[OpenID] Feedback from OpenID demo

SitG Admin sysadmin at shadowsinthegarden.com
Sat May 23 20:15:00 UTC 2009


>If OpenID is to add single sign-out, it MUST be comprehensive.  That 
>is, the OP must coordinate logging the user out of EVERY RP he 
>logged into during that OP's session.

But here's where I want granularity: SSO is supposed to make things 
*easier*, not make some things IMPOSSIBLE.

If the OP is like a proxy saying "I will automatically log you into 
whatever RP you have previously approved.", it should logically be 
possible for me to disable that SSO functionality so it STOPS 
automatically logging me into those RP's, *without* completely 
terminating my internet connection by turning off the proxy entirely 
(i.e., killing my sessions at the RP's I *want* to continue 
interacting with).

-Shade



More information about the general mailing list