Reminder: LDAP signing requirements in March 2020

In August 2018, Microsoft issued a security advisory ADV190023 Microsoft Guidance for Enabling LDAP Channel Binding and LDAP Signing about unsigned LDAP communication blocking in Active Directory starting with March 2020. A quick poll identified that not all customers are aware about upcoming changes or have prepared to them. What is LDAP Binding? LDAP binding is a […]

SHAKEN/STIR is Getting Real

The Federal Communications Commission (FCC) estimates robocalls will constitute more than half of all phone calls placed in the U.S. this year. In an effort to end to this, the FCC and major telecommunications companies including Comcast, AT&T, and T-Mobile have lined up behind a new standard called SHAKEN/STIR (Signature-based Handling of Asserted Information using […]

Putting an End to Robocalls: FCC’s Robocall Summit Discusses Next Steps

Today, the Federal Communications Commission (FCC) held the SHAKEN/STIR Robocall Summit, led by Chairman Ajit Pai. The focus for the summit was to discuss the current state of efforts to stop robocalls and Caller ID spoofing and discuss the U.S. implementation of a new global standard called SHAKEN/STIR. Defined by the Alliance for Telecommunications Industry Solutions […]

Leveraging Smart Card Beyond Logons

While working with a customer recently, an interesting need came up that required me to rummage through my treasure-trove of random PKI and certificate knowledge. This was apparently so well hidden, I had to reach out to an old friend still at Microsoft to remind me what the heck it’s called! One of the things […]

The PKI Guy talks identity management with Jay Schiavo of Entrust Datacard

Q&A with Jay Schiavo, vice president of Entrust Certificate Services Markets, Entrust Datacard TPG: How will nCipher Security strengthen Entrust Datacard’s offering to secure data and verify identities, and reduce risks? JS: The acquisition of the nCipher general purpose HSM business allows Entrust Datacard to provide our customers with solutions that exceed expectations for high-assurance use […]

The PKI Guy discusses security threats with Alex Momot of Remme

Q&A with Alex Momot, CEO of Remme TPG: What do you see as the biggest security threats organizations are facing today? AM: There are a lot of them. But the ones that I see as most critical right now are phishing and shadow IT. Both of them are also partly personnel issues. With phishing, organizations can […]

A Look Back at Conversations with the Brightest Minds in Cybersecurity

What an incredible, action-packed year 2019 turned out to be in cybersecurity. Throughout the past year, I interviewed industry experts, authors, and technology luminaries with topics ranging from quantum computing to authentication to top security threats to PKI evolution. Below are highlights from the 2019 The PKI Guy’s Q&A Series. Keep checking back to read […]

The PKI Guy examines how to end illegal robocalls with Chris Drake of iconectiv

Q&A with Chris Drake, CTO of iconectiv TPG: How big is the illegal robocall and caller ID spoofing problem? CD: Currently over 75% of calls are left unanswered when it comes from an unidentified or unfamiliar number. This is due to the spike in illegal robocalls. In October 2019, Americans were inundated with more than […]