On Wed, 2010-10-20 at 21:02 +0000, Martin Spott wrote:
> Curtis Olson wrote:
> 
> > Would it be bad if a user had a choice between the open free for all we
> > currently have and a more constrained and managed system (that someone has
> > taken the time to build and continues to manage.)
> 
> No, offering multiple options to choose from is certainly not a bad
> idea.
> 
> Whenever/whatever people are going to do about adding authentication
> support to MP servers, if they'd consider adding an interface which is
> capable of talking to an LDAP directory service (inetOrgPerson LDAP
> Object Class would be minimum requirement), then I'd offer to install
> and maintain the _technical_ part of the authentication backend (but
> I'll most certainly leave the organizational role to someone else  ;-)
> 
> Cheers,
>       Martin.

While we are talking about Authentication, I'd really like to see a
federated authentication mechanism such as SAML or OpenID. Having direct
access to an LDAP server just feels like it a bad idea in the long term,
either by scalability/capacity or by opening up access rights.

Federated authentication systems also come with self registration,
password reset, group management and other identity management
functions.

By using a federated authentication mechanism, it means the collection
of web sites we have would all have a single username/password, and it
would give us single-signon capabilities.

OpenID means we would could defer authentication to Google, Microsoft,
Yahoo and many other providers, and so we remove the scalability and
management issues with authentication. 

Using something like SAML would mean we would be our own authentication
provider, it is a slightly more managed federation of trust, we specify
who is in our federation and we run and manage that configuration.


Scott.



------------------------------------------------------------------------------
Nokia and AT&T present the 2010 Calling All Innovators-North America contest
Create new apps & games for the Nokia N8 for consumers in  U.S. and Canada
$10 million total in prizes - $4M cash, 500 devices, nearly $6M in marketing
Develop with Nokia Qt SDK, Web Runtime, or Java and Publish to Ovi Store 
http://p.sf.net/sfu/nokia-dev2dev
_______________________________________________
Flightgear-devel mailing list
Flightgear-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/flightgear-devel

Reply via email to