OpenID Auth 2.0 and user-agent neutrality (or, OpenID with REST/SOAP)

Johannes Ernst jernst+apache.org at netmesh.us
Sun Nov 19 21:14:08 UTC 2006


On Nov 19, 2006, at 8:08, Adam Nelson wrote:

> As to POST or GET, I share the same aesthetic objections to the
> POST-only approach, but my focus is on using OpenID with REST.

If so, it appears that you'd probably want to authenticate all REST/ 
HTTP verbs for your REST-ful application, not just POST?



Johannes Ernst
NetMesh Inc.


-------------- next part --------------
A non-text attachment was scrubbed...
Name: openid-relying-party-authenticated.gif
Type: image/gif
Size: 903 bytes
Desc: not available
URL: <http://lists.openid.net/pipermail/openid-specs/attachments/20061119/2755534a/attachment-0004.gif>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: lid.gif
Type: image/gif
Size: 973 bytes
Desc: not available
URL: <http://lists.openid.net/pipermail/openid-specs/attachments/20061119/2755534a/attachment-0005.gif>
-------------- next part --------------
  http://netmesh.info/jernst



More information about the specs mailing list