[OpenID] [oauth] Re: [diso-project] Re: OpenID Accessibility

Ben Laurie benl at google.com
Tue Nov 4 17:42:07 UTC 2008


On Tue, Nov 4, 2008 at 5:27 PM, SitG Admin
<sysadmin at shadowsinthegarden.com> wrote:
>> Web of trust, sure. Works fine until someone leaves the company :-)
>
> So ask HR to maintain a Friends list (really more of a "current employee"
> list) that is up-to-date. Doesn't need to be HR, could be a manager or
> whoever would know who is currently employed there; make it part of their
> job to maintain such a list. Presumably they already have such a list, but
> with more detail - each new RP requires, at most, creating another
> suitability-for-purpose module that draws from the main list and decides
> what information to pass along to the RP (such as whether employees that are
> currently on "vacation" or "sick leave" count as "employed" during that
> time). Updating that list when an employee left would be merely one more
> step among such actions as disabling their old accounts and assigning
> someone to watch over their shoulder when they cleaned out their desk.

I agree that there are many ad-hoc mechanisms by which this could be achieved.



More information about the general mailing list