[TYPO3-dev] Like to hear your opinion regarding security

Sebastian Gebhard sebastian.gebhard at gmail.com
Tue Dec 1 13:40:31 CET 2009


Hi *,

i'm planning to write an extension that lists BE-Users with OpenID-Identifiers on the Login-Screen 
(only suitable for sites with less than 20 BE-Users).
When you click on a username you get logged in via OpenID with this user (if the OpenID belongs to 
you of course.)

So basically the extension discloses Usernames and OpenID Identifiers. From my point of view these 
data are not a security risk, what do you think?

What do you think about a 1-click-login?

Kind regards,
Sebastian




More information about the TYPO3-dev mailing list