Archive for Dezember, 2007

OpenID browser integration with auto-login through whitelists

Samstag, Dezember 15th, 2007

Thinking about whether OpenID is capable of true single-sign-on I came to the conclusion that it’s probably not designed for this, but that browser integration could provide an almost similar experience if there was a standard for this. So here’s my question.

(Note that I know of Verisign’s Seatbelt and Sxipper. But both do not offer what I request here, AFAIK.)

Dear lazyweb,

is there a project or standard proposition that aims to (or even an implementation that already does) enable OpenID browser integration in the following way?

  1. let the user create a whitelist à la “always use xyz.myopenid.com for foobarsite.com”
  2. let the browser use this whitelist to send a standardized cookie or HTTP-header to the relying party site on each request (or only when no standardized and valid session cookie exists)
  3. on receiving such an request, the RP should automagically start the authentication process — and finish it transparently for me if I’m logged into my OpenID provider

This would be a huge step forward, I think.

Unbenutztes Bild zu verkaufen

Samstag, Dezember 15th, 2007

Letztens im Kleinanzeigenteil von fürstenwalde.de:

Bild hin rum

Ah ja.