[OpenID] [oauth] Re: [diso-project] Re: OpenID Accessibility

Eddy Nigg (StartCom Ltd.) eddy_nigg at startcom.org
Mon Nov 3 00:11:59 UTC 2008


On 11/02/2008 09:17 PM, Ben Laurie:
> On Sun, Nov 2, 2008 at 5:13 PM, Joseph A Holsten
> <joseph at josephholsten.com>  wrote:
>    
>> Has anyone specifically focused on the issues of phishing and
>> accessibility? I know the default reader for mac 10.4 doesn't even
>> try to say the url when it changes. Academic literature on the
>> subject seems scarce. [1] Is phishing resistance outside the scope of
>> OAuth and OpenID accessability?
>>      
>
> Well, its in scope of something. The PAPE extension allows OPs to
> claim phishing resistance, for example. But wouldn't it be nice if
> browsers just automatically supported a phishing resistant password
> scheme?
>    
You mean something like client certificate authentication?


Regards
Signer: 	Eddy Nigg, StartCom Ltd. <http://www.startcom.org>
Jabber: 	startcom at startcom.org <xmpp:startcom at startcom.org>
Blog: 	Join the Revolution! <http://blog.startcom.org>
Phone: 	+1.213.341.0390


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20081103/e11a4db1/attachment-0002.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6724 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20081103/e11a4db1/attachment-0002.bin>


More information about the general mailing list