Hacker News new | ask | show | jobs
by philips 3939 days ago
Thank you. OIDC and OAUTH 2.0 are non-trivial protocols to get right. But, the opportunity is having a federated set of standards that web infrastructure can use. I think the best parts are: 1) being able to chain identities in a reasonable way 2) not requiring a database hit on every identity assertion and relying on crypto instead.