<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	>

<channel>
	<title>Pushing String</title>
	<atom:link href="http://www.xmlgrrl.com/blog/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.xmlgrrl.com/blog</link>
	<description>XML, identity, crafting, and other tangled musings</description>
	<pubDate>Mon, 29 Jun 2009 04:16:49 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.7</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Like sands through the hourglass</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/06/28/like-sands-through-the-hourglass/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/06/28/like-sands-through-the-hourglass/#comments</comments>
		<pubDate>Mon, 29 Jun 2009 04:16:49 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[carbgrrl]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1408</guid>
		<description><![CDATA[&#8230;so are the Carbs of Our Lives. (No? How about As the Pancreas Turns? Maybe not.)
Today&#8217;s carbgrrl musings are a little less overtly scientific than at times in the past, and a little more speculative and personal. You see, a friend loaned me a diet book that wasn&#8217;t actually 100-percent horrible, and it offered an [...]]]></description>
			<content:encoded><![CDATA[<p>&#8230;so are the <a href="http://en.wikipedia.org/wiki/Days_of_our_Lives">Carbs of Our Lives</a>. (No? How about <a href="http://en.wikipedia.org/wiki/As_the_world_turns">As the Pancreas Turns</a>? Maybe not.)</p>
<p>Today&#8217;s carbgrrl musings are a little less overtly scientific than at times in the past, and a little more speculative and personal. You see, a friend loaned me a diet book that wasn&#8217;t actually 100-percent horrible, and it offered an insight that resonated with me in a big way.</p>
<p>The book was Michel Montignac&#8217;s <strong>Eat &#038; Lose Weight For Good: The Montignac Weight-Loss Plan</strong>, in a UK edition. (<a href="http://www.amazon.com/Lose-Weight-Good-Michel-Montignac/dp/2912737001/ref=sr_1_3?ie=UTF8&#038;s=books&#038;qid=1245514062&#038;sr=1-3">This</a> is probably the US equivalent.) My friend and I had discovered a mutual appreciation of <a href="http://www.amazon.com/Good-Calories-Bad-Controversial-Science/dp/1400033462/ref=sr_1_1?ie=UTF8&#038;s=books&#038;qid=1236559875&#038;sr=1-1">GCBC</a>, and she thought I&#8217;d like this book too.</p>
<p>Montignac has a wonderfully blunt style, and he seems to enjoy shocking his audience. Very French! He&#8217;s written quite a few books, focusing on what I&#8217;d call a hybrid low-glycemic/&#8221;French girls don&#8217;t get fat&#8221; approach. This book has a couple of scientific boo-boos, for example extolling the virtues of fructose (<a href="http://www.xmlgrrl.com/blog/archives/2009/03/22/343000-reasons-to-be-annoyed/">?!?</a>). But he has a good handle on the sheer variability of people&#8217;s responses to carbs. (Atkins had the same, with his emphasis on finding your personal Critical Carbohydrate Level for Losing.)</p>
<p>This passage reached out and grabbed me:</p>
<blockquote><p>Some people have been able to remain slim all their life, although they have bad eating habits. This is because they were blessed with a very healthy pancreas that has not lapsed into hyperinsulinism, despite the heavy glycaemia inflicted on it over a long period of time.</p>
<p>Others &#8212; and these are the majority &#8212; also started off with a healthy pancreas that enabled them to stay slim for many years despite their bad eating habits. And then, when they were about 30 or 35, and certainly by the time were 40, they started to put on weight. In later years, some even became obese and diabetic. Their pancreas held out for several decades, but in the end it succumbed to the abuse it had suffered.</p>
<p>And then there are those, like me, who arrived on earth with a sub-standard pancreas that was inherited. The chances of having a frail pancreas, if your parents were obese and therefore hyperinsulinic, is high. It is almost certain in any case, if the diet from an early age is hyperglycaemic. [p. 47]</p></blockquote>
<p>I suspect he&#8217;s just described my pancreas: feeble, rickety, frail, <em>sub-standard</em>. Some of my friends (probably with brawny he-man pancreata) seem incredulous at the crazy lengths I go to even to avoid gaining weight at this point, having to cut out just about any slightly scary carb and some nominally okay ones (mmm, oatmeal). It&#8217;s like I&#8217;ve used up my lifetime allotment of normal insulin response.</p>
<p>Notice that Montignac suggests two factors to consider: heredity and environment. (With risk factors on both sides of my family, and with a history of dieting in the idiotic 70&#8217;s and 80&#8217;s, I bet I&#8217;ve got both.) One or both might explain one of the outcomes of an exercise in occupational medicine, done at DuPont in the late 1940&#8217;s to help executives lose weight and avoid the new epidemic of heart disease in America. Taubes recounts the tale:</p>
<blockquote><p>In June 1949, [Alfred] Pennington published an account of the DuPont experience&#8230; All of this seemed paradoxical: the DuPont executives lost weight on a diet that did not restrict calories. Carbohydrates were restricted in their diet &#8212; no more than eighty calories at each meal. &#8220;In a few cases,&#8221; Pennington reported, &#8220;even this much carbohydrate prevented weight loss, though an ad-libitum [unrestricted] intake of protein and fat, more exclusively, was successful.&#8221; &#8230;. <strong>If [one executive] ate <em>any</em> carbohydrates, &#8220;even an apple,&#8221; Pennington wrote, his weight would climb upward.</strong> [GCBC p. 330, Ch. 20; bold added]</p></blockquote>
<p>Heredity and environment are the filters through which I now view all women&#8217;s magazine articles, studies, and public-health pronouncements about obesity, diabetes, heart disease, and metabolic syndrome. Maybe low-fat <em>does</em> work &#8212; for the young, or the pancreatically strong. Maybe it works now but it contributes to later yo-yo effects. If we had an easy way of testing both axes, maybe we&#8217;d have a shot at predicting who will lose weight on which diet at which juncture in their lives without lasting damage.</p>
<p>Speaking for myself, I just can&#8217;t take the chance anymore.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/06/28/like-sands-through-the-hourglass/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Protocol peep show</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/06/02/protocol-peep-show/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/06/02/protocol-peep-show/#comments</comments>
		<pubDate>Wed, 03 Jun 2009 05:23:41 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[ProtectServe]]></category>

		<category><![CDATA[Security/identity]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1387</guid>
		<description><![CDATA[While lots of other people are having their fun at JavaOne, I have to content myself with publishing a clearer version of the ProtectServe protocol flows Paul Bryan walked through in our video-recorded IIW8 session.
We originally prepared the flow diagrams using that wonderful tool, WebSequenceDiagrams.com. Paul then doctored the resulting PDF files with a special [...]]]></description>
			<content:encoded><![CDATA[<p>While lots of other people are having their fun at <a href="http://java.sun.com/javaone/">JavaOne</a>, I have to content myself with publishing a clearer version of the ProtectServe protocol flows Paul Bryan walked through in our video-recorded <a href="http://www.xmlgrrl.com/blog/archives/2009/05/27/holy-moly-its-a-protectserve-video-library/">IIW8 session</a>.</p>
<p>We originally prepared the flow diagrams using that wonderful tool, <a href="http://www.websequencediagrams.com">WebSequenceDiagrams.com</a>. Paul then doctored the resulting PDF files with a special new technology: overlaying the diagrams with translucent gray boxes that have holes strategically cut out of them, and then &#8212; this was the tricky part &#8212; <em>moving the holes</em>. (I think Paul is using this special technology as part of his <a href="http://www28.cplan.com/cc230/sessions_catalog.jsp?ilc=230-1&#038;ilg=english&#038;isort=&#038;isort_type=&#038;is=yes&#038;icriteria1=+&#038;icriteria2=+&#038;icriteria8=&#038;icriteria3=&#038;icriteria9=TS-5295&#038;icriteria4=+&#038;icriteria7=+">JavaOne session on Designing and Building Security into REST Applications</a> for explaining OAuth tomorrow. He may even have enhanced the special technology by then. Don&#8217;t miss it!)</p>
<p>The protocol peep show starts&#8230;now.</p>
<ul>
<li><a href="http://xmlgrrl.com/publications/step0.pdf"><strong>Step 0</strong></a></li>
<li><a href="http://xmlgrrl.com/publications/step1.pdf"><strong>Step 1</strong></a></li>
<li><a href="http://xmlgrrl.com/publications/step2.pdf"><strong>Step 2</strong></a></li>
<li><a href="http://xmlgrrl.com/publications/step3.pdf"><strong>Step 3</strong></a></li>
</ul>
<p>(Check out the other entries in this <a href="http://www.xmlgrrl.com/blog/categories/protectserve/">blog category</a> for more explanation.)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/06/02/protocol-peep-show/feed/</wfw:commentRss>
		</item>
		<item>
		<title>What&#8217;s it say?? I can&#8217;t read!!</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/31/whats-it-say-i-cant-read/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/31/whats-it-say-i-cant-read/#comments</comments>
		<pubDate>Mon, 01 Jun 2009 05:31:43 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[carbgrrl]]></category>

		<category><![CDATA[bacon]]></category>

		<category><![CDATA[Kindle]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1364</guid>
		<description><![CDATA[
Bacon is all the rage these days. It&#8217;s almost&#8230;overexposed. Luckily there are still ways to have fun with the subject (other than eating it, of course).
Now, being a big bacon fan myself (we actually wrapped our Thanksgiving turkey in bacon last year), I wondered: what could I possibly add to people&#8217;s enjoyment of this savory [...]]]></description>
			<content:encoded><![CDATA[<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/CErapf79rqM&#038;hl=en&#038;fs=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/CErapf79rqM&#038;hl=en&#038;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>Bacon is all the rage these days. It&#8217;s almost&#8230;overexposed. Luckily there are still ways to <a href="http://www.thewickednoodle.com/?p=1871">have fun with the subject</a> (other than eating it, of course).</p>
<p>Now, being a big bacon fan myself (we actually wrapped our Thanksgiving turkey in bacon last year), I wondered: what could I possibly add to people&#8217;s enjoyment of this savory treat? I know, I could try and convince you it&#8217;s healthy!</p>
<p>Searching my new Kindle version of <a href="http://www.amazon.com/Good-Calories-Bad-Controversial-Science/dp/1400033462/ref=sr_1_1?ie=UTF8&#038;s=books&#038;qid=1236559875&#038;sr=1-1">GCBC</a> confirms the contention of the hardcover index that, not counting a whole bunch of references to Francis Bacon, there&#8217;s only one real discussion of bacon in the book. It goes a little something like this:</p>
<blockquote><p>The observation that monounsaturated fats both lower LDL cholesterol and raise HDL also came with an ironic twist: the principal fat in red meat, eggs, and bacon is not saturated fat, but the very same monounsaturated fat as in olive oil. The implications are almost impossible to believe after three decades of public-health recommendations suggesting that any red meat consumed should at least be lean, with any excess fat removed. &#8230;. All of this suggests that eating a porterhouse steak in lieu of bread or potatoes would actually reduce heart-disease risk, although virtually no nutritional authority will say so publicly. The same is true for lard and bacon. [GCBC, Ch. 9, pp. 168-9]</p></blockquote>
<p>So given a chance between <a href="http://www.recipetips.com/glossary-term/t--34843/turkey-bacon.asp">&#8220;turkey bacon&#8221;</a>:</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/05/turkey_bacon.jpg" alt="turkey_bacon" title="turkey_bacon" width="288" height="110" class="aligncenter size-full wp-image-1376" /></p>
<p>&#8230;and actual turkey wrapped in actual bacon:</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/05/turbacon-small.jpg" alt="turbacon-small" title="turbacon-small" align="center" width="300" /></p>
<p>&#8230;why not go for the real yummy thing?</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/31/whats-it-say-i-cant-read/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Holy moly, it&#8217;s a ProtectServe video library</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/27/holy-moly-its-a-protectserve-video-library/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/27/holy-moly-its-a-protectserve-video-library/#comments</comments>
		<pubDate>Thu, 28 May 2009 06:03:02 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[ProtectServe]]></category>

		<category><![CDATA[Security/identity]]></category>

		<category><![CDATA[iiw iiw8]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1317</guid>
		<description><![CDATA[Last week at IIW8 I convened a ProtectServe session by request, roping in my esteemed colleague Paul Bryan so that we (meaning he!) could dive into protocol details.  Unfortunately, we selected area C, which stands for &#8220;copious amounts of room noise&#8221;.  Dave Kearns, who attended our session, even pointed out this little issue [...]]]></description>
			<content:encoded><![CDATA[<p>Last week at <a href="http://iiw.idcommons.net/Iiw8">IIW8</a> I convened a ProtectServe session by request, roping in my esteemed colleague <a href="http://www.linkedin.com/in/pbryan">Paul Bryan</a> so that we (meaning he!) could dive into protocol details.  Unfortunately, we selected area C, which stands for &#8220;copious amounts of room noise&#8221;.  Dave Kearns, who attended our session, even <a href="http://www.networkworld.com/newsletters/dir/2009/052509id2.html">pointed out</a> this little issue in his Network World newsletter yesterday. We soldiered on, trying to speak in <em>loud, clear, bell-like tones</em> (as my high-school history teacher would say&#8230;).</p>
<p>A bunch of us also ran sessions to collect use cases for the general area of <strong>user-managed access</strong>, in <a href="http://iiw.idcommons.net/7C:_Use_Cases_for_User-Managed_Access">breadth-first</a> and <a href="http://iiw.idcommons.net/Use_Case_Selection_and_Metrics">depth-first</a> fashion.</p>
<p>With IIW sessions taking place simultaneously in areas A through J, it&#8217;s impossible to attend everything you want to. <a href="http://digitalidcoach.com/">Judi Clark</a> generously recorded a <a href="http://digitalidcoach.com/2009/05/videos-from-iiw8/">large handful of sessions</a> to help people time-shift, and one of them was the <a href="http://iiw8.digitalidcoach.com/10-EveMahler.mov">ProtectServe session</a>; many thanks to <strong>=judic</strong>!  You may want to open up the easier-to-read versions of the <a href="http://xmlgrrl.com/publications/ProtectServe-IIW8-19May2009.pdf">slides</a> and <a href="http://www.xmlgrrl.com/blog/archives/2009/04/02/protectserve-draft-protocol-flows/">protocol diagrams</a> alongside.</p>
<p>If you&#8217;re curious about all this ProtectServe and relationship management stuff, but you&#8217;re coming in fresh and don&#8217;t want to start with an out-and-out geekfest, a great place to start is the video from my recent <a href="http://www.xmlgrrl.com/blog/publications/#eic2009">talk</a> at the European Identity Conference.</p>
<p>If you&#8217;re curious about octopi and corn, on the other hand, don&#8217;t miss Asa Hardcastle&#8217;s <a href="http://iiw8.digitalidcoach.com/13-Asa-WakameFun.mov">FUN!!! session on the Wakame open-source library</a>&#8230;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/27/holy-moly-its-a-protectserve-video-library/feed/</wfw:commentRss>
<enclosure url="http://iiw8.digitalidcoach.com/10-EveMahler.mov" length="310983314" type="video/quick" />
<enclosure url="http://iiw8.digitalidcoach.com/13-Asa-WakameFun.mov" length="184726438" type="video/quick" />
		</item>
		<item>
		<title>Concordian (noun): Busy bee</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/22/concordian-noun-busy-bee/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/22/concordian-noun-busy-bee/#comments</comments>
		<pubDate>Fri, 22 May 2009 22:50:30 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[Language]]></category>

		<category><![CDATA[Security/identity]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1318</guid>
		<description><![CDATA[Okay, so there&#8217;s no English word &#8220;Concordic&#8221;, but that&#8217;s the adjective often used to describe the topics and use cases we discuss in Project Concordia. Some call the participants in these discussions &#8220;Concordians&#8221;, occupying slightly firmer Internet-search-term ground.
Whatever you call us/them, we&#8217;ve been keeping busy lately working on them.  Now&#8217;s a great time to [...]]]></description>
			<content:encoded><![CDATA[<p>Okay, so there&#8217;s no English word &#8220;Concordic&#8221;, but that&#8217;s the adjective often used to describe the topics and use cases we discuss in <a href="http://projectconcordia.org/index.php/Main_Page">Project Concordia</a>. Some call the participants in these discussions &#8220;Concordians&#8221;, occupying slightly firmer Internet-search-term ground.</p>
<p>Whatever you call us/them, <em>we&#8217;ve</em> been keeping busy lately working on <em>them</em>.  Now&#8217;s a great time to pay close attention if you&#8217;ve got stubborn identity issues.</p>
<p>For starters, the <strong>Concordia survey on identity federation</strong> &#8212; our first survey &#8212; went splendidly.  The <a href="http://projectconcordia.org/index.php/Concordia_Surveys#Identity_Federation_Survey_Results_.28May_5.2C_2009.29">survey results</a> are on the Concordia site, and you can also find some <a href="http://www.surveymonkey.com/sr.aspx?sm=VfTS18PEuDmdMylb6gDoExry2s02j5M5lwm5Tlzg71U_3d">nice graphs directly on SurveyMonkey</a>. One hundred and three people completed the survey, with interesting results.  It appears that complex federation topologies are no longer a rare beast. Don&#8217;t forget to check out all the &#8220;other&#8221; comments.</p>
<p>We&#8217;re now gearing up to do a second survey, on <strong>identity assurance</strong> this time. If you&#8217;re interested in this subject, feel free to <a href="http://projectconcordia.org/index.php/Concordia_Surveys#Levels_of_Assurance_Survey_Suggestions">add your desired survey questions here</a>.</p>
<p>Of course, we Concordians participated in a <em>huuuge</em> <strong>identity workshop</strong> prior to the RSA conference a few weeks ago &#8212; with over 700 people coming through the doors at one point or another during the day. The <a href="http://projectconcordia.org/index.php/RSA_Conference_2009_Identity_Workshop">presentations are available</a>, and also don&#8217;t forget to check out the <a href="http://osis.idcommons.net/wiki/I5_User-Centric_Identity_Interop_through_RSA_2009">OSIS &#8220;I5&#8243; testing results</a>.</p>
<p>And now we&#8217;re in the planning stages for a Concordia workshop to be held at the <a href="http://www.catalyst.burtongroup.com/NA09/">Burton Catalyst conference</a> in San Diego in late July. Our theme is <strong>Use Cases Driving Identity in Enterprise 2.0: The Consumerization of IT</strong>, and we&#8217;re actively soliciting your problem statements, use cases, solutions, and issues in the form of short position papers. If you&#8217;ve got a one-pager &#8212; or even a paragraph-sized abstract &#8212; that describes an Enterprise 2.0 identity topic you&#8217;d like to bring up, please send it along to our intrepid Britta Glade at <em>britta [at] projectliberty.org</em> as soon as you can. The <a href="http://projectconcordia.org/index.php/Catalyst_pre-conference_workshop_agenda">agenda</a> will grow and evolve online, right before your eyes. We&#8217;ll conduct this workshop in more of a traditional mold &#8212; lots of interactive discussion.</p>
<p><strong><a href="http://lists.projectconcordia.org/mailman/listinfo/community">Wouldn&#8217;t you like to be a Concordian too?</a></strong></p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/22/concordian-noun-busy-bee/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Schooool&#8217;s &#8230; on - for - summer</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/15/schooools-on-for-summer/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/15/schooools-on-for-summer/#comments</comments>
		<pubDate>Fri, 15 May 2009 20:37:48 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[XML]]></category>

		<category><![CDATA[XML Summer School]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1295</guid>
		<description><![CDATA[The XML Summer School in Oxford is back!  John Chelsom has gotten it started again, and this time it will be held September 20-25 in St. Edmund Hall. Lauren Wood is serving most excellently as Course Director this year.
I&#8217;m putting together a one-day Web Services and Identity course with a great lineup of additional [...]]]></description>
			<content:encoded><![CDATA[<p>The <a href="http://xmlsummerschool.com/">XML Summer School</a> in Oxford is back! <a href="http://www.linkedin.com/pub/1/ab1/993"> John Chelsom</a> has gotten it started again, and this time it will be held September 20-25 in St. Edmund Hall. <a href="http://www.laurenwood.org/anyway/">Lauren Wood</a> is serving most excellently as Course Director this year.</p>
<p>I&#8217;m putting together a one-day <a href="http://xmlsummerschool.com/curriculum2009/web-services-identity/">Web Services and Identity course</a> with a great lineup of additional lecturers: <a href="http://blog.whatfettle.com/">Paul Downey</a>, <a href="http://weblogs.java.net/blog/mhadley/">Marc Hadley</a>, and <a href="http://en.wikipedia.org/wiki/Rich_Salz">Rich Salz</a>, all of whom have taught at the School before.  Some of my previous posts (<a href="http://www.xmlgrrl.com/blog/archives/2007/07/31/summer-school-droplets/">2007</a>, <a href="http://www.xmlgrrl.com/blog/archives/2006/08/22/hot-in-oxford/">2006</a>) give the flavor of the event and my series of courses.</p>
<p>You won&#8217;t want to miss any part of the week &#8212; you&#8217;ll sharpen your skills, you&#8217;ll hang out with great people, and you&#8217;ll get your questions answered about how to apply the hottest tech (check out all the new <a href="http://xmlsummerschool.com/curriculum2009/">course subjects</a>!) to your hottest business problems. What are you waiting for?  <a href="http://xmlsummerschool2009.eventbrite.com/">Register already!</a></p>
<p>(If you&#8217;re the hesitant type, you can just follow along on Twitter at <a href="http://twitter.com/xmlsummerschool">@xmlsummerschool</a> for now, but make sure not to miss any registration deadlines&#8230;)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/15/schooools-on-for-summer/feed/</wfw:commentRss>
		</item>
		<item>
		<title>OpenSSO and &#8220;Geneva&#8221; Server: two great tastes&#8230;</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/14/opensso-and-geneva-server-two-great-tastes/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/14/opensso-and-geneva-server-two-great-tastes/#comments</comments>
		<pubDate>Thu, 14 May 2009 17:45:43 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[Security/identity]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1269</guid>
		<description><![CDATA[In case you haven&#8217;t heard, Sun and Microsoft have published a paper showing ways in which our respective identity federation solutions &#8212; OpenSSO Enterprise and &#8220;Geneva&#8221; Server Beta 2 &#8212; have been tested to work together. It&#8217;s been quite a satisfying project, focusing on real-world use cases involving SAML2, and I hope we&#8217;ll get more [...]]]></description>
			<content:encoded><![CDATA[<p>In case you haven&#8217;t heard, Sun and Microsoft have published a paper showing ways in which our respective identity federation solutions &#8212; OpenSSO Enterprise and &#8220;Geneva&#8221; Server Beta 2 &#8212; have been tested to work together. It&#8217;s been quite a satisfying project, focusing on real-world use cases involving SAML2, and I hope we&#8217;ll get more testing opportunities in future as &#8220;Geneva&#8221; matures.</p>
<p>Seeing as how I&#8217;m late to the blogging party, I&#8217;ll just do a link roundup here:</p>
<ul>
<li>
<p>Download the whitepaper itself: <a href="http://www.sun.com/software/identity/sunopensso_ms_server.pdf"><strong>Microsoft &#8220;Geneva&#8221; Server and Sun OpenSSO - Enabling Unprecedented Collaboration Across Heterogeneous IT Environments</strong></a></p>
</li>
<li>
<p>Check out the Smoking Monkey&#8217;s post, <a href="http://blogs.sun.com/raskin/entry/bff_opensso_and_microsoft_geneva"><strong>BFF . . . OpenSSO and Microsoft “GENEVA” Server Interoperate</strong></a> &#8212; it&#8217;s silly <em>and yet</em> it gives important context to the scenarios and technologies we chose to test</p>
</li>
<li>
<p>Take a look at Jacki DeCoster&#8217;s entry on the official Sun <a href="http://blogs.sun.com/ontherecord/entry/sun_and_microsoft_release_joint"><strong>&#8220;On the Record&#8221; blog</strong></a> noting the news</p>
</li>
<li>
<p>Go visit <a href="http://self-issued.info/?p=151"><strong>Mike Jones&#8217;s blog</strong></a> for lots of &#8220;Geneva&#8221;-related links</p>
</li>
<li>
<p>Get the official word on &#8220;Geneva&#8221; Beta 2 straight from the Microsoft <a href="http://blogs.technet.com/forefront/archive/2009/05/11/microsoft-code-name-geneva-beta-2-now-available.aspx"><strong>Forefront team blog</strong></a></p>
</li>
<li>
<p>And, of course, check out <a href="http://opensso.org"><strong>OpenSSO.org</strong></a> for all sorts of OpenSSO news </p>
</li>
</ul>
<p>A big thank-you to the Microsoft and Sun team members, who worked in close coordination to turn around the testing and the paper so quickly. Naming a few names (please forgive me if I left you out): Mike Jones and Caleb Baker from Microsoft and Sidharth Mishra and Julie Costello from Sun really pulled out all the stops. Let&#8217;s do it again sometime soon, shall we??</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/14/opensso-and-geneva-server-two-great-tastes/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Heady days at EIC in Munich</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/05/12/heady-days-at-eic-in-munich/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/05/12/heady-days-at-eic-in-munich/#comments</comments>
		<pubDate>Tue, 12 May 2009 16:31:49 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[ProtectServe]]></category>

		<category><![CDATA[Security/identity]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1224</guid>
		<description><![CDATA[What a week&#8230; Along with lots of other people in the identosphere, I had a great opportunity to attend the Kuppinger Cole European Identity Conference in Munich all last week. Here are some stories, impressions, and links.
This was third in an annual series, but I was a newbie. I&#8217;d assumed that &#8220;IAM and GRC&#8221; was [...]]]></description>
			<content:encoded><![CDATA[<p>What a week&#8230; Along with lots of other people in the identosphere, I had a great opportunity to attend the Kuppinger Cole <a href="http://www.id-conf.com/">European Identity Conference</a> in Munich all last week. Here are some stories, impressions, and links.</p>
<p>This was third in an annual series, but I was a newbie. I&#8217;d assumed that &#8220;IAM and GRC&#8221; was the traditional focus here and that the consumer side of things was the outlier. But Bavo DeRidder, a tireless commenter during the event and an old EIC hand, <a href="http://blog.bavoderidder.com/?p=153">noted</a> that the greater emphasis on GRC this time around lent a serious business atmosphere to the proceedings. The attendance seemed quite healthy &#8212; despite the down economy &#8212; so perhaps GRC was the turn-on for lots of the delegates?</p>
<p>Because of the business-y feeling, I was surprised and delighted to see all the <a href="http://search.twitter.com/search?q=%23eic">tweeting</a> going on. Tim Cole provided witty running <a href="http://twitter.com/TCole1066">commentary</a> during the talks, and then found his emcee duties greatly eased by reading all the relevant tweets out loud after each talk. :-)</p>
<p>Before the conference started, quite a few folks came to the <a href="http://www.meetup.com/opensso/calendar/9690413/">Munich OpenSSO Community Day</a>. Lots of community members shared their activities, questions, and use cases; slide decks and related materials are being posted on the <a href="http://wikis.sun.com/display/OpenSSO/OpenSSO+Community+Day+-+Munich+-+May+5+2009">OpenSSO wiki</a>. (The cherry on top, later in the week, was a &#8220;best innovation&#8221; award <a href="http://blogs.sun.com/raskin/entry/opensso_fedlet_wins_best_best">won by the OpenSSO Fedlet</a>. Whoo-hoo!)</p>
<p>Also before the conference started, a handful of my Sun colleagues (you know who you are) put in some quality beer-drinking practice time.  Oh, my goodness.  I know I&#8217;m a lightweight (figuratively speaking) when it comes to alcohol, but their performance was <em>impressive</em>. Everyone had slowed down by the time we got to the famous Hofbräuhaus on the third night, but even so, those liter-sized beer mugs made me feel like a little kid at the grownups&#8217; table. (I mostly had <em>wasser mit gas</em>.)</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/05/hofbrauhaus.jpg" alt="hofbrauhaus" title="hofbrauhaus" width="350" /></p>
<p>Keynotes were sprinkled throughout the conference, giving a good balance between broader and more focused topics. I gave a keynote on the first day. Ever wondered what it&#8217;s like to give a talk in an IMAX theater?  Intimidating, that&#8217;s what. My colleague <a href="http://blogs.sun.com/Ludo/">Ludo Poitou</a> (pictured on the left above) took some <a href="http://picasaweb.google.com/ludovic.poitou/EICMunich?feat=directlink#">great photos</a> during the week, and somehow managed to fit my huge slide projection, huge podium self, and tiny (only by comparison) real self into <a href="http://picasaweb.google.com/ludovic.poitou/EICMunich?feat=directlink#5333065097783082594">this one</a>.</p>
<p>My talk was on The Care and Feeding of Online Relationships &#8212; a subject I&#8217;ve spoken on before, but I feel like my understanding has come much further since my first explorations on the topic <a href="http://www.xmlgrrl.com/blog/publications/#nz2008">a year ago</a>. This time I presented what I hoped was a tightly argued case for the &#8220;permissioned data sharing&#8221; problem space, along with &#8212; for the first time on a public stage &#8212; a brief case for the <a href="http://www.xmlgrrl.com/blog/categories/protectserve/">ProtectServe/relationship manager</a> paradigm as the solution space, and even as suggestive of what <strong>Enterprise 2.0 entitlement management</strong> might look like. I&#8217;ve posted the <a href="http://xmlgrrl.com/publications/Maler-Relationships-EIC-May2009-builds.pdf">slides</a>, and video is available to attendees (log in to see video links in the <a href="http://www.id-conf.com/events/eic2009/agenda">agenda</a>). [UPDATE: They've made the talk available on YouTube; see the comments below for more info.] I had fun doing a <a href="http://www.id-conf.com/blog/2009/05/06/another-interview/">video interview</a> with Felix Gaehtgens about my talk right afterwards; anyone can view that. Next step for this work: discussing use cases at <a href="http://iiw8.eventbrite.com/">IIW8</a>, a mere handful of days from now.</p>
<p>One last quick story: An important theme of my talk was the way in which <a href="http://oauth.net/">OAuth</a> helps to meet some of the requirements I&#8217;ve laid out for permissioned sharing. So it was a real delight to learn that OAuth won one of the Kuppinger Cole EIC awards this year for &#8220;best new/improved standard&#8221;. I knew it was up for an award ahead of time, and through coordination with Chris Messina and Eran Hammer-Lahav on behalf of the community, I agreed to go up and accept/retrieve the physical artifacts associated with this honor. Chris has written up the story <a href="http://blog.oauth.net/2009/05/11/oauth-wins-award-at-european-identity-conference/">here</a>. (Come on down to <a href="http://iiw8.eventbrite.com/">IIW8</a> to see the little statuette and certificate in the &#8220;flesh&#8221;.) Sincere congrats to the entire OAuth community!</p>
<p>And one last photo: I saw this near one of the entrances to the Rosenheimer Platz bahn station.  What does it all <em>mean</em>?</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/05/osis.jpg" alt="osis" title="osis" width="350" /></p>
<p>(Thanks to all the folks at Kuppinger Cole + Partner for putting on one heck of a show. Now to get on with the recovery process&#8230;)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/05/12/heady-days-at-eic-in-munich/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Building identity bridges with the Kantara Initiative</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/04/20/building-identity-bridges-with-the-kantara-initiative/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/04/20/building-identity-bridges-with-the-kantara-initiative/#comments</comments>
		<pubDate>Mon, 20 Apr 2009 17:00:03 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[Security/identity]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1190</guid>
		<description><![CDATA[Do you &#8220;do identity&#8221; in any way, shape, or form? If so, you need to know about the Kantara Initiative, launched today at the RSA Conference identity workshop.
If you follow these things closely, you might have heard about a &#8220;NewOrg&#8221; getting started to bring lots of identity interoperability workstreams together, or an &#8220;IDtbd&#8221; group for [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://kantarainitiative.org"><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/04/kantara.png" alt="Kantara Initiative" title="kantara" style="float:left; margin:15px 20px 0px 0px" /></a>Do you &#8220;do identity&#8221; in any way, shape, or form? If so, you need to know about the <a href="http://kantarainitiative.org">Kantara Initiative</a>, launched today at the RSA Conference <a href="http://projectconcordia.org/index.php/April_20_pre-conference_workshop">identity workshop</a>.</p>
<p>If you follow these things closely, you might have heard about a &#8220;NewOrg&#8221; getting started to bring lots of identity interoperability workstreams together, or an &#8220;IDtbd&#8221; group for identity harmonization with a name to be determined.  Well, it&#8217;s determined now &#8212; and by the way, <em>kantara</em>, appropriately, means <em>bridge</em>.</p>
<p>In this video I outline my reasons for supporting Kantara:</p>
<p><object width="425" height="344"><param name="movie" value="http://www.youtube.com/v/HCVX768VfiE&#038;hl=en&#038;fs=1"></param><param name="allowFullScreen" value="true"></param><param name="allowscriptaccess" value="always"></param><embed src="http://www.youtube.com/v/HCVX768VfiE&#038;hl=en&#038;fs=1" type="application/x-shockwave-flash" allowscriptaccess="always" allowfullscreen="true" width="425" height="344"></embed></object></p>
<p>If you support Kantara&#8217;s <a href="http://kantarainitiative.org/confluence/display/GI/Mission">mission</a>:</p>
<blockquote><p>Foster identity community harmonization, interoperability, innovation, and broad adoption through the development of open identity specifications, operational frameworks, education programs, deployment and usage best practices for privacy-respecting, secure access to online services</p></blockquote>
<p>&#8230;consider joining as a <a href="http://kantarainitiative.org/wordpress/?page_id=8">Member</a> to help make it happen.  If you&#8217;ve got hard-won knowledge about gaps in the identity picture, or clever ideas about solving problems, consider diving in to one or more of its <a href="http://kantarainitiative.org/wordpress/?page_id=6">groups</a> as a Participant &#8212; it doesn&#8217;t cost a penny.</p>
<p>At the least, make sure to follow <a href="http://www.twitter.com/kantaranews">@KantaraNews</a> on Twitter. This initiative will be buzzing with lots of activity very soon, and you won&#8217;t want to miss any of the goings-on.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/04/20/building-identity-bridges-with-the-kantara-initiative/feed/</wfw:commentRss>
		</item>
		<item>
		<title>The science of feeling peckish (part 1)</title>
		<link>http://www.xmlgrrl.com/blog/archives/2009/04/14/the-science-of-feeling-peckish-part-1/</link>
		<comments>http://www.xmlgrrl.com/blog/archives/2009/04/14/the-science-of-feeling-peckish-part-1/#comments</comments>
		<pubDate>Wed, 15 Apr 2009 05:15:51 +0000</pubDate>
		<dc:creator>Eve</dc:creator>
		
		<category><![CDATA[carbgrrl]]></category>

		<guid isPermaLink="false">http://www.xmlgrrl.com/blog/?p=1119</guid>
		<description><![CDATA[In the diet culture, it&#8217;s common to find people talking about &#8220;body weight set points&#8221;: Your body wants to stay at a particular weight, and fights your attempts to slim down by making you hungry until you top up your weight. I don&#8217;t have the heart to link to the huge number of sites claiming [...]]]></description>
			<content:encoded><![CDATA[<p>In the diet culture, it&#8217;s common to find people talking about &#8220;body weight set points&#8221;: Your body wants to stay at a particular weight, and fights your attempts to slim down by making you hungry until you top up your weight. I don&#8217;t have the heart to link to the huge number of sites claiming you can change your set point by doing things like controlling calories (sigh), but knock yourself out if you want to search for them.</p>
<p>The thing is, set points for body weight, blood sugar levels (a body &#8220;glucostat&#8221;), blood fats (a &#8220;lipostat&#8221;), and even body temperature have been tested in the scientific literature to try and explain how hunger works, and found lacking. What turns out to matter most for making you feel hungry vs. sated is the <em>availability to the body of utilizable fuels</em>, seen in toto.</p>
<p>On this subject, Gary Taubes makes this recommendation in <a href="http://www.amazon.com/Good-Calories-Bad-Controversial-Science/dp/1400033462/ref=sr_1_1?ie=UTF8&#038;s=books&#038;qid=1236559875&#038;sr=1-1">GCBC</a>:</p>
<blockquote><p>Several variations on this hypothesis [about hunger and availability of utilizable fuels] were published from the mid-1970s onward by LeMagnen and others. The most comprehensive account was published in 1976 by Edward Stricker at the University of Pittsburgh, and Mark Friedman, then at the University of Massachusetts and now at the Monell Chemical Senses Center in Philadelphia. Their article, &#8220;<strong><a href="http://psycnet.apa.org/journals/rev/83/6/409.pdf">The Physiological Psychology of Hunger: A Physiological Perspective</a></strong>,&#8221; should be required reading for anyone seriously interested in eating behavior and weight regulation. [GCBC, Ch. 24, p. 433]</p></blockquote>
<p>Go ahead &#8212; click that link above. You can buy the article, if you like, for the low low price of US$11.95.</p>
<p>Or, don&#8217;t!  This is where I demonstrate that carbgrrl has gone around the bend. I went and got the paper, studied it closely, and present here a layman&#8217;s summary of its arguments and conclusions. You&#8217;re welcome. :-)</p>
<p>(I&#8217;ll do this in two parts. Part 1 &#8212; call it <strong>Energy Metabolism 101</strong> &#8212; is below the fold. I&#8217;ll provide Part 2, <strong>The Hunger</strong>, in a later post. As always, I will gladly accept all error corrections and pointers to research that disputes or usefully refines the information below.)</p>
<p><span id="more-1119"></span></p>
<p><strong>Energy Metabolism 101</strong></p>
<p>Your body deals with food consumption and energy expenditure in two phases. (The article reviews the literature on hunger in rats, but this is how metabolism works for humans too.)  Your body needs energy all the time, but doesn&#8217;t eat all the time. So:</p>
<ol>
<li>&#8220;Postprandial&#8221; is when your body sets about handling (both burning and storing) the food you&#8217;ve just eaten.</li>
<li>&#8220;Postabsorptive&#8221; is when, having fully dealt with your last meal, your body begins <em>consuming itself</em> for longer-term energy needs.</li>
</ol>
<p><strong>Postprandial:</strong> To a first approximation, here&#8217;s what happens in the postprandial stage.  You break down all those nutrients into their constituent parts and then distribute them among the jobs of (a) providing immediate energy to the brain, muscles, and other body tissues and (b) storing the rest as fat and muscle (plus a bit of glycogen in the liver). The organ doing most of the heavy lifting is the liver; for &#8220;liver-centric&#8221; diagrams vs. my energy-obsessive ones, do check out the original Friedman-Stricker article. [UPDATE: See the comment thread for detail on how muscles use glucose for immediate energy; this diagram is oversimplified to the point of inaccuracy.]</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/04/gcbc-postprandial.png" alt="gcbc-postprandial" title="gcbc-postprandial" width="500" /></p>
<p>What&#8217;s the takeaway? Mainly that energy (both the immediate kind and the stored-for-later kind, as you&#8217;ll see in a moment) can be gotten from <em>any</em> dietary source. There&#8217;s lots of redundancy here. The article notes that &#8220;[W]ith but a few exceptions, each of the various metabolic fuels is equally capable of providing energy in all tissues.&#8221;</p>
<p><strong>Postabsorptive:</strong> Okay, what happens once everything is burned or stored? You need to begin mobilizing fuel out of your tissues to keep you alive. In the postabsorptive phase, your body burns fat (and what other limited storage it has) to keep running. Here&#8217;s what that looks like, again to a first approximation.</p>
<p><img src="http://www.xmlgrrl.com/blog/wp-content/uploads/2009/04/gcbc-postabsorptive.png" alt="gcbc-postabsorptive" title="gcbc-postabsorptive" width="500" /></p>
<p>What&#8217;s the takeaway? Mainly that there&#8217;s <em>humongous</em> redundancy around ensuring that the brain is well supplied with energy at all times. The article notes that &#8220;The supply of fuels to the brain is elaborately defended even during prolonged fasting&#8221; and goes into detail about the ways in which the brain is covered against all contingencies (except extreme starvation) by routings and syntheses of glucose from various sources. As a second priority, muscle tissue is spared as much as possible.</p>
<p>Fat storage and usage is a more dynamic process than you may think, and the liver conducts this whole energy symphony with precision. The article notes:</p>
<blockquote><p>Adipose tissue participates actively in metabolism by removing the excess nutrients that are usually obtained during each meal and by releasing them in the subsequent postabsorptive period. This tissue thus provides a massive energy buffer that prevents dramatic shifts in nutrient supply despite the episodic nature and inconstant magnitude of food ingestion. The liver complements the function of the adipose tissue and ensures that nutrient supplies are sufficient and appropriate to the specific needs of individual tissues.</p></blockquote>
<p><strong>A few pointed observations:</strong> Okay, this is me talking for myself again.</p>
<ul>
<li>
<p>No, you don&#8217;t need to eat carbs to make sure your brain is supplied with energy. (If that were true, I&#8217;d be dead by now.) You&#8217;d have to go to quite a bit of trouble &#8212; like getting to the advanced stages of starvation &#8212; to prevent your brain from being first in line for all food and body-tissue sources of glucose.</p>
</li>
<li>
<p>Remember the stuff about <a href="http://www.xmlgrrl.com/blog/archives/2009/03/22/343000-reasons-to-be-annoyed/">insulin &#8220;masking&#8221; body fat</a> and making it harder to burn, putting a priority instead on clearing whatever carbs are currently flooding your bloodstream?  That makes your fat less <em>available</em> as a utilizable fuel source.</p>
</li>
<li>
<p>If you succeed in making your fat pretty much invisible, your postabsorptive period will be less effective, you&#8217;ll need more postprandial episodes just to keep yourself running &#8212; and your supposed &#8220;body weight set point&#8221; will magically rise.</p>
</li>
<li>
<p>Exit question: How do you suppose you can get it to fall?</p>
</li>
</ul>
<p>(Stay tuned for an eventual Part 2!)</p>
]]></content:encoded>
			<wfw:commentRss>http://www.xmlgrrl.com/blog/archives/2009/04/14/the-science-of-feeling-peckish-part-1/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>
