Should I just store the client identifier and the hashed and salted update token in the database (along with utility fields, for example, expiration date)?
, , , ASOS , . SerializeRefreshToken context.Ticket.GetTokenId() context.Ticket.ExpiresUtc.
. - GUID, context.Ticket.SetTokenId("token identifier").
, , 1 , ? , , , ?
, . , , . HandleTokenRequest.
, ? , , ?
( ), . , HandleTokenRequest, ( context.Ticket.GetTokenId())