IRC Log for #openid on 2008-02-25
Timestamps are in UTC.
- [00:17:08] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Remote closed the connection)
- [00:17:31] * MrTopf (n=cs@pD9EBEABD.dip.t-dialin.net) Quit (Read error: 113 (No route to host))
- [00:30:50] * ViperMaul^ (i=ViperMau@c-76-28-204-113.hsd1.wa.comcast.net) has joined #OpenID
- [00:32:00] * shigeta (n=shigeta@124.32.114.226) has joined #openid
- [00:32:10] * ViperMaul (i=ViperMau@c-76-28-204-113.hsd1.wa.comcast.net) Quit (Read error: 104 (Connection reset by peer))
- [00:32:30] * ViperMaul^ is now known as ViperMaul
- [00:40:35] * jcollie (n=jcollie@dsl-ppp239.isunet.net) has joined #openid
- [00:52:43] * charlenopires (n=charleno@189.12.171.227) has joined #openid
- [00:57:32] * ricky (n=ricky@fedora/ricky) Quit ("Reboot for a bit...")
- [01:03:54] * ricky (n=ricky@fedora/ricky) has joined #openid
- [01:06:07] * ricky (n=ricky@fedora/ricky) has left #openid
- [01:33:23] * SignpostMarv (n=Signpost@82-71-31-169.dsl.in-addr.zen.co.uk) Quit ("Leaving")
- [02:20:00] * charlenopires (n=charleno@189.12.171.227) Quit ("To Saindo")
- [04:29:34] * stub (n=stub@ppp-58-8-10-134.revip2.asianet.co.th) has joined #openid
- [05:16:18] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) has joined #openid
- [06:15:58] * shigeta (n=shigeta@124.32.114.226) Quit (Read error: 110 (Connection timed out))
- [06:39:26] * shigeta (n=shigeta@124.32.114.226) has joined #openid
- [08:06:07] * bortzmeyer (i=bortzmey@batilda.nic.fr) has joined #openid
- [08:06:48] * stub (n=stub@canonical/launchpad/stub) Quit (Read error: 110 (Connection timed out))
- [08:09:08] * stub (n=stub@ppp-58-8-17-41.revip2.asianet.co.th) has joined #openid
- [08:27:52] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Remote closed the connection)
- [09:51:12] * danieljohnlewis (n=danieljo@cpc5-oxfd2-0-0-cust8.oxfd.cable.ntl.com) has joined #openid
- [09:59:41] * Makenshi (n=chaz@pix.vendia-kollegiet.dk) has joined #openid
- [10:03:44] * shigeta (n=shigeta@124.32.114.226) Quit ("Leaving...")
- [10:10:42] * stub (n=stub@canonical/launchpad/stub) Quit ("Leaving.")
- [11:20:02] * a9913 (n=a9913@unaffiliated/a9913) has joined #openid
- [11:59:38] * a9913 (n=a9913@unaffiliated/a9913) Quit ("Leaving")
- [12:31:50] * shigeta (n=shigeta@70.36.100.220.dy.bbexcite.jp) has joined #openid
- [12:37:38] * priidu (n=aa@sa-84-52-5-111.saturn.infonet.ee) has joined #openid
- [12:54:36] * priidu (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Connection timed out)
- [13:06:43] * jcollie (n=jcollie@dsl-ppp239.isunet.net) Quit ("Ex-Chat")
- [13:13:23] * TedThibodeauJr (n=Thud@c-76-119-195-179.hsd1.ma.comcast.net) Quit ()
- [13:20:37] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) has joined #openid
- [13:30:21] * MrTopf (i=hidden-u@oecher.info) has joined #openid
- [13:33:38] * vahur (n=vahur@yheksa.htk.tlu.ee) has left #openid
- [13:44:11] * stub (n=stub@canonical/launchpad/stub) has joined #openid
- [13:45:24] * Prometheus (n=Promethe@kone1.tmvvision.finnetcom.net) has joined #openid
- [13:45:40] <Prometheus>
Any suggestions for an openid provider, what do you guys prefer and why? :)
- [13:45:58] <Prometheus>
It seems that I'm in need of a new openid provider since I seem to have lost the password for my mylid one :/
- [13:47:33] <Makenshi>
Prometheus, did you try and contact your current provider to resolve it?
- [13:48:01] * idnar (i=mithrand@unaffiliated/idnar) Quit (Read error: 110 (Connection timed out))
- [13:48:06] <Makenshi>
I am currently using Verisign Labs PIP as they support x.509 and cardspace, and so far it has been very reliable
- [13:48:30] <CGamesPlay>
does Firefox support cardspace?
- [13:48:30] <Prometheus>
I haven't actually tried contacting them yet about it, I figured that might be a bit too much of a hassle, really, but I suppose I could try that
- [13:49:02] <Makenshi>
CGamesPlay, no, however there are extensions that implement it
- [13:49:07] <CGamesPlay>
hmm
- [13:49:32] <Makenshi>
Prometheus, I would be interested to know how you get on as I am trying to compile a list of providers, and support is one of the areas I am interested in
- [13:50:08] <Prometheus>
Makenshi: sure, I can give it a spin
- [13:50:15] <Prometheus>
although I'm not sure where I would mail netmesh
- [13:50:19] <Prometheus>
I suppose info@netmesh
- [13:50:24] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Remote closed the connection)
- [13:50:38] * idnar (i=mithrand@unaffiliated/idnar) has joined #openid
- [13:51:27] <Makenshi>
Prometheus, thanks. I am particularly interested in how easy it is to get support, and the quality of the response
- [13:51:41] <Prometheus>
alright
- [13:52:09] <Prometheus>
of course, the question is how will I prove my authenticity ;)
- [13:52:24] <Makenshi>
I am considering setting up an openid provider using one-time sms for authentication, I just need to find a free (possibly ad-supported) sms service
- [13:53:01] <Makenshi>
Prometheus, hopefully you have registered your email address with your account
- [13:53:15] <Prometheus>
I have
- [13:53:28] <Prometheus>
but the support address requires authentication
- [13:53:40] <Prometheus>
so I guess I'll just send to their general info
- [13:53:56] <Makenshi>
That is rather silly :) Is there no "lost password" option anywhere?
- [13:54:33] <Prometheus>
nope
- [13:54:36] <Prometheus>
not that I can find one
- [13:55:07] <Prometheus>
which is kind of why I was thinking about getting a new provider :P
- [13:55:41] <Prometheus>
I tend to change my passwords quite often, and being cryptic as they are, I also tend to forget them every now and then
- [13:55:50] <Prometheus>
thus forgotten password that would send it to my mail would be nice
- [13:57:41] <Makenshi>
Personally I prefer using something other than a password for authentication, such as a certificate or infocard
- [13:58:06] <Makenshi>
This is why openid is so handy.. I can use whatever method I like for authenticating myself with my provider
- [13:59:14] <Prometheus>
right, I would too
- [13:59:31] <Prometheus>
but one password for every site isn't such a bad option either :)
- [14:00:09] <Prometheus>
anyhow, I just sent them a mail, we'll see if they care :)
- [14:00:17] <Prometheus>
if not, I'll just change provider to something else, not a biggie really
- [14:00:59] <Makenshi>
It is a lot easier to get someone's password than it is to break a system like rsa or a smart card
- [14:01:23] <Prometheus>
by far
- [14:14:52] * jcollie (n=jcollie@161.210.6.44) has joined #openid
- [14:15:11] * danieljohnlewis (n=danieljo@cpc5-oxfd2-0-0-cust8.oxfd.cable.ntl.com) Quit (Read error: 104 (Connection reset by peer))
- [14:15:41] * danieljohnlewis (n=danieljo@cpc5-oxfd2-0-0-cust8.oxfd.cable.ntl.com) has joined #openid
- [14:15:51] * TedThibodeauJr (n=Thud@ws2.openlinksw.com) has joined #openid
- [14:42:52] * shigeta (n=shigeta@70.36.100.220.dy.bbexcite.jp) Quit ()
- [15:02:30] <PibbRelay>
<samsm> If you are using delegation, it is pretty easy ... get accounts everywhere, keep the one you like.
- [15:03:28] <PibbRelay>
<samsm> Not that the debate isn't worthwhile, I just like to bring up delegation whenever possible. :)
- [15:03:57] <Makenshi>
Of course, I use delegation for mine so I can easily change if I want to
- [15:04:28] <PibbRelay>
<samsm> Excellent. :)
- [15:07:35] <Prometheus>
using delegation as well
- [15:07:53] <Prometheus>
it's just that I hate losing passwords :(
- [15:08:01] <Prometheus>
and having to change provider because of something like that sucks
- [15:08:15] <Prometheus>
but if the password isn't resettable or changeable by any easy means, oh well
- [15:14:56] * ViperMaul (i=ViperMau@c-76-28-204-113.hsd1.wa.comcast.net) Quit (Read error: 110 (Connection timed out))
- [15:24:16] <Prometheus>
Makenshi: verisign works as a server/delegate, right?
- [15:35:47] <Makenshi>
Prometheus, yes
- [15:36:01] <Prometheus>
cool, I guess I'll give it a spin :)
- [15:37:44] * a9913 (n=a9913@unaffiliated/a9913) has joined #openid
- [15:42:08] * MrTopf (i=hidden-u@oecher.info) Quit ()
- [15:44:47] <Prometheus>
does verisign have the openid.server url somewhere posted?
- [15:44:59] <Prometheus>
I couldn't find it for the life of me, luckily simon willison had it posted
- [15:46:21] * Prometheus (n=Promethe@kone1.tmvvision.finnetcom.net) Quit ()
- [15:50:50] * stub (n=stub@canonical/launchpad/stub) Quit (Read error: 110 (Connection timed out))
- [15:52:57] * jrbot (n=supybot@c-71-236-228-127.hsd1.or.comcast.net) Quit (Read error: 110 (Connection timed out))
- [15:52:57] * _keturn (n=acapnoti@pdpc/supporter/sustaining/keturn) Quit (Read error: 110 (Connection timed out))
- [16:08:19] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) has joined #openid
- [16:15:37] * MrTopf (i=hidden-u@oecher.info) has joined #openid
- [16:25:32] * bortzmeyer (i=bortzmey@batilda.nic.fr) has left #openid
- [16:31:58] * _keturn (n=acapnoti@pdpc/supporter/sustaining/keturn) has joined #openid
- [16:33:20] * jrbot (n=supybot@c-71-236-228-127.hsd1.or.comcast.net) has joined #openid
- [16:44:23] * a9913 (n=a9913@unaffiliated/a9913) Quit (Read error: 113 (No route to host))
- [16:46:38] * ViperMaul (n=ViperMau@me80f36d0.tmodns.net) has joined #OpenID
- [16:53:51] <donomo>
its a function of the RP to interpret server/delegate.
- [16:54:16] <donomo>
im not sure the Identity Prodiver is even aware of the original url.
- [16:54:55] <donomo>
Provider, not expert scuba diver :)
- [16:59:13] * Navarr (n=navarr@adsl-75-53-193-248.dsl.hstntx.sbcglobal.net) Quit ("Yeah.. I'll see ya around...")
- [17:01:22] * charlenopires (n=charleno@189.12.171.227) has joined #openid
- [17:05:00] * forsaken (n=eric@c-71-62-234-185.hsd1.va.comcast.net) Quit (Success)
- [17:09:30] * danieljohnlewis (n=danieljo@cpc5-oxfd2-0-0-cust8.oxfd.cable.ntl.com) Quit ()
- [17:12:04] * charlenopires (n=charleno@189.12.171.227) Quit ("To Saindo")
- [17:21:15] * Prometheus (n=Promethe@cs181170022.pp.htv.fi) has joined #openid
- [18:13:30] * ViperMaul (n=ViperMau@me80f36d0.tmodns.net) Quit (Read error: 110 (Connection timed out))
- [18:22:09] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) has joined #OpenID
- [18:43:06] * charlenopires (n=charleno@189.12.171.227) has joined #openid
- [19:04:56] * pvandewyngaerde (n=pvandewy@233.103-245-81.adsl-dyn.isp.belgacom.be) has joined #openid
- [19:26:24] * priidu_ (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Remote closed the connection)
- [19:34:44] * jcollie (n=jcollie@161.210.6.44) Quit ("Ex-Chat")
- [20:21:17] * coderpath (i=rbpanic@S01060018394c8b75.va.shawcable.net) has joined #openid
- [20:28:26] <coderpath>
I'm looking into the possibility of setting up an openid server for my work. We're using Windows Active Directory to manage names & passwords. Is there an OpenID server out there for Windows that's open source?
- [20:29:39] <_keturn>
you can find a number of protocol implementations that run on windows, but no open source full server solution that integrates with Active Directory
- [20:30:59] <johill>
you can probably have an easier path by enabling ldap and authenticating against that. or use e.g. dovecot's auth server which can also talk ntlm
- [20:31:27] * priidu (n=aa@sa-84-52-5-111.saturn.infonet.ee) has joined #openid
- [20:32:21] * forsaken (n=eric@192.65.245.91) has joined #openid
- [20:34:19] <coderpath>
johill: not sure what you're saying. Setup an LDAP server to hook into AD then have an OpenID server use the LDAP server to authenticate?
- [20:36:42] <johill>
AD can be LDAP, yeah
- [20:36:56] <coderpath>
_keturn: what about a decent unix-based OpenID server?
- [20:37:08] <coderpath>
johill: ah. gotcha. cool :)
- [20:38:35] <johill>
so if you use dovecot which talks ntlm, ldap and more you can actually just query the passwords with a simple line-based interface to a socket
- [20:38:44] <johill>
and use whatever you want to implement the openid server
- [20:38:55] <johill>
I don't think there are "OpenID servers" per se because it's always tied to the httpd
- [20:39:09] * jcollie (n=jcollie@dsl-ppp239.isunet.net) has joined #openid
- [20:43:43] * alinka (n=anna_dov@194.29.186.187) has joined #openid
- [20:43:47] * alinka (n=anna_dov@194.29.186.187) has left #openid
- [20:47:33] <Makenshi>
coderpath, still there?
- [20:47:44] <Makenshi>
Have a look at http://www.openid-ldap.org/
- [20:47:45] <coderpath>
Makenshi: yep :)
- [20:48:40] <Makenshi>
Just before I left my last place, I implemented OpenID with a bit of a hack..
- [20:49:00] <coderpath>
Makenshi: ah...that looks like what I'm looking for :)
- [20:49:40] <Makenshi>
I set up a jabber server with Ignite Openfire using AD, and then set up a simple page that delegated to the iDP at openid.xmpp.za.net
- [20:50:14] <coderpath>
I think I'm getting my terminology confused. I'm wanting to become an OpenID provider for my users who are already using AD to login to their exchange email.
- [20:50:48] <Makenshi>
That is what the aforementioned software is for
- [20:51:01] <Makenshi>
I am not sure if it supports OpenID 2, though
- [20:51:18] <coderpath>
Makenshi: excellent. thx :) That'll keep me busy for a bit.
- [20:51:55] <coderpath>
I suppose people just roll their own using a web framework.
- [20:53:03] <Makenshi>
There are commercial products too, like Atlassian Crowd
- [20:53:21] <johill>
moinmo.in (wiki) will have an openid provider too in the next version
- [20:53:24] <johill>
it also supports ldap auth
- [20:53:35] <coderpath>
Makenshi: yes I've seen that, but it's not cheap.
- [20:53:38] <johill>
(in addition to an openid RP anyway)
- [20:54:23] <coderpath>
johill: cool. I'll have a look at that too
- [20:54:38] <Makenshi>
Crowd is open source too
- [20:57:28] <coderpath>
Makenshi: Crowd is open source? I thought it was a commercial product?
- [20:57:55] <Makenshi>
Yes.. Commercial software can be open source too.. it is a very common misconception to think otherwise
- [20:58:07] <Makenshi>
OSC Radiator is another example
- [20:59:11] <coderpath>
Makenshi: ah...well...guess you learn something new everyday ;)
- [21:11:39] * priidu (n=aa@sa-84-52-5-111.saturn.infonet.ee) Quit (Remote closed the connection)
- [21:21:35] * forsaken (n=eric@192.65.245.91) Quit (Connection reset by peer)
- [21:49:05] * CGamesPlay (n=cgames@allegro/user/CGamesPlay) Quit (Read error: 110 (Connection timed out))
- [22:01:44] * pvandewyngaerde (n=pvandewy@233.103-245-81.adsl-dyn.isp.belgacom.be) Quit (Remote closed the connection)
- [22:03:41] * charlenopires (n=charleno@189.12.171.227) Quit (Read error: 110 (Connection timed out))
- [22:07:57] * charlenopires (n=charleno@189.12.171.227) has joined #openid
- [22:08:41] * TedThibodeauJr (n=Thud@ws2.openlinksw.com) Quit ()
- [22:32:22] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) Quit (Remote closed the connection)
- [22:33:28] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) has joined #OpenID
- [22:35:31] * ViperMaul^ (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) has joined #OpenID
- [22:36:05] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) Quit (Read error: 104 (Connection reset by peer))
- [22:42:54] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) has joined #OpenID
- [22:43:42] * ViperMaul^ (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) Quit (Read error: 104 (Connection reset by peer))
- [22:54:05] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) Quit (Remote closed the connection)
- [22:54:22] * ViperMaul (n=ViperMau@c-67-183-183-212.hsd1.wa.comcast.net) has joined #OpenID
- [22:58:53] * coderpath (i=rbpanic@S01060018394c8b75.va.shawcable.net) Quit (Remote closed the connection)
- [23:12:02] * CGamesPlay (n=cgames@allegro/user/CGamesPlay) has joined #openid
- [23:21:16] * pkulak (n=phil@c-67-171-157-202.hsd1.or.comcast.net) has joined #openid
- [23:22:42] <pkulak>
Does anyone here have some time to talk with me about the ruby-openid OpenID 2.0 implementation?
- [23:29:13] <_keturn>
pkulak: sure, what's up?
- [23:31:04] <pkulak>
Thanks! So, I'm using ruby-openid 2.0.4 and from what I've read, and going through the source, it's supposed to support Directed Identity. Yet, when I use yahoo.com as the url I get back "No service endpoints found." I'm just wondering if I'm missing something.
- [23:32:05] <_keturn>
huh. it works at http://openidenabled.com/ruby-openid/trunk/examples/consumer
- [23:32:42] <pkulak>
Darn, so it's not something obvious then.
- [23:33:03] <_keturn>
if you feed it your specific identifier, does that work?
- [23:33:32] <pkulak>
It does for myopenid.com. Haven't tried Yahoo, hang on...
- [23:36:57] <pkulak>
You're right. Seems to be with anything from Yahoo.
- [23:37:16] <pkulak>
Could it be because I'm coming from localhost?
- [23:37:55] <_keturn>
well, it's true that yahoo doesn't like a localhost return_to, but if the message is "no service endpoints found", then you're not even getting that far
- [23:38:14] <pkulak>
Let me make sure that's still the message.
- [23:39:17] <pkulak>
Yeah, that's still it.
- [23:39:47] <_keturn>
it could be an https thing. does the https form of your myopenid identifer work? (also, are there logs?)
- [23:41:48] <pkulak>
Https works for myopenid, and I don't see anything in my logs, but it doesn't look like ruby-openid really logs anything
- [23:42:21] <pkulak>
You don't happen to know where that error message is generated, do you?
- [23:42:24] <pkulak>
I can't find it in the source.
- [23:44:49] <_keturn>
you could also try running 'examples/discover yahoo.com' , that might narrow things down a bit
- [23:48:49] * TedThibodeauJr (n=Thud@c-76-119-195-179.hsd1.ma.comcast.net) has joined #openid
- [23:49:09] <pkulak>
How exactly do you run that? From the terminal or the console...
- [23:54:19] * MrTopf (i=hidden-u@oecher.info) Quit ()
- [23:56:39] * Prometheus (n=Promethe@cs181170022.pp.htv.fi) Quit ()
- [23:59:40] <_keturn>
the terminal
These logs were automatically created by OpenIDlogbot on
chat.freenode.net
using a modified version of the Java IRC LogBot.