What is the most secure implementation of OpenID technology?
Is there someone out there who knows enough about security, cryptography and OpenID specifications? No rumors, just facts.
I would like to know all about insecurities of network communication process between OpenID provider and OpenID-enabled site during:
and what should we be aware of.
Yeah, SAML is good. It has strong encryption between two endpoints. SAML 2.0 has a good binding protocol for messaging through HTTP or SOAP. It also covers identity assertions, so you can better authenticate that the user is who they say they are.
We use SAML.
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With