WASForum Conference 2008 ã§ã® OpenID ã®ã»ãã¥ãªãã£ã«ã¤ãã¦ã®ã¹ã©ã¤ããå ¬éãã¾ã
å¾ã«ãå ã«ãã»ãã¥ãªãã£ãã¡ã¤ã³ãã¼ãã®éãã§ã話ããäºãç¡ããã㪠id:ZIGOROu ã§ããä»ã®ã¹ãã¼ã«ãå ¨å¡ã¹ã¼ãã§æ¥ãä¸ãä¸äººç§æã§æ¥ãã¨è¨ãç·å¼µæã®ç¡ã*1ã§ããããå®éã¯æ¿ããç·å¼µãã¦ã¾ããï½
ã«ã¦è¬æ¼ããã¹ã©ã¤ããå ¬éãã¾ãã
- The Security of OpenID Authentication 2.0 (PDF ãã¡ã¤ã«)
話ã®å 容ã§ããã
- OpenID ãããã³ã«ã®æ¦è¦
- OpenID ã®ã»ãã¥ãªãã£
- discovery
- association
- RP ã®è©ç§°ã¨ return_to, realm
- nonce ã®ç¢ºèª
- Identifier åå©ç¨åé¡
- Reputation ã«ã¤ãã¦ã®ç§æ
ã£ã¦æãã®ã話ããã¾ããã
ã¹ã©ã¤ãä½ã£ã¦ã¿ã¦æã£ãäº
- çµæ§ãå½å ã® OP ã®å®è£ ç¶æ³ã«åé¡ãããã¨æã£ã
- Security ã«é¢ãã¦ã®ãããã¯ã¯ãã£ã¨éããã¹ã
ããã¨ããããã¤ãã³ãã§æ¯åãããã³ã«ã®èª¬æãããããå¾ãªãã®ãåé¡ã ã¨æãã¾ããã
ãããã³ã«ã®æ¦è¦ããããã¨ã³ã¸ãã¢ãªã誰ã§ãç¥ã£ã¦ãããããã®èªç¥åº¦ãç¡ãã¨ã次ã®ã¹ãããã«é²ã¾ãªãã®ããã¨æãã¾ããã
é«æ¨å çããã®è³ªå
- Q1. å½å ã®å®è£ ã¯å®å ¨ãï¼
- Q2. æ®åã¨è¨ã観ç¹ã§ã¯ã©ãï¼
ã¨ãã ã£ãããªãå½å ã®å®è£ ã¯ãã£ãè¨ã£ãã¨ããã§ããå°ãã©ãã«ãããªãã¨ãããªãæ°ã¯ãããã ãã©ããã以åã« RP ãå¢ããªãã¨å ¨ä½çãªã¢ããã¼ã·ã§ã³ã¯ä¸ãããã§ããã
æ®åã£ã¦æå³ã ã¨è²ããªå·¥å¤«( OP Identifier ãå
¥ããã°ããã¨ã )ã¯ãããã ãã©ãããã§ãä¸è¬äººã¸ã®æ®åã¯ç¸å½é£ããã®ããªã
ãã£ã±ãæºå¸¯ã§æ®åããã¨ãã ã¨ããããããªãã®ããªãDoCoMoãããau ãããSoftBank ããã®ä¸ã®äººããã®ãé£çµ¡ãå¼ãç¶ããå¾
ã¡ãã¦ã¾ãï¼ã
ä»ã«ãè²ã
質åãã£ããã§ãããã©ã観ã¦ãç·å¼µãã¦ã¦ä¸ã®ç©ºã ã£ãã®ã§è¦ãã¦ã¾ããï¼ï¼
æ§ã室ã§é«æ¨å
çã«ããã«ãã°ã¢ã¦ãåºæ¥ãªãã®ã¼ã£ã¦è¨ããã¾ãããåºæ¥ã¾ããã
ãã¼ãºã¯ããã¿ããã§ãããã
RP é§åã§ã®ãã°ã¢ã¦ãã OP ã«ãé©ç¨ã£ã¦ã®ãããå®ç¾ããã¨ããã°ãIndirect Communication ã§ãããã§ãããã
ã¤ã¡ã¼ã¸ã¨ãã¦ã¯ã©ãããã® RP ãããã°ã¢ã¦ãè¦æ±ãã£ããã©ããã°ã¢ã¦ãããï¼ã¿ãããªç»é¢ãåºãæããã
ã¨ãã訳ã§
ç©åãé å¼µã£ã¦ä½ã£ãã¹ã©ã¤ããªãã§çããæ¯éèªãã§ã¿ã¦ãã ãã¼ãã
æå¾ã«ãªãã¾ãããããã®ãããªæ©ä¼ãä¸ãã¦ä¸ããã¾ãã高木先生ã«æ¹ãã¦æè¬ã§ãããããã¨ããããã¾ããã
*1:ã¡ãªã¿ã«ä»æ¥ã¹ã¼ãã§æ¥ãªãã£ãã®ã¯ id:kazuhooku ããã«ããããããããããé¨åã¯ãã©ã¼ãã«ã§ã¯ãªãããç§æã§å ¨ç¶ OK ã§ãããã¨è¨ãããããã¨è¨ãã®ã¨ãããããã¹ã¼ãã¯å ¨é¨å®å®¶ã«ããã¨è¨ããã¡ã£ã·ãããã§ãã