Skip to content

{ Tag Archives } openid

Sun’s OpenID IdP: Summary

I’ve now finished my current batch of postings about Sun’s OpenID IdP. Here’s a listing of the relevant postings that the team has made. I’ll add new postings to this list as they’re published, or as I find them.

Purpose and Policies

my Sun’s OpenID IdP: Introduction
my Sun’s OpenID IdP: Business Purpose
my Sun’s OpenID IdP: Data Governance
my [...]

Also tagged

Sun’s OpenID IdP: Trust

Part of a series on Sun’s OpenID@Work initiative; see the introduction for more context.
Trust is always an issue on the web. People don’t usually even think about it, but they trust the DNS server to point their browser at the right web site when they click on a link, they trust the web server to [...]

Also tagged

Sun’s OpenID IdP: Real vs Fake

Part of a series on Sun’s OpenID@Work initiative; see the introduction for more context.
Probably the biggest discussion we had in the entire policy discussion was whether to let Sun employees use fake or fictitious names, or whether to force the use of real names in what the OpenID simple registration extension calls the fullname. The [...]

Also tagged

Sun’s OpenID IdP: Data Governance

Part of a series on Sun’s OpenID@Work initiative; see the introduction for more context.
Data governance is the term used for knowing what happens to the data that is stored, particularly when that data has any PII (personally identifiable information), which the OpenID IdP does. Using OpenID isn’t the reason we keep this information; any [...]

Also tagged

Sun’s OpenID IdP: Business Purpose

Part of a series on Sun’s OpenID@Work initiative; see the introduction for more context.
One of the interesting things about security is that you can never make anything 100% secure. You need to figure out what the risks are, how likely they are to occur, and what the damage will be if something bad does happen, [...]

Also tagged

Sun’s OpenID IdP: Introduction

This is the first of a series of posts on Sun Microsystem’s OpenID@Work service, which is an OpenID Identity Provider available for use by Sun employees.
[Update: I was asked what the purpose of these postings is - it's simply to share our experiences in the hope that they're helpful to others.]
I was part of the [...]

Also tagged