<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>OpenID with Strong Authentication</title>
	<atom:link href="http://openidtrustbearer.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://openidtrustbearer.wordpress.com</link>
	<description>A Convenient and Secure Connection to the Web</description>
	<pubDate>Wed, 18 Jun 2008 13:58:02 +0000</pubDate>
	<generator>http://wordpress.org/?v=MU</generator>
	<language>en</language>
			<item>
		<title>TrustBearer OpenID selected as HealthVault provider</title>
		<link>http://openidtrustbearer.wordpress.com/2008/06/18/trustbearer-openid-selected-as-healthvault-provider/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/06/18/trustbearer-openid-selected-as-healthvault-provider/#comments</comments>
		<pubDate>Wed, 18 Jun 2008 13:58:02 +0000</pubDate>
		<dc:creator>stevepepple</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=37</guid>
		<description><![CDATA[As a conference last week, it was announced that TrustBearer OpenID will be one of two OpenID providers for the Microsoft HealthVault platform:
TrustBearer Labs’ OpenID service will allow HealthVault users to login securely to their account using multi-factor hardware authentication devices, such as smart cards, biometric readers, or security-enhanced mobile phones. The service uses challenge-response [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>As a <a href="https://www.ustechsregister.com/healthvaultsolutions/main.aspx">conference</a> last week, it was announced that TrustBearer OpenID will be one of two OpenID providers for the Microsoft HealthVault platform:</p>
<blockquote><p>TrustBearer Labs’ OpenID service will allow HealthVault users to login securely to their account using multi-factor hardware authentication devices, such as smart cards, biometric readers, or security-enhanced mobile phones. The service uses challenge-response authentication to prevent common phishing and man-in-the-middle attacks, which are a growing concern of online service providers.</p>
<p>“Our objective is to give our customers choice and make their web experience easier, while helping them safeguard their privacy,” said George Scriban, senior product manager, Health Solutions Group, Microsoft. “We’re happy to be working with TrustBearer to give HealthVault users the option of using OpenID with their HealthVault account.”</p></blockquote>
<p><a href="http://www.trustbearer.com/news/healthvault.html" target="_blank">A full story about the announcment can be found here.</a></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/37/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/37/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/37/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/37/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/37/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=37&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/06/18/trustbearer-openid-selected-as-healthvault-provider/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/stevepepple-128.jpg" medium="image">
			<media:title type="html">stevepepple</media:title>
		</media:content>
	</item>
		<item>
		<title>Extra tokens are convenient</title>
		<link>http://openidtrustbearer.wordpress.com/2008/05/01/extra-tokens-are-convenient/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/05/01/extra-tokens-are-convenient/#comments</comments>
		<pubDate>Thu, 01 May 2008 15:39:27 +0000</pubDate>
		<dc:creator>Brian Kelly</dc:creator>
		
		<category><![CDATA[human factor]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[smart card]]></category>

		<category><![CDATA[trustbearer]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=36</guid>
		<description><![CDATA[A couple weeks ago we announced a new feature that allows users to link multiple tokens to a single TrustBearer OpenID account. The original reason for doing this was to allow users to link a backup token to their account in case their primary token was lost.
I found another purpose for linking multiple tokens: convenience. [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>A couple weeks ago <a href="http://openidtrustbearer.wordpress.com/2008/04/22/backup-your-account-with-multiple-tokens">we announced</a> a new feature that allows users to link multiple tokens to a single TrustBearer OpenID account. The original reason for doing this was to allow users to link a backup token to their account in case their primary token was lost.</p>
<p>I found another purpose for linking multiple tokens: convenience. I keep a keyboard with a few USB ports at the office. Every day I plug this keyboard into my laptop. I linked an additional token to my TrustBearer OpenID account and I keep this token plugged into my keyboard. Now, whenever I&#8217;m in the office I don&#8217;t need to go searching for my keys to log into an OpenID website.</p>
<p>Hardware that is built-in to our computers is much more convenient to use. I&#8217;m sure that Apple has increased video chatting with iSight cameras now included with every laptop they sell. For awhile Dell has been including smart card readers in their business-class laptops. Many IBM &amp; Lenovo ThinkPad laptops include a built-in biometric swipe sensor. Will we ever see a smart card reader in a MacBook? I doubt it. But that&#8217;s another conversation&#8230;</p>
<p>For those of you who have been issued a smart card, either from your company, government, or private institution, do you carry around a reader with you all the time? Has having the card convinced you to get a laptop with a built-in smart card reader? </p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/36/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/36/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/36/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/36/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/36/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/36/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/36/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/36/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/36/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/36/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/36/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/36/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=36&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/05/01/extra-tokens-are-convenient/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/bklabs-128.jpg" medium="image">
			<media:title type="html">Brian Kelly</media:title>
		</media:content>
	</item>
		<item>
		<title>Demo using the Belgian eID</title>
		<link>http://openidtrustbearer.wordpress.com/2008/04/29/demo-using-the-belgian-eid/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/04/29/demo-using-the-belgian-eid/#comments</comments>
		<pubDate>Tue, 29 Apr 2008 17:37:11 +0000</pubDate>
		<dc:creator>Brian Kelly</dc:creator>
		
		<category><![CDATA[demo]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[trustbearer]]></category>

		<category><![CDATA[belgian]]></category>

		<category><![CDATA[eID]]></category>

		<category><![CDATA[belpic]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=34</guid>
		<description><![CDATA[One of our developers came across an interesting post from a user who recorded a screencast of authenticating to TrustBearer OpenID using his Belgian eID. We added support for the Belgian eID to TrustBearer OpenID last week. It is great to see people taking advantage of this support already. Thank you, Xavier, for taking the [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://openid.trustbearer.com/support/devices.html"><img class="alignleft size-full wp-image-35" style="margin:10px;" src="http://openidtrustbearer.files.wordpress.com/2008/04/device-begium.jpg?w=100&h=69" alt="" width="100" height="69" align="left" /></a>One of our developers came across an <a href="http://blog.rootshell.be/2008/04/28/openid-and-belgian-eid/">interesting post</a> from a user who recorded a screencast of authenticating to TrustBearer OpenID using his Belgian eID. We added support for the Belgian eID to TrustBearer OpenID last week. It is great to see people taking advantage of this support already. Thank you, <a href="http://blog.rootshell.be/">Xavier</a>, for taking the time to create this video.</p>
<p><span style="text-align:center; display: block;"><a href="http://openidtrustbearer.wordpress.com/2008/04/29/demo-using-the-belgian-eid/"><img src="http://img.youtube.com/vi/kEwgwebHCS4/2.jpg" alt="" /></a></span></p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/34/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/34/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/34/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/34/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/34/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/34/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/34/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/34/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/34/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/34/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/34/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/34/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=34&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/04/29/demo-using-the-belgian-eid/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/bklabs-128.jpg" medium="image">
			<media:title type="html">Brian Kelly</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/04/device-begium.jpg" medium="image" />

		<media:content url="http://img.youtube.com/vi/kEwgwebHCS4/2.jpg" medium="image" />
	</item>
		<item>
		<title>Backup your account with multiple tokens</title>
		<link>http://openidtrustbearer.wordpress.com/2008/04/22/backup-your-account-with-multiple-tokens/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/04/22/backup-your-account-with-multiple-tokens/#comments</comments>
		<pubDate>Tue, 22 Apr 2008 15:15:18 +0000</pubDate>
		<dc:creator>Brian Kelly</dc:creator>
		
		<category><![CDATA[new feature!]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[strong authentication]]></category>

		<category><![CDATA[trustbearer]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=31</guid>
		<description><![CDATA[Today we&#8217;ve added support to link multiple tokens to the same account. Our first release of TrustBearer OpenID allowed each user to associate one token per account. This was by design for security and simplicity. If you lost your single token, you could no longer use your account.
We realized that it was only a matter [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><img class="alignright size-full wp-image-33" style="border:0 none;float:right;margin:10px;" src="http://openidtrustbearer.files.wordpress.com/2008/04/openid_backup_ffx.png?w=348&h=504" alt="Add a token to your account" width="348" height="504" />Today we&#8217;ve added support to link multiple tokens to the same account. Our first release of TrustBearer OpenID allowed each user to associate one token per account. This was by design for security and simplicity. If you lost your single token, you could no longer use your account.</p>
<p><a href="http://openidtrustbearer.wordpress.com/2008/02/22/how-should-we-handle-lost-tokens/">We realized</a> that it was only a matter of time until someone lost a token, or ran it through the washing machine. There was some discussion on the blog around how we should handle this case of lost tokens. Some ideas included sending a SMS message as a one-time unlock, answering a series of Q&amp;A pairs and mailing a token to a pre-determined physical address. While all of these recovery methods are interesting, they either reduced security (SMS, Q&amp;A) or added privacy implications (mailing a recovery token).</p>
<p>The simple backup solution was to allow multiple tokens to be linked. To use this feature, sign in to your TrustBearer OpenID dashboard, connect an additional token to your computer, give your backup token a name and click Add Token.</p>
<p>You can add or remove as many tokens as you would like. <strong>Warning: </strong>You can also now &#8220;abandon&#8221; your account by removing all tokens associated with your account. We will not make that OpenID username available to anyone once an account is abandoned.</p>
<p>Give it a try and let us know what you think.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/31/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/31/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/31/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/31/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/31/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=31&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/04/22/backup-your-account-with-multiple-tokens/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/bklabs-128.jpg" medium="image">
			<media:title type="html">Brian Kelly</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/04/openid_backup_ffx.png" medium="image">
			<media:title type="html">Add a token to your account</media:title>
		</media:content>
	</item>
		<item>
		<title>Mobile phone, wallet and keys</title>
		<link>http://openidtrustbearer.wordpress.com/2008/03/07/mobile-phone-wallet-and-keys/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/03/07/mobile-phone-wallet-and-keys/#comments</comments>
		<pubDate>Fri, 07 Mar 2008 18:43:28 +0000</pubDate>
		<dc:creator>Brian Kelly</dc:creator>
		
		<category><![CDATA[human factor]]></category>

		<category><![CDATA[smart card]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[mobile device]]></category>

		<category><![CDATA[strong authentication]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=26</guid>
		<description><![CDATA[These are three items that I carry with me, almost everywhere. Someday, this will be trimmed down to a single item. This morning, the TBLabs crew stumbled across an article that we are all very excited about. Axel Nennker managed to use a mobile phone as a hardware crypto key with TrustBearer OpenID.
Axel, we&#8217;d love [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>These are three items that I carry with me, almost everywhere. Someday, this will be trimmed down to a single item. This morning, the TBLabs crew stumbled across an article that we are all very excited about. <a href="http://ignisvulpis.blogspot.com/2008/03/openid-with-smartcard-support.html" target="_blank"><span class="post-author vcard"><span class="fn">Axel Nennker</span></span></a><span class="post-author vcard"><span class="fn"> managed to use a mobile phone as a hardware crypto key with <a href="https://openid.trustbearer.com/">TrustBearer OpenID</a>.</span></span></p>
<p>Axel, we&#8217;d love to hear more about the phone, and how we could get one. Also, to your comments about no anti-phishing, please see our article on <a href="http://openid.trustbearer.com/support/Phishing.html" target="_blank">TrustBearer OpenID and Phishing</a>. And on no-unlinkability, we&#8217;re working on some enhancements to the TrustBearer OpenID server, including linking &amp; unlinking multiple tokens to an account.Exciting times. We&#8217;ll be out at the RSA Conference in April. Contact us if you&#8217;d like to meet-up.</p>
<p><i>Edit: The original post referenced details about this project that I did not have permission to publish. They have been removed. My apologies, Axel.</i></p>
<div style="text-align:center;"><a href="http://ignisvulpis.blogspot.com/2008/03/openid-with-smartcard-support.html" target="_blank"><img src="http://openidtrustbearer.files.wordpress.com/2008/03/phoneassmartcard.jpg" alt="Mobile phone smart card" border="0" /></a></div>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/26/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/26/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/26/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/26/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/26/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=26&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/03/07/mobile-phone-wallet-and-keys/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/bklabs-128.jpg" medium="image">
			<media:title type="html">Brian Kelly</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/03/phoneassmartcard.jpg" medium="image">
			<media:title type="html">Mobile phone smart card</media:title>
		</media:content>
	</item>
		<item>
		<title>Fast support for the Finnish eID</title>
		<link>http://openidtrustbearer.wordpress.com/2008/02/29/fast-support-for-the-finnish-eid/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/02/29/fast-support-for-the-finnish-eid/#comments</comments>
		<pubDate>Fri, 29 Feb 2008 23:24:22 +0000</pubDate>
		<dc:creator>harningt</dc:creator>
		
		<category><![CDATA[fineid]]></category>

		<category><![CDATA[smartcard]]></category>

		<category><![CDATA[trustbearer]]></category>

		<category><![CDATA[two-factor auth]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=24</guid>
		<description><![CDATA[Shortly after our launch of TrustBearer OpenID, a citizen of Finland tried to use his Finnish eID (FineID) with no success.  We send a request to Finland&#8217;s PRC and promptly received a small suite of sample cards.  In less than 2 days of device coding and debugging, the FineID was added to the suite of [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>Shortly after our launch of TrustBearer OpenID, a citizen of Finland tried to use his Finnish eID (FineID) with no success.  We send a request to Finland&#8217;s PRC and promptly received a small suite of sample cards.  In less than 2 days of device coding and debugging, the FineID was added to the suite of supported devices.<img src="http://openidtrustbearer.files.wordpress.com/2008/02/fineid.thumbnail.png" alt="Finnish eID" align="right" /></p>
<p>This has turned out to be yet another great example of how TrustBearer Live makes it easy to tack on additional support without dealing with new software downloads and the headaches that brings.</p>
<p>If you run into any troubles using your FineID on our <a href="https://openid.trustbearer.com/" target="_blank">OpenID Provider</a>, please let us know by contacting <a href="mailto:info@trustbearer.com">info@trustbearer.com.</a></p>
<hr /> <i>Update</i>: We currently support FineID Version 2 in both the &#8220;eID&#8221; and &#8220;organizational&#8221; profiles.  We do not <i>yet</i> support Version 1 due to data model differences.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/24/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/24/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/24/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/24/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/24/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=24&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/02/29/fast-support-for-the-finnish-eid/feed/</wfw:commentRss>
	
		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/02/fineid.thumbnail.png" medium="image">
			<media:title type="html">Finnish eID</media:title>
		</media:content>
	</item>
		<item>
		<title>OpenID vs. i-names</title>
		<link>http://openidtrustbearer.wordpress.com/2008/02/24/openid-vs-i-cards/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/02/24/openid-vs-i-cards/#comments</comments>
		<pubDate>Sun, 24 Feb 2008 21:33:03 +0000</pubDate>
		<dc:creator>stevepepple</dc:creator>
		
		<category><![CDATA[i-names]]></category>

		<category><![CDATA[openid adoption]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[public identifier standard]]></category>

		<category><![CDATA[XRI]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=21</guid>
		<description><![CDATA[

It&#8217;s the season of political campaigns.  And in this season, the vernacular of campaigning begin to swell into other areas- with front runners, presumptive nominees, comeback winners, and so forth.
For instance, we&#8217;ve learned recently the HD-DVD has dropped out of the HD format war; Blu-Ray is declared the apparent victor.
Well, in this same spirit, [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://openidtrustbearer.files.wordpress.com/2008/02/openid_campaign1.jpg" title="openid_campaign1.jpg"><br />
<img src="http://openidtrustbearer.files.wordpress.com/2008/02/openid_campaign1.jpg" alt="openid_campaign1.jpg" /></a><br />
It&#8217;s the season of political campaigns.  And in this season, the vernacular of campaigning begin to swell into other areas- with front runners, presumptive nominees, comeback winners, and so forth.</p>
<p>For instance, we&#8217;ve learned recently the HD-DVD has <i>dropped out </i>of the HD format war; Blu-Ray is declared the <i>apparent victor</i>.</p>
<p>Well, in this same spirit, Paul at In Context analyzes the standards campaigning in the digital public identifier area, which at this point can be reduced to i-name vs. OpenID. <a href="http://http://www.incontextblog.com/?p=23" target="_blank">In short, he finds that OpenID is not only running a better campaign, but really offers a better value:</a></p>
<blockquote><p>OpenIDs offer something to people that i-cards don’t. Even run of the mill, freebie, URL-based OpenIDs give you a public identifier that you feel like you own. And the i-name flavor of OpenIDs give you a public identifier that you really do own cuz you’re not locked in to a particular OpenID provider.</p>
<p>OpenID is the <i>winning</i>, lightweight, technology for <i>public</i>, <i>low-value</i> transactions.</p>
<ul>
<li>Why <i>winning</i>? The OpenID community blended together the three competing lightweight technologies (LID, OpenID, and i-names) into a unified specification, community, code, and foundation.</li>
<li>Why <i>public</i>? Because the appealing notion of having OpenID URI that’s mine (e.g. “=paul.trevithick”) also has the side-effect of projecting the same identifier to every relying site allowing me to be easily tracked. To be fair, there is a “directed identity” feature of OpenID that I can use to prevent this–I can just type in the URI of my OpenID OP instead. But I still think the perception is that an OpenID is mostly public.</li>
<li>Why<i> low-value</i>? Because its simple and lightweight architecture does not incorporate a client component, end-to-end crypto, anti-phishing protection, etc. necessary to support higher value transactions and other privacy-enhancing features. But its great for logging in to blogs, etc.</li>
</ul>
</blockquote>
<p>Now, if OpenID does become the de factor public identifier, i-names would be an <strike>apt</strike> potential <a href="http://rajeev.name/blog/2007/03/05/openid-and-i-name/" target="_blank">running mate</a>.</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/21/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/21/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/21/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/21/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/21/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/21/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/21/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/21/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/21/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/21/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/21/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/21/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=21&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/02/24/openid-vs-i-cards/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/stevepepple-128.jpg" medium="image">
			<media:title type="html">stevepepple</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/02/openid_campaign1.jpg" medium="image">
			<media:title type="html">openid_campaign1.jpg</media:title>
		</media:content>
	</item>
		<item>
		<title>How should we handle lost tokens?</title>
		<link>http://openidtrustbearer.wordpress.com/2008/02/22/how-should-we-handle-lost-tokens/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/02/22/how-should-we-handle-lost-tokens/#comments</comments>
		<pubDate>Sat, 23 Feb 2008 04:48:59 +0000</pubDate>
		<dc:creator>Brian Kelly</dc:creator>
		
		<category><![CDATA[human factor]]></category>

		<category><![CDATA[openid]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=15</guid>
		<description><![CDATA[This has been a topic of discussion over the past week around the office. We are all using TrustBearer Keys with OpenID on a daily basis, and I&#8217;m doing my best to not lose or break my key. I finally decided to add my TB Key to my physical keychain. Would you believe it&#8217;s not [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://openidtrustbearer.wordpress.com/?attachment_id=19" title="TB &amp; VW Keys"><img src="http://openidtrustbearer.files.wordpress.com/2008/02/img_2506_300.jpg" alt="TB &amp; VW Keys" align="right" border="0" hspace="12" vspace="12" /></a>This has been a topic of discussion over the past week around the office. We are all using <a href="https://openid.trustbearer.com/" target="_blank">TrustBearer Keys with OpenID</a><a href="https://openid.trustbearer.com/" target="_blank"> </a>on a daily basis, and I&#8217;m doing my best to not lose or break my key. I finally decided to add my TB Key to my physical keychain. Would you believe it&#8217;s not the most expensive item on that ring? That Volkswagen key fob is a salty $180 to replace. I know. Crazy. That&#8217;s how much it costs for the dealer to copy it onto another fob. Just the key&#8230; Still almost $100!</p>
<p>That cost has been a really good reason for me not to lose my car key. But, it&#8217;s going to happen one of these days. And I&#8217;ll roll back to using the valet key. So, should we offer a TrustBearer Key backup service? Actually, that&#8217;s not possible. At least not with the current configuration of the TrustBearer Key. The 1024-bit RSA keypair is generated on the token, and this key cannot be exported. We could offer an escrowed version in the future&#8230; but do you really want us to have a copy of your private key?</p>
<p>Another option, <a href="http://openidtrustbearer.wordpress.com/2008/02/14/using-trustbearer-openid-on-linux/#comment-11">suggested earlier this week</a>, is to allow users to link multiple keys to a single OpenID account. Similar to escrowing the keys, this provides users with a backup. Except in this case, the user is in control. We could implement this in a reasonable amount of time. It provides a decent way for users to maintain high security of their account, and have a backup. But, there&#8217;s always the cost. Have I copied my VW key yet? Nope. ($100 for a key?!)</p>
<p><a href="http://openidtrustbearer.wordpress.com/2008/02/22/how-should-we-handle-lost-tokens/paypal-key/" rel="attachment wp-att-20" title="PayPal Key"><img src="http://openidtrustbearer.files.wordpress.com/2008/02/paypal-key-250.jpg" alt="PayPal Key" align="left" border="0" hspace="12" vspace="12" /></a>VeriSign&#8217;s <a href="https://pip.verisignlabs.com/" target="_blank">Personal Identity Provider</a> allows users to link a One-Time Password token to their OpenID account. I gave this a try with my PayPal Security Key. It worked very well. I really liked the fact that I could recycle my PayPal OTP with VeriSign&#8217;s OpenID provider. VeriSign handles forgetting or losing a token with two options: By either using email (default) or SMS to send a one-time PIN. Linking my mobile phone was simple, and even though I&#8217;m not sure if it&#8217;s more secure than email, I preferred using the SMS method. But, the email option is the default and it cannot be disabled. Wait. I have a hardware token that greatly reduces the chance of someone guessing my password, but my email account is still a backdoor? Yup. I had this same thought when I clicked on the &#8220;I don&#8217;t have my PayPal Security Key&#8221; button when logging into PayPal. I understand that locking users out of their accounts is a bad thing, but any worthwhile malicious hacker is going to attack the weakest link: in this case, an email password.</p>
<p>TrustBearer OpenID works with higher security devices than OTP tokens like the PayPal Security Key. As a user of this service, I expect more than an email password to be thrown as an identity challenge if I lose my token. Is SMS the answer? As I mentioned earlier, it <i>seems</i> better, but I doubt it&#8217;s as secure as my non-exportable 1024-bit hardware key.</p>
<p>We could come up with a list of questions to which only the true owner will know the answers. How about 10 questions? 20? How many human-answerable questions are equivalent to the security of the hardware tokens we support? Sure, it&#8217;s going to be inconvenient, but that&#8217;s the point. I haven&#8217;t lost my VW key, because it is going to be extremely inconvenient to replace. But, I will shell out the $100, and go to the dealership (the <i>only</i> place that can copy the key) when I do lose it.</p>
<p>How inconvenient should we make recovering your access?</p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/15/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/15/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/15/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/15/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/15/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=15&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/02/22/how-should-we-handle-lost-tokens/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/bklabs-128.jpg" medium="image">
			<media:title type="html">Brian Kelly</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/02/img_2506_300.jpg" medium="image">
			<media:title type="html">TB &#38; VW Keys</media:title>
		</media:content>

		<media:content url="http://openidtrustbearer.files.wordpress.com/2008/02/paypal-key-250.jpg" medium="image">
			<media:title type="html">PayPal Key</media:title>
		</media:content>
	</item>
		<item>
		<title>New devices to be supported soon</title>
		<link>http://openidtrustbearer.wordpress.com/2008/02/21/new-devices-to-be-supported-soon/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/02/21/new-devices-to-be-supported-soon/#comments</comments>
		<pubDate>Thu, 21 Feb 2008 14:01:27 +0000</pubDate>
		<dc:creator>corcordt</dc:creator>
		
		<category><![CDATA[Uncategorized]]></category>

		<category><![CDATA[acs]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[PKI]]></category>

		<category><![CDATA[security]]></category>

		<category><![CDATA[smart card]]></category>

		<category><![CDATA[smartcard]]></category>

		<category><![CDATA[trustbearer]]></category>

		<category><![CDATA[usb token]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=13</guid>
		<description><![CDATA[We have a growing feature list from users of our OpenID by TrustBearer.  If you have a feature you would like to see - send us an email at: info@trustbearer.com  We&#8217;re really excited about our TrustBearer platform and how quickly and easily we can support new devices.  We will soon be releasing support for Advanced Card [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p>We have a growing feature list from users of our OpenID by TrustBearer.  If you have a feature you would like to see - send us an email at: info@trustbearer.com  We&#8217;re really excited about our TrustBearer platform and how quickly and easily we can support new devices.  We will soon be releasing support for Advanced Card Systems (ACS) cards and tokens as well as a couple of others that we will announce later.  Stay tuned.  </p>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/13/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/13/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/13/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/13/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/13/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/13/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/13/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/13/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/13/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/13/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/13/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/13/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=13&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/02/21/new-devices-to-be-supported-soon/feed/</wfw:commentRss>
		</item>
		<item>
		<title>We have enough OpenID providers?</title>
		<link>http://openidtrustbearer.wordpress.com/2008/02/20/we-have-enough-openid-providers/</link>
		<comments>http://openidtrustbearer.wordpress.com/2008/02/20/we-have-enough-openid-providers/#comments</comments>
		<pubDate>Wed, 20 Feb 2008 17:09:28 +0000</pubDate>
		<dc:creator>stevepepple</dc:creator>
		
		<category><![CDATA[enterpise openid]]></category>

		<category><![CDATA[openid]]></category>

		<category><![CDATA[openid adoption]]></category>

		<category><![CDATA[openid providers]]></category>

		<category><![CDATA[yahoo]]></category>

		<category><![CDATA[Google]]></category>

		<category><![CDATA[AOL]]></category>

		<guid isPermaLink="false">http://openidtrustbearer.wordpress.com/?p=12</guid>
		<description><![CDATA[Aaron Topance on big league OpenID providers that don&#8217;t accept OpenIDs from other providers:
There seems to be a trend, as of recently, for large companies to become OpenID providers, but now allow logging into their service with your OpenID account. The trend I’m noticing, is everyone wants to be a provider, but no one wants [...]]]></description>
			<content:encoded><![CDATA[<div class='snap_preview'><br /><p><a href="http://pthree.org/2008/02/20/the-openid-dillemma/" target="_blank">Aaron Topance on big league OpenID providers that don&#8217;t accept OpenIDs from other providers:</a></p>
<blockquote><p>There seems to be a trend, as of recently, for large companies to become <a href="http://openid.net/">OpenID</a> providers, but now allow logging into their service with your OpenID account. The trend I’m noticing, is everyone wants to be a provider, but no one wants to support OpenID logins. Well not “no one”, but not the major players. Consider the following major corporations or web sites that are OpenID providers:</p>
<ul>
<li>America Online</li>
<li>Orange</li>
<li>LiveJournal and Vox</li>
<li>WordPress.com</li>
<li>Yahoo!</li>
<li>Blogger</li>
<li>Verisign</li>
<li>… and more</li>
</ul>
<p>Supposedly, news has hit the front that Microsoft will be supporting OpenID as a provider, and rumors have it that your GMail account can be used as an OpenID identity. But what about logging into these providers with an existing identity? Here’s the question posed: Can I login to AOL, or create and AOL account, with an already existing OpenID identity? What about LiveJournal? WordPress? Yahoo!? Blogger? etc.</p></blockquote>
<img alt="" border="0" src="http://feeds.wordpress.com/1.0/categories/openidtrustbearer.wordpress.com/12/" /> <img alt="" border="0" src="http://feeds.wordpress.com/1.0/tags/openidtrustbearer.wordpress.com/12/" /> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/openidtrustbearer.wordpress.com/12/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/openidtrustbearer.wordpress.com/12/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/openidtrustbearer.wordpress.com/12/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/openidtrustbearer.wordpress.com/12/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/openidtrustbearer.wordpress.com/12/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/openidtrustbearer.wordpress.com/12/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/openidtrustbearer.wordpress.com/12/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/openidtrustbearer.wordpress.com/12/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/openidtrustbearer.wordpress.com/12/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/openidtrustbearer.wordpress.com/12/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=openidtrustbearer.wordpress.com&blog=2855421&post=12&subd=openidtrustbearer&ref=&feed=1" /></div>]]></content:encoded>
			<wfw:commentRss>http://openidtrustbearer.wordpress.com/2008/02/20/we-have-enough-openid-providers/feed/</wfw:commentRss>
	
		<media:content url="http://a.wordpress.com/avatar/stevepepple-128.jpg" medium="image">
			<media:title type="html">stevepepple</media:title>
		</media:content>
	</item>
	</channel>
</rss>