Mar 22, 2021
What about if the JWT is created by Cognito. Then sent to a node/express API. The secret does not go with it so no comparison can be made.
In this case, is storing it in the DB and comparing it the best solution?
What about if the JWT is created by Cognito. Then sent to a node/express API. The secret does not go with it so no comparison can be made.
In this case, is storing it in the DB and comparing it the best solution?
Software Engineering Manager. Explorer, learner, teacher, and more