[OpenID] One developer's first encounter with account chooser (openid connect?)
Nat Sakimura
sakimura at gmail.com
Sun Nov 4 11:35:44 UTC 2012
Looks like what you have done is essentially what we call in OpenID Connect
world 'aggregated claims model'.
As to the role of user centric identity (UCI) is concerned, let us look at
Kim Cameron's definition.
-
User-centric: Structured so as to allow users to conceptualize,
enumerate and control their relationships with other parties, including
the flow of information.
-
Identity: The fact of being what a person or a thing is, and the
characteristics determining this.
(source:
http://www.identityblog.com/wp-content/images/2009/06/UserCentricIdentityMetasystem.pdf)
Taken this way, UCI is very much alive in OpenID Connect.
=nat via iPhone
Nov 3, 2012 11:48、Peter Williams <home_pw at msn.com> のメッセージ:
I was never originally very excited by user-centric identity or the notion
of the self-signed CA of SSL website (earlier) - coming partly from the
highly indoctrinated, yes-sire, no sire, govt world of centralized
security policy management, big sticks, mega-money, and reams of audit
paperwork that nicely masks over the (typically wide) cracks - to suit the
desired governance doctrine of the day.
But, over the years, folks of the cryptoanarchy lilt did persuade me to
recognize their cause - mostly because no harm has actually emerged. And, a
certain novel trust doctrine emerged furthermore - based on low assurance
crypto, and low-assurance key distribution. It scales in a manner which I
think W3C founder-class thinkers once-called “webby”.
Anyways, I don't hear much about “user centric” identity today. Perhaps the
funding has gone away, as most folks seem to be taking a trickle of silver
coin hoping for the talons of gold on offer from Augustus’ treasury. So I
thought I’d go retro and just now consider the openid pitch of a few years
ago (remembering who used to say what, back then). If one plays with those
discarded ideas NOW - using modern forms of the technology - what can one
now do? Note I way sne, not we - hoping to capture the individual as a
person, distinguished from you as some corporate “subscriber”.
I asked myself: is there a role for user centric identity any longer in the
openid community? If so, what can one build in a day? (See
http://wp.me/p1fcz8-35W for my own effort). Since the UCI term has no real
meaning these days, I interpreted it in the sense of a DARPA working in the
early internet: get to “survivability”, for the individual.
Is “UCI” really dead, in openid land? Or is there a new word for it?
Sent from Windows Mail
*From:* Peter Williams
*Sent:* October 27, 2012 12:39 AM
*To:* openid-general at lists.openid.net
*Subject:* RE: One developer's first encounter with account chooser (openid
connect?)
Well I should give apologies to Google, as there IS a local login function
in its account creator wordpress integration. Though ...it did take a week
to find it. If you type a local account name into the box labeled "email",
it does a classical local login (with local password challenge).
_______________________________________________
general mailing list
general at lists.openid.net
http://lists.openid.net/mailman/listinfo/openid-general
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-general/attachments/20121104/ce7ec074/attachment.html>
More information about the general
mailing list