;2. central security management &lt;/p&gt;&lt;p&gt;2.1. identity management: federated identity management has been proposed and is being used (this is the easier half of security management)&lt;br /&gt;2.2. access management: solutions such as &lt;a href="http://www.openpmf.com/"&gt;http://www.openpmf.com/&lt;/a&gt; are available (please post other products in the comments and I will weave them in). Simplifying the management complexity is one of the main issues here. &lt;/p&gt;&lt;p&gt;2.3. central compliance monitoring &lt;/p&gt;&lt;p&gt;3. non-repudiation: this is a big questionmark I think &lt;/p&gt;&lt;p&gt;4. accreditation: how to accredit a middleware based system (e.g. common criteria) if you don't know the deployment scenario?&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;I'm sure there is more, please comment.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-4192624707710820967?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/4192624707710820967/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=4192624707710820967' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/4192624707710820967'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/4192624707710820967'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/07/middleware-security-setting-scene.html' title='Middleware security - setting the scene'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-3452197514466596756.post-8568360406193496836</id><published>2007-07-26T13:29:00.000-07:00</published><updated>2007-07-26T13:31:44.908-07:00</updated><title type='text'>Secure middleware or SecureMiddleware</title><content type='html'>Hello!&lt;br /&gt;&lt;br /&gt;Are you looking for SecureMiddleware, the secure CORBA Component Model implementation? If so, please visit:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.securemiddleware.com/"&gt;www.securemiddleware.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Otherwise, please stay tuned for the discussion. Postings by anyone are welcome, this is intended as an open forum.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/3452197514466596756-8568360406193496836?l=securemiddleware.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://securemiddleware.blogspot.com/feeds/8568360406193496836/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=3452197514466596756&amp;postID=8568360406193496836' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/8568360406193496836'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/3452197514466596756/posts/default/8568360406193496836'/><link rel='alternate' type='text/html' href='http://securemiddleware.blogspot.com/2007/07/secure-middleware-or-securemiddleware.html' title='Secure middleware or SecureMiddleware'/><author><name>Dr. Ulrich Lang, CEO, ObjectSecurity</name><uri>http://www.blogger.com/profile/13178321643262725698</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='23' height='32' src='http://www.objectsecurity.com/ulrichlang.com/img/Uli_in_suit_Bangalore.JPG'/></author><thr:total>0</thr:total></entry></feed>
