<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv=Content-Type content="text/html; charset=iso-8859-1">
<meta name=Generator content="Microsoft Word 12 (filtered medium)">
<style>
<!--
/* Font Definitions */
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
        {font-family:Tahoma;
        panose-1:2 11 6 4 3 5 4 4 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:blue;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:purple;
        text-decoration:underline;}
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph
        {mso-style-priority:34;
        margin-top:0in;
        margin-right:0in;
        margin-bottom:0in;
        margin-left:.5in;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Times New Roman","serif";}
span.d3blogentrycreated
        {mso-style-name:d3blogentrycreated;}
span.EmailStyle18
        {mso-style-type:personal;
        font-family:"Calibri","sans-serif";
        color:#1F497D;}
span.EmailStyle19
        {mso-style-type:personal-reply;
        font-family:"Calibri","sans-serif";
        color:#1F497D;}
.MsoChpDefault
        {mso-style-type:export-only;
        font-size:10.0pt;}
@page Section1
        {size:8.5in 11.0in;
        margin:70.85pt 70.85pt 70.85pt 70.85pt;}
div.Section1
        {page:Section1;}
/* List Definitions */
@list l0
        {mso-list-id:1557744827;
        mso-list-type:hybrid;
        mso-list-template-ids:-198912956 67698703 67698713 67698715 67698703 67698713 67698715 67698703 67698713 67698715;}
@list l0:level1
        {mso-level-tab-stop:none;
        mso-level-number-position:left;
        text-indent:-.25in;}
@list l1
        {mso-list-id:1658419370;
        mso-list-type:hybrid;
        mso-list-template-ids:-1144096008 1798969808 67698713 67698715 67698703 67698713 67698715 67698703 67698713 67698715;}
@list l1:level1
        {mso-level-number-format:alpha-lower;
        mso-level-text:"\(%1\)";
        mso-level-tab-stop:none;
        mso-level-number-position:left;
        text-indent:-.25in;}
ol
        {margin-bottom:0in;}
ul
        {margin-bottom:0in;}
-->
</style>
<!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang=EN-US link=blue vlink=purple>
<div class=Section1>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>I’ll need to test some of these to get confidence, but on face
value they debunk a number of doom and gloom falsehoods :-<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(a)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>There are no sites of much value using openid (the “no
where to go”)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(b)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>There is insufficient assurance (the “no good for
e-commerce”)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(c)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>It has no traditional applicability such as a code repository (the
”its only for US web2.0 flybynight startups”)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(d)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>It does not need browser-vendor blessing (the “XRI will kill
OpeniD2 until Mozilla gets a backroom deal to build a default XRI plugin”)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(e)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Without the NIST framework, all is doomed (the “NIST framework
for web must become known to grandma before OpenID can be accepted)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l1 level1 lfo1'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>(f)<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Without the endorsement of the academic library federations, it cannot
take off (the “telematic security requires the consent of the old boy ‘Washington-insider’
network”)<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>The Rakuten case look of particular interest: how they
negotiated with the Japanese acquirer, given some of the weaker points of OpenID(2).
The inability to store the security code in the members profiles is not
OpenID-related (no merchant or merchant–aggregator can store that value and
be VISA-certified (or equivalent)).<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Any chance of some testing URLs? <o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l0 level1 lfo2'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>1.<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Translation features of the web are good enough these days get
me passed through a login flow<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l0 level1 lfo2'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>2.<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>OpenID = UCI, which means I have my own choice of OP. Lets test
the actual openness, and whether it’s getting a bit too nationalistic for
the web (US only, Japan only, Euro-only, Russian-only…)<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l0 level1 lfo2'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>3.<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Lets see how the delegation works. Can I edit my BIGLOBE XRDS, and
have it also delegate to my own NEC-platform installation?<o:p></o:p></span></p>
<p class=MsoListParagraph style='text-indent:-.25in;mso-list:l0 level1 lfo2'><![if !supportLists]><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><span
style='mso-list:Ignore'>4.<span style='font:7.0pt "Times New Roman"'>
</span></span></span><![endif]><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Can we do a trial and have the SAML gateway component of the NEC
platform do dynamic metadata learning (in the style of Ping Identity), so “SAML2
**behaves like** OpenID2”. I could be the guinea pig, here, promoting actual
convergence.<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<div>
<div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in'>
<p class=MsoNormal><b><span style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>From:</span></b><span
style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>
general-bounces@openid.net [mailto:general-bounces@openid.net] <b>On Behalf Of </b>Snorri<br>
<b>Sent:</b> Friday, October 17, 2008 5:47 AM<br>
<b>To:</b> 'Nat Sakimura'; general@openid.net<br>
<b>Subject:</b> [SPAM]Re: [OpenID] Latest Development in Japan<o:p></o:p></span></p>
</div>
</div>
<p class=MsoNormal><o:p> </o:p></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Very impressive Statistics! <o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>The Japan becomes the bow of the OpenID ship!<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Congratulation for the hard work of OIDF-J Team<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Cheers<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>-Snorri<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in 0in 0in'>
<p class=MsoNormal><b><span lang=FR style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>De :</span></b><span
lang=FR style='font-size:10.0pt;font-family:"Tahoma","sans-serif"'>
general-bounces@openid.net [mailto:general-bounces@openid.net] <b>De la part de</b>
Nat Sakimura<br>
<b>Envoyé :</b> vendredi 17 octobre 2008 14:00<br>
<b>À :</b> general@openid.net<br>
<b>Objet :</b> [OpenID] Latest Development in Japan<o:p></o:p></span></p>
</div>
<p class=MsoNormal><span lang=FR><o:p> </o:p></span></p>
<div>
<p class=MsoNormal><span lang=FR>I have been sooo busy that I did not produce
any report on OpenID developments in Japan since last I have done for mixi back
in August. <br>
<br>
There has been bunch of notable events since then. <br>
<br>
<span class=d3blogentrycreated>2008-9-12 Livedoor Blog adopted "mixi
OpenID" group authentication for their blog service. </span><br>
<span class=d3blogentrycreated> It allows the blog article to be
published to a limited group. The<span style='color:#1F497D'>y </span> same
is true for commenting etc. </span><br>
<span class=d3blogentrycreated> Livedoor is one of the major blog provider
in Japan (besides many other things.) They are also acting as OP. </span><br>
<br>
<span class=d3blogentrycreated>2008-9-29 NEC released an Authentication
Platform Software "NC7000-3A-OI" that supports OpenID. </span><br>
<span class=d3blogentrycreated> It is a federated identity system. It
supports both SAML and OpenID. </span><br>
<br>
<span class=d3blogentrycreated>2008-10-02 SourceForge.JP started to support
OpenID </span><br>
<span class=d3blogentrycreated> Unlike <a href="http://sourceforge.net">sourceforge.net</a>,
it also supports XRI/i-names. </span><br>
<br>
<span class=d3blogentrycreated>2008-10-06 BIGLOBE started offering OpenID</span><br>
<span class=d3blogentrycreated> One of the biggest ISP in Japan, NEC
BIGLOBE started the service as an OP. </span><br>
<span class=d3blogentrycreated> It uses EV-SSL, and is https only OP. </span><br>
<br>
<span class=d3blogentrycreated>2008-10-06 Rakuten, the biggest online merchant
in Japan, started offering OpenID based payment</span><br>
<span class=d3blogentrycreated> Rakuten, the biggest online merchant in
Japan, started offering OpenID based payment. </span><br>
<span class=d3blogentrycreated> By using this system, you will not
required to give out your credit card number. </span><br>
<span class=d3blogentrycreated> (You are still required to input security
code of the credit card, though.)</span><br>
<br>
<span class=d3blogentrycreated>2008-10-15 Internet.com Survay: 28% Japanese
Internet User are aware of OpenID. </span><br>
<span class=d3blogentrycreated> Accroding to the survay by <a
href="http://internet.com">internet.com</a> and marsh research which was
conducted </span><br>
<span class=d3blogentrycreated> over 300 internet user (50% male, 50%
female, 20% each of 20s, 30s, 40s, 50s, 60s), </span><br>
<span class=d3blogentrycreated> 263 of them were using sites that
requires authentication. Among them, 28% of them </span><br>
<span class=d3blogentrycreated> knew about OpenID, and 15% were using
OpenID. </span><br>
<span class=d3blogentrycreated> This is a big increase compared to a
similar survay back in February where </span><br>
<span class=d3blogentrycreated> only 12% knew about OpenID and only 1.2%
of them were using it. </span><br>
<br>
<span class=d3blogentrycreated>Cheers, </span><br>
<br>
-- <br>
Nat Sakimura (=nat)<br>
<a href="http://www.sakimura.org/en/">http://www.sakimura.org/en/</a><br>
OpenID Foundation Japan<o:p></o:p></span></p>
</div>
</div>
</body>
</html>