|
|
|
|
|
by blattimwind
2843 days ago
|
|
Minting tokens specifically refers to JWT-like constructions AKA "[probably-RSA-]signed cookies". Generating a sufficiently (16-32 bytes) long string of randomness and using just that as a session ID stored in a database is a perfectly fine technique, scales well enough and is quite hard to get wrong. |
|