2 ms·
JWT with a split cookie seems brilliant to me. Good write up here: https://medium.com/lightrail/getting-token-authentication-right-in-a-stateless-single-page-a
by dstroot 8y ago
JWT with a split cookie seems brilliant to me. Good write up here: https://medium.com/lightrail/getting-token-authentication-right-in-a-stateless-single-page-application-57d0c6474e3 https://medium.com/lightrail/getting-token-authentication-ri...
By splitting the JWT across two cookies, rather than using a single cookie or having the JWT stored in the browser local storage, we are able to meet our requirements...