Johannes Ernst on November 19th, 2008

Marc Canter raises what many in the community have been saying for a long time, but what the OpenID Foundation seems to have a hard time wrapping its collective minds around: … OpenID can actually solve … [many] issues – by embracing other complementary technologies (like oAuth, OpenSocial, Portable Contacts, microformats, FOAF and RSS/Atom) to [...]

Continue reading about Marc: OpenID should be the brand for the “Open Stack”

Traditionally, a state diagram (aka state-event model) of authentication on the web is very simple. It has only two states: Anonymous and Authenticated. A user’s session moves from Anonymous to Authenticated upon successful presentation of valid credentials (such as a password). It moves back to Anonymous if the user logs out, or after the user’s [...]

Continue reading about Making OpenID More Usable: A Better State Diagram of Web Authentication

Johannes Ernst on November 5th, 2008

A somewhat problematic picture has been floating around recently depicting the so-called “Open Stack”: There is just one problem with it: the dependencies are all wrong. For example, OpenID does not depend on OAuth; both depend on XRDS-Simple, however. That means the stack isn’t actually a stack and perhaps a lot more confusing than it [...]

Continue reading about Let’s Draw the “Open Stack” as a Proper Stack