Openswan 2.3.1 (2.x branch)
Grok Headline matches for Openswan 2.3.1 (2.x branch)
Openswan 2.2.0 (2.x)
Openswan 2.2.0 (2.x)
09/17/2004 11:29 PMAn IPsec stack and userland for Linux.
Openswan 2.1.5 (2.x)
Openswan 2.1.5 (2.x)
08/23/2004 08:33 AMAn IPsec stack and userland for Linux.
Openswan 1.0.6 (1.x)
Openswan 1.0.6 (1.x)
06/28/2004 08:11 AMAn IPsec stack and userland for Linux.
Novell-SUSE Sponsors Openswan
Novell-SUSE Sponsors Openswan
06/19/2004 11:03 PM[ GLSA 200406-20 ] FreeS/WAN, Openswan,
strongSwan: Vulnerabilities in
certificate handling
[ GLSA 200406-20 ] FreeS/WAN, Openswan,
strongSwan: Vulnerabilities in
certificate handling
06/26/2004 01:07 AMThierry Carrez (Jun 25 2004)
bdb 0.2.6 (Default branch)
bdb 0.2.6 (Default branch)
03/22/2005 03:52 PM

bdb is a bibliography database with a flexible Web-based
interface. One can easily add items to the database, search
for information in the database, and generate reports.
FOX 1.4.11 (Stable branch)
FOX 1.4.11 (Stable branch)
04/05/2005 11:56 AM

FOX is a C++-based toolkit for GUI development. It includes a rich set
of widgets and has powerful yet simple layout managers, MDI widgets,
and mega-widgets. FOX incorporates support for XDND for drag and drop,
X clipboard and X Selection, watching other I/O channels and sockets,
timers and idle processing, object serialization and deserialization,
a registry to save persistent settings, and 3D widgets using Mesa or
OpenGL. FOX works on Linux, IRIX, Solaris, HP/UX, AIX, Tru64 Unix,
Windows 9x,NT,2K (VC++, GNUWIN32, Borland, VisualAge C++), FreeBSD,
and Sequent.
Changes:
HSCROLLING_OFF is now passed to a list widget
embedded in FXListBox. The selection rectangle is
now set inside FXTable before calling the
SEL_SELECTED callback.
PMD 3.2 (Default branch)
PMD 3.2 (Default branch)
06/22/2005 02:26 AM

PMD is a Java source code analyzer. It finds
unused variables, empty catch blocks, unnecessary
object creation, and more. It includes CPD, a tool to detect chunks
of identical code.
License: BSD License (original)
Changes:
Three new rules were added. Bugfixes were made.
Various internal improvements were done to make
writing rules easier.
otl 0.26 (Default branch)
otl 0.26 (Default branch)
04/08/2005 04:27 AM
otl is a Perl application that is a glorified
search and replace engine. The process is
customizable; the application can be used to
generate markup such as HTML, XML, etc. from a
text file with the user able to customize the
process to a substantial extent. While the program
is designed to be used to process outlines (e.g.
lecture notes, etc.) and generate nice HTML, it
could be used in other contexts, as well by just
defining a new set of rules for the substitution
process.
Changes:
In this version, nested lists are processed better, and there
is improved documentation in the HOWTO . A GNU autoconf
automake framework was added so install is more of a no-
brainer, a --pfile flag is now used to indicate a parameter
file, filename globbing is now dealt with, the parameter file
was modified so it specifies the file suffix to tag on output
file, diagnostic information that is written to stdout has been
trimmed, the project now checks to see if the file is already
present before overwriting, and a second script, "tag-
remove", was added.
R 2.1.0 (Default branch)
R 2.1.0 (Default branch)
04/18/2005 12:51 PM

R is a language and environment for statistical computing and
graphics. It is similar to S, which was developed at Bell Laboratories
by John Chambers et al. It provides a wide variety of statistical and
graphical techniques (linear and nonlinear modelling, statistical
tests, time series analysis, classification, clustering, etc.). R is
designed as a true computer language with control-flow constructions
for iteration and alternation, and it allows users to add additional
functionality by defining new functions. For computationally intensive
tasks, Fortran and C code can be linked and called at run time.
Changes:
The most important changes are probably support
for UTF-8 encodings and internationalization,
including (partial) translations of menus,
warnings, and error messages to Chinese, German,
Italian, Japanese, Portugese, and Russian.
mnoGoSearch 3.2.32 (3.2.x branch)
mnoGoSearch 3.2.32 (3.2.x branch)
03/30/2005 03:22 AM
mnoGoSearch (formerly known as UdmSearch) is a full-featured Web
search engine that you can use to build search engines over HTTP,
HTTPS, FTP, and NTTP servers, local files, and database big text
fields. It supports Oracle, MS SQL Server, MySQL, PostgreSQL,
InterBase/Firebird, Openlink Virtuoso, Intersystems Caché, iODBC,
EasySoft ODBC, and unixODBC database backends. It has XML, HTML, and
TEXT built-in support, and external converters support for other
document types. An automatic language/charset guesser for more 70
language/charset combinations is included, along with basic
authorization support, and you may index password-protected intranet
HTTP servers with proxy authorization support.
Changes:
A MaxDocPerSite indexer.conf command was added. A
problem where HTML title and META tags were not included
in body excerpts if excerpts were built from CachedCopy
was fixed. The misspelled word suggestion now works in
DBMode=single. Minor fixes and improvements were made.
Maw 1.1 (Default branch)
Maw 1.1 (Default branch)
06/22/2005 02:26 AM

Maw is mostly black, but it's got lots of blues,
purples, and reds in it too. There is also a GTK
theme and a GKrellM theme. There are several
backgrounds bundled with this theme, including
some original ones. It uses the Nexis font.
License: GNU General Public License (GPL)
Changes:
This release fixes some sloppy graphics editing on the opening pixmap
and scales it to not tile on displays as high as 2048x1536.
AGR 0.5.0 (Default branch)
AGR 0.5.0 (Default branch)
04/12/2005 11:54 PM

AGR (Amiga Guide Reader) is an Amiga Guide file
viewer.
XZX-Pro 4.5 (Default branch)
XZX-Pro 4.5 (Default branch)
06/17/2005 04:58 PM

XZX-Pro is a portable emulator of ZX Spectrum 48K/128K/+3 (8-bit home
computers made by Sir Clive Sinclair), and Spectrum clones for
machines running UNIX and the X Window system. It is completely
written in C, and emulates Spectrum 48K, 128K, +2 and +3, Pentagon and
Scorpion, Didaktik, Interface I with up to 8 microdrives, Multiface 1,
Multiface 128, and Multiface 3, Beta 128 by Technology Research Ltd.
with 4 disk drives, +D by Miles Gordon Technology with 2 disk drives,
and D80 with 2 disk drives, ZX Printer, Kempston mouse,
Sinclair/Cursor/AGF/Protek/Kempston joystick, Fuller Audio Box, and
built-in Z80 machine code monitor.
License: Shareware
Changes:
Support for 16 bit audio has been added to almost all audio drivers.
LibAo is now supported as an audio driver. A lot of minor bugs have
been
fixed.
XC-AST 0.8.1 (Default branch)
XC-AST 0.8.1 (Default branch)
03/22/2005 03:52 PM

XC-AST analyzes data about call queues maintained
by an Asterisk PBX. After selecting one or more
queues, it provides information on agent logon and
logoff, taken calls, and lost calls in formatted
reports. It is designed to be used for monitoring
call centers that require real-time activity reports.
Changes:
This release features Caller*ID area analysis. It is now
possible to see the distribution of taken and lost calls by
area code (selectable in the number of digits). It is now
possible to set the default start hour, end hour, and time
period in the configuration file. The default analysis takes
data from 8 to 18 during the last 7 days.
ANA-MP 0.9.7.3 (Default branch)
ANA-MP 0.9.7.3 (Default branch)
04/01/2005 08:06 PM
ANA-MP is a player for music files (modules) in
the .MOD, .XM, and .S3M formats. It runs on any
platform with a Java 1.3 implementation, and can
be used as a library for playing music in games or
demos.
Changes:
Better looking command line output, fake ASCII scopes, the ability to
load an applet from a URL (enabling applets), stability fixes, various
S3M fixes, key-off handling in XMs, multi-sample XM instruments, and
clipping instead of overflowing when amplification is turned up too
much.
HuC 3.21 (Default branch)
HuC 3.21 (Default branch)
04/10/2005 12:36 PM
HuC is a PC Engine C compiler. It can create ROMs (hucard) or CD
images and is bundled with an assembler and all kinds of libraries.
You can ouput text, scrolls, make sound, control CD, handle sprites
and tiles, and more.
Changes:
This version adds preliminary support for adpcm.
Several bugs related to the scroll library have
also been fixed.
SAM Jr 0.1 (Default branch)
SAM Jr 0.1 (Default branch)
04/07/2005 08:07 AM

SAM Jr is a real-time analysis tool for Snort
data. It can easily be extended using plugins.
PL/1 for GCC 0.0.10 (Default branch)
PL/1 for GCC 0.0.10 (Default branch)
03/26/2005 05:19 AM
The pl1gcc project is an attempt to create a
native PL/I compiler using the GNU Compiler
Collection. PL/I is a third-generation procedural
language suitable for a wide range of applications
including system software, graphics, simulation,
text processing, Web, and business applications.
Changes:
Many syntax additions and updates were made. The -J option was removed
from the compiler.
lvs-rrd v0.6 (Default branch)
lvs-rrd v0.6 (Default branch)
04/08/2005 06:05 PM

lvs-rrd is a tool to collect connection data from an LVS,
store them in RRD files, and later graph that data so that
trends can be observed.
Changes:
This release adds support for specifying the protocol (tcp|udp). A
verbose option has been added, and a small change to the PHP page has
been made.
QFE 0.1 (Default branch)
QFE 0.1 (Default branch)
04/01/2005 11:59 AM

QFE is a full-featured FTN message editor with graphical
interface written on C++/Qt. All operations with FIDO
message base use the fidoconfig and smapi packages from
the Husky project.
XBlast 2.10.0 (TNT branch)
XBlast 2.10.0 (TNT branch)
02/01/2005 09:45 PM

XBlast is a multi-player arcade game for X11 and MS Windows with
raytraced graphics. The game can be played with at least two players
and up to six players. It was inspired by the video/computer game
Bomberman (Dynablaster).
Changes:
The most obvious new features are XILE (XBlast
Integrated Level Editor) and the Chat features, as
well as background music.
vok 1.1 (Default branch)
vok 1.1 (Default branch)
04/03/2005 07:42 PMvok is a vocabulary trainer written with
OpenOffice macros.
NAS 1.7a (Development branch)
NAS 1.7a (Development branch)
04/10/2005 09:50 PM
In a nutshell, the Network Audio System (NAS) is the audio equivalent
of an X display server. It was developed by NCD for playing,
recording, and manipulating audio data over a network. Like the X
Window System, it uses the client/server model to separate
applications from the specific drivers that control audio input and
output devices.
Changes:
This version corrects some issues seen with Gcc 4.0, as well as fixing
some AMD-64 and NetBSD issues.
Tor 0.0.9.7 (Default branch)
Tor 0.0.9.7 (Default branch)
04/01/2005 11:58 AM

Tor is a network of virtual tunnels that allows people and
groups to improve their privacy and security on the Internet.
It also enables software developers to create new
communication tools with built-in privacy features. It
provides the foundation for a range of applications that allow
organizations and individuals to share information over
public networks without compromising their privacy.
Individuals can use it to keep remote Websites from tracking
them and their family members. They can also use it to
connect to resources such as news sites or instant
messaging services that are blocked by their local Internet
service providers (ISPs).
Changes:
This release fixes another server race crash bug and a bug which
caused
a refusal to extend to an unknown server.
SX 1.2 (Stable branch)
SX 1.2 (Stable branch)
03/30/2005 09:04 AM

SX is a graphical 3D geometric object modeller implemented in
PLT-Scheme. It can create, edit, or modify any geometry consisting of
points, one dimensional elements (lines), triangles, quadrilaterals,
tetrahedra, and blocks.
Changes:
The development platform has changed from Guile to
PLT-Scheme. The implementation more complete than
ever before.
SAM Jr 0.3 (Default branch)
SAM Jr 0.3 (Default branch)
04/18/2005 11:04 AM

SAM Jr is a real-time analysis tool for Snort
data. It can easily be extended using plugins.
Changes:
This release adds a script to email the whois and other info of any IP
address with a very high threat index, serving as a complex script
example, JavaMail jar files and a SimpleMailSender class,
database port number configurability,
a whois lookup facility, and keyboard shortcuts for menus.
im-ja 1.4 (Default branch)
im-ja 1.4 (Default branch)
04/12/2005 05:18 PM

im-ja aims to be a generic Japanese input module
for GTK+ 2. The currently supported input modes
are Hiragana, Katakana, Half-Width Katakana,
Zenkaku, Canna, Wnn, Anthy, and Kanji character
recognition (based on Kanjipad).
Changes:
Changes include compose sequence and system tray support in addition
to some minor fixes.
pyc 0.5 (Default branch)
pyc 0.5 (Default branch)
06/05/2005 11:22 PMpyc compiles Python source code to Python
bytecode. Since it is written entirely in Python,
it is easy to modify and add new features to the
Python programming language.
Hu-Go! 2.11 (Default branch)
Hu-Go! 2.11 (Default branch)
03/14/2005 06:20 PM

Hu-Go! is a PC Engine Emulator for Linux/i386 under console and X11.
It plays Hu cards and CDs (and various forms of dumps from them).
Changes:
This version added support for hardware accelerated rendering and
netplay and partial support for arcade cards (some games are
playable). It also features rewritten documentation, joypad and
keyboard configuration in the graphical interface, and a new graphical
engine. Developers can now manipulate the internal variables at run
time to create custom plugins. US ROMs are now auto-deteced, some bugs
were fixed, and support for big-endian CPUs was added. The program is
now mainly licensed under the GPL (some parts use the mBSD and zlib
license).
IMP H3 (4.0.3-RC1) (FRAMEWORK_3 branch)
IMP H3 (4.0.3-RC1) (FRAMEWORK_3 branch)
03/29/2005 02:05 PM

IMP, the Internet Messaging Program, allows Web-based access to IMAP
and
POP3 mail servers and provides a range of features normally found only
in desktop email clients.
Changes:
Automatic detection of email server parameters to the test script has
been added. Viewing of certain S/MIME or PGP signed messages and email
links in HTML messages has been fixed. Dutch, German, Finnish,
Italian, Japanese, Norwegian Bokmaal, Polish, and Slovenian
translations have been updated. Many improvements have been made, and
minor bugs and layout issues have been fixed.
lsh 2.0.1 (Stable branch)
lsh 2.0.1 (Stable branch)
03/17/2005 03:34 AM
lsh is a GNU GPL-licensed implementation of the SSH (version 2)
protocol. It includes a server, a client, and some utility programs.
Changes:
A denial of service bug in lshd has been fixed. A bug in lsh-make-seed
that could make the program go into an infinite loop on read errors
has been fixed. lsh now asks for passwords also in quiet (-q) mode, as
described in the manual. Control character filtering used to sometimes
consider newlines as dangerous control characters. Now newlines should
be displayed normally.
FOX 1.5.1 (Development branch)
FOX 1.5.1 (Development branch)
03/22/2005 03:53 PM

FOX is a C++-based toolkit for GUI development. It includes a rich set
of widgets and has powerful yet simple layout managers, MDI widgets,
and mega-widgets. FOX incorporates support for XDND for drag and drop,
X clipboard and X Selection, watching other I/O channels and sockets,
timers and idle processing, object serialization and deserialization,
a registry to save persistent settings, and 3D widgets using Mesa or
OpenGL. FOX works on Linux, IRIX, Solaris, HP/UX, AIX, Tru64 Unix,
Windows 9x,NT,2K (VC++, GNUWIN32, Borland, VisualAge C++), FreeBSD,
and Sequent.
Changes:
Unicode tables were added. The fxchar.h header
file provides functions operating on 32-bit wide
Unicode characters. They support the full range
from U+000000 to U+10FFFF. FOX will support wide
characters, but most functions will work on UTF-8,
which is a more compact and manageable
representation of Unicode characters. Scroll
capability was added to FXTabBar and FXTabBook.
The "remove" APIs in various container classes
were renamed to "erase", which more closely
resembles STL container classes' nomenclature.
Mouse wheel support was added for FXComboBox,
FXListBox, and FXTreeListBox.
FOX 1.3.26 (Development branch)
FOX 1.3.26 (Development branch)
02/01/2005 09:45 PM

FOX is a C++-based toolkit for GUI development. It includes a rich set
of widgets and has powerful yet simple layout managers, MDI widgets,
and mega-widgets. FOX incorporates support for XDND for drag and drop,
X clipboard and X Selection, watching other I/O channels and sockets,
timers and idle processing, object serialization and deserialization,
a registry to save persistent settings, and 3D widgets using Mesa or
OpenGL. FOX works on Linux, IRIX, Solaris, HP/UX, AIX, Tru64 Unix,
Windows 9x,NT,2K (VC++, GNUWIN32, Borland, VisualAge C++), FreeBSD,
and Sequent.
Changes:
XDND was upgraded to version 5 of the standard.
Minor tweaks wre made to toolbar dragging.
FXSettings doesn't quote values unless there are
leading and trailing spaces or special characters
in it.
OSS 3.99.2c (Default branch)
OSS 3.99.2c (Default branch)
03/23/2005 07:00 PM
OSS provides sound card drivers for most popular sound cards under
Linux, *BSD, Solaris, UnixWare, OpenServer, AIX, HPUX, LynxOS,
VxWorks, and Tru64. These drivers support digital audio, MIDI,
synthesizers, and mixers found on sound cards. These sound drivers
comply with the Open Sound System API specification. OSS provides a
user-friendly GUI which makes the installation of sound drivers and
configuration of sound cards very simple. It supports over 200 brand
name sound cards, and provides automatic sound card detection,
Plug-n-Play support, support for PCI audio soundcards, and support for
full duplex audio.
Changes:
Fixes were made for Envy24 memory allocation under
BSD. Fixes were made for LynxTWO drivers for
Linux. Fixes were made to the audio core for
nonblocking support for BSD.
Wi.Ser 0.6.8 (Default branch)
Wi.Ser 0.6.8 (Default branch)
03/28/2005 01:34 PM

Wi.Ser is a Java/XML server-side GUI-framework
which enables an application to run as either a
monolithic Swing app, a client/server Swing app,
or as a Web app without any change. It includes a
mixed deployment mode, which supports one server to serve Swing
clients and Web clients at the same time. The framework uses XML to
define an application's GUI. It provides a common
widget-based, object-oriented programming
interface for Web and Swing GUIs, which prevents
the developer from struggling with HTML and HTTP
or with the internals of Swing. For Swing client/server applications
the client/server split as well as the client/server communication is
handled transparently by the framework.
The project includes a GUI builder that is based on the framework's
functionality (screenshot, deployed as a Web/HTML application).
Changes:
This release implements lazy loading for swing
widgets, which means that forms are submitted on
demand from the server to the client. This feature
brings a significant speed up for swing GUIs and a
lower memory footprint. A bug in forEach has been
fixed, and forEach is able to match names and tags
with regular expressions. The tutorial has been
enhanced with two new chapters, and errors in the
WebWindow management were corrected. A new widget
called templateSection has been added to support
embedded HTML.
Xen 2.0.5 (Default branch)
Xen 2.0.5 (Default branch)
03/23/2005 07:00 PM
Xen is a virtual machine monitor for x86 that
supports execution of multiple guest operating
systems in isolated environments.
Changes:
Various minor bugfixes and code cleanups were
done.
LinuXchangE 0.3 (XP branch)
LinuXchangE 0.3 (XP branch)
03/29/2005 04:24 AM

LinuXchangE is a powerful integration system that
offers corporate network services like email, DNS,
WINS, DHCP, VPN, PDC, and mass storage. It
pretends to be a complete replacement for Windows
servers by storing all its information using NTLM,
Kerberos, and LDAP like Active Directory does.
Changes:
The documentation has been updated to get advantage of Samba 3.0.11+,
heimdal, and OpenLDAP. An NTLogon++ script has been developed in Perl
to be a replacement for ntlogon.py with new features.
Grand 0.7 (UI branch)
Grand 0.7 (UI branch)
04/18/2005 11:03 AM

Grand is a set of tools to create a visual representation of
Ant target dependencies. It works by taking an Ant build
file and creating a "dot" file. It differs from the existing
tools by relying on the Ant API rather than XML parsing to
get the dependencies. It includes many advanced features such as
filtering or rendering depending on the target's nature. It also
features a GUI based on SWT, Draw2D, and JzGraph.
Changes:
A new "export as image" feature was added. Support
for the new target element in ant and antcall was
added. The behavior when targets with the same
name exist in several files was improved. Minor
improvements and bugfixes were made.
Grok Description matches for Openswan 2.3.1 (2.x branch)
GrokA matches for Openswan 2.3.1 (2.x branch)
firebox.com - Q BBQ
firebox.com - Q BBQ
04/27/2004 08:09 PMBar-B-Que .. Q
BBQ
firebox.com/index.html?dir=firebox&action=product&pid=797
track
this site | 5 links
FireBox 0.1
FireBox 0.1
07/13/2004 01:58 PMA theme based on the Mozilla Firefox logo.
Test Run: WatchGuard's Firebox X Edge
Test Run: WatchGuard's Firebox X Edge
09/13/2004 08:53 AMSSH RSA/DSA authentication via the GUI
SSH RSA/DSA authentication via the GUI
12/16/2003 11:18 AMAs a UNIX system admin, I have about 40 servers that I need to access
via SSH. I recently retired my good old first gen PowerBook g3 and
bought myself a new pbook, which was my first experience with OS X
(panther). I was thr...
Trackback authentication
Trackback authentication
03/06/2004 02:09 AM
Jacques Distler: The anonymous nature of the internet makes
the problem of “identity” a hard one. In physics, when
we encounter an intractably-hard problem, our most frequent dodge
is to redefine the problem to one which admits a solution, and hope
that the result is a “good-enough” stand-in for the
original problem. In that spirit, I (re)defined the problem as
reliably associating comments posted with the websites of the
commenters.
Just a suggestion: a lesser, but very much related and much more
tractable, problem is trackbacks. The reason why it is more
tractable is that the trackbacks are issued by software which could
reasonably be expected to have direct access to your weblog's
private keys. This could make signing totally automatic -
simply check a box once, and your template could be updated and all
future trackbacks would be automatically signed.
The signatures could be passed as a new CGI parameter or as a
HTTP header. Neither would likely affect any existing
software that wasn't expecting this information.
Once trackback signing is widely enough adopted, people may feel
comfortable turning off the ability to accept unsigned
trackbacks. And then much of the infrastructure will be in
place to tackle the harder, and more important problem, of comment
signing.
The key nut to crack there is to make it easy and painless to
sign a comment.
Authentication >> The Power of Who
Authentication >> The Power of Who
01/06/2005 03:14 PMThe Cloud Allows SIM Authentication
The Cloud Allows SIM Authentication
05/04/2004 02:03 PMThe Cloud customers can now get authenticated using SIM cards: Transat
Technologies enables the service. SIM-based authentication is already
being used by some hotspots in Europe and is expected to be a widely
used authentication method there. Because Europeans use GSM for their
cell phone technologies, they are already used to the concept of the
SIM card. They can use the same SIM card for their cell phones and for
hotspot authentication, which also means they could receive a single
bill for both services. Some of the early SIM-based WLAN
authentication solutions are pretty rudimentary. They involve the user
sending a message from their cell phone to get a code that allows them
to access the WLAN. But the more sophisticated solutions include a SIM
card reader on a laptop. The SIM card authenticates the user but also
applies encryption and security to the communication between the
client and the network. That is likely the offering Transat is
delivering for The Cloud. At the CTIA Wireless I.T. show last fall I
talked to a handful of companies that are touting SIM-based
authentication tools, including some of the big SIM card makers. While
they're looking for a U.S. market, most weren't terribly bullish that
the authentication method would take off here because people aren't
widely used to the concept of using SIM cards. Even GSM users in the
U.S. don't often realize that they have a SIM card....
The cost of authentication
The cost of authentication
06/18/2004 04:52 AMLast issue we talked about two-factor authentication and I described
such a scheme used by a Swedish bank (see link below). The bank
requires a user to enter a unique identifier - a national ID number,
similar to a U.S. Social Security number, a four digit PIN, and a
one-time code that's revealed by scratching off the covering on one
cell of a 50-cell card (similar to a scratch-off lottery ticket). I
then posed the question: "Is that secure enough?" which can only, I
believe, can be answered: "It depends."
Atom Authentication
Atom Authentication
12/17/2003 07:19 PMMark Pilgrim explains why the Atom developers are using a new kind of
authentication scheme, and he explains why it's necessary.
Delegated Authentication
Delegated Authentication
06/17/2005 07:10 PM
Delegated authentication differs from federated authentication
model in that the authentication
authority delegates authentication yet again. It's a double-sided
star system where
the authentication authorities sits in the middle acting as a
directory of sort.
Delegated authentication model is not appropriate for weak
authentication uses. So
I doubt we'll see banks pushing customers to some federated
authentication authority
whenever they click on the sign-in button. Where it makes sense is
protecting high-value
transactions with strong and/or multi-party multi-factor
authentication.
As cryptic as what I wrote above may sound, the net effect is that
a) consumers will
be able to buy their favorite secure token at Fry's and use it to
protect their bank
account without worrying about whether the bank supports the device
or not, b) banks
of all sizes will be able to support a wide range of authentication
methods cheaply,
and c) strong authentication vendors will be able to market their
products and services
directly to consumers.
The biggest hurdle for delegated authentication is that the cost of
fraud risk have
already become part of the balance sheet. Risk exposure is
aggregated and taxed horizontally
so that finanical risk is shared as part of operating cost. The net
result is that
individual customers face minimal financial risk which leaves them
little incentives
to be interested in strong authentication unless they are required
to use them by
their banks.

Top Tip: Linux login authentication?
Top Tip: Linux login authentication?
08/09/2004 11:17 AMHow does Linux handle the Windows equivalent of domain logins? I'm
looking into using Linux in the computer lab of a small school which
has approximately 20 computers. I'm familiar with Windows domains and
its logon security, but am not sure how it works in the Linux world?
Are there domain controllers? How is logon authentication handled?
NTLM authentication library 0.3.3
NTLM authentication library 0.3.3
09/18/2004 01:43 AMA library implementing Microsoft's NTLM authentication.
SMB Authentication and username shortcut
SMB Authentication and username shortcut
06/22/2004 09:14 AMI don't know how I didn't realize this earlier, this might be pretty
obvious to everyone ... but when browsing the network on 10.3,
(possibly works for all versions of MacOS X) entering a workgroup,
then opening a windows sh...
NTLM authentication library 0.3.5
NTLM authentication library 0.3.5
09/22/2004 07:14 PMA library implementing Microsoft's NTLM authentication.
Re: authentication bug in KAME's racoon
Re: authentication bug in KAME's racoon
06/15/2004 01:41 PMMichal Ludvig (Jun 15 2004)
authentication bug in KAME's racoon
authentication bug in KAME's racoon
06/14/2004 09:13 PMThomas Walpuski (Jun 14 2004)
jSai :Servlet Authentication
jSai :Servlet Authentication
06/07/2004 11:52 PMLDAP Testing.
Courier Authentication Library 0.52
Courier Authentication Library 0.52
01/01/2005 11:10 PMA modular authentication library toolkit.
Integrated Windows Authentication
Integrated Windows Authentication
06/05/2004 04:10 AMThe Kerberos Authentication Process
The Kerberos Authentication Process
05/21/2004 05:21 PMSecurID authentication for OpenSSH 3.9p1
SecurID authentication for OpenSSH 3.9p1
09/01/2004 01:37 PMA SecurID authentication method for OpenSSH.
Maypole-Authentication-Abstract-0.6
Maypole-Authentication-Abstract-0.6
09/01/2004 12:11 AMAuthentication and Authorization for
Webapps
Authentication and Authorization for
Webapps
08/02/2004 01:56 PMSSH Authentication: A Basic Overview
SSH Authentication: A Basic Overview
08/11/2004 01:50 PM Openswan 2.3.1 (2.x branch)