Authenticated routes: validate session cookie
Unanswered
Asian black bear posted this in #help-forum
Asian black bearOP
hey guys, how am I suppose to protect a route based on the user's session cookie?
My workflow is:
1. I send
2. I save the JWT in a cookie called
Checking if the cookie session exists doesn't protect me from a tempered cookie.
My workflow is:
1. I send
email and password to back-end and it returns a JWT.2. I save the JWT in a cookie called
sessionChecking if the cookie session exists doesn't protect me from a tempered cookie.