javascript - Token vs username/password autologin -


what benefits of autologin server-generated token if compare autologin encrypted username/password stored in cookies? ways improve token security on browser? (means store os, location etc.)


update: pls describe in situations need oauth?

server generated tokens can tracked origins. enables system perform more comprehensive security tasks , user management using simple user name , password.

tokens, example, can decided expired after period of time logins through saved user names/passwords cannot.

there risk encrypted data can decrypted. 1 can't out of server generated token on contrary.

the employment of these techniques necessitated requirement low or high in security management of system. can make system tough , heavy - or simple , light if there low threat.


Comments