Skip to content
This repository has been archived by the owner on Mar 23, 2018. It is now read-only.

Blacklist refresh tokens #10

Open
TimMikeladze opened this issue Aug 25, 2016 · 0 comments
Open

Blacklist refresh tokens #10

TimMikeladze opened this issue Aug 25, 2016 · 0 comments

Comments

@TimMikeladze
Copy link
Member

TimMikeladze commented Aug 25, 2016

A refresh token could be black listed for a variety of reasons such as a password reset or a user manually clearing their sessions.

The token verification middleware should check if a refresh token has been black listed by calling a method in the provided account model.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Projects
None yet
Development

No branches or pull requests

1 participant