dimanche 8 mars 2015

Why session based authentication is no longer best practice?

I have been hearing that because of the explosion of mobile internet that session based authentication is already dead. Now web development is now using token-based authentication.


Can someone explain what are the problems of session and cookie based authentication that led to this change and also how token based authentication solves the problems ?





Aucun commentaire:

Enregistrer un commentaire