Blogs

Why Google wants you to use a single password

November 4, 2009

securityIt's one of the basic tenets of online security: never use the same password/username combo for every website that requires one. The logic is sound, of course. A single security breach could expose your most private information - such as banking and credit card numbers - to the bad guys.

Problem is, who can remember multiple passwords and usernames? Many times I've signed up for a service, returned to the site a few weeks later, and quickly realised that I couldn't remember my login details.

Google and other major online players, including AOL, Facebook, Microsoft Plaxo, MySpace, and Yahoo, are pitching a simpler alternative. A single password/username combo, such as your Google or Yahoo ID, for multiple sites. The concept, based on the industry standard OpenID 2.0 protocol isn't exactly new. In fact, Google announced over a year ago that it would support the single single-in plan.

However, industry support appears tepid for OpenID, as many popular sites still don't accept an OpenID login. Perhaps that's why The Official Google Blog on Tuesday beat the OpenID drum, and gave a quick run-through of how the service might benefit Facebook and Plaxo users.

IT security news and advice

A Gmail user who receives an invitation to use Facebook or Plaxo, for instance, won't have to create a new account for those services, but rather can log in using a Google ID:

As the Google Blog points out, this simplified sign-in eliminates a tedious, multistep process for Gmail users who join Plaxo. It's more secure too. Verification (in this example) is handled by Google, so Plaxo never sees your username and password. "Since you don't have to enter your password on additional sites, your password remains closer to you and is less likely to be misused," writes Google security product manager Eric Sachs.

OpenID is a great idea, but wider acceptance is needed for it to become truly useful. I suspect that Yahoo, Microsoft, and Google aren't truly comfortable with a single sign-in approach for their key properties. Today, for instance, I can't use my Yahoo ID to sign into my MSN account, nor can I use my Windows Live ID to enter Yahoo Mail.

In the mean time, I better work on my memorisation skills.

Contact Jeff Bertolucci via Twitter (@jbertolucci) or at jbertolucci.blogspot.com.

Posted by: Jeff Bertolucci

What is this?

<<newer entry  |  older entry>>

Comments

Use the form below to post a comment on this article upto 1000 characters.



* indicates a required field
Note:Please do not use html markup as it will be escaped.

PC Advisor staff
Blogger Daily news, views and thoughts from the PC Advisor staff as they put together the magazine. Collectively the PC Advisor team has over 100 years of computing experience, so as you'll imagine they're never short of an opinion or two.
Email author(s)

Latest entries


Entries by month

Nov09  |  Oct09  |  Sep09  |  Aug09
Jul09  |  Jun09  |  May09  |  Apr09
Mar09  |  Feb09  |  Jan09  |  Dec08
Nov08  |  Oct08  |  Sep08  |  Aug08
Jul08  |  Jun08  |  May08  |  Apr08
Mar08  |  Feb08  |  Jan08  |  Dec07
Nov07  |  Oct07  |  Sep07  |  Aug07
Jul07  |  Jun07  |  May07  |  Apr07
Mar07  |  Feb07  |  Jan07  |  Dec06
Nov06  |  Oct06  |  Sep06  |  Aug06
Jul06  |  Jun06  |  May06  |  Apr06
Mar06  |  Feb06  |  Jan06  |  Dec05
Nov05  |  Oct05  

Google

Search blogs

Search

Other blogs


 Our RSS feeds

Sponsored Content

  • Take the internet to new places with the Nokia N800
    Communicate how you want to, where you want to with instant messaging, email and internet calling. View movies, browse the internet wirelessly and watch TV on the high-resolution screen and listen through high-quality stereo speakers with headphone jack.
    Buy now