Files
gitocean/modules/setting
Gusted 89b1723d35 [FEAT] Enable INVALIDATE_REFRESH_TOKENS
- It's possible to detect if refresh tokens are used more than once, if
it's used more than it's a indication of a replay attack and it should
invalidate the associated access token. This behavior is controlled by
the `INVALIDATE_REFRESH_TOKENS` setting.
- Altough in a normal scenario where TLS is being used, it should be
very hard to get to situation where replay attacks are being used, but
this is better safe than sorry.
- Enable `INVALIDATE_REFRESH_TOKENS` by default.
2024-07-22 20:45:13 +02:00
..
2023-12-19 09:29:05 +00:00
2024-06-16 13:42:58 +02:00
2023-12-25 20:13:18 +08:00
2023-05-08 19:49:59 +08:00
2023-07-04 18:36:08 +00:00
2024-02-19 20:49:37 +01:00
2023-06-18 16:10:44 +00:00
2023-10-10 18:47:49 +08:00
2024-06-07 17:12:48 +00:00
2024-06-07 17:12:48 +00:00
2024-06-16 13:42:58 +02:00
2023-02-20 16:18:26 -06:00
2024-03-27 22:26:55 +01:00