On Sun, Mar 04, 2007 at 08:21:02PM +0000, Bob Walker wrote:
On Sun, 4 Mar 2007, Kake L Pugh wrote:
Bob's been looking at OpenID as well - he said he tried something but it didn't compile. Not sure what - and he's out at the moment so I can't ask him, but he can explain for himself when he reads this :)
I was looking at restricting POST access from within apache using ModAuthOpenID ( http://www.butterfat.net/wiki/Projects/ModAuthOpenID )
FWIW, I've already seen spammers setting up free, throwaway OpenID accounts. If you're going to go this route, you might want to restrict to "trusted' openid providers, such as LJ.