SPAã®ã¢ããªã±ã¼ã·ã§ã³ã§ãå¤é¨ã®IdPã使ã£ã¦OpenID Connect ã«ãããã°ã¤ã³æ©è½ãéçºãããã¨èãã¦ãã¾ããIDãã¼ã¯ã³ã®ä¿åå ã¨ãã¦ããã©ã¦ã¶ã®Cookieããµã¼ãã¼ã®DBã«ä¿åãããã®2ã¤ã®æ¡ãããã¨æã£ã¦ãã¾ãã調ã¹ãéãããµã¼ãã¼ãµã¤ãã§æã¤ã¹ãã¨ããæè¦ãå¤ãããã«è¦ãã¾ããã以ä¸ã®ãããªèæ¯ãããä¸ã§éçºãã¦ãããã©ã¦ã¶ã®Cookieã§ã¯æã¤ã¹ããªã®ã§ã¯ãªãã®ã§ããããï¼ - IDãã¼ã¯ã³èªä½ã«ããå人ã®å±æ§ï¼æ°åçï¼æ å ±ã¯ç¡ããã¨ã確èªãã¦ãã - ãµã¼ãã¼ãµã¤ãã§IDãã¼ã¯ã³ã®ç½²åæ¤è¨¼ããã¦ãIDãã¼ã¯ã³ã®æ¹ãããç¡ãã確èªãã - Http Onlyå±æ§ï¼JSã«ããCookieã¸ã®ã¢ã¯ã»ã¹ãé²ããã - Secureå±æ§ï¼æµåºé²æ¢ã®ãã - SameSite=strictï¼CSRF対çã®ãã çµè«ããè¨ãã°ããã©ã¡ãã§ããããã¨ãªãã¾ããããããæãã話ã¯
{{#tags}}- {{label}}
{{/tags}}