<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=16&amp;t=195" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2009-02-18T12:15:34+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=16&amp;t=195</id>
<entry>
<author><name><![CDATA[Simon]]></name></author>
<updated>2009-02-18T12:15:34+01:00</updated>
<published>2009-02-18T12:15:34+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=195&amp;p=1118#p1118</id>
<link href="https://forum.yubico.com/viewtopic.php?t=195&amp;p=1118#p1118"/>
<title type="html"><![CDATA[Re: No password option for openid?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=195&amp;p=1118#p1118"><![CDATA[
<div class="quotetitle">Massyn wrote:</div><div class="quotecontent"><br />Hi all,<br /><br />Can we get a password added to the openid server?  I feel somewhat insecure knowing if my yubikey gets lost, someone could authenticate as me.  I think it's important to be sure with the &quot;something you have&quot; and &quot;something you know&quot; methodology.<br /><br />THanks!<br /></div><br /><br />Good point, I have added an issue in our project around this:<br /><br /><!-- m --><a class="postlink" href="http://code.google.com/p/yubico-openid-server/issues/detail?id=1">http://code.google.com/p/yubico-openid- ... etail?id=1</a><!-- m --><br /><br />We don't have time to implement this now, the reason is the complexity and size of this task, but I would be very happy if you or someone else took up the effort here and implemented this.<br /><br />For our upcoming SAML server, we have created a separate administrative interface, see:<br /><br /><!-- m --><a class="postlink" href="http://code.google.com/p/yubikey-simplesaml-admin/">http://code.google.com/p/yubikey-simplesaml-admin/</a><!-- m --><br /><br />Possibly something like that could be used for OpenID as well.<br /><br />/Simon<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2">Simon</a> — Wed Feb 18, 2009 12:15 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Robert]]></name></author>
<updated>2008-10-20T20:01:44+01:00</updated>
<published>2008-10-20T20:01:44+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=195&amp;p=766#p766</id>
<link href="https://forum.yubico.com/viewtopic.php?t=195&amp;p=766#p766"/>
<title type="html"><![CDATA[Re: No password option for openid?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=195&amp;p=766#p766"><![CDATA[
Here the login settings screen of clavid where you can disable one-factor authentication and enable Yubikey &amp; Password to assure two-factor authentication.<br /><br />clavid-login-settings.jpg<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=242">Robert</a> — Mon Oct 20, 2008 8:01 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Simon]]></name></author>
<updated>2008-10-20T12:23:53+01:00</updated>
<published>2008-10-20T12:23:53+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=195&amp;p=763#p763</id>
<link href="https://forum.yubico.com/viewtopic.php?t=195&amp;p=763#p763"/>
<title type="html"><![CDATA[Re: No password option for openid?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=195&amp;p=763#p763"><![CDATA[
Have you seen Clavid.Com?  They provide a more full-featured OpenID server with YubiKey support, and they do support passwords.<br /><br />As for our openid server, it is open source, so if you send patches to (optionally!) set a password and require that it is used for verification, I can review it. <img src="https://forum.yubico.com/images/smilies/icon_e_smile.gif" alt=":)" title="Smile" />  See source code at:<br /><br /><!-- m --><a class="postlink" href="http://code.google.com/p/yubico-openid-server/">http://code.google.com/p/yubico-openid-server/</a><!-- m --><br /><br />It is based on JanRain's example server.<br /><br />/Simon<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2">Simon</a> — Mon Oct 20, 2008 12:23 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Massyn]]></name></author>
<updated>2008-10-06T07:31:41+01:00</updated>
<published>2008-10-06T07:31:41+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=195&amp;p=740#p740</id>
<link href="https://forum.yubico.com/viewtopic.php?t=195&amp;p=740#p740"/>
<title type="html"><![CDATA[No password option for openid?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=195&amp;p=740#p740"><![CDATA[
Hi all,<br /><br />Can we get a password added to the openid server?  I feel somewhat insecure knowing if my yubikey gets lost, someone could authenticate as me.  I think it's important to be sure with the &quot;something you have&quot; and &quot;something you know&quot; methodology.<br /><br />THanks!<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=148">Massyn</a> — Mon Oct 06, 2008 7:31 am</p><hr />
]]></content>
</entry>
</feed>