Network World
Monday, December 1, 2008
DNSstuff.com
Get information about your IP
IP Information
50+ On-demand DNS and network tools

Community

Navigation

3-part ID model

0

Pat, Robin -

Now guys, you know I respect your opinions, but neither the SAML model nor Kerberos is anything like the 3-part user-centric model hat is OpenID. Those are analogous to the movie theater model - you go to the booth, get a ticket and give it to the doorman. But there's no user control of the data stored with the ticket booth - in fact there is no data stored there. Nor does the user have any control over the data exchanged with the "relying party" (the doorman).

The Sxip model upon which OpenID is based, gives the user the ability to decide not only which data is exchanged with the relying party but also which data is stored with the IdP.

As for the need of a trust relationship between the IdP and the RP - there does have to be one, but it can be analogous to the one between the User & the RP. I'll expand on that at vquill.com.

Reply

The content of this field is kept private and will not be shown publicly.
  • Allowed HTML tags: <a> <em> <strong> <i> <b> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd> <blockquote> <br /> <br> <p>
  • Lines and paragraphs break automatically.
  • You can use BBCode tags in the text.
  • Web page addresses and e-mail addresses turn into links automatically.

More information about formatting options

CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.

Advertisement: