Massyn wrote:
Hi all,
Can we get a password added to the openid server? I feel somewhat insecure knowing if my yubikey gets lost, someone could authenticate as me. I think it's important to be sure with the "something you have" and "something you know" methodology.
THanks!
Good point, I have added an issue in our project around this:
http://code.google.com/p/yubico-openid- ... etail?id=1We don't have time to implement this now, the reason is the complexity and size of this task, but I would be very happy if you or someone else took up the effort here and implemented this.
For our upcoming SAML server, we have created a separate administrative interface, see:
http://code.google.com/p/yubikey-simplesaml-admin/Possibly something like that could be used for OpenID as well.
/Simon