[OpenID] Using HTTPS Openid Providers

Josh Hoyt josh at janrain.com
Fri Jun 15 17:23:04 UTC 2007


On 6/14/07, Stuart Bishop <stuart at stuartbishop.net> wrote:
> I know we will be explicitly rejecting non-SSL identity URLs on our OP. I
> think you have to try hard to get a HTTP library that *doesn't* support SSL
> out of the box now, and if it doesn't it is likely just because the local
> admin forgot to install the 'foo-ssl' module or similar.

Based on my experience supporting MyOpenI
D.com and our OpenID libraries, people must be trying really hard.

Josh



More information about the general mailing list