Is a CSRF token required for JWT authentication

前端 未结 0 1364
北海茫月
北海茫月 2021-01-04 17:52

I\'ve implemented a REST api for SPA and mobile app use with the following security:

  1. Long-living session token (Secure+HTTP only cookie) -> exchanged for acc
相关标签:
回答
  • 消灭零回复
提交回复
热议问题