67°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • coolaj86 https://github.com/coolaj86   •   Apr 23

    #3837 Simpler UX for OAuth2 login with GitHub

    Aaron Parecki

    What we really need is federated authentication, but that doesn't exist yet.

    This sounds like a great use case for IndieAuth. w3.org/TR/indieauth

    IndieAuth is an OAuth 2.0 extension, which avoids the centralized problems with existing OAuth solutions by using DNS for "registration" of client IDs and user IDs. Every user account is identified by a URL (for Gitea this could be your Gitea user page), and client IDs are also URLs (would be the Gitea instance home page in this case.)

    To log in to your Gitea instance, I would enter my own Gitea profile URL. Your instance would then do discovery on my URL to find where to send me to authorize the login on my own OAuth server (my Gitea server), which would then send me back to your Gitea where it would be able to verify the authorization code against my Gitea instance.

    I'd be happy to walk through this in more detail if you're interested!

    Portland, Oregon, USA • 53°F
    1 reply
    Mon, Jun 4, 2018 6:43am -07:00 #indieauth
  • Marek Jelen http://mjelen.eu   •   Jun 3
    Did you create a team? Top tight corner, group icon ... without invite you probably have no team so you do not see the features.
    Aaron Parecki
    I thought I did, but apparently it failed silently! I just tried again and now I have a team and this makes a lot more sense!
    Portland, Oregon • 69°F
    Sun, Jun 3, 2018 3:27pm -07:00
  • Graham Dumpleton http://blog.dscpl.com.au   •   Jun 3
    Are you talking about the hosted service for EvMan? cc @marek_jelen
    Aaron Parecki
    Yeah, I wanted a quick way to try it out without spinning up the whole environment from the source code.
    Portland, Oregon, USA • 71°F
    3 replies
    Sun, Jun 3, 2018 1:46pm -07:00
  • Graham Dumpleton http://blog.dscpl.com.au   •   May 31
    Use EvMan. https://github.com/evmanhq/evman Developed by @marek_jelen to support the same task for our team of OpenShift evangelists. Awesome sauce.
    Aaron Parecki
    I tried it out but it doesn't seem to do anything. It keeps just redirecting me back to my profile.
    Portland, Oregon, USA • 71°F
    5 replies
    Sun, Jun 3, 2018 1:24pm -07:00
  • http://microblog.donovanwatts.net/2018/05/19/got-the-shure.html
    Aaron Parecki
    It's a great mic, but having to remove the case was a dealbreaker for me and I ended up returning it.
    Portland, Oregon, USA • 72°F
    Sat, Jun 2, 2018 12:13pm -07:00
  • https://eddiehinkle.com/2018/06/01/17/reply/
    Aaron Parecki
    lol! That explains why it was only showing up in my IndieWeb Friends channel and not my notifications! Readers ftw!
    Portland, Oregon • 69°F
    Fri, Jun 1, 2018 7:33pm -07:00
  • https://eddiehinkle.com/2018/06/01/6/reply/
    Aaron Parecki
    Sounds like a great topic for the Leaders Summit!
    Portland, Oregon • 68°F
    Fri, Jun 1, 2018 3:52pm -07:00
  • Coda https://twitter.com/coda_hq   •   Jun 1
    Cool! Mind DMing me your email?
    Aaron Parecki
    Looks like you have public DMs off! My email is my first name at my last name .com
    Portland, Oregon, USA • 64°F
    Fri, Jun 1, 2018 1:56pm -07:00
  • Coda https://twitter.com/coda_hq   •   Jun 1
    Thanks much for the rec @muhh!

    @aaronpk let us know if you are interested in trying it out. You could import your spreadsheet to get started quickly. Oh, and we use Okta if that makes a difference :)
    Aaron Parecki
    Looks interesting, I'd love to check it out!
    Portland, Oregon • 64°F
    Fri, Jun 1, 2018 1:48pm -07:00
  • Simon Willison https://simonwillison.net/   •   May 31
    Always hard to beat a spreadsheet. I think today I'd use Airtable plus maybe a custom API integration to pull the deadlines out into an iCal feed so I can see them in my calendar
    Aaron Parecki
    ooh I forgot about Airtable, this does sound like a good use for it!
    Portland, Oregon • 64°F
    Thu, May 31, 2018 4:41pm -07:00
  • K. Mike M. https://www.kmikeym.com   •   May 30
    I deleted all my tweets (I saved the archive) with a plan to let a bot take over, but the bot is still saying stuff like, "To win it doesn’t take ribs playing football (when the username and donuts play Netrunner)" so I'm a little worried about it giving it full control...
    Aaron Parecki
    Let's publish your tweet archive on kmikeym.com #ownyourdata
    Portland, Oregon • 51°F
    1 like
    Thu, May 31, 2018 8:13am -07:00 #ownyourdata
  • Aaron Parecki https://aaronparecki.com/   •   May 30
    tbh being able to acknowledge the challenge from my iOS lock screen without launching an app is the only reason I'm not constantly annoyed by this. SMS codes or worse, having to launch the app, is always ugh
    Aaron Parecki
    I'm looking at you @Namecheap! I actually disabled the app 2fa and went back to SMS because the app experience was so horrible.
    Portland, Oregon • 59°F
    1 like 2 replies
    Wed, May 30, 2018 9:09pm -07:00
  • Randall Degges https://www.rdegges.com   •   May 31
    Although I work in the security industry, I really hate multi-factor authentication. So... tedius. Every single time I get prompted for a second factor I feel myself instinctively *sighing*. You?
    Aaron Parecki
    tbh being able to acknowledge the challenge from my iOS lock screen without launching an app is the only reason I'm not constantly annoyed by this. SMS codes or worse, having to launch the app, is always ugh
    Portland, Oregon • 60°F
    2 likes 1 reply
    Wed, May 30, 2018 9:05pm -07:00
  • Aaron Parecki https://aaronparecki.com/   •   May 29
    I just stumbled across this internal email exchange at Microsoft during the antitrust lawsuits and I am amazed at Bill Gates' detailed email complaining about the usability of trying to download Windows MovieMaker (spoiler: he can't figure it out) https://blog.seattlepi.com/microsoft/files/library/2003Jangatesmoviemaker.pdf
    Aaron Parecki
    By popular demand, and since seattlepi.com is blocking EU visitors due to the GDPR, I've reproduced the PDF email thread as a web page so you can actually read it!

    https://aaronparecki.com/2018/05/30/17/bill-gates-windows-usability.html
    Portland, Oregon • 64°F
    Wed, May 30, 2018 2:20pm -07:00
  • Kieren Johnstone https://twitter.com/kierenjohnstone   •   May 30
    451 “not available in your region for legal reasons”. ... really?
    Aaron Parecki
    gosh, for a PDF too! Give me a few minutes to copy this to a web page...
    Portland, Oregon • 55°F
    Wed, May 30, 2018 12:18pm -07:00
  • https://github.com/indieweb/wordpress-indieauth/pull/59#issuecomment-393221102
    Aaron Parecki
    Right now indielogin.com is in beta, and I'm not opening it up for other developers to use that instance just yet. (It's open source so of course you could host your own.) Once I finish email login (and maybe PGP authentication) I'll launch it. However I am also considering requiring that people sign up as a developer in order to use it once it's live, since that will help avoid getting into the situation we're in with indieauth.com now. I could see about making an account for this wordpress plugin though.
    Portland, Oregon • 50°F
    Wed, May 30, 2018 9:42am -07:00
  • Eddie Hinkle https://eddiehinkle.com/   •   permalink

    I’m confused by what you mean by white and gold? 🤔

    Aaron Parecki
    #thedress
    Portland, Oregon • 43°F
    Wed, May 30, 2018 6:50am -07:00 #thedress
  • Kevin Marks http://known.kevinmarks.com/profile/kevinmarks   •   May 30
    The workaround that unmung.com has used is that if instead of loading twitter.com/aaronpk you load twitter.com/intent/user?screen_name=aaronpk you get an mf1 h-card, proper rel=me and other xfn eg http://pin13.net/mf2/?url=https%3A%2F%2Ftwitter.com%2Fintent%2Fuser%3Fscreen_name%3Daaronpk #indieweb
    Aaron Parecki
    Like I said, there are many solutions to this, but I don't want to keep jumping through hoops. IndieLogin.com now uses the API to fetch the profile info which has a much lower chance of changing or going away.
    Portland, Oregon • 42°F
    Wed, May 30, 2018 6:19am -07:00
  • Exist http://exist.io   •   May 30
    Uh oh, sorry! Please make sure you have crash reporting turned on in iOS settings so we can get a crash report and look into this for you.
    Aaron Parecki
    Okay! Took me way too long to figure out how to turn that on. Also of course now it's not crashing anymore, but it still takes like a minute to start up after I close the app.
    Portland, Oregon • 54°F
    Tue, May 29, 2018 9:56pm -07:00
  • nitinthewiz https://github.com/nitinthewiz   •   May 30

    #60 Enhancement request: Notification granularity

    Aaron Parecki
    That sounds very reasonable! I think this would make sense to split between debug notifications and normal notifications. Trips auto-ending would be a normal notification, but tracking start/stop and others would be debug. Thanks for the suggestion! I'm due to push an update to the store soon so I will make sure to include this. Thanks!
    Portland, Oregon • 59°F
    Tue, May 29, 2018 8:26pm -07:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv