53°F

Aaron Parecki

  • Articles
  • Notes
  • Photos
  • Randall Degges https://www.rdegges.com   •   Jun 5
    Talked to someone in the airport a few mins ago between flights who works for a company that matches students to jobs using the blockchain. All I can think is... Why?
    Aaron Parecki
    There's always money in the blockchain I mean banana stand
    Phoenix, Arizona • 93°F
    5 likes
    Tue, Jun 5, 2018 11:41am -07:00
  • http://blog.bellebcooper.com/2018-06-05T07:48:25+10:00.html
    Aaron Parecki
    It looks great! Congrats!
    Portland, Oregon • 60°F
    Mon, Jun 4, 2018 9:21pm -07:00
  • @c̲hris̲epps̲tein http://chriseppstein.github.com/   •   Jun 4
    john. why don't people microformat more? it's such a good thing.
    Aaron Parecki
    We're microformatting a lot over in the #indieweb! https://indieweb.org/microformats (This tweet was literally brought to you by Microformats)
    Portland, Oregon, USA • 63°F
    2 likes
    Mon, Jun 4, 2018 1:53pm -07:00 #indieweb
  • tboerger https://github.com/tboerger   •   Jun 4

    Sounds like it's comparable with openid connect.

    Aaron Parecki
    Not quite, since OpenID Connect still requires registering clients to get client credentials to use with the flows. There is a dynamic client registration part of OpenID Connect, but this allows you to entirely bypass the need for registering clients separately since we just piggyback on the existing DNS for identifying clients.
    Portland, Oregon, USA • 63°F
    Mon, Jun 4, 2018 1:03pm -07:00
  • tboerger https://github.com/tboerger   •   Nov 3

    #27 Integrate an OAuth2 provider

    Aaron Parecki

    It would be fantastic if Gitea were its own OAuth2 provider! In fact, IndieAuth is the perfect candidate for how to implement this.

    IndieAuth is an OAuth 2.0 extension, which avoids the centralized problems with existing OAuth solutions by using DNS for "registration" of client IDs and user IDs. Every user account is identified by a URL (for Gitea this could be your Gitea user page), and client IDs are also URLs (would be the Gitea instance home page in this case.)

    This would let people sign in to other Gitea instances without any sort of prior relationship or doing client registration and such. Happy to walk through this in more detail if you're interested!

    Portland, Oregon, USA • 63°F
    Mon, Jun 4, 2018 11:20am -07:00
  • coolaj86 https://github.com/coolaj86   •   Apr 23

    #3837 Simpler UX for OAuth2 login with GitHub

    Aaron Parecki

    What we really need is federated authentication, but that doesn't exist yet.

    This sounds like a great use case for IndieAuth. w3.org/TR/indieauth

    IndieAuth is an OAuth 2.0 extension, which avoids the centralized problems with existing OAuth solutions by using DNS for "registration" of client IDs and user IDs. Every user account is identified by a URL (for Gitea this could be your Gitea user page), and client IDs are also URLs (would be the Gitea instance home page in this case.)

    To log in to your Gitea instance, I would enter my own Gitea profile URL. Your instance would then do discovery on my URL to find where to send me to authorize the login on my own OAuth server (my Gitea server), which would then send me back to your Gitea where it would be able to verify the authorization code against my Gitea instance.

    I'd be happy to walk through this in more detail if you're interested!

    Portland, Oregon, USA • 53°F
    1 reply
    Mon, Jun 4, 2018 6:43am -07:00 #indieauth
  • Marek Jelen http://mjelen.eu   •   Jun 3
    Did you create a team? Top tight corner, group icon ... without invite you probably have no team so you do not see the features.
    Aaron Parecki
    I thought I did, but apparently it failed silently! I just tried again and now I have a team and this makes a lot more sense!
    Portland, Oregon • 69°F
    Sun, Jun 3, 2018 3:27pm -07:00
  • Graham Dumpleton http://blog.dscpl.com.au   •   Jun 3
    Are you talking about the hosted service for EvMan? cc @marek_jelen
    Aaron Parecki
    Yeah, I wanted a quick way to try it out without spinning up the whole environment from the source code.
    Portland, Oregon, USA • 71°F
    3 replies
    Sun, Jun 3, 2018 1:46pm -07:00
  • Graham Dumpleton http://blog.dscpl.com.au   •   May 31
    Use EvMan. https://github.com/evmanhq/evman Developed by @marek_jelen to support the same task for our team of OpenShift evangelists. Awesome sauce.
    Aaron Parecki
    I tried it out but it doesn't seem to do anything. It keeps just redirecting me back to my profile.
    Portland, Oregon, USA • 71°F
    5 replies
    Sun, Jun 3, 2018 1:24pm -07:00
  • http://microblog.donovanwatts.net/2018/05/19/got-the-shure.html
    Aaron Parecki
    It's a great mic, but having to remove the case was a dealbreaker for me and I ended up returning it.
    Portland, Oregon, USA • 72°F
    Sat, Jun 2, 2018 12:13pm -07:00
  • https://eddiehinkle.com/2018/06/01/17/reply/
    Aaron Parecki
    lol! That explains why it was only showing up in my IndieWeb Friends channel and not my notifications! Readers ftw!
    Portland, Oregon • 69°F
    Fri, Jun 1, 2018 7:33pm -07:00
  • https://eddiehinkle.com/2018/06/01/6/reply/
    Aaron Parecki
    Sounds like a great topic for the Leaders Summit!
    Portland, Oregon • 68°F
    Fri, Jun 1, 2018 3:52pm -07:00
  • Coda https://twitter.com/coda_hq   •   Jun 1
    Cool! Mind DMing me your email?
    Aaron Parecki
    Looks like you have public DMs off! My email is my first name at my last name .com
    Portland, Oregon, USA • 64°F
    Fri, Jun 1, 2018 1:56pm -07:00
  • Coda https://twitter.com/coda_hq   •   Jun 1
    Thanks much for the rec @muhh!

    @aaronpk let us know if you are interested in trying it out. You could import your spreadsheet to get started quickly. Oh, and we use Okta if that makes a difference :)
    Aaron Parecki
    Looks interesting, I'd love to check it out!
    Portland, Oregon • 64°F
    Fri, Jun 1, 2018 1:48pm -07:00
  • Simon Willison https://simonwillison.net/   •   May 31
    Always hard to beat a spreadsheet. I think today I'd use Airtable plus maybe a custom API integration to pull the deadlines out into an iCal feed so I can see them in my calendar
    Aaron Parecki
    ooh I forgot about Airtable, this does sound like a good use for it!
    Portland, Oregon • 64°F
    Thu, May 31, 2018 4:41pm -07:00
  • K. Mike M. https://www.kmikeym.com   •   May 30
    I deleted all my tweets (I saved the archive) with a plan to let a bot take over, but the bot is still saying stuff like, "To win it doesn’t take ribs playing football (when the username and donuts play Netrunner)" so I'm a little worried about it giving it full control...
    Aaron Parecki
    Let's publish your tweet archive on kmikeym.com #ownyourdata
    Portland, Oregon • 51°F
    1 like
    Thu, May 31, 2018 8:13am -07:00 #ownyourdata
  • Aaron Parecki https://aaronparecki.com/   •   May 30
    tbh being able to acknowledge the challenge from my iOS lock screen without launching an app is the only reason I'm not constantly annoyed by this. SMS codes or worse, having to launch the app, is always ugh
    Aaron Parecki
    I'm looking at you @Namecheap! I actually disabled the app 2fa and went back to SMS because the app experience was so horrible.
    Portland, Oregon • 59°F
    1 like 2 replies
    Wed, May 30, 2018 9:09pm -07:00
  • Randall Degges https://www.rdegges.com   •   May 31
    Although I work in the security industry, I really hate multi-factor authentication. So... tedius. Every single time I get prompted for a second factor I feel myself instinctively *sighing*. You?
    Aaron Parecki
    tbh being able to acknowledge the challenge from my iOS lock screen without launching an app is the only reason I'm not constantly annoyed by this. SMS codes or worse, having to launch the app, is always ugh
    Portland, Oregon • 60°F
    2 likes 1 reply
    Wed, May 30, 2018 9:05pm -07:00
  • Aaron Parecki https://aaronparecki.com/   •   May 29
    I just stumbled across this internal email exchange at Microsoft during the antitrust lawsuits and I am amazed at Bill Gates' detailed email complaining about the usability of trying to download Windows MovieMaker (spoiler: he can't figure it out) https://blog.seattlepi.com/microsoft/files/library/2003Jangatesmoviemaker.pdf
    Aaron Parecki
    By popular demand, and since seattlepi.com is blocking EU visitors due to the GDPR, I've reproduced the PDF email thread as a web page so you can actually read it!

    https://aaronparecki.com/2018/05/30/17/bill-gates-windows-usability.html
    Portland, Oregon • 64°F
    Wed, May 30, 2018 2:20pm -07:00
  • Kieren Johnstone https://twitter.com/kierenjohnstone   •   May 30
    451 “not available in your region for legal reasons”. ... really?
    Aaron Parecki
    gosh, for a PDF too! Give me a few minutes to copy this to a web page...
    Portland, Oregon • 55°F
    Wed, May 30, 2018 12:18pm -07:00
older

Hi, I'm Aaron Parecki, Director of Identity Standards at Okta, and co-founder of IndieWebCamp. I maintain oauth.net, write and consult about OAuth, and participate in the OAuth Working Group at the IETF. I also help people learn about video production and livestreaming. (detailed bio)

I've been tracking my location since 2008 and I wrote 100 songs in 100 days. I've spoken at conferences around the world about owning your data, OAuth, quantified self, and explained why R is a vowel. Read more.

  • Director of Identity Standards at Okta
  • IndieWebCamp Founder
  • OAuth WG Editor
  • OpenID Board Member

  • 🎥 YouTube Tutorials and Reviews
  • 🏠 We're building a triplex!
  • ⭐️ Life Stack
  • ⚙️ Home Automation
  • All
  • Articles
  • Bookmarks
  • Notes
  • Photos
  • Replies
  • Reviews
  • Trips
  • Videos
  • Contact
© 1999-2025 by Aaron Parecki. Powered by p3k. This site supports Webmention.
Except where otherwise noted, text content on this site is licensed under a Creative Commons Attribution 3.0 License.
IndieWebCamp Microformats Webmention W3C HTML5 Creative Commons
WeChat ID
aaronpk_tv