Building identity on top of OAuth 2.0?

Dan Brickley danbri at danbri.org
Wed May 19 07:33:42 UTC 2010


On Wed, May 19, 2010 at 9:27 AM, SitG Admin
<sysadmin at shadowsinthegarden.com> wrote:
>> The problem David is that you haven't explained how the OAuth 2.0 dance is
>> superior or simpler than any other kind of crypto dance.
>
> You're thinking too narrowly again, Santosh: think infrastructure. The
> problem here is that nobody in the OpenID community has justified its use of
> TCP/IP over any other kind of routing/transmission protocol.

Without a requirements spec or group scoping charter to constrain such
options against, we may as well argue for the use of pigeons...
http://www.rfc-editor.org/rfc/rfc1149.txt

What is OpenID-v-next for, and how will we know when it does it acceptably?

Dan


More information about the specs mailing list