[OpenID] OpenID Identity Consolidation (Was: Re: OpenID based on email addresses... Just Works!)

Chris Messina chris.messina at gmail.com
Sun Nov 2 10:02:49 UTC 2008


This is where Portable Contacts comes in, since we already accommodate
sending other known identifiers for a person.

I can't say whether it's wise to separate OpenID identifiers from
others, though, and I also don't know how well RPs will trust data
provided either via AX or PoCo (i.e. if a list of OpenIDs is provided,
will/should an RP take for granted that the list is a valid list of
verified identifiers?).

In any case, making identity consolidation/fallback account
association easier or more automatic is certain a good idea and a best
practice that should be better defined. I've started documenting these
ideas here:

https://openid.pbwiki.com/Fallback-account-access

Chris

On Sun, Nov 2, 2008 at 12:10 PM, Nate Klingenstein <ndk at internet2.edu> wrote:
> Shibboleth treats identifiers as attributes today, and I think it's worked
> out well for deployments.  I'd definitely support your proposed approach for
> OpenID as well.
>
> On 2 Nov 2008, at 01:48, Andrew Arnott wrote:
>
> Why not use the AX extension to supply the extra identifiers?  AX supports
> multiple values for a single parameter type URI, so we could have something
> like http://axschema.org/identifier/openid and the OP could send down all
> the other Identifiers the user controls.
>
> _______________________________________________
> general mailing list
> general at openid.net
> http://openid.net/mailman/listinfo/general
>
>



-- 
Chris Messina
Citizen-Participant &
  Open Technology Advocate-at-Large
factoryjoe.com # diso-project.org
citizenagency.com # vidoop.com
This email is:   [ ] bloggable    [X] ask first   [ ] private



More information about the general mailing list