[OpenID] D-H vs SSL

SitG Admin sysadmin at shadowsinthegarden.com
Fri Mar 20 00:58:01 UTC 2009


>If the OP is unable to generate a strong secret on its own,

How is the strength of a secret to be evaluated, and by whom?

Will developers need to plug-in their own evaluation criteria if they 
are unsatisfied with what comes bundled into a library?

-Shade



More information about the general mailing list