[OpenID] Can't we make openid.ns.sreg attribute a must in OpenID sreg responses?

Martin Atkins mart at degeneration.co.uk
Tue Feb 26 23:35:06 UTC 2008


Peter Williams wrote:
> This got me thinking formally:-
> 
> 
>> In an OpenID 1.1 request, the sreg extension is detected through the
>> use
>> of the "openid.sreg." prefix. In a 2.0 request, the sreg extension is
>> detected by looking for a namespace alias with the correct namespace
>> URI.
> 
> So, formally, there is no longer in 2.0 such a thing as the "sreg
> extension" to OpenID Auth? i.e. sreg in the context of openid v2 is just
> a(nother) namespace of the "AX extension" of OpenID Auth (v2.0).

SREG is not part of AX. It's a standalone protocol.

There are, I believe, published mappings between AX attributes and the 
SREG fields, but you can still use SREG on its own and ignore AX 
altogether if you like.

The important thing is that when using SREG with OpenID 2.0 you must use 
the OpenID 2.0 extension mechanism, which involves declaring a namespace 
alias. The SREG protocol itself is unchanged.





More information about the general mailing list