W3C home > Mailing lists > Public > whatwg@whatwg.org > November 2008

[whatwg] Solving the login/logout problem in HTML

From: Ian Hickson <ian@hixie.ch>
Date: Wed, 26 Nov 2008 21:42:56 +0000 (UTC)
Message-ID: <Pine.LNX.4.62.0811262141341.17401@hixie.dreamhostps.com>
On Wed, 26 Nov 2008, Jonas Sicking wrote:
> As I said at the F2F meeting in France, I don't think this is the right 
> way to go. I think moving away from passwords and HTML logins are 
> absolutely necessary.

I agree.

> There are much better identity based authentication schemes out there. 
> Many do have problems, but these problems can be addressed.

Let's address them. I don't know how to do so.

> I'd much rather find a identity based solution that significantly can 
> improve the current, really bad, situation regarding authentication.

Well, given Philip`'s description of the security problem, and the 
observation that it needs to be changed in a way that decouples it from 
HTML, I'll remove the section soon.

If anyone wants to edit it, please, take the text and run with it.

Ian Hickson               U+1047E                )\._.,--....,'``.    fL
http://ln.hixie.ch/       U+263A                /,   _.. \   _\  ;`._ ,.
Things that are impossible just take longer.   `._.-(,_..'--(,_..'`-.;.'
Received on Wednesday, 26 November 2008 13:42:56 UTC

This archive was generated by hypermail 2.4.0 : Wednesday, 22 January 2020 16:59:07 UTC