IRC Log for #openid on 2007-03-23
Timestamps are in UTC.
- [00:37:50] * KevinMarks (i=KevinMar@nat/google/x-21db9c60e93dc783) has joined #openid
- [01:14:25] <jibot>
xlarrydrebes is yet another Janrain idler.
- [04:41:05] <keturn>
argh, I can't find petname extension anymore :(
- [04:42:48] <gregh> ?
- [04:43:25] <gregh>
oh huh, the download link says not found
- [04:44:11] <keturn>
yeah :(
- [04:44:26] <keturn>
and a search on a.m.o doesn't turn anything up
- [04:46:18] <gregh>
- [04:47:00] <gregh>
yay for gmail search
- [04:48:59] <keturn>
passpet is a somewhat more complicated thing, and doesn't seem to entirely exist yet
- [13:56:20] * trel1023 ( has joined #openid
- [14:11:56] <jibot>
xlarrydrebes is yet another Janrain idler.
- [16:37:27] <jibot>
cygnus is WorkerBee(name="Jonathan Daugherty", company="JanRain, Inc.")
- [18:58:36] <VxJasonxV>
Someone doublecheck my terminology for me: OpenID authenticates you to your IdP, and your IdP authorizes you to the RP ?
- [18:58:51] <VxJasonxV>
So, isn't OpenID a 'distributed AUTHORIZATION protocol' ?
- [18:59:00] <VxJasonxV>
because you authenticate to only one place...
- [19:00:06] <chowells79>
Technically, OpenID doesn't describe the interaction between the user and the IdP
- [19:00:30] <chowells79>
Any authentication with the IdP is outside the scope of the protocol.
- [19:00:43] <VxJasonxV>
well, the more important part was RP <-> IdP
- [19:02:02] <chowells79>
Well, no.
- [19:02:07] <chowells79>
It's not an authorization protocol
- [19:02:31] <chowells79>
In this context, authorization means giving credentials that explain what the user is allowed to do.
- [19:02:54] <chowells79>
Where authentication means giving credentials that identify the user.
- [19:02:58] <VxJasonxV>
- [19:02:59] <VxJasonxV>
damn D=
- [19:03:03] <VxJasonxV>
I have to rewrite this comment then
- [19:09:15] <VxJasonxV>
What I *thought* OpenID was, was a simpler way for people to leave their information, by allowing them to put it into their server or whatever and then to use it on various sites via a single sign-on type of system.
- [19:09:26] <VxJasonxV>
Am I missing something here, or is that not what OpenID is... :P
- [19:10:05] * j3h ( has joined #openid
- [19:11:26] <cygnus>
VxJasonxV: that is one property of many OpenID servers (that implement Simple Registration), but that is not OpenID entirely
- [19:11:46] <VxJasonxV>
it's still a part of OpenID, which is the point.
- [19:11:47] <cygnus>
VxJasonxV: and not all servers (or RPs) implement sreg, either.
- [19:11:59] <cygnus>
well, an optional part, albeit something that is in widespread use.
- [19:12:19] <trel1023>
for moderate sizes of widespread :)
- [19:12:45] <cygnus>
trel1023: well, we're speaking relatively, here; most IDPs I've encountered certainly support it.
- [19:13:06] <trel1023>
yes - fair enough
- [19:14:16] * cygnus conjures SimonW
- [19:14:27] <cygnus>
oh well.
- [19:15:17] <VxJasonxV>
I have one more
- [19:15:29] <VxJasonxV>
- [19:15:37] <VxJasonxV>
sorry about the vertical scroll, but, read this:
- [19:16:15] <VxJasonxV>
Am I still on the ball?
- [19:17:55] <cygnus>
I don't think I have enough context. What's the issue?
- [19:18:39] <VxJasonxV>
This guy is complaining about OpenID requiring that OpenID commenters need to signup on your Wordpress blog in order to comment.
- [19:18:56] <VxJasonxV>
That's all the implementation of the plugin, and has nothing to do with OpenID
- [19:19:06] <cygnus>
- [19:19:25] <cygnus>
"sign up" is a heavy term; an OpenID login would be sufficient, and no sreg data should be necessary. (i.e., no "sign up")
- [19:23:38] <VxJasonxV>
if you're curious:
- [19:23:40] <VxJasonxV>
start reading :-)
- [19:23:47] <VxJasonxV>
I'm just arguing with a user
- [19:25:24] <VxJasonxV> <-- my response, just posted
- [19:27:24] <VxJasonxV>
comments? (when you get there)
- [19:28:58] <cygnus>
That otto guy is totally confused.
- [19:29:04] <cygnus>
Perhaps not surprisingly.
- [19:29:18] <cygnus>
I mean, OpenID login does not mean you have an Account.
- [19:29:20] <cygnus>
maybe you do.
- [19:29:22] <cygnus>
but maybe you don't.
- [19:29:39] <cygnus>
And besides, even if you *do*, what that *means* depends on the context.
- [21:09:56] <VxJasonxV>
cygnus? <-- read the newest two posts :)
- [21:09:59] <VxJasonxV>
please :(
- [21:10:22] * VxJasonxV pokes chowells79
- [21:10:24] <VxJasonxV>
you should too
- [21:13:54] <cygnus>
I'm not really sure what to say. One could argue that there is no reason to put it in core if making it a plugin works just as well, excluding installation and configuration overhead.
- [21:14:05] <cygnus>
And his argument, while valid for him, is not valid for everyone.
- [21:14:12] <cygnus>
But it's valid enough when deciding what goes in core.
- [21:14:24] <cygnus>
As that often needs to be the minimal set of useful features to get going with the software..
- [21:15:25] <cygnus>
Unfortunately you're dealing with someone whose main argument is "I don't like it."
- [21:15:43] <cygnus>
And it's going to be very hard to argue with that.
- [21:18:15] <cygnus>
what relationship to Wordpress does he have?
- [21:18:18] <VxJasonxV>
- [21:18:21] <VxJasonxV>
just like me
- [21:18:23] <cygnus>
- [21:18:28] <cygnus>
I wouldn't be too worried, then. :)
- [21:28:54] <VxJasonxV>
- [21:36:38] * epeus (i=KevinMar@nat/google/x-24c18160aee2934a) has joined #openid
- [23:31:48] <VxJasonxV>
- [23:31:50] <VxJasonxV>
nat/google/ ?
