Date: prev next · Thread: first prev next last
2014 Archives by date, by thread · List index

I am writing this post to inform the community I am interested in taking over
a number of Redmine issues which relate to a uniting of the present
different user systems used by each TDF service. I did some research and
came up with a solution to either use an Single Sign-on system (SSO) or use
OpenID to handle the different accounts with the ultimate aim to reduce the
burden which comes from having an additional user account (needing to
remember credentials, etc.). I thought that I would ask for the opinion of
the community to decide whether we go down the OpenID or the SSO route.
Personally, I prefer the SSO route, because of the true one account part,
but I am listing advantages and disadvantages for each approach. 

*Advantages of SSO*
- One set of user credentials to remember
- One admin interface

*Disadvantages of SSO*
- Dependence of one service to access all others
- If an account is hacked, all services will be vulnerable
- Might take longer to develop since a lot of "touching" code and research
has to be done

*Advantages of OpenID*
- Some services have out-of-the-box support
- Accounts might be used in other sites

*Disadvantages of OpenID*
- Most likely will have to depend on a library to provide OpenIDs
- Some services might still need registration after OpenID to complete the

I think there might be other advantages and disadvantages so if anyone
technical can add to the discussion, please do. I am interested in doing
this if we go the SSO way and may try to do it if we go the OpenID way. Just
to note, that by OpenID I mean providing OpenID ourselves. This topic is
just for discussion purposes so no formal decisions should be taken on this.
I will also try to talk with other persons more connected with Infra to
advice throughout the process. I think a week should be enough to decide
about this and I would then give further details about the implementation.
Of course any help is accepted, just tell me. 

View this message in context:
Sent from the Website mailing list archive at

To unsubscribe e-mail to:
Posting guidelines + more:
List archive:
All messages sent to this list will be publicly archived and cannot be deleted


Privacy Policy | Impressum (Legal Info) | Copyright information: Unless otherwise specified, all text and images on this website are licensed under the Creative Commons Attribution-Share Alike 3.0 License. This does not include the source code of LibreOffice, which is licensed under the Mozilla Public License (MPLv2). "LibreOffice" and "The Document Foundation" are registered trademarks of their corresponding registered owners or are in actual use as trademarks in one or more countries. Their respective logos and icons are also subject to international copyright laws. Use thereof is explained in our trademark policy.