[OpenID] A Case for OpenEmailID

Peter Williams pwilliams at rapattoni.com
Mon May 4 19:33:36 UTC 2009



I know that a few years ago this was heresy,

--------

That the heretics are winning the pragmatics tells me openid is going to make it. Folks are not stuck in the idealism of the original design.

For me, the biggest issue is not the dropping of the URL, but: Will openid forgo OP portability ?

There is a good chance that the term UCI will be watered down to be mean nothing more than consent for attribute release, per RP. That is, it will be OP trust model that controls information flows (not user trust models); and it will be the OP that controls which discovery points an RP may use, and what ciphersuites are used end-end (if any).



More information about the general mailing list