[sldev] OpenID vs. current proposal vis a vis security
Anders Arnholm
Anders at Arnholm.se
Sun Sep 30 02:02:28 PDT 2007
Rob Lanphier wrote:
> Let's say we did implement an OpenID Identity Provider, and switched the
> viewer to instead require OpenID (making the viewer act as both a
> relying party and a user agent). Would that be more secure than the
> current proposal? If so, why? It seems to me many of the criticisms
> associated with this current proposal would also apply to moving to OpenID.
>
OpenID and the current proposal is unrelated, moving to OpenID is mostly
a web-page backed question. E.g. something that is done in the background.
--
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.
More information about the SLDev
mailing list