Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

로그아웃 또는 재발행 시 AccessToken BlackList 등록 #29

Closed
sectionr0 opened this issue Dec 1, 2022 · 0 comments
Closed

로그아웃 또는 재발행 시 AccessToken BlackList 등록 #29

sectionr0 opened this issue Dec 1, 2022 · 0 comments
Labels
🐛 bug 버그, 이슈

Comments

@sectionr0
Copy link
Member

현재 로그아웃 또는 재발행 시 기존에 발급받은 AccessToken을 만료 전 까지 사용할 수 있는 문제가 있습니다.
이는 보안 상 문제가 되며, AccessToken을 따로 BlackList로 등록을 해야되는 로직을 추가해야 될 것 같습니다.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
🐛 bug 버그, 이슈
Projects
None yet
Development

No branches or pull requests

2 participants