通过使用自己的域作为 OpenID 标识符来提供独立性
我正在研究 OpenID 的总体情况,并考虑将其用于我的网络应用程序想法。
我的问题是,当 OpenID 提供商破产、选择取消您的帐户、被黑客攻击等时可以做什么。(目前对我来说这些都是理论上的,但我想澄清这一点。)
如果:
1)某人将其域设置为充当 OpenID 提供商的委托:
<链接rel="openid.delegate" href="http://username.myopenid.com/">
或:
2) 设置 myOpenID for Domains,其中使用 member.yourdomain.com
或 openid.yourdomain.com/member
,
他们可以简单地重新指向他们的域名吗? (子)域到另一个OpenID 提供商如果其原始提供商的服务停止,这意味着在更新传播后,他们使用 OpenID 注册的网站(例如 StackOverflow)将继续使用其帐户来识别他们?
I'm looking at OpenID in general and also thinking of using it for a web app idea I have.
My question is about what can be done when an OpenID provider goes under, chooses to cancel your account, gets hacked, etc. (All theoretical to me at the moment, but I would like to have this clarified.)
If:
1) someone sets their domain to act as a delegate to the OpenID provider:
<link rel="openid.server" href="http://www.myopenid.com/server">
<link rel="openid.delegate" href="http://username.myopenid.com/">
or:
2) sets up myOpenID for Domains where either member.yourdomain.com
or openid.yourdomain.com/member
is used,
can they simply repoint their (sub)domain to another OpenID provider in the event of the ceasing of their original provider's service, meaning that sites at which they're registered with their OpenID (such as StackOverflow) will continue to identify them with their account once the update has propogated?
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论