Express thoughts about OpenID

master
fr33domlover 2014-06-18 14:54:53 -04:00 committed by admin
parent 236c63d5b6
commit 05dc871a56
1 changed files with 18 additions and 0 deletions

View File

@ -94,3 +94,21 @@ One caveat to the above is that, of course, OpenID is a distributed trust system
----
Submitting bugs in the OpenID components will be difficult if OpenID must be working first...
------
# Privacy and Decentralization
Maybe I don't understand OpenID well enough, but it looks like there are just few providers, most
of which are huge companies or belong to such, and I don't trust them to verify me identity
or to not track all my logins. I'll use OpenID only if I can make my own home server
be my OpenID provider, and if doing so doesn't interfere with the design and security and
privacy of OpenID, and doesn't require me to use centrally-signed certificates or pay to some
company or anything like that.
Is it possible to use OpenID in a way keeping the user in full control and allowing any user to
have their personal provider without damaging the architecture behind OpenID?
I'm worried, at least until the issue is cleared.
-- [[fr33domlover]]