security for web applications session vs token

后端 未结 2 1006
自闭症患者
自闭症患者 2021-01-26 19:26

Background:
I am developing a web application, planned to use spring-mvc and spring security. My plan is to use form based authentication where

2条回答
  •  情书的邮戳
    2021-01-26 19:36

    • For Stateless application use JWT
    • For third party applications use OAuth2
    • For Statefull application use Session + CSRF

提交回复
热议问题