27 messages in net.openid.general[OpenID] XRDS multi-OP listing?
FromSent OnAttachments
David RecordonJun 4, 2008 2:08 pm 
Hans GranqvistJun 4, 2008 2:34 pm 
David RecordonJun 4, 2008 4:50 pm 
Johannes ErnstJun 4, 2008 9:49 pm 
Nat SakimuraJun 4, 2008 11:51 pm 
Martin AtkinsJun 5, 2008 12:02 am 
Kick WillemseJun 5, 2008 3:49 am 
Steven Livingstone-PerezJun 5, 2008 4:06 am 
SitG AdminJun 5, 2008 8:31 am 
Johannes ErnstJun 5, 2008 9:15 am.gif, .gif
David RecordonJun 5, 2008 9:50 am 
David RecordonJun 5, 2008 9:51 am 
Martin AtkinsJun 5, 2008 10:35 am 
SitG AdminJun 5, 2008 12:42 pm 
Martin AtkinsJun 5, 2008 1:34 pm 
SitG AdminJun 5, 2008 3:58 pm 
Nat SakimuraJun 5, 2008 6:59 pm 
Nat SakimuraJun 5, 2008 7:06 pm 
Nat SakimuraJun 5, 2008 8:36 pm 
Martin AtkinsJun 6, 2008 12:06 am 
Johannes ErnstJun 6, 2008 3:08 pm 
Warren JamisonJun 6, 2008 6:05 pm 
Carsten PötterJun 6, 2008 8:47 pm 
Brandon RamirezJun 7, 2008 10:28 am 
Brandon RamirezJun 7, 2008 10:33 am 
SitG AdminJun 7, 2008 9:22 pm 
Tan, WilliamJun 16, 2008 10:57 am 
Actions with this message:
Paste this link in email or IM:
Paste this link in email or IM:
Atom feed for this thread
Paste this URL into your reader:
Subject:[OpenID] XRDS multi-OP listing?Actions...
From:SitG Admin (sysa@shadowsinthegarden.com)
Date:Jun 7, 2008 9:22:09 pm
List:net.openid.general

There is little to no ROI from an RP perspective. If anything, I want to go the other way and only allow certain trusted OP's, not open the door for the user to not only use multiple OP's, but pick a different one at random each time. The risk is slighlty higher.

I'm not clear on how you're using "random" here. Is the XRDS so constrained in its current format that any string which matches a URL pattern will be treated as an OP? Could the user not, for instance, add a list of OP's identified in such a way as to only be recognized as valid OP's if the RP had written a library to specifically seek them out? Will the RP be forced to select one of those OP's *at random* if more than one is present?

Other than that it's simply a trust issue. Just because we don't know WHY a user went with this OP over that one on a given occasion, doesn't mean it's random! Indeed, one might argue that it's none of our business why the user picked one over another. All we need to do is ask for (PAPE) verification that the OP our user selected can meet our demands for authentication. If it can't, we explain this to the user and ask them to pick another one.

Trust of the OP's is not just our decision as Relying Parties, but the user's as well.

-Shade