Stop Telling People Not To Click Links

1 points by typesanitizer


koala

Well, this has a good point.

Technically, I have had "corporate devices" on 11 companies during about 24 years. If I remember correctly, only in one company and during a brief period of time, I had proper single-sign on; that is, when I logged in to the operating system that logged me in most company services.

And I don't think it was entirely complete- we may have been using GitHub there during that brief period. Having proper SSO in GitHub costs extra money, and to add insult to the injury, it is quite popular to use GitHub login for SSO purposes.

(Interestingly, ages ago I set up my FreeIPA for my infrastructure and many of the services I run use it, so I do have that proper single-sign on on my amateur-run infrastructure. It's less effort than you would expect- and you can do it entirely on OSS software; FreeIPA and Ipsilon are not complex to set up, and client setup is straightforward on at least Debian, Fedora, and RHEL-derived distros.)

It's always worth looking at https://sso.tax/ to see which services gouge you if you want to do this properly.

(I'm always surprised that apparently Windows does not make proper SSO as low-effort as I expected, but I believe it is still one of the best implementations.)

I wonder what will the future hold. Because traditional desktop operating systems might be on the way out.