@aaronpk hi! I'm curious if you have thoughts on what this post explores infi.nl/nieuws/spa-necromanc…
(also yay, PSL and cookies. <-- This needs a real solution in the next several years.)
1
I don't see a mention of the "easy" option of just redirecting to the IdP to get a new token. With a well-configured IdP, that redirect step is almost instantaneous. And if you say it's not, chances are the fault is with the SPA loading too slow, so go fix that first.
1
There's always a risk using query strings so it depends on what it's for. This is also only affecting cookies so you can still make API requests across domains if things are set up right.
Jun 10, 2020 · 5:20 PM UTC

