Linux.com

Typical misunderstanding

Posted by: Anonymous Coward on March 16, 2007 09:40 AM
OpenID is intended a replacement for the user created username/password tuples that are routinely used on many web-sites. Nothing more.

An OpenID Identity (URL) is the same thing as a username. The OpenID protocol provides the password once the user authenticates with _their_ identity provider.

It should be noted that neither the user created username/password tuple nor OpenID provide anysort of authentication of the claimed identity. This sort of authentication is best performed during the web-site registration process (as is the case with accounts at financial institutions).

#

Return to Introduction to OpenID