000000255 001__ 255
000000255 005__ 20130522141948.0
000000255 037__ $$aLERSSE-PRESENTATION-2011-001
000000255 100__ $$aSan-Tsai Sun
000000255 245__ $$aIs OpenID too Open? Technical, Business, and Human Issues That Get in the Way of OpenID and Ways of Addressing Them
000000255 260__ $$c2011-02-28
000000255 300__ $$a57
000000255 520__ $$aThe web is essential for business and personal activities well beyond information retrieval, such online banking, financial transactions, and payment authorization, but reliable user authentication remains a challenge.  OpenID is a mainstream Web single sign-on (SSO) solution intended for Internet-scale adoption. There are currently over one billion OpenID-enabled user accounts provided by major content-hosting and service providers (CSPs), e.g., Yahoo!, Google, Facebook, but only a few relying parties that allow users to use their OpenID credentials for SSO. Why is that? 

This talk will overview OpenID, and then discuss weaknesses of (1) the protocol and its implementations, (2) the business model behind it, and (3) the user interface. It will conclude with a discussion of a proposal for addressing some of OpenID issues.
000000255 6531_ $$aOpenID, Web Single Sign-On, issnet
000000255 700__ $$aKonstantin Beznosov
000000255 8560_ $$fsantsais@ece.ubc.ca
000000255 8564_ $$uhttp://lersse-dl.ece.ubc.ca/record/255/files/255.pdf$$yTransfer from CDS 0.99.7
000000255 909C4 $$pSan-Tsai Sun and Konstantin Beznosov, "Is OpenID too Open? Technical, Business, and Human Issues That Get in the Way of OpenID and Ways of Addressing Them," presented at Eurecom, February 24, 2011. 57 pages.
000000255 980__ $$aPRESENTATION