[OpenID] Recycling OpenIDs (Was: What's broken in OpenID 2.0? (IIW session))

Dmitry Shechtman damnian at gmail.com
Mon May 14 06:31:39 UTC 2007


Thank you for your feedback, Tom.

 This proposal won't work for OPs that offer both email and OpenID. For
> instance, my AOL OpenID and AOL email are both based on my AOL ScreenName.


I believe that if you are indeed using an AOL OpenID, you are willing to
give it up when you stop using that AOL screenname... If you don't, your AOL
email may be used as your canonical ID.

#3 is a good idea. I do think that by default, OPs that offer OpenID and
> Email should decouple the email/IM address from the OpenID to help
> shield users from spam and spim issues.


That is obviously correct regardless of canonical IDs (That's also why
FreeYourID sucks). However, #3 is merely one reason why the actual idea
might be a good one. #5 (suspiciously overlooked by those XRI evangelists)
is the most important one:

> 5. OpenID would remain decentralized.


Regards,
Dmitry
=damnian
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20070514/f369a848/attachment-0002.htm>


More information about the general mailing list