[sldev] OpenID vs. current proposal vis a vis security

Anders Arnholm Anders at Arnholm.se
Sun Sep 30 02:02:28 PDT 2007


Rob Lanphier wrote:
> Let's say we did implement an OpenID Identity Provider, and switched the
> viewer to instead require OpenID (making the viewer act as both a
> relying party and a user agent).  Would that be more secure than the
> current proposal?  If so, why?  It seems to me many of the criticisms
> associated with this current proposal would also apply to moving to OpenID.
>   
OpenID and the current proposal is unrelated, moving to OpenID is mostly 
a web-page backed question. E.g. something that is done in the background.


-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.



More information about the SLDev mailing list