Another Distributed Password System

Max Kanat-Alexander mkanat at bugzilla.org
Thu May 19 17:59:30 PDT 2005


On Thu, 2005-05-19 at 17:48 -0700, brian at suda.co.uk wrote:
> It would then proceed to hash my plain-text password. If that sha1
> (plain-text) = XML li node value, then i have proven something only i
> would know.

	It would also then know your plain-text password. And it would require
you to type in a password, which I pretty much thought was against the
idea of a distributed identity system in the first place. That's more
like a Single-Sign-On solution.

	-Max
-- 
http://www.everythingsolved.com/
Everything Solved: Experts at Bugzilla... and everything else, too.



More information about the yadis mailing list