Client side sessions

后端 未结 6 1517
灰色年华
灰色年华 2020-12-17 00:32

I want the clients of several related web apps to hold their own authentication state. This improves scalability, because no session replication between cluster nodes is nee

6条回答
  •  有刺的猬
    2020-12-17 01:10

    As Pekka said, not a good idea. One can intercept your cookie with sensitive session data. Even with SSL, by using fiddler2 one can decrypt the traffic

提交回复
热议问题