URL-based identity with OpenID

20
Simon Willison / simonwillison.net Being-Digital 10th June 2008 URL-based identity with

description

Slides from a seven minute OpenID in a nutshell presentation at the Being-Digital conference, presented on the 10th of June 2008.

Transcript of URL-based identity with OpenID

Page 1: URL-based identity with OpenID

Simon Willison / simonwillison.net Being-Digital10th June 2008

URL-based identity with

Page 2: URL-based identity with OpenID
Page 3: URL-based identity with OpenID

?

Page 4: URL-based identity with OpenID

?Windows Live ID

Page 5: URL-based identity with OpenID

Centralised SSO betrays the principles of the Web

Page 6: URL-based identity with OpenID

OpenID is a decentralisedmechanism for SSO

Page 7: URL-based identity with OpenID
Page 8: URL-based identity with OpenID
Page 9: URL-based identity with OpenID
Page 10: URL-based identity with OpenID
Page 11: URL-based identity with OpenID

With OpenID 2.0, you just have to specify your provider

Page 12: URL-based identity with OpenID
Page 13: URL-based identity with OpenID
Page 14: URL-based identity with OpenID
Page 15: URL-based identity with OpenID

OpenID lets you prove that you own a given URL

Page 16: URL-based identity with OpenID
Page 17: URL-based identity with OpenID

last.fm

Upcoming

Page 18: URL-based identity with OpenID

Common misconceptions

• OpenID complements your existing user database; it doesn’t replace it

• Spammers have OpenIDs too! You still need to take your own measures to verify the morality of your users

• Having your eggs in one basket means you can take extra steps to protect that basket

Page 19: URL-based identity with OpenID

Hardware tokens

Page 20: URL-based identity with OpenID