Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
willow9886
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
willow9886
9y ago
Many sites are doing identifier first authentication, incuding google. When you login to google, it prompts you for an email address first. If your email is associated with an organization that has configured Google Apps to use their OP for
32.
▲
by
willow9886
9y ago
no, but using my email adress @gluu.org, you can find the discovery endpoint because its a standard address for domains. For instance, here's Google's OP discovery endpoint: https://accounts.google.com/.well-known&
33.
▲
by
willow9886
9y ago
oops! i've been staring at the screen too long!!
34.
▲
by
willow9886
9y ago
OpenID Connect defines two important standards: Discovery [1] and Dynamic Registration [2]. All OpenID Providers publish their details at a publicly discoverable (and standard) domain: https://{hostname}/.well-known/ope
35.
▲
by
willow9886
9y ago
Nobody said it was... > OpenID has been replaced by OpenID Connect Replaced != compatible. Also, "traditional OpenID" is very ambiguous phrasing... are you referring to OpenID 1? OpenID 2? or OpenID Connect?
36.
▲
by
willow9886
9y ago
It's a bit strange that nowhere in the post does SO mention OpenID Connect... OpenID 1 & 2 have been dead and deprecated for some time...Google deprecated support in 2016. All domains should move to supporting the latest iteration,
37.
▲
by
willow9886
9y ago
No, OpenID has been replaced by OpenID Connect, a profile of OAuth 2.0 written to specifically address user sign in. OAuth 2.0 is an authorization framework, not an authentication protocol. OAuth 2.0 can be used for a lot of cool tasks, one
38.
▲
by
willow9886
9y ago
> I don't get why OpenID was introduced in the first place then. Because the Internet needs standards to work. If all domains implement authentication differently, we do not have an interoperable network. As is customary, standards
39.
▲
Here’s where Aaron Franklin buys his brisket
(statesman.com)
1 points
by
willow9886
9y ago
|
0 comments
40.
▲
by
willow9886
9y ago
Don't forget they're also monitoring people who interact with you (a.k.a. the user of services). When I walk into a friends home who has an Alexa, or a Ring system, it is now tracking me too. The purchaser consented, but I never c
41.
▲
by
willow9886
9y ago
nice work, Dropbox.
42.
▲
How to *securely* use SMS two-factor authentication (2FA)
(gluu.org)
3 points
by
willow9886
9y ago
|
0 comments
43.
▲
by
willow9886
9y ago
Regarding Q1: > Under state law, access to voter data is restricted; however, journalists, political campaigns, and academic researchers can acquire the data for certain purposes. I guess the question is, what are the "certain purpo
44.
▲
by
willow9886
9y ago
I had just posted this GDPR guide with steps to implement the mandatory data protection: https://news.ycombinator.com/item?id=16310501
45.
▲
by
willow9886
9y ago
This is just one line in the article--it's meant to grab the readers attention. The rest of the article provides real substance. Silly to claim the who article is nonsense based on one line.
46.
▲
Step-by-step GDPR guide for managers
(melv1n.com)
2 points
by
willow9886
9y ago
|
0 comments
47.
▲
Why we implemented a revenue-based pricing model
(gluu.org)
2 points
by
willow9886
9y ago
|
0 comments
48.
▲
by
willow9886
9y ago
The D&B numbers would be from the last fully reported year, i.e. 2016. They typically have pretty accurate data. My point was not to imply this is a bad deal for any of the involved parties, but simply to add a data point to the discuss
49.
▲
by
willow9886
9y ago
A quick D&B search on CoreOS, Inc. shows revenues of ~$550,000 [1], which means at $250m acquisition price, RH paid ~454X revenues..! [1] http://www.hoovers.com/company-information/company-search.ht...
50.
▲
by
willow9886
9y ago
Finally! That logo was totally offensive, and I'm not even Native American!
51.
▲
A free online marketplace. No platform fees. No restrictions. Earn Bitcoin
(openbazaar.org)
1 points
by
willow9886
9y ago
|
0 comments
52.
▲
by
willow9886
9y ago
> They’ve been fumbling left and right trying to figure out how to make Medium sustainable, and I’m just not convinced they’ll always do what’s best for us and our business. This is the risk of becoming dependent on any outside service o
53.
▲
by
willow9886
9y ago
Agreed. Where is Google in China? FB? YouTube? Twitter? GitHub? ... the list goes on and on. This decision does affect US consumers, but not in a significant way...we still have access to cheap smartphones. Chinese companies can't have
54.
▲
by
willow9886
9y ago
SAML and SCIM achieve two different use cases. SCIM is specifically used for identity management (hence the name: System for Cross-domain Identity Management, or "SCIM"), whereas SAML is used to securely pass user information from
55.
▲
Duo Security raises $70M at a valuation north of $1B
(techcrunch.com)
2 points
by
willow9886
9y ago
|
0 comments
56.
▲
by
willow9886
9y ago
More consolidation in the age of corporate monopoly... I'm sure a nice exit for the founders and their investors.
57.
▲
by
willow9886
9y ago
+1
58.
▲
by
willow9886
9y ago
The issue with Keycloak is that it is never patched. > Think of Keycloak as bleeding edge with quick releases, unpatched, and limited community support. [1] Seems fine for research, but using it in production seems risky. [1] http:/
59.
▲
by
willow9886
9y ago
It includes an LDAP server to persist all the data generated by the service. You can integrate your own backend LDAP server using the cache refresh feature: https://gluu.org/docs/ce/admin-guide/user-management
60.
▲
by
willow9886
9y ago
Gluu Server supports U2F out of the box: https://gluu.org/docs/ce/authn-guide/U2F/ Installation instructions: https://gluu.org/docs/ce/installation-guide/
More ›