[haiku-depot-web] Re: User Authentication

  • From: Richie Nyhus <richienyhus@xxxxxxxxx>
  • To: haiku-depot-web@xxxxxxxxxxxxx
  • Date: Wed, 3 Sep 2014 10:19:11 +1200

> I had considered OpenID as a mechanism to implement SSO, but this won't
(easily) work for non-web systems and so might be a bit limiting.

Isn't that only with OpenID 1.0 & 2.0 and has changed with the new OIDC
(OpenID Connect 1.0) standard released this year?

> I had not seen "Crowd" product before, but I'm not _totally_ sure I
understand what benefit it would bring us in our circumstances.  It appears
there is an admin GUI which is of benefit, but otherwise it seems that one
could just as easily talk directly to LDAP if that is ultimately the
repository for the authentication data in our case?  Have you deployed this
elsewhere and can explain the benefits?

I haven't deployed Crowd, but apart from the admin and end user GUI; there
is an Integration API; a single sign-on serivce; the code is modifiable
under a "Shared licence" with admins; setting which can allow users to use
their account as an OpenID 2.0 login allowing single sign on with other
websites and manages the use of multiple directories with duplicate users (
finally connecting our trac, Drupal, bitbucket etc user accounts together).

Regards,
Richard.

Other related posts: