Skip to navigation
   
Simon Bisson & Mary Branscombe's Blog

The iPhone identity selector Apple won’t care about

By Simon Bisson & Mary Branscombe in Editorial

Posted in Identity, smartphone, Security, Internet, Microsoft, Mobile, Apple on November 15, 2008 at 11:26 pm

Permalink | Author Profile

On a smartphone, passwords are even more irritating than ever, especially on a soft keyboard that’s so sure it knows what you want to type that the default is to correct what you actually wrote. That’s only a trimester if the phone has as big a vocabulary as you do.

For instance, when I started writing this on my Samsung Blackjack II with xt9, what I typed in the previous sentence was ‘timesaver’ - before xt9 ‘ corrected’ it… xt9 gives you the option to stick with your actual typing as long as you notice the change and the equally aggressive correction on the iPhone does the same (though I’ve never managed it myself), but it’s one more way that passwords are more likely to trip you up than keep you secure. Let alone that the UK now has the worst information theft figures in Europe, even though the French have the least secure passwords.

Switching to information cards where claims like who I am and whether I’m over 18 are encrypted, hashed and sent on demand to replace simple username and password makes logging on simpler and more secure, and makes it possible to add extra authentication. After complaining about Microsoft not issuing secure ‘managed’ cards I’ve been told to wait a few days for a major announcement; it might be the Equifax over-18 I-card service https://equifaxicards.com/imover/overview.do (only for the US at the moment, but it’s the first major public verified information card and it will soon be followed by cards to prove your credit rating, contact details or membership).

So that leaves getting sites and services to accept information cards - and being able to use them on any computer. They’re built into Vista, Windows 7 and any PC with IE7, plus there are open source plugins for Firefox and Safari.

12345
Rated: 100% (1 votes)
Loading ... Loading ...

Previous Post | Next Post

 
 
Comments

Comment by Charles Andres - May 1, 2009 on 6:58 pm

Apple may not care about InfoCards, but on the iphone, the browser is controlled by Apple, and there is no way currently to download an identity selector without ‘jailbreaking’ the iphone, which effectively voids the warranty. Apple will need to make a stand on this at some point.

Make a comment

* required

* required

We stop spam using reCaptcha.
Type the words below and click Submit Comment.

   
Tag cloud

disk space wubi Intel beta Windows Server information cards geneva HTC LiveID national museum of computing SBS patch Tuesday merger gabriola OpenID setup machine learning html applications information HMT traffic productivity toshiba private cloud fonts cables xT9 data Corsair electricity price SapphireSteel Verbatim Tablet PC icons outlook hdmi AIR DOS downturn Ask.com public cloud migration data loss isp lost server MacWorld 2008 TechEd 2008 backhaul goview routing remove back codec monitor media Opteron todo list flash anti-patterns context Fire Eagle bandwidth Lenovo spam fighting GPU DSL Internet Explorer hibernation HTML 5 appstore navteq hyper-v fault AMD rtm Tablet Kiosk network Jeff Jones hardware data centre timezones conferences moblin software drivers MIX cam Bing T9 virtualisation wes NexT open source Google Spreadsheets Barracuda christmas enterprise Windows 7 vs Windows Vista control panel data tariff OQO amazon legislation CIO search bbc iplayer Smartbook desktop. PC business technology optimisation Internet Explorer 8 transcoding 64-bit Chrome screen innovation BES futura Mercury hierarchical temporal memory twitter design mobile broadband IIW2008b server sprawl optical interconnects Wyse security theatre Windows Mobile ClipMate enterprise architecture people utility community Motorola claims data centre transformation robot uninstall LHC congestion charge market share trends ikea security paradox Google Sets cracking RBL tennis ultraportable cellcrypt project upgrade support acquisitions telecoms teched how do I get the back off? Vista 3G Opsware licensing power semiotics advertising ucsd gaming case office politics netbook netiquette mythbusters networks CUDA web 2.0 expo beta test business model magic laptop streaming media london infrastructure exabytes secure CTO october processors FUD pre-boot mobile Gears battery life keyboard BitLocker TouchSmart webkit business intelligence green printing encryption AuthenTec windows Google RIM annotation Enterprise 2.0 Apple firewall Nokia mainframe Firefox AskEraser flash drive phone management Jeff Hawkins utilities ballmerbot emulator turing email phone settings camera mobile working thermo ATI SSD meaning tele atlas tablet macro offload display windows 7 IM eu dvi Microsoft sun etech MIX08 demo09 HSPA bolt mobility business technology automation multiple monitors benchmark QWERTY Mozilla microsoft security essentials gamer Vodafone parallel computing vmware mobile data tariffs windows server 2008 r2 MRDA Mini-Note Skyfire Xobni rich client mobile network maps Delphi 2.0 iPhone direct access business safend Loki Trampoline open rc Visual Studio smartphone conference Google IO nvision08 Hp 2710p city radeon SKU CPU analytics Trend Micro wifi Magny-Cours pgp bug colossus atom Tombstone Objects Bill Cheswick high performance computing Crossfader regulation history OFCOM service oriented enterprise politics Ruby IT automation Web 2.0 user experience training power supply vulnerabilities catalyst cloud service google online applications Hugh Thompson development MWC Credentica Safari co-processor hard drive security ribbon data loss prevention Netscape legacy whitelist SMB 2 netbooks bletchley park ubuntu bombe RAZR relocation fibre Beacon identity metasystem regulations thin client usb power cuts IT transformation lawsuit visualisation ec2 Girl Geek Dinners T-Mobile ProCurve it pro Wimbledon Location task bar Palm Clear RX fingerprint Gartner BBC cosmic rays Large Hadron Collider docking station Bill Gates griffin switch BlackBerry designer accelerator mscape macbook disaster recovery venture capital NGSCB power saving IT policy android no signal biometrics Nuance mobile ofcom network mapping augmented reality Itanium Opera connectivity Ruby On Rails flex identitity g-2 Acrobat Pro interoperability system management pen computing logitech GPS yahoo Istanbul DOSBox Ray Ozzie appzero quiz browser navigation Java amherst geotagging virus i-mate O2 NVIDIA patent Adobe RSA 2008 business continuity SP1 installer Xen Qualcomm Embarcadero media center distributed computing wildfire pixetell dual display application compatibility cold fusion greenplum cloud computing Protected View Active Directory adfs terabytes anti-virus RIA consolidation demo fire Sony management mobile Linux identity theft numbers DisplayLink mash-up voice recognition office IT value Numenta verdana CardSpace Live Mesh video system center aws international roaming MacBook Air accessories Secunia oracle microsoft research images Moonlight Linux education hacking moscow server gameboard g-1 Trolltech IDF Facebook calit2 IBM Netscan O'Reilly WWW dual boot active digitiser M&A deperimeterization screencam wireless USB Palladium iPass credit crunch social engineering 965 Tripit .NET Silverlight Express Gate isps police Toshiba Portege R500 lockdown MAX database geocaching WEI OEM old software apps Reqall IO DLP hold music Windows Live disk privacy HSDPA hp microsoft research WinHEC performance insert SIM cisco Mono EMC Previous Versions Windows Server 2008 NAS EEE cloud competition CERN ontier Mark Hurd Tim Berners-Lee VSSAdmin winhec2008 ruggedized collaboration web instant messaging fingerprint scanner Treo Pro UMPC TSA ipsec future in review BT workflow Pal user interface target citrix MING CES evernote culture installation anti-trust geek tourism Greasemoneky troubleshooting social networking d2c spam developer mms 2009 office 2010 voice 2009 Seagate web2expo clean install ipv6 green IT deborah adler ANR ports exchange bea mysql bugs storage Dopplr WPF Eee PC p2v virtual desktop natural interface malware Salesforce Dell forensics Volume Shadow Copy Tom Hogan Frauenhofer RSS search HP wave Internet GPL Asus information rights management ADFS 2.0 Quest
Advertisement
Advertisement