If JWT tokens are stateless how does the auth server know a token is revoked?
If JWT tokens are stateless how does the auth server know a token is revoked?
I hope you found a solution that worked for you :)
The Content (except music & images) is licensed under (https://meta.stackexchange.com/help/licensing)CC BY-SA |
Thanks to all those great people for their contributions!
(security.stackexchange.com/users/16585/gilles)Gilles |
(security.stackexchange.com/users/54284/thoriumbr)ThoriumBR |
(security.stackexchange.com/users/53333/cbhacking)CBHacking |
(security.stackexchange.com/users/284677/spyros)Spyros |
(security.stackexchange.com/users/2755/lie-ryan)Lie Ryan |
A special thanks goes out to the (https://security.stackexchange.com/questions/266204/if-jwt-tokens-are-stateless-how-does-the-auth-server-know-a-token-is-revoked)Stackexchange community |
I wish you all a wonderful day! Stay safe :)
jwt oauth2