ENXF NET
Administrator
Staff member
Administrator
Moderator
+Lifetime VIP+
S.V.I.P.S Member
S.V.I.P Member
V.I.P Member
Collaborate
Registered
- Joined
- Nov 13, 2018
- Messages
- 29,635
- Points
- 823
Reputation:
API call auth/login-token allows to request a login token taht either logs the user in just for one session (
However, this setting is not part of the token and thus not validated when the token is redeemed.
This allows every token to be used for a permanent login which might be a security issue.
Continue reading...
remember = 0) or permanently (remember=1) .However, this setting is not part of the token and thus not validated when the token is redeemed.
This allows every token to be used for a permanent login which might be a security issue.
Continue reading...