<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Michael N. Dundas</title>
	<atom:link href="http://michaeldundas.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://michaeldundas.com</link>
	<description>Precision, Integrity, Communication</description>
	<lastBuildDate>Fri, 30 Mar 2012 09:51:26 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.2</generator>
	<item>
		<title>Comment on Imeem vs. Last.fm by Complicated imeem &#124; Seelane</title>
		<link>http://michaeldundas.com/2009/05/01/imeem-vs-lastfm/comment-page-1/#comment-42812</link>
		<dc:creator>Complicated imeem &#124; Seelane</dc:creator>
		<pubDate>Fri, 30 Mar 2012 09:51:26 +0000</pubDate>
		<guid isPermaLink="false">http://kaizen.michaeldundas.com/?p=302#comment-42812</guid>
		<description>[...] Imeem vs. Last.fm &#124; Michael N. DundasMay 1, 2009 &#8230; I have been trying Imeem out over the last week. &#8230; The user interface is quite complicated, and I think it should be simplified more &#8212; some &#8230; [...]</description>
		<content:encoded><![CDATA[<p>[...] Imeem vs. Last.fm | Michael N. DundasMay 1, 2009 &#8230; I have been trying Imeem out over the last week. &#8230; The user interface is quite complicated, and I think it should be simplified more &#8212; some &#8230; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on You will make a difference. Don&#8217;t worry about that. by Fernando Montenegro</title>
		<link>http://michaeldundas.com/2011/11/13/you-will-make-a-difference-dont-worry-about-that/comment-page-1/#comment-42628</link>
		<dc:creator>Fernando Montenegro</dc:creator>
		<pubDate>Wed, 25 Jan 2012 16:50:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=2600#comment-42628</guid>
		<description>Just came across your site and this entry. Thank you. It is indeed an amazing lesson. </description>
		<content:encoded><![CDATA[<p>Just came across your site and this entry. Thank you. It is indeed an amazing lesson. </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on You can still be detected if using a proxy by Kaskus</title>
		<link>http://michaeldundas.com/2009/11/02/you-can-still-be-detected-if-using-a-proxy/comment-page-1/#comment-42595</link>
		<dc:creator>Kaskus</dc:creator>
		<pubDate>Mon, 09 Jan 2012 23:49:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=1052#comment-42595</guid>
		<description>SO HOW TO BECOME UNDETECTABLE????</description>
		<content:encoded><![CDATA[<p>SO HOW TO BECOME UNDETECTABLE????</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on You will make a difference. Don&#8217;t worry about that. by Anonymous</title>
		<link>http://michaeldundas.com/2011/11/13/you-will-make-a-difference-dont-worry-about-that/comment-page-1/#comment-42549</link>
		<dc:creator>Anonymous</dc:creator>
		<pubDate>Sun, 25 Dec 2011 18:50:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=2600#comment-42549</guid>
		<description>Hi Chris,
Yes I own Clear2Go.com.  It is my consulting business. 
-mike</description>
		<content:encoded><![CDATA[<p>Hi Chris,<br />
Yes I own Clear2Go.com.  It is my consulting business.<br />
-mike</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on You will make a difference. Don&#8217;t worry about that. by Chris Gibson</title>
		<link>http://michaeldundas.com/2011/11/13/you-will-make-a-difference-dont-worry-about-that/comment-page-1/#comment-42504</link>
		<dc:creator>Chris Gibson</dc:creator>
		<pubDate>Fri, 09 Dec 2011 09:39:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=2600#comment-42504</guid>
		<description>Sorry to go off topic, I couldn&#039;t see another way to contact you. Do you know that www.clear2go.com is redirecting to your site?</description>
		<content:encoded><![CDATA[<p>Sorry to go off topic, I couldn&#8217;t see another way to contact you. Do you know that <a href="http://www.clear2go.com" rel="nofollow">http://www.clear2go.com</a> is redirecting to your site?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSL Decryption is becoming the norm by Clear2Go</title>
		<link>http://michaeldundas.com/2010/06/22/ssl-decryption-is-becoming-the-norm/comment-page-1/#comment-42368</link>
		<dc:creator>Clear2Go</dc:creator>
		<pubDate>Wed, 09 Nov 2011 02:49:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=1838#comment-42368</guid>
		<description>Hi Becker.  Yes I agree with what you are saying.  Good points!  Of course, most users going to public sites (banking, Paypal etc.), don&#039;t deploy client certificates, so while the communication is encrypted, a simple &#039;proxy&#039; is usually sufficient to MITM.  Studies show certificate mis-matches are typically just overridden by the end user and as you indicated there are ways to control the root certificates in the store.  Many products now actively do this and are being deployed by businesses so they can control what the users does inside SSL.  

Thanks for commenting -- appreciated.</description>
		<content:encoded><![CDATA[<p>Hi Becker.  Yes I agree with what you are saying.  Good points!  Of course, most users going to public sites (banking, Paypal etc.), don&#8217;t deploy client certificates, so while the communication is encrypted, a simple &#8216;proxy&#8217; is usually sufficient to MITM.  Studies show certificate mis-matches are typically just overridden by the end user and as you indicated there are ways to control the root certificates in the store.  Many products now actively do this and are being deployed by businesses so they can control what the users does inside SSL.  </p>
<p>Thanks for commenting &#8212; appreciated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSL Decryption is becoming the norm by Becker Williams</title>
		<link>http://michaeldundas.com/2010/06/22/ssl-decryption-is-becoming-the-norm/comment-page-1/#comment-42366</link>
		<dc:creator>Becker Williams</dc:creator>
		<pubDate>Tue, 08 Nov 2011 17:34:00 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=1838#comment-42366</guid>
		<description>Hi Michael - as you of course know - only single side SSL can be decrypted by MITM. Mutually authenticated SSL, where both the server and the client have both public and private keys, cannot, today, be decrypted. There are a whole set of other issues in the single side case that have to be addressed by a decryptor, including cert mismatch, and signing keys at the intermediary either signed by a well known root, or the signing key cert has to be installed in the client (victims) root certificate store. These can be overcome (and are) by various mechanisms - but he real key (no pun intended) is that were client keys and certs more widely deployed, the current techniques for SSL decryption would be rendered useless.

Cheers!

~r</description>
		<content:encoded><![CDATA[<p>Hi Michael &#8211; as you of course know &#8211; only single side SSL can be decrypted by MITM. Mutually authenticated SSL, where both the server and the client have both public and private keys, cannot, today, be decrypted. There are a whole set of other issues in the single side case that have to be addressed by a decryptor, including cert mismatch, and signing keys at the intermediary either signed by a well known root, or the signing key cert has to be installed in the client (victims) root certificate store. These can be overcome (and are) by various mechanisms &#8211; but he real key (no pun intended) is that were client keys and certs more widely deployed, the current techniques for SSL decryption would be rendered useless.</p>
<p>Cheers!</p>
<p>~r</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How I now manage my email and meeting requests by Clear2Go</title>
		<link>http://michaeldundas.com/2011/09/26/how-i-now-manage-my-email-and-meeting-requests/comment-page-1/#comment-39245</link>
		<dc:creator>Clear2Go</dc:creator>
		<pubDate>Sat, 01 Oct 2011 14:43:37 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=2523#comment-39245</guid>
		<description>Simon, no worries ... you fall into a couple of categories on my search folders :)</description>
		<content:encoded><![CDATA[<p>Simon, no worries &#8230; you fall into a couple of categories on my search folders <img src='http://michaeldundas.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How I now manage my email and meeting requests by Simon Laurin</title>
		<link>http://michaeldundas.com/2011/09/26/how-i-now-manage-my-email-and-meeting-requests/comment-page-1/#comment-39206</link>
		<dc:creator>Simon Laurin</dc:creator>
		<pubDate>Fri, 30 Sep 2011 19:45:42 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=2523#comment-39206</guid>
		<description>...and here is how I managed to get your attention without showing up in your search folders. :P</description>
		<content:encoded><![CDATA[<p>&#8230;and here is how I managed to get your attention without showing up in your search folders. <img src='http://michaeldundas.com/wp-includes/images/smilies/icon_razz.gif' alt=':P' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Tracking with Local Shared Objects (LSO) by phil</title>
		<link>http://michaeldundas.com/2009/09/15/tracking-with-local-shared-objects-lso/comment-page-1/#comment-39153</link>
		<dc:creator>phil</dc:creator>
		<pubDate>Mon, 26 Sep 2011 13:30:10 +0000</pubDate>
		<guid isPermaLink="false">http://michaeldundas.com/?p=926#comment-39153</guid>
		<description>Hi. I&#039;ve been using Better Privacy to delete them as they are put on, but is there a way to prevent them? Tracking is no different to stalking no matter hwat excuses they give for using them</description>
		<content:encoded><![CDATA[<p>Hi. I&#8217;ve been using Better Privacy to delete them as they are put on, but is there a way to prevent them? Tracking is no different to stalking no matter hwat excuses they give for using them</p>
]]></content:encoded>
	</item>
</channel>
</rss>

