Auth::logout 每次退出都有修改 token?

这个原理是怎么样还望指教

Code_Er
《L03 构架 API 服务器》
你将学到如 RESTFul 设计风格、PostMan 的使用、OAuth 流程,JWT 概念及使用 和 API 开发相关的进阶知识。
《G01 Go 实战入门》
从零开始带你一步步开发一个 Go 博客项目,让你在最短的时间内学会使用 Go 进行编码。项目结构很大程度上参考了 Laravel。
讨论数量: 1

This functionality is only useful when u use the remember me functionality which purpose is to help against Remember Me cookie hijacking.

The value is refreshed upon login and logout. If a cookie is hijacked by a malicious person, logging out makes the hijacked cookie useless since it doesn't match anymore.

Study the source code, u will understand:

  • When u login, u will go through the steps in the vendor/laravel/framework/src/Illuminate/Auth/SessionGuard.php
    as below:
  • file

  • When u logout, u will go through the steps in the vendor/laravel/framework/src/Illuminate/Auth/SessionGuard.php
    as below:
    file
6年前 评论

讨论应以学习和精进为目的。请勿发布不友善或者负能量的内容,与人为善,比聪明更重要!