Proposal for Recycling Identifiers in OpenID 2.0

Dmitry Shechtman damnian at gmail.com
Mon May 14 07:05:01 UTC 2007


 Dick,

This is definitely an interesting proposal. However, it only attempts to
solve the recycling problem, whereas canonical IDs would solve this and
several more.


> Will this break existing OpenID 1.1 RPs? Which ones? Is this going to be
> an issue for them?


As far as I can tell, this would break every existing 1.1 RP. When an
RP requests authentication it expects the returned identifier to match the
one it is trying to verify. However, it should work fine with 2.0 (thanks to
directed identity).


Regards,
Dmitry
=damnian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs/attachments/20070514/41d9e42c/attachment-0002.htm>


More information about the specs mailing list