What is the best / right way to share login between two sites.
I have website A and some websites B. Both types belong to the same company, but B works in the clientβs premises. I would like users to log into system B, and for some reason redirected to A, they do not need to log in again, and they can work with their account in A.
Of course, the company will make logins for each user "B". The problem is that the user could initiate a login in or B.
Will OAuth do? Or will OpenID be more appropriate?
Another option is to pass the GUID token in the GET string with the sort time to live and is valid only for the requestor's IP address, but he is not sure that the user will access websites through the same gateway.
thanks
source share