Final outstanding issues with the OpenID 2.0 Authenticationspecification

Claus Färber GMANE at faerber.muc.de
Mon May 28 11:28:39 UTC 2007


Marius Scurtescu schrieb:
> The new attribute values are needed in order to signal an OpenID 2  
> provider.

Why is this necessary? Is OpenID 2 incompatible? In other words, what 
happens if an OpenID 2 Relying Party tries to talk to an OpenID 1.x 
Provider?

If the OpenID 1.x Provider just ignores additional message fields (i.e. 
treats them like an unknown extension), then no new rel values are 
needed. If this is not the case, maybe the OID 2 spec can be changed to 
make it possible.

It is always better to detect features, not versions.

Claus




More information about the specs mailing list