SlideShare ist ein Scribd-Unternehmen logo
1 von 85
Downloaden Sie, um offline zu lesen
Emerging From Web 2.0
     Web 2.0 Expo Berlin 2007
quot;Its definitely time to declare              quot;OpenID is a protocol made
      OpenID a winnerquot;                      for the public, by the public.
         TechCrunch                         No one owns or controls your
                                             login information:You do.quot;
                                                      37signals
        quot;...sees great potential for OpenID's use
           alongside enterprise-ready software
                      infrastructurequot;
                    Sun Microsystems

                                               quot;taking the world by stormquot;
 quot;this high profile announcement marks
                                                       Tim O'Reilly
the importance of single sign on identity
technology to the future of the Internetquot;
             ReadWriteWeb
What is OpenID?
•   Single sign-on for the web
•   Simple and light-weight
    (not going to replace your bank card pin)

•   Easy to use and deploy
•   Built upon proven existing technologies
    (DNS, HTTP, SSL/TLS, Diffie-Hellman)

•   Decentralized
    (you don't have to ask anyone permission to implement it)

•   Free!
An OpenID is a URI
•   URLs are globally unique
    and ubiquitous

•   OpenID allows proving
    ownership of an URI

•   People already have
    identity at URLs via
    blogs, photos, MySpace,
    FaceBook, etc

•   People already describe
    relationships via URLs
    (e.g. links to my friends)
OpenID is Decentralized
Benefits
•   Reduces the number of usernames and
    passwords
•   Simplifies new account creation
•   Allows for lightweight accounts
•   Simplifies internal SSO
•   Enables wide-spread benefit of strong
    authentication
•   Enables decentralized reputation
•   Enables social network portability
O
      M
    E
How Does it Work?


D
As a Conversation

  Who are you?



             I’m davidrecordon.com




     Prove it!
Discovers My Provider




quot;openid.serverquot; points to my OpenID Provider
(crypto happens)
Getting an OpenID




   http://openid.net/get/
OpenID is Really Easy
quot;This is a
 geek's toy,
nobody will
ever have an
 OpenID!quot;
~160 million OpenIDs
     (including every AOL user)




                                  OpenID 1.1 - Estimated from various services
quot;Nobody will ever use this!quot;
Total Relying Parties              (aka places you can login with OpenID)




6,000


4,500


3,000


1,500


   0
                   ov




                                       b




                                                     ay




                                                                    ly
                              '06




                                           ar




                                                            ne




                                                                                         ov




                                                                                                                            ay




                                                                                                                                              ly
        '05

              ct




                        ec




                                                 r




                                                                          g




                                                                                                                                    ne
                                                                                p




                                                                                              ec

                                                                                                     '07

                                                                                                              b
                                                                                    ct




                                                                                                                  ar

                                                                                                                        r




                                                                                                                                                     st

                                                                                                                                                            22
                                                Ap




                                                                                                                       Ap
                                                                         Au
                                    Fe




                                                                              Se




                                                                                                           Fe
                                                                 Ju




                                                                                                                                           Ju

                                                                                                                                                    gu
              O




                                                                                    O
                                           M




                                                                                                                  M
                                                     M




                                                                                                                            M
                        D




                                                                                              D
                                                          Ju




                                                                                                                                  Ju
                   N




                                                                                         N




                                                                                                                                                           p
      p




                             Jan




                                                                                                    Jan




                                                                                                                                                   Au

                                                                                                                                                         Se
    Se




                                                                                                                                OpenID 1.1 - As viewed by MyOpenID.com
quot;So that's great there
are so many blogs, but
what about something
        real?quot;
quot;What about security?quot;
“Protocol Security?”
like any protocol...think as
      you implement
the best solutions may
  around the browser
MyVidoop Plugin
(a password manager tied into your OpenID account add-on for Firefox)
Sxipper
(a form filler password manager with OpenID integration add-on for Firefox)
Symantec Identity Client
(OpenID form-fill, upcoming provider, and claims integration)
VeriSign's OpenID SeatBelt
(an OpenID convenience and security add-on for Firefox)



                      works with
IE Team has posted a job
ad mentioning quot;OpenIDquot;
quot;Does the idea of redefining the role of the Internet browser appeal to you?
Do the terms HTTP, RSS, Microformats, and OpenID, excite you? If so, then
                this just might be the opportunity for you.quot;
OpenID is great for innovation
“So, what about OpenID 2.0?”
OpenID 2.0
• Cleans up the 1.1 specification
• Adds a few useful features
 • Robust extensibility
 • Enhanced service discovery
 • quot;Directed identityquot;
 • XRI
• About six independent library
  implementations of final draft
“Any OpenID in the enterprise?”
Offer all employees
 OpenIDs; open source
   Enterprise SSO and
  identity manager with
    LDAP and OpenID

 Internal SSO for bug
  trackers and wikis
  OpenID Provider with
plans to ship in enterprise
    products this year
Shared OpenID Provider
 for their businesses and
         partners
   Project management,
CRM, and billing for small
        businesses
Open.ID.ee
I come from E-stonia
• A small EU country with ~1.3M inhabitants
• Access to internet considered a “civil right”
• Had first parliament elections over the
  internet in 2005
• 80%+ of the population have a digital ID-
  card
ID-card
ID-card is a...
• Photo ID like any other
• We are interested in Electronic ID:
 • The chip contains your name, age, gender
    and social security number
 • Two PIN codes: one for authentication
    and one for signing documents
Authentication

• Is about proving who you are.
• Available to any service that wants to use it
 • Online banking
 • Filing your taxes
 • Various other services
quot;How does this happen?quot;
Entering your PIN code is
  your consent to send
  personal data to the
         service
Yes/No decision
quot;So what is the problem?quot;
Users do not always want this.
Users want control of their
       personal data.
What is Identity?

• Wikipedia: “the sameness of two things”
 • “Things” are users
 • Users are website visitors
• “Who are you?”
Are you the same you
that signed up with us?
ID-card contains
government verified
       identity
Same Can be Different

• Bank: Martin Paljak, the account owner
• Forum: user who registered as “catluvr99”
• Blog: author of the comment
• http://open.id.ee/martin.paljak is Martin Paljak
Is the OpenID you
present the same as we
 have in our database?
Websites really need to
match identifiers, not
 collect your personal
          data.
Solution: OpenID
• id.ee => open.id.ee
• OpenID service that uses ID-cards for
  authentication
• Gives users more control over their private
  data
• Is NOT a government enforced/controlled
  service
Simplicity

• One privacy policy to check
• One trust decision to make
• One purpose for the OpenID service
 • Encapsulate and protect users’ private
    data
No need to sign up, it
   JustWorks
... if you have the needed
hardware and software ...
quot;So if everybody implements
 OpenID, are we all happy?quot;
quot;What about website developers?quot;
ID-card Sucks!
• Implementing support is difficult
 • Technically challenging (SSL certificates
    and such)
• Users don’t like ID-cards anyway as they
  are often afraid of privacy issues
• Most sites don’t need so high security
• So... why bother?
I Forgot!

• Mobile-ID: same stuff inside your GSM SIM
  card
 • Same technology inside ...
 • ... but totally different to implement ...
 • ... AGAIN!!!
What is Mobile-ID?

• Smaller ID-card
• No hardware needed - your phone is
  your card reader
• No need to install software to use it online
  - websites have it
beep-beep!
If you’re going to write
  new code, why not
     OpenID code?
Benefits of OpenID
• Only one interface to implement
 • And lots of expertise available globally
• If website uses open.id.ee service
  exclusively, it has instant access to both
  ID-cards and Mobile-ID authentication
• ... with privacy features included @ no cost
So ...

• Users get more control over their private
  data and OpenID provides it
• Websites have a simple and easy way to
  integrate newest authentication
  technologies with OpenID
Finally a win-win solution?
Almost there ...
Anonymity

• Users want anonymity
 • At least partial
• Remaining anonymous is a privilege
 • Spam, death threats etc must be
    punishable
The story
• Riots in Tallinn that leaded to cyber-attacks
• Petition letter to force a politician resign
  collected almost 100k names and e-mails
  • Including “George Bush”, “Rex the dog”
    and “!@#$ you”
• Result: nothing.
OpenID 2.0

• New feature: identity selection
 • You get to choose the OpenID sent to
    the website
• Choose between open.id.ee/martin.paljak ...
or
http://open.id.ee/5a0eaba4bb1fb68a39ddec57c15dbff1543d6f461b2203f74
Anonymous OpenID

• No (zero) personal data in the URL
• One anonymous URL per user per website
 • The “account” problem mitigated
• Still a guarantee that the user behind the
  OpenID is a real person
Extra Features

• Identity theft virtually impossible
 • re-claiming is painless
• Some registration data is always true
 • If user chooses to send it
 • “Why do they need it?”
Why do I Care?

• I’m a user too!
• We export the ID technology of Estonia
• Online privacy issues are being discussed
• Verified anonymity contributes to
  e-democracy
Why you should care!
• Implement OpenID - get access to our
  technology
• Other EU countries deploying ID-cards
 • Similar problems
 • Similar solutions
• OpenID is designed for interoperability
 • ID-cards are in theory
Thanks!
                     Questions?
                      http://openid.net/
              https://open.id.ee/about/english




 David Recordon                               Martin Paljak
davidrecordon.com                          http://ideelabor.ee
david@sixapart.com                         martin@ideelabor.ee

Weitere ähnliche Inhalte

Was ist angesagt?

NEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_FinalNEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_Finalfinance37
 
Domagoj Margetic
Domagoj MargeticDomagoj Margetic
Domagoj MargeticEmil Čić
 
2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid PortlandGriffith Honda
 
Using Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin BrekkeUsing Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin BrekkeJohn Dorner
 
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012CHISWICK ROOMS HOTEL
 
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.CHISWICK ROOMS HOTEL
 
2010 Honda Insight Hybrid
2010 Honda Insight Hybrid2010 Honda Insight Hybrid
2010 Honda Insight HybridBell Honda
 
Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Monika Lehnhardt
 
Neonatal hearing screening – a short overview of the situation in western eur...
Neonatal hearing screening – a short overview of the situation in western eur...Neonatal hearing screening – a short overview of the situation in western eur...
Neonatal hearing screening – a short overview of the situation in western eur...MonikaLehnhardt
 
VMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilityVMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilitySal Lopez
 
Dental amalgam
Dental amalgamDental amalgam
Dental amalgamZirgi Rana
 
Housing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in SloveniaHousing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in SloveniaFEANTSA
 
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011Massimo Menichinelli
 

Was ist angesagt? (19)

NEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_FinalNEM_Diggers_and_Dealers_Final
NEM_Diggers_and_Dealers_Final
 
Domagoj Margetic
Domagoj MargeticDomagoj Margetic
Domagoj Margetic
 
Sales insitute of ireland november 2010
Sales insitute of ireland november 2010Sales insitute of ireland november 2010
Sales insitute of ireland november 2010
 
U r not alone press
U r not alone   pressU r not alone   press
U r not alone press
 
2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland2010 Honda Insight Hybrid Portland
2010 Honda Insight Hybrid Portland
 
Using Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin BrekkeUsing Clickers For Instant Feedback Robin Brekke
Using Clickers For Instant Feedback Robin Brekke
 
Sse wumart group5b_2011
Sse wumart group5b_2011Sse wumart group5b_2011
Sse wumart group5b_2011
 
Ed Burns @ FOWA 08
Ed Burns @ FOWA 08Ed Burns @ FOWA 08
Ed Burns @ FOWA 08
 
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
Stay with CHISWICK ROOMS HOTEL and enjoy London happenings in dec 2012
 
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
Stay with chiswick rooms hotel and enjoy london happenings in dec 2012.
 
2010 Honda Insight Hybrid
2010 Honda Insight Hybrid2010 Honda Insight Hybrid
2010 Honda Insight Hybrid
 
Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...Neonatal hearing screening - a short overview of the situation in Western Eur...
Neonatal hearing screening - a short overview of the situation in Western Eur...
 
Neonatal hearing screening – a short overview of the situation in western eur...
Neonatal hearing screening – a short overview of the situation in western eur...Neonatal hearing screening – a short overview of the situation in western eur...
Neonatal hearing screening – a short overview of the situation in western eur...
 
VMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload MobilityVMware vCloud Director and Nexus 1000V / Workload Mobility
VMware vCloud Director and Nexus 1000V / Workload Mobility
 
300
300300
300
 
Dental amalgam
Dental amalgamDental amalgam
Dental amalgam
 
Housing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in SloveniaHousing Exclusion of the Elderly in Slovenia
Housing Exclusion of the Elderly in Slovenia
 
Dave Folio
Dave FolioDave Folio
Dave Folio
 
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
On Open Business @ EDUfashion conference - Ljubljana 02/06/2011
 

Andere mochten auch

Stateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWTStateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWTMobiliya
 
JWT Authentication with AngularJS
JWT Authentication with AngularJSJWT Authentication with AngularJS
JWT Authentication with AngularJSrobertjd
 
OpenID Bootcamp Tutorial
OpenID Bootcamp TutorialOpenID Bootcamp Tutorial
OpenID Bootcamp TutorialDavid Recordon
 
OpenID Authentication by example
OpenID Authentication by exampleOpenID Authentication by example
OpenID Authentication by exampleChris Vertonghen
 
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry BuzdinModern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry BuzdinJava User Group Latvia
 
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016Matt Raible
 
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015Alvaro Sanchez-Mariscal
 
SAML / OpenID Connect / OAuth / SCIM 技術解説 - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM 技術解説  - ID&IT 2014 #idit2014SAML / OpenID Connect / OAuth / SCIM 技術解説  - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM 技術解説 - ID&IT 2014 #idit2014Nov Matake
 
Stateless authentication for microservices
Stateless authentication for microservicesStateless authentication for microservices
Stateless authentication for microservicesAlvaro Sanchez-Mariscal
 
Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Simon Willison
 
OpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee WebinarOpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee WebinarMatterport
 

Andere mochten auch (13)

JWT Agile Framework
JWT Agile FrameworkJWT Agile Framework
JWT Agile Framework
 
Stateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWTStateless Auth using OAUTH2 & JWT
Stateless Auth using OAUTH2 & JWT
 
Understanding OpenID
Understanding OpenIDUnderstanding OpenID
Understanding OpenID
 
JWT Authentication with AngularJS
JWT Authentication with AngularJSJWT Authentication with AngularJS
JWT Authentication with AngularJS
 
OpenID Bootcamp Tutorial
OpenID Bootcamp TutorialOpenID Bootcamp Tutorial
OpenID Bootcamp Tutorial
 
OpenID Authentication by example
OpenID Authentication by exampleOpenID Authentication by example
OpenID Authentication by example
 
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry BuzdinModern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
Modern Security with OAuth 2.0 and JWT and Spring by Dmitry Buzdin
 
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
Microservices for the Masses with Spring Boot, JHipster, and JWT - Rich Web 2016
 
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015Stateless authentication with OAuth 2 and JWT - JavaZone 2015
Stateless authentication with OAuth 2 and JWT - JavaZone 2015
 
SAML / OpenID Connect / OAuth / SCIM 技術解説 - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM 技術解説  - ID&IT 2014 #idit2014SAML / OpenID Connect / OAuth / SCIM 技術解説  - ID&IT 2014 #idit2014
SAML / OpenID Connect / OAuth / SCIM 技術解説 - ID&IT 2014 #idit2014
 
Stateless authentication for microservices
Stateless authentication for microservicesStateless authentication for microservices
Stateless authentication for microservices
 
Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)Implications Of OpenID (Google Tech Talk)
Implications Of OpenID (Google Tech Talk)
 
OpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee WebinarOpenID Foundation Retail Advisory Committee Webinar
OpenID Foundation Retail Advisory Committee Webinar
 

Ähnlich wie Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0

OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007David Recordon
 
Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.earningreport earningreport
 
Recruitment And Social Media
Recruitment And Social MediaRecruitment And Social Media
Recruitment And Social MediaTWO Social
 
6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box PresentationRalphYoung
 
6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute6.09 Develop A Plan And Execute
6.09 Develop A Plan And ExecuteRalphYoung
 
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...Joanna Hicks
 
Airlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingAirlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingSimpliFlying
 
High stakes world of Mobile Payments
High stakes world of Mobile PaymentsHigh stakes world of Mobile Payments
High stakes world of Mobile PaymentstxtNation
 
High stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographicHigh stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographicTyson Hackwood
 
Open Source Success: jQuery
Open Source Success: jQueryOpen Source Success: jQuery
Open Source Success: jQueryjeresig
 
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...SimpliFlying
 
Design4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar SangiorgiDesign4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar SangiorgiMarco Ajovalasit
 
Social Media Strategies For Business
Social Media Strategies For BusinessSocial Media Strategies For Business
Social Media Strategies For BusinessTWO Social
 
Fringe eu procurement - sara piller
Fringe   eu procurement - sara pillerFringe   eu procurement - sara piller
Fringe eu procurement - sara pillerlgconf11
 
Lobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainLobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainEmad Hamed
 

Ähnlich wie Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0 (20)

Implementing OpenID
Implementing OpenIDImplementing OpenID
Implementing OpenID
 
OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007OpenID Overview - Seoul July 2007
OpenID Overview - Seoul July 2007
 
Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.Q1 2009 Earning Report of Heidrick & Struggles Inc.
Q1 2009 Earning Report of Heidrick & Struggles Inc.
 
Recruitment And Social Media
Recruitment And Social MediaRecruitment And Social Media
Recruitment And Social Media
 
6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation6.09 The Job Search Tool Box Presentation
6.09 The Job Search Tool Box Presentation
 
6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute6.09 Develop A Plan And Execute
6.09 Develop A Plan And Execute
 
Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...Idenitifying the fit for perennial forage options in a crop-livestock system:...
Idenitifying the fit for perennial forage options in a crop-livestock system:...
 
Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010Program - Frontiers of Interaction 2010
Program - Frontiers of Interaction 2010
 
Airlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for brandingAirlines 2.0 - How airlines can use Web 2.0 for branding
Airlines 2.0 - How airlines can use Web 2.0 for branding
 
Person schedule
Person schedulePerson schedule
Person schedule
 
Person schedule
Person schedulePerson schedule
Person schedule
 
Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967Spiral Of Knowledge - 1967
Spiral Of Knowledge - 1967
 
High stakes world of Mobile Payments
High stakes world of Mobile PaymentsHigh stakes world of Mobile Payments
High stakes world of Mobile Payments
 
High stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographicHigh stakes-world-of-mobile-payments-infographic
High stakes-world-of-mobile-payments-infographic
 
Open Source Success: jQuery
Open Source Success: jQueryOpen Source Success: jQuery
Open Source Success: jQuery
 
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
Aviation Outlook Middle East Keynote - Airlines 2.0: Using technology for inn...
 
Design4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar SangiorgiDesign4 services HCDI Seminar Sangiorgi
Design4 services HCDI Seminar Sangiorgi
 
Social Media Strategies For Business
Social Media Strategies For BusinessSocial Media Strategies For Business
Social Media Strategies For Business
 
Fringe eu procurement - sara piller
Fringe   eu procurement - sara pillerFringe   eu procurement - sara piller
Fringe eu procurement - sara piller
 
Lobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gainLobna eltoony.hypoglycemia and weight gain
Lobna eltoony.hypoglycemia and weight gain
 

Mehr von David Recordon

Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009David Recordon
 
A Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity WorkshopA Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity WorkshopDavid Recordon
 
OpenID Introduction - IIW2008b
OpenID Introduction - IIW2008bOpenID Introduction - IIW2008b
OpenID Introduction - IIW2008bDavid Recordon
 
Learning from Apache to create Open Specifications
Learning from Apache to create Open SpecificationsLearning from Apache to create Open Specifications
Learning from Apache to create Open SpecificationsDavid Recordon
 
"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going OpenDavid Recordon
 
Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008David Recordon
 
Building Open Platforms
Building Open PlatformsBuilding Open Platforms
Building Open PlatformsDavid Recordon
 
Open Platforms in Web 2.0
Open Platforms in Web 2.0Open Platforms in Web 2.0
Open Platforms in Web 2.0David Recordon
 
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social GraphWeb 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social GraphDavid Recordon
 

Mehr von David Recordon (11)

Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009Decentralized Social Networks - WebVisions 2009
Decentralized Social Networks - WebVisions 2009
 
A Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity WorkshopA Social Web Intro at the Internet Identity Workshop
A Social Web Intro at the Internet Identity Workshop
 
Anatomy Of "Connect"
Anatomy Of "Connect"Anatomy Of "Connect"
Anatomy Of "Connect"
 
OpenID Introduction - IIW2008b
OpenID Introduction - IIW2008bOpenID Introduction - IIW2008b
OpenID Introduction - IIW2008b
 
Learning from Apache to create Open Specifications
Learning from Apache to create Open SpecificationsLearning from Apache to create Open Specifications
Learning from Apache to create Open Specifications
 
"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open"Blowing Up" Social Networks by Going Open
"Blowing Up" Social Networks by Going Open
 
Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008Supporting The Open Web - OSCON 2008
Supporting The Open Web - OSCON 2008
 
Building Open Platforms
Building Open PlatformsBuilding Open Platforms
Building Open Platforms
 
Open Platforms in Web 2.0
Open Platforms in Web 2.0Open Platforms in Web 2.0
Open Platforms in Web 2.0
 
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social GraphWeb 2.0 Expo Berlin: Open Platforms and the Social Graph
Web 2.0 Expo Berlin: Open Platforms and the Social Graph
 
ScubaBots - Ignite Sf
ScubaBots - Ignite SfScubaBots - Ignite Sf
ScubaBots - Ignite Sf
 

Kürzlich hochgeladen

Ensure the security of your HCL environment by applying the Zero Trust princi...
Ensure the security of your HCL environment by applying the Zero Trust princi...Ensure the security of your HCL environment by applying the Zero Trust princi...
Ensure the security of your HCL environment by applying the Zero Trust princi...Roland Driesen
 
John Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfJohn Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfAmzadHosen3
 
Monthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxMonthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxAndy Lambert
 
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...Aggregage
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Centuryrwgiffor
 
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...Lviv Startup Club
 
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779Delhi Call girls
 
Grateful 7 speech thanking everyone that has helped.pdf
Grateful 7 speech thanking everyone that has helped.pdfGrateful 7 speech thanking everyone that has helped.pdf
Grateful 7 speech thanking everyone that has helped.pdfPaul Menig
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageMatteo Carbone
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangaloreamitlee9823
 
The Coffee Bean & Tea Leaf(CBTL), Business strategy case study
The Coffee Bean & Tea Leaf(CBTL), Business strategy case studyThe Coffee Bean & Tea Leaf(CBTL), Business strategy case study
The Coffee Bean & Tea Leaf(CBTL), Business strategy case studyEthan lee
 
It will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 MayIt will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 MayNZSG
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableDipal Arora
 
7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...Paul Menig
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communicationskarancommunications
 
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...Any kyc Account
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Dipal Arora
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataExhibitors Data
 

Kürzlich hochgeladen (20)

Ensure the security of your HCL environment by applying the Zero Trust princi...
Ensure the security of your HCL environment by applying the Zero Trust princi...Ensure the security of your HCL environment by applying the Zero Trust princi...
Ensure the security of your HCL environment by applying the Zero Trust princi...
 
John Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdfJohn Halpern sued for sexual assault.pdf
John Halpern sued for sexual assault.pdf
 
Monthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptxMonthly Social Media Update April 2024 pptx.pptx
Monthly Social Media Update April 2024 pptx.pptx
 
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
The Path to Product Excellence: Avoiding Common Pitfalls and Enhancing Commun...
 
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
VVVIP Call Girls In Greater Kailash ➡️ Delhi ➡️ 9999965857 🚀 No Advance 24HRS...
 
Famous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st CenturyFamous Olympic Siblings from the 21st Century
Famous Olympic Siblings from the 21st Century
 
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...
Yaroslav Rozhankivskyy: Три складові і три передумови максимальної продуктивн...
 
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
Best VIP Call Girls Noida Sector 40 Call Me: 8448380779
 
Grateful 7 speech thanking everyone that has helped.pdf
Grateful 7 speech thanking everyone that has helped.pdfGrateful 7 speech thanking everyone that has helped.pdf
Grateful 7 speech thanking everyone that has helped.pdf
 
Insurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usageInsurers' journeys to build a mastery in the IoT usage
Insurers' journeys to build a mastery in the IoT usage
 
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service BangaloreCall Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
Call Girls Hebbal Just Call 👗 7737669865 👗 Top Class Call Girl Service Bangalore
 
The Coffee Bean & Tea Leaf(CBTL), Business strategy case study
The Coffee Bean & Tea Leaf(CBTL), Business strategy case studyThe Coffee Bean & Tea Leaf(CBTL), Business strategy case study
The Coffee Bean & Tea Leaf(CBTL), Business strategy case study
 
It will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 MayIt will be International Nurses' Day on 12 May
It will be International Nurses' Day on 12 May
 
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service AvailableCall Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
Call Girls Pune Just Call 9907093804 Top Class Call Girl Service Available
 
7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...7.pdf This presentation captures many uses and the significance of the number...
7.pdf This presentation captures many uses and the significance of the number...
 
Pharma Works Profile of Karan Communications
Pharma Works Profile of Karan CommunicationsPharma Works Profile of Karan Communications
Pharma Works Profile of Karan Communications
 
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
KYC-Verified Accounts: Helping Companies Handle Challenging Regulatory Enviro...
 
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
Call Girls Navi Mumbai Just Call 9907093804 Top Class Call Girl Service Avail...
 
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pillsMifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
Mifty kit IN Salmiya (+918133066128) Abortion pills IN Salmiyah Cytotec pills
 
RSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors DataRSA Conference Exhibitor List 2024 - Exhibitors Data
RSA Conference Exhibitor List 2024 - Exhibitors Data
 

Web 2.0 Expo Berlin: OpenID Emerging from Web 2.0

  • 1. Emerging From Web 2.0 Web 2.0 Expo Berlin 2007
  • 2. quot;Its definitely time to declare quot;OpenID is a protocol made OpenID a winnerquot; for the public, by the public. TechCrunch No one owns or controls your login information:You do.quot; 37signals quot;...sees great potential for OpenID's use alongside enterprise-ready software infrastructurequot; Sun Microsystems quot;taking the world by stormquot; quot;this high profile announcement marks Tim O'Reilly the importance of single sign on identity technology to the future of the Internetquot; ReadWriteWeb
  • 3. What is OpenID? • Single sign-on for the web • Simple and light-weight (not going to replace your bank card pin) • Easy to use and deploy • Built upon proven existing technologies (DNS, HTTP, SSL/TLS, Diffie-Hellman) • Decentralized (you don't have to ask anyone permission to implement it) • Free!
  • 4. An OpenID is a URI • URLs are globally unique and ubiquitous • OpenID allows proving ownership of an URI • People already have identity at URLs via blogs, photos, MySpace, FaceBook, etc • People already describe relationships via URLs (e.g. links to my friends)
  • 6. Benefits • Reduces the number of usernames and passwords • Simplifies new account creation • Allows for lightweight accounts • Simplifies internal SSO • Enables wide-spread benefit of strong authentication • Enables decentralized reputation • Enables social network portability
  • 7. O M E How Does it Work? D
  • 8. As a Conversation Who are you? I’m davidrecordon.com Prove it!
  • 9. Discovers My Provider quot;openid.serverquot; points to my OpenID Provider
  • 11. Getting an OpenID http://openid.net/get/
  • 13. quot;This is a geek's toy, nobody will ever have an OpenID!quot;
  • 14. ~160 million OpenIDs (including every AOL user) OpenID 1.1 - Estimated from various services
  • 15.
  • 16. quot;Nobody will ever use this!quot;
  • 17. Total Relying Parties (aka places you can login with OpenID) 6,000 4,500 3,000 1,500 0 ov b ay ly '06 ar ne ov ay ly '05 ct ec r g ne p ec '07 b ct ar r st 22 Ap Ap Au Fe Se Fe Ju Ju gu O O M M M M D D Ju Ju N N p p Jan Jan Au Se Se OpenID 1.1 - As viewed by MyOpenID.com
  • 18. quot;So that's great there are so many blogs, but what about something real?quot;
  • 19.
  • 22. like any protocol...think as you implement
  • 23. the best solutions may around the browser
  • 24. MyVidoop Plugin (a password manager tied into your OpenID account add-on for Firefox)
  • 25. Sxipper (a form filler password manager with OpenID integration add-on for Firefox)
  • 26. Symantec Identity Client (OpenID form-fill, upcoming provider, and claims integration)
  • 27. VeriSign's OpenID SeatBelt (an OpenID convenience and security add-on for Firefox) works with
  • 28. IE Team has posted a job ad mentioning quot;OpenIDquot; quot;Does the idea of redefining the role of the Internet browser appeal to you? Do the terms HTTP, RSS, Microformats, and OpenID, excite you? If so, then this just might be the opportunity for you.quot;
  • 29. OpenID is great for innovation
  • 30. “So, what about OpenID 2.0?”
  • 31. OpenID 2.0 • Cleans up the 1.1 specification • Adds a few useful features • Robust extensibility • Enhanced service discovery • quot;Directed identityquot; • XRI • About six independent library implementations of final draft
  • 32. “Any OpenID in the enterprise?”
  • 33. Offer all employees OpenIDs; open source Enterprise SSO and identity manager with LDAP and OpenID Internal SSO for bug trackers and wikis OpenID Provider with plans to ship in enterprise products this year Shared OpenID Provider for their businesses and partners Project management, CRM, and billing for small businesses
  • 35. I come from E-stonia • A small EU country with ~1.3M inhabitants • Access to internet considered a “civil right” • Had first parliament elections over the internet in 2005 • 80%+ of the population have a digital ID- card
  • 37. ID-card is a... • Photo ID like any other • We are interested in Electronic ID: • The chip contains your name, age, gender and social security number • Two PIN codes: one for authentication and one for signing documents
  • 38. Authentication • Is about proving who you are. • Available to any service that wants to use it • Online banking • Filing your taxes • Various other services
  • 39.
  • 40.
  • 41.
  • 42.
  • 43. quot;How does this happen?quot;
  • 44. Entering your PIN code is your consent to send personal data to the service
  • 46. quot;So what is the problem?quot;
  • 47. Users do not always want this. Users want control of their personal data.
  • 48. What is Identity? • Wikipedia: “the sameness of two things” • “Things” are users • Users are website visitors • “Who are you?”
  • 49. Are you the same you that signed up with us?
  • 51. Same Can be Different • Bank: Martin Paljak, the account owner • Forum: user who registered as “catluvr99” • Blog: author of the comment • http://open.id.ee/martin.paljak is Martin Paljak
  • 52. Is the OpenID you present the same as we have in our database?
  • 53. Websites really need to match identifiers, not collect your personal data.
  • 54. Solution: OpenID • id.ee => open.id.ee • OpenID service that uses ID-cards for authentication • Gives users more control over their private data • Is NOT a government enforced/controlled service
  • 55. Simplicity • One privacy policy to check • One trust decision to make • One purpose for the OpenID service • Encapsulate and protect users’ private data
  • 56. No need to sign up, it JustWorks
  • 57. ... if you have the needed hardware and software ...
  • 58.
  • 59.
  • 60.
  • 61. quot;So if everybody implements OpenID, are we all happy?quot;
  • 62. quot;What about website developers?quot;
  • 63. ID-card Sucks! • Implementing support is difficult • Technically challenging (SSL certificates and such) • Users don’t like ID-cards anyway as they are often afraid of privacy issues • Most sites don’t need so high security • So... why bother?
  • 64. I Forgot! • Mobile-ID: same stuff inside your GSM SIM card • Same technology inside ... • ... but totally different to implement ... • ... AGAIN!!!
  • 65. What is Mobile-ID? • Smaller ID-card • No hardware needed - your phone is your card reader • No need to install software to use it online - websites have it
  • 66.
  • 67.
  • 69.
  • 70. If you’re going to write new code, why not OpenID code?
  • 71. Benefits of OpenID • Only one interface to implement • And lots of expertise available globally • If website uses open.id.ee service exclusively, it has instant access to both ID-cards and Mobile-ID authentication • ... with privacy features included @ no cost
  • 72. So ... • Users get more control over their private data and OpenID provides it • Websites have a simple and easy way to integrate newest authentication technologies with OpenID
  • 73. Finally a win-win solution?
  • 75. Anonymity • Users want anonymity • At least partial • Remaining anonymous is a privilege • Spam, death threats etc must be punishable
  • 76. The story • Riots in Tallinn that leaded to cyber-attacks • Petition letter to force a politician resign collected almost 100k names and e-mails • Including “George Bush”, “Rex the dog” and “!@#$ you” • Result: nothing.
  • 77. OpenID 2.0 • New feature: identity selection • You get to choose the OpenID sent to the website • Choose between open.id.ee/martin.paljak ...
  • 79. Anonymous OpenID • No (zero) personal data in the URL • One anonymous URL per user per website • The “account” problem mitigated • Still a guarantee that the user behind the OpenID is a real person
  • 80.
  • 81.
  • 82. Extra Features • Identity theft virtually impossible • re-claiming is painless • Some registration data is always true • If user chooses to send it • “Why do they need it?”
  • 83. Why do I Care? • I’m a user too! • We export the ID technology of Estonia • Online privacy issues are being discussed • Verified anonymity contributes to e-democracy
  • 84. Why you should care! • Implement OpenID - get access to our technology • Other EU countries deploying ID-cards • Similar problems • Similar solutions • OpenID is designed for interoperability • ID-cards are in theory
  • 85. Thanks! Questions? http://openid.net/ https://open.id.ee/about/english David Recordon Martin Paljak davidrecordon.com http://ideelabor.ee david@sixapart.com martin@ideelabor.ee