[OpenID] Security related Use Cases?

SitG Admin sysadmin at shadowsinthegarden.com
Wed Oct 22 15:54:25 UTC 2008


>>  don't stop. I have 15% of users sitting at shared PCs, using a shared
>>  account and shared cookie jar, on a win98-era LAN. (Thus, Yahoo-based
>>  machine-based auth is out of the question.) If they are lucky, the machine
>>  is "modern": its running XP home edition, unpatched, with no virus checking.
>
>OK, so you're OK with your users getting phished - that's your problem.

Peter has a large enough user base that I consider it roughly 
representative of the global userbase (a rule, not an exception). We 
don't know the exact percentage but we can be reasonably certain that 
(as an absolute numerical amount) it's more than just Peter's users 
here. This sort of thing hinders adoption, and that makes it "our" 
(as in, the OpenID community's) problem rather than "Peter's" problem.

-Shade



More information about the general mailing list