Slideshow transcript
Slide 1: OpenID An Executive Briefing David Leip, STSM ibm.com Chief Innovation Dude & Agile Methods Advocate January 2008 This work is licensed under the Creative Commons Attribution-ShareAlike 3.0 License. To view a copy of this license, visit http://creativecommons.org/licenses/by-sa/3.0/ or send a letter to Creative Commons, 543 Howard Street, 5th Floor, San Francisco, California, 94105, USA. 1 Global Web Strategy & Enablement, ibm.com
Slide 2: What is OpenID? OpenID is a open decentralized mechanism for SSO (Single Sign-On) 2 Global Web Strategy & Enablement
Slide 3: Why OpenID for users? • Users have too many userids (ex. smith, jsmith, johnsmith, john@smith.com, smith@acme- corp.com) • Users have too many passwords • Don’t trust many sites with my login • Users profile is likely distributed across the web. 3 Global Web Strategy & Enablement
Slide 4: What’s an OpenID look like? • http://Leip.livejournal.com/ • http://openid.aol.com/Leip • http://Leip.openid.com/ • http://Leip.ca/ 4 Global Web Strategy & Enablement
Slide 5: How Does it Work? Acme.com 1. David asks to log in to acme.com by giving his OpenID ex: http://leip.myopenid.com/ David Leip 5 Global Web Strategy & Enablement
Slide 6: How Does it Work? myopenid.com 2. Acme.com asks the OpenID provider (myopenid.com) to confirm that this visitor is David (the owner of this OpenID.) Acme.com David Leip 6 Global Web Strategy & Enablement
Slide 7: How Does it Work? myopenid.com 3. The OpenID provider (myopenid.com) will likely have some form of exchange with the visitor (or David), typically asking asking for a id/password, or a certificate. Acme.com David Leip 7 Global Web Strategy & Enablement
Slide 8: How Does it Work? myopenid.com 4. The OpenID provider confirms that they are satisfied, that the visitor is David. Acme.com David Leip 8 Global Web Strategy & Enablement
Slide 9: Why should we care? • More and more customers are looking for it • Gaining lots of momentum. • Thousands of sites • AOL, Some Google properties, now Yahoo! • OpenID 2.0 includes the ability to carry profile data. • Could reduce our vulnerability to identity theft attacks, as we don’t need to store as much. • Great mechanism for maintaining employee ACLs in outsourcing situations (Ex. An OpenID from a your company could authenticate a person to a HR benefits site run by a third party.) 9 Global Web Strategy & Enablement
Slide 10: Further Information • David Leip http://www.Leip.ca This work is licensed under the Creative Commons Attribution-ShareAlike 3.0 License. To view a copy of this license, visit http://creativecommons.org/licenses/by-sa/3.0/ or send a letter to Creative Commons, 543 Howard Street, 5th Floor, San Francisco, California, 94105, USA. 10 Global Web Strategy & Enablement





Add a comment on Slide 1
If you have a SlideShare account, login to comment; else you can comment as a guest- Favorites & Groups
Showing 1-50 of 11 (more)