[security] Username / password etc. is out of scope for OpenID

Recordon, David drecordon at verisign.com
Thu Oct 26 00:14:30 UTC 2006


OpenID Authentication is about a user in a given browser session proving
to the RP that they control ("own") a given URI.
 
--David

________________________________

From: security-bounces at openid.net [mailto:security-bounces at openid.net]
On Behalf Of Eddy Nigg (StartCom Ltd.)
Sent: Wednesday, October 25, 2006 5:13 PM
Cc: security at openid.net
Subject: Re: [security] Username / password etc. is out of scope for
OpenID


Recordon, David wrote: 

	Feel like proposing a better name?
	
	--David 

Oh no....Don't change the name...address the issues! RP's which make use
of OpenID are moving the authentication part to the IDP!  That's the
first and most important feature of OpenID. Or can you or anybody else
tell me, what OpenID is all about (there is also a Topic called
Fundamentals, perhaps this question belongs to the same category).


-- 

Regards
 
Signer:      Eddy Nigg, StartCom Ltd.
Phone:       +1.213.341.0390
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-security/attachments/20061025/51cede47/attachment-0002.htm>


More information about the security mailing list