Posted by: Anonymous Coward
on March 16, 2007 09:40 AM
OpenID is intended a replacement for the user created username/password tuples that are routinely used on many web-sites. Nothing more.
An OpenID Identity (URL) is the same thing as a username. The OpenID protocol provides the password once the user authenticates with _their_ identity provider.
It should be noted that neither the user created username/password tuple nor OpenID provide anysort of authentication of the claimed identity. This sort of authentication is best performed during the web-site registration process (as is the case with accounts at financial institutions).
Typical misunderstanding
Posted by: Anonymous Coward on March 16, 2007 09:40 AMAn OpenID Identity (URL) is the same thing as a username. The OpenID protocol provides the password once the user authenticates with _their_ identity provider.
It should be noted that neither the user created username/password tuple nor OpenID provide anysort of authentication of the claimed identity. This sort of authentication is best performed during the web-site registration process (as is the case with accounts at financial institutions).
#