Future OpenID Protocol UX enhancements
Logo/description discovery
- OpenID Providers may want to display the RP's logo and/or description on the Consent page. RPs should be able to publish metadata information about themselves via OpenID Discovery
Single Sign Out
- When a user signs out of an RP, the RP may also want to sign the user out of their OP. Unless the user is also signed out of the OP, signing out of the RP doen't prevent someone from signing back in to the RP via OpenID again.
- Does the OP need to notifiy all RPs to globally sign out the user?
Checkid_immediate enhancements (NASCAR Optimzation)
- checkid_immediate only returns a boolean, checkid_immediate could be enhanced to return
- User is signed in and has enabled automatic sign in for the RP
- User is signed in, but has not enabled automatic sign in for the RP
- The user is not signed in to the OP, but the user's browser has had an active session in the past
- The OP does not know anything about the user
Comments (0)
You don't have permission to comment on this page.