I had fun with this one: 7 Ways an OAuth Access Token is like a Hotel Key Card
developer.okta.com/blog/2019…
1
10
1
21
Nice write up! Question: if an authenticated user gets a new/extra role, does the server create a new JWT or is there a way to update the existing token?
4
Some people like to use JWTs for access tokens or other self-encoded mechanisms. There are definitely trade-offs.
Jun 6, 2019 · 7:20 PM UTC


