Comment Other venues? (Score 1) 313
So why isn't this done for concerts, sporting events, theater, movies, cruises, etc? Seems odd that it's only done for airlines.
I love the concept of getting authentication onto a separate server/service/system. It's crazy that anyone can run "select * from users" and get a whole sites credential listing with a simple SQL injection.
However, how did you come to suggest Kerberos as the Authentication system. There are many others, all it seems with downsides of being overly complex:
-OpenID, OAuth, Radius, CHAP, TACACS+, LDAP, etc.
Interchangeable parts won't.