IRC Log for #openid on 2007-04-09
Timestamps are in UTC.
- [00:03:03] * david`bgk (n=david@ubuntu/member/david-bgk) Quit ("Caught sigterm, terminating...")
- [00:27:57] * aconbere|mobile (n=aconbere@c-67-171-24-45.hsd1.wa.comcast.net) Quit (Read error: 113 (No route to host))
- [00:47:15] * m3nt0r^ (n=mail@p50903f99.dip0.t-ipconnect.de) has joined #openid
- [00:55:43] * shigeta (n=shigeta@124.32.114.226) has joined #openid
- [00:57:26] * m3nt0r (n=mail@p50902653.dip0.t-ipconnect.de) Quit (Read error: 110 (Connection timed out))
- [01:17:15] * fajro (n=fajro@OL104-24.fibertel.com.ar) Quit (Read error: 60 (Operation timed out))
- [01:41:15] * fajro (n=fajro@OL104-24.fibertel.com.ar) has joined #openid
- [02:13:27] * j3h (n=j3h@c-24-21-174-195.hsd1.mn.comcast.net) Quit (Read error: 110 (Connection timed out))
- [02:15:26] * fajro (n=fajro@OL104-24.fibertel.com.ar) Quit (Remote closed the connection)
- [02:17:11] * fajro (n=fajro@OL104-24.fibertel.com.ar) has joined #openid
- [02:20:21] * shigeta (n=shigeta@124.32.114.226) Quit ("Leaving...")
- [02:29:26] * aconbere|mobile (n=aconbere@c-24-18-251-71.hsd1.mn.comcast.net) has joined #openid
- [02:42:59] * stub (n=stub@ppp-58.8.7.142.revip2.asianet.co.th) has joined #openid
- [02:53:01] * j3h (n=j3h@c-24-21-174-195.hsd1.mn.comcast.net) has joined #openid
- [02:56:23] * aconbere|mobile (n=aconbere@c-24-18-251-71.hsd1.mn.comcast.net) Quit ("Lost terminal")
- [02:57:49] * stratus (n=stratus@201.53.55.52) Quit ("Leaving")
- [04:08:42] * gchaix (n=gchaix@osuosl/staff/gchaix) has left #openid
- [05:02:18] * fajro (n=fajro@OL104-24.fibertel.com.ar) Quit ("Ex-Chat")
- [06:45:17] * elliottcable (n=elliottc@98-88-178-69.gci.net) Quit (Read error: 60 (Operation timed out))
- [07:26:07] * j3h (n=j3h@c-24-21-174-195.hsd1.mn.comcast.net) Quit (Read error: 110 (Connection timed out))
- [07:32:26] * shigeta (n=shigeta@124.32.114.226) has joined #openid
- [08:08:45] * SunWuKung (n=SunWuKun@S0106000d93cb5211.vc.shawcable.net) has joined #openid
- [08:30:32] * elliottcable (n=elliottc@98-88-178-69.gci.net) has joined #openid
- [08:47:52] * SunWuKung (n=SunWuKun@S0106000d93cb5211.vc.shawcable.net) Quit ("--out")
- [09:18:04] * stub (n=stub@ppp-58.8.7.142.revip2.asianet.co.th) Quit (Read error: 104 (Connection reset by peer))
- [09:18:57] * stub (n=stub@ppp-58.8.13.16.revip2.asianet.co.th) has joined #openid
- [09:25:23] * elliottcable is now known as [e]zZz
- [09:53:50] * shigeta (n=shigeta@124.32.114.226) Quit ("Leaving...")
- [10:05:25] * david`bgk (n=david@ubuntu/member/david-bgk) has joined #openid
- [10:42:27] * cote (n=cote@71.145.157.170) Quit ()
- [14:20:27] * bricas (n=bricas@CPE0011506c8049-CM0013711405ec.cpe.net.cable.rogers.com) has joined #openid
- [14:55:06] * SamRose (n=chatzill@c-71-206-125-50.hsd1.mi.comcast.net) has joined #openid
- [14:57:52] * PatF (n=Patrick@c-24-10-171-142.hsd1.ut.comcast.net) has joined #openid
- [15:07:44] * yngwin (n=Ben@87-194-39-114.bethere.co.uk) has left #openid
- [15:54:34] * knix_ (n=knix@c-24-127-177-208.hsd1.pa.comcast.net) has joined #openid
- [15:57:14] * m3nt0r^ (n=mail@p50903f99.dip0.t-ipconnect.de) Quit ("( www.nnscript.de :: NoNameScript 4.02 :: www.XLhost.de )")
- [15:58:57] * aconbere (n=aconbere@mail.geonerco.com) Quit ("Lost terminal")
- [15:59:02] * daleolds (i=daleolds@nat/novell/x-a5dab65a14a5aef7) has joined #openid
- [15:59:57] * SamRose (n=chatzill@c-71-206-125-50.hsd1.mi.comcast.net) Quit (Remote closed the connection)
- [16:00:34] * aconbere (n=aconbere@mail.geonerco.com) has joined #openid
- [16:06:26] * KevinMarks (n=Snak@pdpc/supporter/active/kevinmarks) Quit ("off to work")
- [16:08:31] * knix_ (n=knix@c-24-127-177-208.hsd1.pa.comcast.net) has left #openid
- [16:33:51] * factoryjoe (n=factoryj@dsl081-245-070.sfo1.dsl.speakeasy.net) has joined #openid
- [16:44:57] * cygnus (n=cygnus@www.cprogrammer.org) has joined #openid
- [16:44:57] <jibot>
cygnus is WorkerBee(name="Jonathan Daugherty", company="JanRain, Inc.")
- [16:45:59] * cote (n=cote@m010f36d0.tmodns.net) has joined #openid
- [16:51:41] * tommorris (n=tommorri@i-83-67-98-32.freedom2surf.net) has joined #openid
- [16:51:42] <jibot>
tommorris is a UK blogger, lives in East Sussex and studies philosophy in London, but hasn't yet said whether he's a quark or a lepton and blogs at http://blogs.opml.org/tommorris
- [16:53:47] <tommorris>
Is there any example code available for the PHP OpenID consumer?
- [16:56:47] <tommorris>
Oh, wait, I've found the updated examples
- [17:18:12] * tommorris_ (n=tommorri@i-83-67-98-32.freedom2surf.net) has joined #openid
- [17:19:31] <cygnus>
if you're referring to the Janrain lib, then, yes; examples for both the consumer and server are included
- [17:35:52] * tommorris (n=tommorri@i-83-67-98-32.freedom2surf.net) Quit (Read error: 110 (Connection timed out))
- [17:44:22] * hober (n=ted@unaffiliated/hober) has joined #openid
- [17:47:29] * fajro (n=fajro@OL104-24.fibertel.com.ar) has joined #openid
- [17:53:39] * steven_ (n=chatzill@81-178-225-139.dsl.pipex.com) has joined #openid
- [17:55:31] * steven_ (n=chatzill@81-178-225-139.dsl.pipex.com) Quit (Client Quit)
- [17:56:12] * KevinMarks (i=KevinMar@nat/google/x-4e84529e067e4a14) has joined #openid
- [18:02:28] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has joined #openid
- [18:03:38] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has left #openid
- [18:08:00] * dUstBYTeR (n=_whatthi@c-67-162-28-30.hsd1.il.comcast.net) has joined #openid
- [18:08:14] <dUstBYTeR>
Hi to all.
- [18:08:59] <cygnus>
howdy
- [18:09:30] <dUstBYTeR>
hi cygnus.
- [18:09:36] <dUstBYTeR>
do you have an minute for a question?
- [18:10:33] <cygnus>
just ask, and someone will answer when they can.
- [18:10:44] <dUstBYTeR>
I'm looking to install an OpenID server in my local environment, i've checked around on the net and have had a hard time finding what i need to do this
- [18:10:55] <dUstBYTeR>
what i end up finding is applications which are openid enabled
- [18:13:11] <cygnus>
well, I would first begin by asking whether you really do need your own server; in many cases people really just need authorization facilities, not a server of their own. (We encourage using one of the various free public servers in part because it encourages people to use their OpenIDs in many contexts other than just "local" ones.)
- [18:13:57] <dUstBYTeR>
well this is part of ap roject we are doing for my graduate class.
- [18:14:25] <dUstBYTeR>
each student will set up an open id server and then we are to try to set up a simple openid enabled application, can be as simple as a servlet.
- [18:14:56] <cygnus>
did your instructor fully research what is involved in "setting up a server"?
- [18:15:03] * hober (n=ted@unaffiliated/hober) has left #openid
- [18:15:06] <dUstBYTeR>
hehe probably not.
- [18:15:32] <dUstBYTeR>
this is part of the project, we investigate and see what it would take, goal by end of quarter is to get it working.
- [18:15:43] <cygnus>
ah.
- [18:15:59] <dUstBYTeR>
:)
- [18:16:20] <dUstBYTeR>
some are working on openid and others on shibboleth.
- [18:16:24] <cygnus>
well, your options for running a server are various: you can implement your own using an OpenID library, or you can find a pre-built server such as the RoR-based PIP codebase by Verisign.
- [18:16:25] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has joined #openid
- [18:17:08] <cygnus>
for the sake of brevity, I would recommend using a pre-built server, unless implementing one (using a library) is part of your project.
- [18:17:21] <dUstBYTeR>
ok. i suppose it would easiest to get one that is prebuilt working.
- [18:17:28] <cygnus>
yeah.
- [18:17:32] <dUstBYTeR>
then maybe we can try to implemente one on our own.
- [18:17:48] <cygnus>
http://openid.net/wiki/index.php/Run_your_own_identity_server
- [18:17:54] <dUstBYTeR>
is the RoR-based one the onlyone?
- [18:18:29] <cygnus>
no (see above).
- [18:18:52] <cygnus>
I do not recommend using phpMyID, FYI.
- [18:19:08] <dUstBYTeR>
ok.
- [18:19:18] <dUstBYTeR>
i did try to play with the netmesh materials but didnt get to far.
- [18:19:37] <cygnus>
I can't vouch for that code; I don't know if it's updated.
- [18:19:54] <dUstBYTeR>
it said it was pretty beta.
- [18:19:57] <cygnus>
I can vouch for the PIP code, the DjangoID project, and the "PHP OpenID Server"
- [18:20:04] <dUstBYTeR>
2.0.10 i think was last none.
- [18:20:20] <cygnus>
I recommend the DjangoID app for ease-of-deployment, although I have not used it.
- [18:20:20] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) Quit (Client Quit)
- [18:20:35] <dUstBYTeR>
The php OpenID server might be best bet. since im familar with php
- [18:21:09] <cygnus>
well, if you need help, ask me here or mail cygnus@janrain.com. I wrote it.
- [18:21:42] <cygnus>
use the janrain PHP library, 1.2.2, with that.
- [18:21:59] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has joined #openid
- [18:22:12] <dUstBYTeR>
hehe.
- [18:22:12] <dUstBYTeR>
ok im sure i might have some questions.
- [18:22:20] <dUstBYTeR>
I'll start to work on it tonight most likely after work.
- [18:22:25] <cygnus>
cool.
- [18:22:28] * daleolds (i=daleolds@nat/novell/x-a5dab65a14a5aef7) has left #openid
- [18:22:28] <dUstBYTeR>
i guess thre isn't really one for java around.
- [18:22:39] <cygnus>
hmm, I have no idea.
- [18:22:41] <dUstBYTeR>
maybe after i udnerstand this I can work on a java library that simple to use lol
- [18:22:51] <dUstBYTeR>
well thanks for the help cygnus!
- [18:22:54] <cygnus>
yw, good luck
- [18:28:26] * cweiske (n=cweiske@dslb-088-074-135-212.pools.arcor-ip.net) has joined #openid
- [18:29:16] <cweiske>
Hello cygnus
- [18:29:28] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has left #openid
- [18:29:29] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has joined #openid
- [18:29:48] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has left #openid
- [18:31:44] <cygnus>
howdy, cweiske
- [18:32:19] <cweiske>
which additional information would you like to have in the pear documentation?
- [18:32:38] <cweiske>
1) v1 is deprecated and not used for new packages
- [18:32:58] <cweiske>
2) ?
- [18:33:29] <cygnus>
well, if I were to read that, I don't get the impression it's safe to only support v2. my experience suggests that "deprecated" often means "still very widely-deployed"
- [18:34:03] <cygnus>
so the docs should say "v1 is deprecated; DO NOT USE" or something to that effect, along with an assurance that it is *safe* to only support v2 in terms of working with most code in the wild.
- [18:34:52] <cweiske>
I guess there are always old pear installations in the wild
- [18:35:03] <cweiske>
greg did have some stats, maybe I'll find them
- [18:35:44] <cygnus>
cool.
- [18:36:09] <cygnus>
the main motivation for us was, we wanted our library to work with as many installs as possible, and part of that was making sure it'd work with deployed PEAR.
- [18:36:20] * fajro is now known as fajro_vuelvo_en_
- [18:36:26] <cygnus>
so we couldn't support only v2 if there was any question about support for v1.
- [18:36:54] <cygnus>
and as I'm sure you know, it's impossible to tell people to upgrade PEAR in hosting environments and so on, so we wanted it to be flexible.
- [18:37:42] <cweiske>
btw, I'm a pear dev
- [18:37:59] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has joined #openid
- [18:38:14] * weblivz (n=steven@81-178-225-139.dsl.pipex.com) has left #openid
- [18:39:04] <cygnus>
cweiske: excellent, then I'm talking to the right guy!
- [18:39:43] * aconbere (n=aconbere@mail.geonerco.com) Quit ("Lost terminal")
- [18:41:28] * aconbere (n=aconbere@mail.geonerco.com) has joined #openid
- [18:41:46] <cweiske>
http://pear.php.net/~greg/stats/
- [18:41:49] <cweiske>
there they are
- [18:42:46] <cygnus>
I take it PEAR 1.4 implies "v2" of the XML?
- [18:42:47] <cweiske>
pear 1.4 adoption is at 99.83 percent
- [18:42:49] <cweiske>
yes
- [18:43:13] <cygnus>
that's something else that could be clarified: how to know when v1 vs. v2 is in effect (i.e., which versions of PEAR it corresponds to).
- [18:43:31] <cygnus>
but if v2 adoption is that high, then maybe the v1 docs could be *removed* completely.
- [18:43:48] <cygnus>
i.e., look in the attic for stuff that nobody uses. :)
- [18:43:51] <cweiske>
I'll suggest this
- [18:43:55] <cygnus>
awesome.
- [18:45:31] * cote (n=cote@m010f36d0.tmodns.net) Quit ()
- [18:46:59] * j3h (n=j3h@c-71-236-228-127.hsd1.or.comcast.net) has joined #openid
- [18:50:24] * cote (n=cote@m010f36d0.tmodns.net) has joined #openid
- [18:52:12] * tommorris_ is now known as tommorris
- [18:52:59] <cweiske>
so you don't plan to offer pear packages anymore, even with the script?
- [18:53:19] <cweiske>
would you put the generation script into the package you deploy?
- [18:53:54] <cygnus>
we do not plan to support them or spend time creating them, or maintaining any scripts; we're looking for a third party to do that.
- [18:54:04] <cweiske>
ok
- [18:54:39] <cygnus>
and we would be more than happy to link to any such page where PEAR packages are available.
- [18:55:20] <cweiske>
I'll try to get to pearified.com, since its idea is to have pearified versions of php apps and libs
- [18:55:29] * KevinMarks (i=KevinMar@pdpc/supporter/active/kevinmarks) Quit ("The computer fell asleep")
- [18:55:38] <cweiske>
I'll come back to you if I have more info
- [18:55:49] * fajro_vuelvo_en_ is now known as fajro
- [18:56:01] <cygnus>
ah, interesting.
- [18:56:05] <cygnus>
thanks again. :)
- [18:56:12] <cweiske>
np
- [19:03:11] * KevinMarks (i=KevinMar@nat/google/x-c655862639c15cfa) has joined #openid
- [19:04:13] * cote (n=cote@m010f36d0.tmodns.net) Quit ()
- [19:16:42] * tommorris_ (n=tommorri@i-83-67-98-32.freedom2surf.net) has joined #openid
- [19:25:21] * PatF (n=Patrick@c-24-10-171-142.hsd1.ut.comcast.net) has left #openid
- [19:33:14] * tommorris (n=tommorri@i-83-67-98-32.freedom2surf.net) Quit (Read error: 110 (Connection timed out))
- [19:35:24] * [e]zZz (n=elliottc@98-88-178-69.gci.net) Quit (Read error: 113 (No route to host))
- [19:57:43] * fajro (n=fajro@OL104-24.fibertel.com.ar) Quit (Remote closed the connection)
- [20:03:44] * PatF (i=Patrick@nat/novell/x-1e7a8d6f61065ff4) has joined #openid
- [20:03:54] * fajro (n=fajro@OL104-24.fibertel.com.ar) has joined #openid
- [20:20:15] * tommorris (n=tommorri@i-83-67-98-32.freedom2surf.net) has joined #openid
- [20:25:55] * Brylie (n=brylie@CPE-75-81-108-73.kc.res.rr.com) has joined #openid
- [20:29:33] * KevinMarks (i=KevinMar@pdpc/supporter/active/kevinmarks) Quit ("The computer fell asleep")
- [20:33:39] * KevinMarks (i=KevinMar@nat/google/x-8f9f98d49137a889) has joined #openid
- [20:37:58] * tommorris_ (n=tommorri@i-83-67-98-32.freedom2surf.net) Quit (Read error: 110 (Connection timed out))
- [20:48:41] * Prometheus^ (n=Promethe@cs181170022.pp.htv.fi) has joined #openid
- [21:09:21] * Prometheus^ (n=Promethe@cs181170022.pp.htv.fi) Quit (Connection timed out)
- [21:32:46] * stub (n=stub@ppp-58.8.13.16.revip2.asianet.co.th) Quit (Read error: 110 (Connection timed out))
- [21:36:24] * cweiske (n=cweiske@dslb-088-074-135-212.pools.arcor-ip.net) Quit ("Leaving")
- [21:42:21] * rgl (n=Rui@84.90.10.107) has joined #openid
- [21:42:23] <rgl>
hello
- [21:43:41] <cygnus>
howdy
- [21:46:29] <chowells79>
Hey rgl...
- [21:46:40] <chowells79>
What was Paul's explanation?
- [21:46:42] <chowells79>
I'm curious
- [21:52:38] <rgl>
chowells79, he didn't remeber the exact details of why I shouldn't directly use the shared secret returned by DH. he then gave me some "google" keywords to search for: CDH or computational DH, DDH or decisional DH, random oracle model, and security reductions Diffie-Hellman.
- [21:53:19] <rgl>
chowells79, but, I was convinced that the whole scheme of: H(zz) xor mac_key is very nice in the end.
- [21:54:35] <rgl>
chowells79, because we can use some nice transformations with the mac_key and the assoc_handle in order for not storing the assoc_handles on the Provider database.
- [21:54:56] <chowells79>
Ah. That's one point.
- [21:55:55] <rgl>
chowells79, which was one of those big troubles I was having. like, if you hammered the provider with loads of association requests, you could fill the database. but ith the association scheme its impossible for doing that, because, nothing is stored in the database :D
- [21:57:17] <rgl>
so, that scheme doesn't buy you anything in security (well, it might, but I'm no crypto guy); but did buy you disc space :D
- [21:57:46] <rgl>
and in the end, I did learn something clever :)
- [22:02:38] * PatF (i=Patrick@nat/novell/x-1e7a8d6f61065ff4) Quit (Read error: 54 (Connection reset by peer))
- [22:03:51] * fajro (n=fajro@OL104-24.fibertel.com.ar) Quit ("Ex-Chat")
- [22:20:57] * punter (n=punter@ipa136.31.91.tellas.gr) has joined #openid
- [22:35:02] * punter (n=punter@ipa136.31.91.tellas.gr) Quit ()
- [22:35:28] * punter (n=punter@ipa136.31.91.tellas.gr) has joined #openid
- [22:47:24] * punter (n=punter@ipa136.31.91.tellas.gr) Quit ()
- [23:16:10] * PatF (n=Patrick@137.65.132.17) has joined #openid
- [23:19:13] * fajro (n=fajro@OL104-24.fibertel.com.ar) has joined #openid
These logs were automatically created by OpenIDlogbot on
chat.freenode.net
using a modified version of the Java IRC LogBot.