[OpenID] allowing users to switch to opendid-only: pointless?

Eddy Nigg (StartCom Ltd.) eddy_nigg at startcom.org
Sun Jun 7 02:13:50 UTC 2009


On 06/07/2009 05:09 AM, SitG Admin:
> Ask your co-designer (who doesn't seem very conscientious about 
> security) what plans there were for including "password security" in 
> the budget. Some sort of brute force protection where the IP in 
> question is banned for a short period of time after several successive 
> failed attempts, naturally?

What about phishing?

Regards
Signer: 	Eddy Nigg, StartCom Ltd. <http://www.startcom.org>
Jabber: 	startcom at startcom.org <xmpp:startcom at startcom.org>
Blog: 	Join the Revolution! <http://blog.startcom.org>
Phone: 	+1.213.341.0390


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20090607/92a499bb/attachment.htm>


More information about the general mailing list