Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> The biggest problem with OIDC is how non-standard every implementation is.

I'm sure you've read it but I have to mention it for good measure. OAuth 2.0 and the Road to Hell: https://gist.github.com/nckroy/dd2d4dfc86f7d13045ad715377b6a...



The most relevant section is perhaps this:

> That community [at the IETF] is all about enterprise use cases and if you look at their other efforts like OpenID Connect (which too was a super simple proposal turned into almost a dozen complex specifications), they are not capable of simple.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: