Auth systems
Improvement of authentication and authorization systems, and adding new auth mechanisms such as OpenID and OAuth
Group: Wikimedia Platform Engineering
Start: 2013-03-26
End: 2013-05-31
Team members: Tim Starling, Brad Jorsch, Aaron Schulz
Lead: Chris Steipp

Rationale

There are several specific issues with the existing, authentication methods used on the WMF sites:

  • Increasingly, 3rd party cookies are disabled in browsers
  • Several bugs related to CentralAuth's single sign-on system

Additionally, several new features for authentication and authorization have been requested:

  • OpenID
  • OAuth
  • Cross-wiki editing (Mobile, VisualEditor)

Timeline

See Auth systems/2013

Summary:

  • August 2013: SUL2 (fixing CentralAuth bugs and modernizing single-user signon for newer browsers)
  • August 2013: Wikimedia-internal cross-wiki edit tokens
  • November 2013: OAuth
  • Delayed until sometime in 2014: OpenID

Documents

Communications

This article is issued from Mediawiki. The text is licensed under Creative Commons - Attribution - Sharealike. Additional terms may apply for the media files.