Live data from Hacker News

Coding Horror: Your Internet Driver's License

codinghorror.com

51–60 of 101 posts

Re: Coding Horror: Your Internet Driver's License

#51

You really have to be behind the times to still be advocating OpenID. Technology is made up of alternatives, and one wins. No matter how much you love something, if it's dead, it's dead, now move on. Every hyped technological product has a a short window in which to dominate, and if it does not, it will remain confined to a nice. That's the case with OpenID. It's over, the battle is lost. Same goes for RSS, DRMed mus…

Django?

Oh... You mean the guitarist... Right... It was tragic... Only about 40-something...

Re: Coding Horror: Your Internet Driver's License

#52
post #35
post #25

Earlier quoted context omitted.

Perhaps a more accurate metaphore would be "Internet Passport". Government's can't take it away and it has no real entitlements. However Jeff Atwood is from the USA which has a strangley low number of passport holders. Perhaps they are used to using a driving licence instead of passport as general ID.

Perhaps they are used to using a driving licence instead of passport as general ID. No perhaps about it. It seems to the average American, the word "drivers license" evokes "proof of identity" first and "proof of ability to drive a car" second, because they're using theirs as a general ID more often than for its original purpose. It gets even funnier when American companies operate abroad and require "two photo IDs"…

It seems to the average American, the word "drivers license" evokes "proof of identity" first and "proof of ability to drive a car" second, because they're using theirs as a general ID more often than for its original purpose.

This is because the idea of a National ID Card is for some strange reason (strange to this American, I mean) seen as an evil thing by the general public here.

Re: Coding Horror: Your Internet Driver's License

#53
post #47

Earlier quoted context omitted.

I'm in the UK and my driver's license is the only form of "official" ID I normally carry. Much to my delight, we canceled the silly project to issue government ID cards.

Who issued your driver's license?

But not everyone had a drivers license or a passport - so they wanted everyone to have a separate ID card. Generally, having a formal ID has only been required in the UK during dire emergencies (i.e. World Wars) and contrary to what the government of the time thought we are not in the middle of such a crisis.

Re: Coding Horror: Your Internet Driver's License

#54

Driver's License is the wrong metaphor for OpenID. If you had an Internet Driver's License, it would be your email address. You always have that with you at all times. OpenID is more like a Von's Club card. An inconvenient scrap of plastic that would just take up space in my wallet so it gets left at home. Every time I go into a Vons, I have to ask the cashier for a new one and it pisses me off that little bit, just…

Just curious: why use more than one OpenID account in the first place? I've genuinely never understood why people would do that. Am I missing something?

Re: Coding Horror: Your Internet Driver's License

#55

You really have to be behind the times to still be advocating OpenID. Technology is made up of alternatives, and one wins. No matter how much you love something, if it's dead, it's dead, now move on. Every hyped technological product has a a short window in which to dominate, and if it does not, it will remain confined to a nice. That's the case with OpenID. It's over, the battle is lost. Same goes for RSS, DRMed mus…

Huh? I'm confused. I still log in to all sorts of places with my Google account, including Hacker News. And... RSS is dead? Django is dead? I'm getting the sinking feeling that I'm being trolled right now, but...

Source?

Re: Coding Horror: Your Internet Driver's License

#56
post #10

I'm not sure he's talking about a separate "Internet ID" that should exist. I think he's talking about websites adopting OpenID and/or OAuth as authentication methods, with a smaller number of trusted entities as authorities (Facebook, Twitter, Google, MyOpenID, Verisign, etc). I'm not sure where people are getting this idea that he's talking about creating a new concept called an Internet Driver's License. He's just…

FTA: Now, I don't literally mean a driver's license. I'm using this term figuratively to mean online credentials that I can re-use in more than one place on the internet.

I'm flabbergasted that so many people heard "Internet Driver's License" and simply started frothing at the mouth. It's quite crass, in my opinion.

Re: Coding Horror: Your Internet Driver's License

#57
post #9

Isn't one of the main benefits and best things about the internet is anonymity? Obviously FB and Twitter have information about my real identity, but why would Instapaper, or Reddit? Having a global login takes away that anonymity.

FTA: If all I want to do is leave a comment on a blog -- like, say, this one -- then one of the weaker forms of identity will surely do. If I'm starting a new bank account, or setting up a profile on a dating website, then maybe a stronger credential from my virtual wallet is necessary.

Re: Coding Horror: Your Internet Driver's License

#58
post #4

I don't like the idea of having one identifier which can be used to tie together all information about me - because linked data provides an unwarranted amount of power to people who have access to it. I think 'an internet drivers license' would basically become an ID card.

FTA: If all I want to do is leave a comment on a blog -- like, say, this one -- then one of the weaker forms of identity will surely do. If I'm starting a new bank account, or setting up a profile on a dating website, then maybe a stronger credential from my virtual wallet is necessary.

Re: Coding Horror: Your Internet Driver's License

#59
post #2

I am not sanguine on the idea, but the marketing for the idea is beyond terrible. The IDL is a leaky abstraction because the most salient features of drivers licenses are a) you have to apply to the government to get one, b) the government can take yours away with as much ease as they can do anything else, and c) if you lose your license, you will be denied the ability to use one or more critical goods/services (driv…

FTA: Now, I don't literally mean a driver's license. I'm using this term figuratively to mean online credentials that I can re-use in more than one place on the internet.

Re: Coding Horror: Your Internet Driver's License

#60
> It always pained me greatly that every rinky-dink website on the entire internet demanded that I create a special username and password just for them. ... For the vast, silent majority of normals, who know nothing of security but desire convenience above all, this means one thing: using the same username and password over and over. And it's probably a simple password, too.

> This is the status quo of identity on the internet. It is deeply and fundamentally broken.

What I do is, I have a couple of hard passwords that I use for email and Dropbox and important services like that, and then I have a couple of stupid usernames and passwords that I use and re-use and re-use for services whose security I don't care about. (I've arrived at this strategy after years of using the internet.)

A couple of times, I have actually tried to register an account with my usual username, found that the name was taken, wondered "Hmm, did I already create that account?", tried logging in with the usual password, and found that the login worked. "Oh, yeah, now I remember making that account..." I took this as a good sign, that I wasn't wasting brainspace on that login.

I think my strategy works fine for dealing with "a dozen websites who all want a username and password", given that only one or two of them are critical. And therefore I'd question the need to change, as opposed to people figuring out a strategy like mine and passing on the idea. Also, currently, anonymous throwaway accounts are easy to create; would it be that way if sites required something like OpenID? (I guess if the idea is just to reduce password complexity for customers, then sites could just add OpenID as a secondary means of logging in--rather than having it be the sole means--and you could still make throwaway accounts. Note that I don't know anything about OpenID; maybe there is a way to do anonymous throwaways within OpenID.)

Post reply on HN