52°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • https://github.com/aaronpk/IndieAuth.com/issues/120#issuecomment-224739992
    Aaron Parecki
    Not that it's your fault, but I think you're starting to confuse the two roles of indieauth.com.

    Role 1) indieauth.com is a service that developers can use to handle all the hard work of doing rel-me-auth with specific providers directly. In this case, the application developer has a trust relationship with indieauth.com and users should not be concerned that they're using indieauth.com, from their POV they are just signing in to the website. This is how the indiewebcamp.com wiki uses indieauth.com

    Role 2) indieauth.com is a service that users can delegate their domain to. To use indieauth.com this way, the user links to indieauth.com as their `authorization_endpoint` on their domain. In this case, the user has a trust relationship with indieauth.com, and an application discovers the user's auth endpoint by following the rel link on their website. Micropub apps like Quill work this way, where you will only ever see indieauth.com if you have delegated to it yourself.

    Does this help clear things up? In situation 2, you'll only ever see indieauth.com if you explicitly set it as your authorization endpoint. You could use indiecert.net or use your own auth server instead. In situation 1, where a developer has chosen to use indieauth.com instead of implementing authentication themselves, you're limited to the options that indieauth.com has implemented. However the idea is that indieauth.com implements a good number of options and in a secure way, making it a better option for developers than implementing PGP/SMS/GitHub/etc themselves.

    With that in mind, could you rephrase your request in that context?
    Portland, Oregon, USA
    Wed, Jun 8, 2016 3:08pm -07:00 #indieauth
  • https://github.com/aaronpk/IndieAuth.com/issues/120
    Aaron Parecki
    Hm, would you want to delegate to the `pgp` one to prevent any other login mechanisms from being used? One of the nice things about indieauth.com showing multiple options is that depending on the device you're logging in on, you might want to choose a different option. For example I usually use GitHub or GPG login when I'm on my main computer, but use Twitter from my phone.

    I can definitely see value in wanting to limit the options provided by indieauth.com to a subset of the rel-me links on your site. (Maybe I want Twitter listed on my site, but never want to use it for login.)

    What about using the query string to indicate the supported providers?

    `https://indieauth.com/auth?providers=github.com,pgp,sms` etc. In that case, indieauth.com could even present them to you in the order given.

    Similar to https://github.com/aaronpk/IndieAuth.com/issues/112, if only one is set then it could redirect immediately instead of making you click the button, which would be a better user experience.
    Portland, Oregon, USA
    Wed, Jun 8, 2016 2:42pm -07:00 #indieauth
  • Ryan O\'Horo https://twitter.com/redteamwrangler
    @SwiftOnSecurity
    Portland, Oregon
    Wed, Jun 8, 2016 2:31pm -06:00 (liked on Wed, Jun 8, 2016 1:48pm -07:00)
  • Scalable Live Video Streaming with NGINX Plus and BITMOVIN (www.nginx.com)
    Wed, Jun 8, 2016 1:08pm -07:00 #nginx #livestream #rtmp #video
  • Peer to Peer Networks - with Kevin Marks - Decentralized Web Summit (youtu.be)
    Wed, Jun 8, 2016 11:52am -07:00 #kevinmarks #indieweb #dwebsummit
  • Walk
    0.63mi
    Distance
    10:28
    Duration
    10:50am
    Start
    11:00am
    End
    Portland, Oregon
    Wed, Jun 8, 2016 11:00am -07:00
  • Aaron Parecki
    at Weissman Dental
    Portland, Oregon • Wed, June 8, 2016 9:32am
    45.519222 -122.683982
    Hopefully my last filling
    Portland, OR, United States
    Wed, Jun 8, 2016 9:32am -07:00
  • Walk
    0.67mi
    Distance
    11:38
    Duration
    9:15am
    Start
    9:27am
    End
    Portland, Oregon
    Wed, Jun 8, 2016 9:27am -07:00
  • https://twitter.com/timweston/status/740570724969152513
    Aaron Parecki
    Actually my VPSs are on @Linode, I only use @Dreamhost for shared hosting
    Portland, Oregon
    1 like 1 repost
    Wed, Jun 8, 2016 8:47am -07:00
  • https://twitter.com/timweston/status/740567278161399808
    Aaron Parecki
    @timweston I'm a fan of @Dreamhost. Also see http://indiewebcamp.com/web_hosting
    Portland, Oregon, USA
    3 likes 1 repost
    Wed, Jun 8, 2016 8:35am -07:00
  • Ride
    2.18mi
    Distance
    10:31
    Duration
    7:21am
    Start
    7:32am
    End
    Portland, Oregon
    Wed, Jun 8, 2016 7:32am -07:00
  • 10:59pm
    Asleep
    6:21am
    Awake
    7h 14m
    Slept
    26m
    Awake for
    Portland, Oregon, USA
    Wed, Jun 8, 2016 6:21am -07:00
  • BusinessTown (welcometobusinesstown.tumblr.com)
    "An ongoing project attempting to explain our highly intangible, deeply disruptive, data-driven, venture-backed, gluten-free economic meritocracy to the uninitiated."
    Tue, Jun 7, 2016 6:47pm -07:00 #humor
  • Ride
    2.60mi
    Distance
    21:50
    Duration
    6:05pm
    Start
    6:27pm
    End
    Portland, Oregon
    Tue, Jun 7, 2016 6:27pm -07:00
  • Andy Baio https://twitter.com/waxpancake   •   Jun 8
    EXCELLENT
    Aaron Parecki
    @waxpancake Totally not planned I swear 😂 @evanpro
    Portland, Oregon, USA
    1 reply
    Tue, Jun 7, 2016 5:46pm -07:00
  • Sake
    Portland, Oregon, USA
    Tue, Jun 7, 2016 5:43pm -07:00
  • Andy Baio https://twitter.com/waxpancake   •   Jun 8
    Nice t-shirt in the front row!
    Aaron Parecki
    @waxpancake @metaltoad It's hard to see but I'm wearing the grey on black version 😄
    Portland, Oregon, USA
    2 replies
    Tue, Jun 7, 2016 5:35pm -07:00
  • Aaron Parecki
    Super huge thanks to our new friends at @MetalToad for hosting the @W3C Social Web WG meeting the last two days!
    Portland, Oregon, USA
    5 likes 3 reposts 4 replies 1 mention
    Tue, Jun 7, 2016 5:25pm -07:00 #w3c #socialwg
  • Aaron Parecki
    at Bamboo Sushi
    Portland, Oregon • Tue, June 7, 2016 5:17pm
    45.522417 -122.683003
    Post W3C meeting dinner before folks head out of town!
    Portland, OR, United States
    Tue, Jun 7, 2016 5:17pm -07:00
  • Walk
    0.46mi
    Distance
    10:35
    Duration
    5:00pm
    Start
    5:10pm
    End
    Portland, Oregon
    Tue, Jun 7, 2016 5:10pm -07:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv