Barney's Blog

Blog archive

Single Sign-On Nirvana

How many Web sites or services have you signed up for, only to forget your user name or password? Here's the problem: You try to register, but the user name you want is taken, so you add a bunch of random numbers to the end of your name (say, dbarney8256). And even though nothing special is happening on the site, the security gods who run it demand a complex password (say dBarn&y8256H20).

Got those committed to memory? I thought not. Use the Web long enough, and you end up with dozens of these non-intuitive user names and unintelligible passwords.

Single sign-on is one answer, and within high-end corporate environments, single sign-on often gets you access to wide range of corporate info. But it does nothing to help you remember the sign-on to your (my) favorite motorcycle forums.

A bunch of companies that don't particularly like each other have agreed to help. Google, IBM, Microsoft, VeriSign and Yahoo are all members of the OpenID Foundation, which hopes to offer one user name and one password that gets you onto all of your favorite registered sites. Just make sure you keep that info very, very safe!

Microsoft had a decent approach to this. It was called Passport. Unfortunately, not enough sites backed it and Passport is now largely used to access Microsoft-only content.

Posted by Doug Barney on February 11, 2008


Featured

  • Microsoft Dismantles RedVDS Cybercrime Marketplace Linked to $40M in Phishing Fraud

    In a coordinated action spanning the United States and the United Kingdom, Microsoft’s Digital Crimes Unit (DCU) and international law enforcement collaborators have taken down RedVDS, a subscription based cybercrime platform tied to an estimated $40 million in fraud losses in the U.S. since March 2025.

  • Sound Wave Illustration

    CrowdStrike's Acquisition of SGNL Aims to Strengthen Identity Security

    CrowdStrike signs definitive agreement to purchase SGNL, an identity security specialist, in a deal valued at about $740 million.

  • Microsoft Acquires Osmos, Automating Data Engineering inside Fabric

    In a strategic move to reduce time-consuming manual data preparation, Microsoft has acquired Seattle-based startup Osmos, specializing in agentic AI for data engineering.

  • Linux Foundation Unites Major Tech Firms to Launch Agentic AI Foundation

    The Linux Foundation today announced the creation of a new collaborative initiative — the Agentic AI Foundation (AAIF) — bringing together major AI and cloud players such as Microsoft, OpenAI, Anthropic and other major tech companies.