IdentitySelector

Revision 6 as of 2006-11-05 03:39:28

Clear message

Summary

Identity metasystems are finally beginning to mature, based on growing support for "Laws of Identity" (see reference below or [http://www.identityblog.com/?page_id=352]) and frustration with the problems of userid/password authentication.

Users will want OS support for securely selecting identities to use with web services. One promising leader is OSIS - Open Source Identity Selector, which intends to be at least as functional, and fully compatible, with Microsoft's CardSpace (formerly known as InfoCard) identity selector that will be shipped with Windows Vista.

To guard against phishing, the identity selection should take place in a protected subsystem (similar to the login screen). The user should also get a clear and unmistakable signal that she is indeed talking with this protected subsystem and not something that just looks like one provided by a phisherman.

References

For more information about CardSpace (nee InfoCard), a real good place to start is [http://www.identityblog.com] (documents on left side).