Well, to be fair, it wouldn't be all that complex if we just had one standard instead of many many many to learn. I don't find OAuth2 as implemented by most all that complex, and I didn't really find OAuth1 all that bad either.
The web UI for persona, on the other hand...
Who on earth thought it was a good idea to have a two step for username THEN password!?
Microsoft does the same thing with many of their logins. You put in your user ID, and it uses that to know what server is going to authenticate you and forwards you to it.
The web UI for persona, on the other hand...
Who on earth thought it was a good idea to have a two step for username THEN password!?