CEO/Principal Consultant at INNOQ, he/him, software architect, RESTafarian, conference tourist. Works at innoq.com. Fediverse: @stilkov@innoq.social

Germany
Joined April 2007
Filter
Exclude
Time range
-
Near
One of my favorite pieces of music: Tony Banks' keyboard playing in Apocalype in 9/8 from Genesis' Supper's Ready
1
@stefanruf sponsoring user groups is always a pleasure :-)
looking at the first featured article on http://java.sun.com/ makes me smile
deleted ~200,000 spam comments from blogs of ex-innoQ employees; wondering why Google hasn't kicked us out of their index yet :-|
@Carnage4Life tempted to offer you webspace on our servers just to be able to reliably read your frigging blog ;-)
@mastermark congrats to mbp 17" - excellent machine
Finding it weird that Word 2008 on OS X still works close to perfectly on a 167 pages document.
RT @assaf HMAC implementation e.g. for webhooks http://auth-hmac.rubyforge.org/
Finally finished Stephenson's "Anathem". Really good, but should have been about 300 pages less
@assaf agreed, existing headers would be preferrable
@jcgregorio OK, sold on HMAC - seems ideal for many cases. No standard HTTP header definition in sight?
@justinsheehy Makes sense – so the security level of HMAC usage as in PostCommitWebHooks is in between Basic's and Digest's.
@jcgregorio points to HMAC as used in http://code.google.com/p/support/wiki/PostCommitWebHooks - wondering about advantages over HTTPdigest?
@atmanes I consider WS-S Username/Token profile roughly equivalent to HTTP Basic and Digest Auth. Am I missing something?
@dluebke I don't know of an existing proposal to integrate RESTful HTTP w/ SAML. And not sure I would want to :)
@poutsma Thanks; subsumed x.509 under SSL. My only excuse: Twitter 140 char limit
Working on chapter on REST security. basic, digest, ssl, xml enc/dsig, atom, jclark's work, openid, oauth, googleauth. What am I missing?
Safari 4 beta installation without problems so far. Nice home screen UI …
downloading Safari 4
call for papers for European Ruby/Ruby on Rails conference in Berlin: http://tinyurl.com/c3s324