Laurentiu Spilca
“Using token revocation makes sense sometimes, but it’s not something you’d always desire. Remember that if you want to use the revocation feature, this also implies you need to use introspection (even for non-opaque tokens) with every call to validate that the token is still active. Using introspection so often might have a big impact on the performance.”
― Spring Security in Action, Second Edition
― Spring Security in Action, Second Edition
Is this you? Let us know. If not, help out and invite Laurentiu to Goodreads.