Linked by Eugenia Loli-Queru on Fri 17th Aug 2007 02:22 UTC, submitted by randommsdev
Privacy, Security, Encryption Microsoft has announced the release of Windows Live ID Web Authentication. This means that WLID (formerly known as Passport) is now opened to third party websites to use as their authentication system. Any Windows Live user can potentially log in to a website that implements Web Authentication. Interestingly sample implementations are available in the Ruby, Python, Perl, and PHP open source languages amongst others -- tested on openSUSE 10.2 but expected to work on any platform that supports these languages. More details are available in the SDK documentation.
Thread beginning with comment 264326
To read all comments associated with this story, please click here.
Nice, and not so nice
by hjuringen on Sat 18th Aug 2007 18:00 UTC
hjuringen
Member since:
2007-08-18

Nice, so now if I use this for access to a system for my company, and forces everyone to use this. That could be a good thing, I only have to control the email-addresses for access, never passwords and that stuff. Great.

And if I log every username and password for debugging, I suddenly have access to 200+ Hotmail accounts. I also have access to every other service that uses this auth, if I only know which ones.

The last one is a really good reason for not using this, and I am not bashing Microsoft for this.