Hacker News new | ask | show | jobs
by thenrich99 4050 days ago
In this scenario a replay attack is limited to a 30s window during which the timestamp is valid. Depending on the implementation, this may or may not suffice, in which case an nonce would definitely be an improvement albeit with the added complexity.