ASP.NET cookie replay fix without storing auth-token in server?

百般思念 提交于 2019-12-11 08:38:37

问题


I have introduced an audit table to store user login data (including auth-token) upon sign in/sign out and reading user status on each request to eliminate the asp.net cookie replay security issue.

This causes an increase in time taken for each request causing performance issues.

What are some other ways used to mitigate cookie replay attacks in asp.net?

来源:https://stackoverflow.com/questions/46522399/asp-net-cookie-replay-fix-without-storing-auth-token-in-server

易学教程内所有资源均来自网络或用户发布的内容,如有违反法律规定的内容欢迎反馈
该文章没有解决你所遇到的问题?点击提问,说说你的问题,让更多的人一起探讨吧!