Invalid OAuth Token in Asp.net-Identity

I want to revoke a token carrier in Asp.net-Identity. I tried calling UpdateSecurityStampAsync (userId) and I can verify that my user security mark is being updated. But old tokens are still relevant. Does this only mean invalidating cookie authentication?

Is it possible to solve it differently?

+4
source share
2 answers

It is impossible to cancel tokens out of the box, because they are generated using the server machine key.

-3
source

, SecurityStamp ( ). OnReceive, SecurityStamp .

, , - .

, - .

, , , - .

+5

Source: https://habr.com/ru/post/1541723/


All Articles