Skip to main content

OpenId is still one of the best password-less authentication methods, so I find it a pretty weak idea to drop it because of what? :-)

I am running my own provider, with client/server SSL keys for authentification. Why should I give up my security for another service for which I need passwords again?

And when I tried to use Google OpenId with Facebook, Facebook tried to request all my contacts and Google didn't provide a way to configure/block this.

The idea of the Internet was to be a distributed system. Currently the trends seems to be to fall back to the stone age of a few large BBSs.

Markus Maex Stumpf, Aug 27 2011 on 1500wordmtu.com