Dear Michael,
Many thanks for this extensive explanation here.
I totally agree with the recommendation to stay with OpenID server, to follow the guidance in the eHealth Strategy about moving to having Single Sign on across multiple MOHSW health information systems which makes it so much easier for users. And definitely, we need to help users understand that often the confirmation email (particularly with yahoo) ends up in the spam email folder and needs to be moved to the Inbox.
Given that the HFR users all have DHIS2 access, might it be possible to send a message to all DHIS2 users with these details, for a quick outreach to all the HFR users – with a link also to how to recover their password? This DHIS2 messaging system is being very effective and we might be able to take advantage of it as well as doing a mass email to all users?
With DHIS2, they are moving in the next release to OAuth2 – and we should sit with Senyoni to discuss how we might integrate here as there are some differences between OAuth2 and OpenID.
Thanks again, Niamh