Re: [dix] Re: [Ietf-http-auth] New draft on anti-phishing requirements
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [dix] Re: [Ietf-http-auth] New draft on anti-phishing requirements



>>>>> "Eric" == Eric Rescorla <ekr at networkresonance.com> writes:

    >>  I don't believe that my requirements would require that the
    >> relying party talk to the identity provider.

How do you propose to protect my privacy in this scenario?  I do not
want the same credentials of mine revealed when I log in to
"shame-your-boss.com" as when I log in to my sourceforge account, but
I would like to avoid having to remember multitudes of different
usernames and passwords for every web site I visit, as well as enjoy
phishing defences... 

Kind Regards,
Chris Drake.


_______________________________________________
dix mailing list
dix at ietf.org
https://www1.ietf.org/mailman/listinfo/dix




Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.