You are correct. Mr. Ranum is an extreme ego-centric "self-proclaimed" security expert who coded a firewall back in the 80's (derived from others) who tried to start a company based on IDS software (derived from others who didn't have the time to develop it themselves - all of its entirety was discussed and designed by top researches relaxing in a jacuzzi at a USENIX conference... (lots of witnesses)).
Can't blame him for trying to profit off of the ideas of the masters, but to try to call or imply of himself as one? Heh.
He may have a thought or two on why certain security elements don't fundamentally work (i.e. ftp protocols), his negative and cynical views with a lack of innovative solution impedes any true progress which is a true shame (i.e. TED talk, anyone? who goes to TED to COMPLAIN about technology from ages past and NOT OFFER SOLUTIONS?).
How about his book "The Myth of Homeland Security"? How much more in the way of solutions CAN'T this guy offer?
He gets SOLICITED press, but provides only massive, across-the-board, defeatist cynicism, based off of his OWN limited, negative, real and perceptual experiences, always offer ZERO in the way of functional solutions.
Yet, I am always hopeful to be corrected. I hung in there through his latest endeavor at NFR, until I heard he was prone to waltzing around his office punching holes in the walls until the board dismantled him from his role.
I believe he works for Ron Gula now (which is odd - I think if you search the old log files from the late 90's he was at nasty "odds" with Ron over the mere fact that Ron had registered and started networkwizards.com (I think? or something akin... memory's shot but search is intact) because Ranum had registered and started up firewallwizards.com ages before. (yes, it's true - let the records show)
My "understanding" is that he even wrote and thoroughly documented his entire wikipedia page under a pseudonym and vehemently denies it on wikipedia when questioned (as the pseudonym!) and if you do not register when questioning him (ahem, his pseudonym) and he gets in a heated debate, he will argue to get the posts deleted.
I read one several years back that mysteriously disappeared that was logged to an i.p. address rather than a registered user.
Enough ranting and time wasting on him and this topic.
Had to blow off steam. Sick of posers and "self-proclaimed" experts prancing around like they're the end-all-be-all when there are so-many-more that have come before and so many more that have come after that can cut, slice and dice without having to shout about it to get attention and undue recognition.
Especially someone with his ego.