How to save refresh tokens?

前端 未结 3 2115
抹茶落季
抹茶落季 2020-12-15 16:33

I\'m trying to add authentication feature to my application. The authentication server implements oauth 2.0

I\'m not sure how to save the re

3条回答
  •  清酒与你
    2020-12-15 17:12

    You are right about your concern - you should not save the refresh token. By doing so, you jeopardize your client's data (and you know the reason; you wrote it in the question). oAuth is not supposed to work this way. You should keep the refresh token in-memory.

提交回复
热议问题