It'd be cool to have a super fast request validator in rust that decodes a JWT, talks to redis and then routes back to a backend service
curious to know tho: how do you ensure replayability? e.g. tokens and stuff can be invalidated so that doesn't count right
-
-
? replay attacks are a security vulnerability, you want to ensure they *don't* work
-
haha yeah exactly :p - just everything past auth should be idempotent if possible right?
- 2 more replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.