Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

One of the other use case is session ids. Pretty much you can sign:

user id|timeout|user custom property

Having custom property (per user number), gives an opportunity to kill sessions. E.g. session is compromised, just increment it and regenerate session for valid user.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: