<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>

<channel>
	<title>Cryptosmith</title>
	<atom:link href="http://www.cryptosmith.com/feed" rel="self" type="application/rss+xml" />
	<link>http://www.cryptosmith.com</link>
	<description>Authentication, crypto, information security, and life with gadgets - Rick Smith</description>
	<pubDate>Mon, 06 Oct 2008 22:36:24 +0000</pubDate>
	<generator>http://wordpress.org/?v=abc</generator>
	<language>en</language>
			<item>
		<title>Interesting Summary of Data Breaches</title>
		<link>http://www.cryptosmith.com/archives/406</link>
		<comments>http://www.cryptosmith.com/archives/406#comments</comments>
		<pubDate>Fri, 03 Oct 2008 14:38:36 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/archives/406</guid>
		<description><![CDATA[Verizon&#8217;s security blog has published a summary report of data breaches investigated by their security team. The report covers 500 security breaches they investigated between 2004 and 2007. There are a lot of graphs and tables summarizing threats and impacts.
The authors sensibly point out that this is based on a limited sample, but it&#8217;s great [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/406/feed</wfw:commentRss>
		</item>
		<item>
		<title>Teaching Programming</title>
		<link>http://www.cryptosmith.com/archives/396</link>
		<comments>http://www.cryptosmith.com/archives/396#comments</comments>
		<pubDate>Wed, 24 Sep 2008 02:33:00 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Tech Teaching]]></category>

		<category><![CDATA[programming]]></category>

		<category><![CDATA[teaching]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=396</guid>
		<description><![CDATA[I&#8217;ve taught programming on-and-off since the 1970s. Most recently I&#8217;ve taught some Java and C. If you&#8217;re teaching the mechanics of programming to lots of people (not just the few who instantly &#8220;get it&#8221;) then you must take an incremental approach. You start with simple concepts and mechanisms and work up from there.
In particular, you [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/396/feed</wfw:commentRss>
		</item>
		<item>
		<title>Computers don&#8217;t work when you lie to them</title>
		<link>http://www.cryptosmith.com/archives/391</link>
		<comments>http://www.cryptosmith.com/archives/391#comments</comments>
		<pubDate>Tue, 23 Sep 2008 02:16:00 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA[policy]]></category>

		<category><![CDATA[Wall Street]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=391</guid>
		<description><![CDATA[Here is a terrific (but depressing) article by Saul Hansell explaining how the Wall Street meltdown was fueled by feeding nonsense to the risk management systems in the big investment houses.
The systems did not have models of those weird derivative instruments being traded, so traders would say they were trading a generic (safe, well-understood) loan [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/391/feed</wfw:commentRss>
		</item>
		<item>
		<title>Revising OpenID for WordPress</title>
		<link>http://www.cryptosmith.com/archives/325</link>
		<comments>http://www.cryptosmith.com/archives/325#comments</comments>
		<pubDate>Sun, 21 Sep 2008 16:35:18 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA[WordPress]]></category>

		<category><![CDATA[authentication]]></category>

		<category><![CDATA[OpenID]]></category>

		<category><![CDATA[SSL]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=325</guid>
		<description><![CDATA[Will Norris is working on a revision to OpenID for WordPress. This is good, and I have some observations and suggestions. At the moment the OpenID plugin works pretty well - I have separate logins delegated through domains I own. I routinely log in through OpenID for both routine and administrative activities.
I&#8217;ll briefly note the [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/325/feed</wfw:commentRss>
		</item>
		<item>
		<title>SSL with WordPress 2.6</title>
		<link>http://www.cryptosmith.com/archives/322</link>
		<comments>http://www.cryptosmith.com/archives/322#comments</comments>
		<pubDate>Sat, 20 Sep 2008 22:44:26 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA[WordPress]]></category>

		<category><![CDATA[crypto]]></category>

		<category><![CDATA[SSL]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=322</guid>
		<description><![CDATA[This is more of a reminder to myself - you can enable SSL on WordPress, but it&#8217;s essentially an undocumented feature. This afternoon all I could find was a forum posting on enabling SSL.
There doesn&#8217;t seem to be genuine documentation on it in the Codex, at least, not documentation that pops out when you do [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/322/feed</wfw:commentRss>
		</item>
		<item>
		<title>Easily Reset Passwords and OpenID</title>
		<link>http://www.cryptosmith.com/archives/310</link>
		<comments>http://www.cryptosmith.com/archives/310#comments</comments>
		<pubDate>Sat, 20 Sep 2008 13:12:11 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA[dumb passwords]]></category>

		<category><![CDATA[OpenID]]></category>

		<category><![CDATA[password resetting]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=310</guid>
		<description><![CDATA[It&#8217;s no surprise that someone managed to reset Sarah Palin&#8217;s password on a freebie e-mail account.  She&#8217;s a public figure and the answers to her so-called &#8220;security questions&#8221; are on the public record. It&#8217;s one thing to do personal and political e-mail on a Yahoo account but it&#8217;s DUMB to use such an account for [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/310/feed</wfw:commentRss>
		</item>
		<item>
		<title>&#8220;Design Patterns&#8221; for Identity Systems</title>
		<link>http://www.cryptosmith.com/archives/300</link>
		<comments>http://www.cryptosmith.com/archives/300#comments</comments>
		<pubDate>Thu, 18 Sep 2008 21:05:32 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA[authentication]]></category>

		<category><![CDATA[Microsoft]]></category>

		<category><![CDATA[OpenID]]></category>

		<category><![CDATA[patterns]]></category>

		<category><![CDATA[public-key certificates]]></category>

		<category><![CDATA[RADIUS]]></category>

		<category><![CDATA[TACACS]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=300</guid>
		<description><![CDATA[These are design patterns in the Christopher Alexander sense rather than the object oriented design sense: they address the physical and network environment rather than focusing on software abstractions. The patterns were introduced in my book Authentication.
There are four patterns: local, direct, indirect, and off-line.

Here is a brief description of each authentication pattern:

Local: All checking [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/300/feed</wfw:commentRss>
		</item>
		<item>
		<title>Senator McCain and &#8220;Internet Cryptography&#8221;</title>
		<link>http://www.cryptosmith.com/archives/279</link>
		<comments>http://www.cryptosmith.com/archives/279#comments</comments>
		<pubDate>Mon, 08 Sep 2008 02:59:02 +0000</pubDate>
		<dc:creator>Dr. Rick Smith</dc:creator>
		
		<category><![CDATA[Information Security]]></category>

		<category><![CDATA["Internet Cryptography"]]></category>

		<category><![CDATA[crypto]]></category>

		<category><![CDATA[export controls]]></category>

		<category><![CDATA[key sizes]]></category>

		<category><![CDATA[Secure Computing Corporation]]></category>

		<guid isPermaLink="false">http://www.cryptosmith.com/?p=279</guid>
		<description><![CDATA[In honor of the electoral season, I&#8217;m sharing an old photograph. The occasion was a visit by Senator John McCain (R-AZ) to Secure Computing in June, 1999. We discussed possible revisions to cryptographic export controls, and he posed for photos, holding a copy of Internet Cryptography, which was &#8216;recently published&#8217; back then.

I don&#8217;t want to [...]]]></description>
		<wfw:commentRss>http://www.cryptosmith.com/archives/279/feed</wfw:commentRss>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 3.507 seconds -->
<!-- Cached page served by WP-Cache -->
