[OpenID] Feedback from OpenID demo
SitG Admin
sysadmin at shadowsinthegarden.com
Sat May 23 20:15:00 UTC 2009
>If OpenID is to add single sign-out, it MUST be comprehensive. That
>is, the OP must coordinate logging the user out of EVERY RP he
>logged into during that OP's session.
But here's where I want granularity: SSO is supposed to make things
*easier*, not make some things IMPOSSIBLE.
If the OP is like a proxy saying "I will automatically log you into
whatever RP you have previously approved.", it should logically be
possible for me to disable that SSO functionality so it STOPS
automatically logging me into those RP's, *without* completely
terminating my internet connection by turning off the proxy entirely
(i.e., killing my sessions at the RP's I *want* to continue
interacting with).
-Shade
More information about the general
mailing list